Friday, December 07, 2018

Renew/extend CA created with ikectl

Hello,

before I start getting creative with openssl(1) on my ikectl(8) created ca.

Yesterday my ca certificate expired and I need to renew it (without
loosing all the client certificates)

Is there a recommended way of renewing the ca.crt created using ikectl
ca create?
I didn't find anything in the man pages nor on the mailing list. Having
had a look at ikeca.c gave me some idea of how the file is created.

Also is there a way of having the ca cert valid for more than 365 days?

Cheers,
Kim

No comments:

Post a Comment