Creating certificate with a custom validity period with IdM's CA

Solution Verified - Updated -

Issue

Default certificate lifetimes in Dogtag are 20 years for the CA certificate (when self-signed) and about 2 years for other system certificates.
Sometimes it is needed to issue a certificate from a shorter period (or longer one, but it not really recommended for security reasons).

Environment

IPA 4+ with CA
RHEL 7, 8

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In

New to Red Hat?

Learn more about Red Hat subscriptions

Using a Red Hat product through a public cloud?

How to access this content