From e6e10fa226d3fb6d01f5f8bea193508559372968 Mon Sep 17 00:00:00 2001 From: "Endi S. Dewata" Date: Sat, 30 Apr 2016 01:22:54 +0200 Subject: Removed default certificate validity delay. Some certificate profiles have been modified to remove the default one minute validity delay, allowing the certificate issued with those profiles to be used immediately. https://fedorahosted.org/pki/ticket/2304 --- base/ca/shared/profiles/ca/caDualCert.cfg | 2 +- base/ca/shared/profiles/ca/caECDualCert.cfg | 2 +- base/ca/shared/profiles/ca/caJarSigningCert.cfg | 2 +- base/ca/shared/profiles/ca/caSignedLogCert.cfg | 2 +- 4 files changed, 4 insertions(+), 4 deletions(-) diff --git a/base/ca/shared/profiles/ca/caDualCert.cfg b/base/ca/shared/profiles/ca/caDualCert.cfg index e85cbe002..87c6e6c9e 100644 --- a/base/ca/shared/profiles/ca/caDualCert.cfg +++ b/base/ca/shared/profiles/ca/caDualCert.cfg @@ -109,7 +109,7 @@ policyset.signingCertSet.2.constraint.params.notAfterCheck=false policyset.signingCertSet.2.default.class_id=validityDefaultImpl policyset.signingCertSet.2.default.name=Validity Default policyset.signingCertSet.2.default.params.range=180 -policyset.signingCertSet.2.default.params.startTime=60 +policyset.signingCertSet.2.default.params.startTime=0 policyset.signingCertSet.3.constraint.class_id=keyConstraintImpl policyset.signingCertSet.3.constraint.name=Key Constraint policyset.signingCertSet.3.constraint.params.keyType=RSA diff --git a/base/ca/shared/profiles/ca/caECDualCert.cfg b/base/ca/shared/profiles/ca/caECDualCert.cfg index 8bf081088..7a8d38172 100644 --- a/base/ca/shared/profiles/ca/caECDualCert.cfg +++ b/base/ca/shared/profiles/ca/caECDualCert.cfg @@ -109,7 +109,7 @@ policyset.signingCertSet.2.constraint.params.notAfterCheck=false policyset.signingCertSet.2.default.class_id=validityDefaultImpl policyset.signingCertSet.2.default.name=Validity Default policyset.signingCertSet.2.default.params.range=180 -policyset.signingCertSet.2.default.params.startTime=60 +policyset.signingCertSet.2.default.params.startTime=0 policyset.signingCertSet.3.constraint.class_id=keyConstraintImpl policyset.signingCertSet.3.constraint.name=Key Constraint policyset.signingCertSet.3.constraint.params.keyType=EC diff --git a/base/ca/shared/profiles/ca/caJarSigningCert.cfg b/base/ca/shared/profiles/ca/caJarSigningCert.cfg index 5ddf00776..36aca18c1 100644 --- a/base/ca/shared/profiles/ca/caJarSigningCert.cfg +++ b/base/ca/shared/profiles/ca/caJarSigningCert.cfg @@ -27,7 +27,7 @@ policyset.caJarSigningSet.2.constraint.params.range=2922 policyset.caJarSigningSet.2.default.class_id=validityDefaultImpl policyset.caJarSigningSet.2.default.name=Validity Default policyset.caJarSigningSet.2.default.params.range=1461 -policyset.caJarSigningSet.2.default.params.startTime=60 +policyset.caJarSigningSet.2.default.params.startTime=0 policyset.caJarSigningSet.3.constraint.class_id=keyConstraintImpl policyset.caJarSigningSet.3.constraint.name=Key Constraint policyset.caJarSigningSet.3.constraint.params.keyParameters=1024,2048,3072,4096 diff --git a/base/ca/shared/profiles/ca/caSignedLogCert.cfg b/base/ca/shared/profiles/ca/caSignedLogCert.cfg index 7c99f2ba2..393fe278c 100644 --- a/base/ca/shared/profiles/ca/caSignedLogCert.cfg +++ b/base/ca/shared/profiles/ca/caSignedLogCert.cfg @@ -26,7 +26,7 @@ policyset.caLogSigningSet.2.constraint.params.notAfterCheck=false policyset.caLogSigningSet.2.default.class_id=validityDefaultImpl policyset.caLogSigningSet.2.default.name=Validity Default policyset.caLogSigningSet.2.default.params.range=720 -policyset.caLogSigningSet.2.default.params.startTime=60 +policyset.caLogSigningSet.2.default.params.startTime=0 policyset.caLogSigningSet.3.constraint.class_id=keyConstraintImpl policyset.caLogSigningSet.3.constraint.name=Key Constraint policyset.caLogSigningSet.3.constraint.params.keyType=RSA -- cgit