Security

 View Only
Expand all | Collapse all

PKI Certificates - updating (for soon to be expiring intermediary certificates)

This thread has been viewed 2 times
  • 1.  PKI Certificates - updating (for soon to be expiring intermediary certificates)

    Posted Oct 10, 2019 04:55 AM

    We have our intermediary certificate expiring in December. I've imported a new Certificate P12/PFX for our servers as this is expiring two however although it imported the full chain it's showing the old intermediary certificate and the new certificate instead. Instead of both of them being new.

     

    Is there a guide out there somewhere to show me what to do at all?

     

    Thanks

     

    Wes



  • 2.  RE: PKI Certificates - updating (for soon to be expiring intermediary certificates)

    Posted Oct 11, 2019 04:14 AM

    For which product is this question? You placed it in the Community Feedback section.



  • 3.  RE: PKI Certificates - updating (for soon to be expiring intermediary certificates)

    Posted Oct 14, 2019 05:56 AM

    Did you import the new intermediates and root into the Trust list?

    And it may be needed to remove the previous versions.

     

    It could be that certificates are cross-signed during the transition of root/intermediates at the CA. If there is (also) a signature from the previous root/intermediate, that path could be picked from the trust list during the import.