You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Right now if you have a Signer certificate that is expired, we reject any new device connection that's certificate was generated with that signer (see here and here)
It seems AWS will allow the expired signer cert to add devices if the signer was already registered and trusted. Is that a feature we should match and make configurable on the Signer CA for the org?
The text was updated successfully, but these errors were encountered:
No, this is for new device certificate registration.
Say we have the signer, and the device is registered (with no certs). The first device connection will only register its cert if the signer CA is not expired
Right now if you have a Signer certificate that is expired, we reject any new device connection that's certificate was generated with that signer (see here and here)
It seems AWS will allow the expired signer cert to add devices if the signer was already registered and trusted. Is that a feature we should match and make configurable on the Signer CA for the org?
The text was updated successfully, but these errors were encountered: