Project

General

Profile

Actions

Bug #11463

closed

Requirements for trusted certificates

Added by DRago_Angel [InV@DER] about 3 years ago. Updated about 3 years ago.

Status:
Rejected
Priority:
Normal
Assignee:
-
Category:
Certificates
Target version:
-
Start date:
02/19/2021
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Release Notes:
Affected Version:
Affected Architecture:

Description

1. Based on https://redmine.pfsense.org/issues/9825 must set validity time to 825 days for new SSL certs, but on 2.4.5_p3 and on 2.5 (including pfsense+ 21.02) it still 3650.
2. From 1 September 2020, SSL/TLS certificates cannot be issued for longer than 13 months (397 days) or Microsoft, Apple, Mozilla and Google will not trust them. Proof: https://www.globalsign.com/en/blog/maximum-ssltls-certificate-validity-now-one-year

Actions

Also available in: Atom PDF