Validity Periods and Replacement of the Current and New SSL Certificates
Validity Periods of Current and New SSL Certificates
DigiCert, GlobalSign, and GeoTrust are available CAs in HUAWEI CLOUD SCM. You can request a new certificate 90 days before the current one expires.
After the new certificate is issued, the current certificate is still valid. The validity period and usage of the new certificate depend on if certificate details have changed:
- Certificate details have not changed
If the certificate details remain unchanged, the actual validity period of the new certificate equals to the remaining validity period of the original one plus the requested validity period of the new one. A maximum of 30 days can be counted towards the validity period of the new certificate. You are advised to apply for a certificate 30 days before the original one expires.
For example, if your current certificate expires on October 1, 2019. You request a new one-year SSL certificate with the same details from the same CA on August 31, 2019. If the new certificate is issued on Sept. 1, 2019, it will be valid from Sept. 1, 2019 to Sept. 30, 2020.
This rule is formulated, interpreted, and clarified by the CA. If you have any questions, HUAWEI CLOUD will work with you to communicate and negotiate with the CA.
In this case, the two certificates are considered as the same certificate and in use concurrently.
- The certificate details, such as the domain name, certificate type, or company name, is changed.
The validity periods of the current and new certificates are calculated separately.
The use of the new certificate does not affect the current certificate. The current certificate can continue to be used until it expires.
Does the Replacement of Old Certificates with New Ones Affect Services?
After purchasing or renewing an SSL certificate, you need to submit an application to the CA for approval. You will obtain the new certificate after the CA approves your application. For the new certificate to take over the job, install it on your server to replace the old one, or replace the old one in the cloud service with the new one.
The certificate can be replaced immediately after a new certificate is issued. The replacement does not affect services.
Did this article solve your problem?
Thank you for your score!Your feedback would help us improve the website.