On Thu, Apr 12, 2012, Dinh, Thao V CIV NSWCDD, K72 wrote: > Thank You very, very much for all for help. I have a couple more questions: > > 1) what is max time you can have on expiration ?? >
Technically the 31st December 9999 but you have to consider the security strength of the key used and how breakable it might be in future. Having a 30 year expiry date with a 1024 bit RSA key is not advisable for example. Steve. -- Dr Stephen N. Henson. OpenSSL project core developer. Commercial tech support now available see: http://www.openssl.org ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List openssl-users@openssl.org Automated List Manager majord...@openssl.org