|
Posted by Steven L Umbach on August 10, 2005, 8:04 pm
If you were Registered and logged in, you could reply and use other advanced thread options Theoretically the longer the life of a certificate the greater the risk of
compromise of the certificate/private key. For most this is not really an
issue if best practices are followed such as securing the server and backups
that include the certificate/private key. High value targets may necessitate
shorter key lifetimes. --- Steve
>I have the option to generate a Verisign certificate for my
> www.mainwebsiteontherinternet.com for one or two years.
> Do you think people normally are doing this just for one year ? Obviously
> if
> it expires in two years that would be less work for me, but just would
> like
> to confirm whether the best practice is issuing this for one year.
>
>
|