summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorEndi S. Dewata <edewata@redhat.com>2016-04-30 01:22:54 +0200
committerEndi S. Dewata <edewata@redhat.com>2016-05-03 21:45:34 +0200
commite6e10fa226d3fb6d01f5f8bea193508559372968 (patch)
treebaedf6ebf35ee019c457ab430bb0869864f4daa4
parenta2a4117dbc7e489cbb1964d6ce5f95b786a03fde (diff)
downloadpki-e6e10fa226d3fb6d01f5f8bea193508559372968.tar.gz
pki-e6e10fa226d3fb6d01f5f8bea193508559372968.tar.xz
pki-e6e10fa226d3fb6d01f5f8bea193508559372968.zip
Removed default certificate validity delay.
Some certificate profiles have been modified to remove the default one minute validity delay, allowing the certificate issued with those profiles to be used immediately. https://fedorahosted.org/pki/ticket/2304
-rw-r--r--base/ca/shared/profiles/ca/caDualCert.cfg2
-rw-r--r--base/ca/shared/profiles/ca/caECDualCert.cfg2
-rw-r--r--base/ca/shared/profiles/ca/caJarSigningCert.cfg2
-rw-r--r--base/ca/shared/profiles/ca/caSignedLogCert.cfg2
4 files changed, 4 insertions, 4 deletions
diff --git a/base/ca/shared/profiles/ca/caDualCert.cfg b/base/ca/shared/profiles/ca/caDualCert.cfg
index e85cbe002..87c6e6c9e 100644
--- a/base/ca/shared/profiles/ca/caDualCert.cfg
+++ b/base/ca/shared/profiles/ca/caDualCert.cfg
@@ -109,7 +109,7 @@ policyset.signingCertSet.2.constraint.params.notAfterCheck=false
policyset.signingCertSet.2.default.class_id=validityDefaultImpl
policyset.signingCertSet.2.default.name=Validity Default
policyset.signingCertSet.2.default.params.range=180
-policyset.signingCertSet.2.default.params.startTime=60
+policyset.signingCertSet.2.default.params.startTime=0
policyset.signingCertSet.3.constraint.class_id=keyConstraintImpl
policyset.signingCertSet.3.constraint.name=Key Constraint
policyset.signingCertSet.3.constraint.params.keyType=RSA
diff --git a/base/ca/shared/profiles/ca/caECDualCert.cfg b/base/ca/shared/profiles/ca/caECDualCert.cfg
index 8bf081088..7a8d38172 100644
--- a/base/ca/shared/profiles/ca/caECDualCert.cfg
+++ b/base/ca/shared/profiles/ca/caECDualCert.cfg
@@ -109,7 +109,7 @@ policyset.signingCertSet.2.constraint.params.notAfterCheck=false
policyset.signingCertSet.2.default.class_id=validityDefaultImpl
policyset.signingCertSet.2.default.name=Validity Default
policyset.signingCertSet.2.default.params.range=180
-policyset.signingCertSet.2.default.params.startTime=60
+policyset.signingCertSet.2.default.params.startTime=0
policyset.signingCertSet.3.constraint.class_id=keyConstraintImpl
policyset.signingCertSet.3.constraint.name=Key Constraint
policyset.signingCertSet.3.constraint.params.keyType=EC
diff --git a/base/ca/shared/profiles/ca/caJarSigningCert.cfg b/base/ca/shared/profiles/ca/caJarSigningCert.cfg
index 5ddf00776..36aca18c1 100644
--- a/base/ca/shared/profiles/ca/caJarSigningCert.cfg
+++ b/base/ca/shared/profiles/ca/caJarSigningCert.cfg
@@ -27,7 +27,7 @@ policyset.caJarSigningSet.2.constraint.params.range=2922
policyset.caJarSigningSet.2.default.class_id=validityDefaultImpl
policyset.caJarSigningSet.2.default.name=Validity Default
policyset.caJarSigningSet.2.default.params.range=1461
-policyset.caJarSigningSet.2.default.params.startTime=60
+policyset.caJarSigningSet.2.default.params.startTime=0
policyset.caJarSigningSet.3.constraint.class_id=keyConstraintImpl
policyset.caJarSigningSet.3.constraint.name=Key Constraint
policyset.caJarSigningSet.3.constraint.params.keyParameters=1024,2048,3072,4096
diff --git a/base/ca/shared/profiles/ca/caSignedLogCert.cfg b/base/ca/shared/profiles/ca/caSignedLogCert.cfg
index 7c99f2ba2..393fe278c 100644
--- a/base/ca/shared/profiles/ca/caSignedLogCert.cfg
+++ b/base/ca/shared/profiles/ca/caSignedLogCert.cfg
@@ -26,7 +26,7 @@ policyset.caLogSigningSet.2.constraint.params.notAfterCheck=false
policyset.caLogSigningSet.2.default.class_id=validityDefaultImpl
policyset.caLogSigningSet.2.default.name=Validity Default
policyset.caLogSigningSet.2.default.params.range=720
-policyset.caLogSigningSet.2.default.params.startTime=60
+policyset.caLogSigningSet.2.default.params.startTime=0
policyset.caLogSigningSet.3.constraint.class_id=keyConstraintImpl
policyset.caLogSigningSet.3.constraint.name=Key Constraint
policyset.caLogSigningSet.3.constraint.params.keyType=RSA