Creating certificate with a custom validity period with IdM's CA
Issue
Default certificate lifetimes in Dogtag are 20 years for the CA certificate (when self-signed) and about 2 years for other system certificates.
Sometimes it is needed to issue a certificate from a shorter period (or longer one, but it not really recommended for security reasons).
Environment
IPA 4+ with CA
RHEL 7, 8
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.