Can I register a CA keyring for over 10 years?

This is for an internal intranet/SSL setup.

I’d like to create a CA for more than 10 years (actually I’d like to create the CA for 50 years). Then create a few server certificates for 50 years also.

When I manually create the CA keyring, it defaults to 10 years. Can it be changed??

Subject: Can I register a CA keyring for over 10 years?

The answer is Yes, you can do it but it is a bit tricky.

I have written a document called “HowTo be your own CA – for LDAP, SSL, Web Servers, and Domino”, Subtitled “How to authenticate across domains” that will explain how to do it.

Send me an email and I will send you an extract (it is not finished yet).

Regards

Rolf Pfotenhauer

email: rolfpf@yahoo.com.au