How can I make RCM reject a certificate request if the certificate validity period is different ?
Originally Published: 2007-04-05
Article Number
Applies To
Issue
Using the RCM API, calling XudaCASignCertificate to submit a CSR
If the certificate validity period in a CSR does not match the validity period defined by the Jurisdiction / Profile at the CA, then depending on the CA settings, the Certificate Validity Period will either be the one defined in the CSR, or the one defined at the CA.
It is not currently possible to have RCM reject the request if the validity periods do not match.
In order to achive this functionality, it would be possible to write a customer proxy that sits between the client and the RCM, and which would parse the request and decide whether to forward the request to the CA, or to reject the request
In order to achive this functionality, it would be possible to write a customer proxy that sits between the client and the RCM, and which would parse the request and decide whether to forward the request to the CA, or to reject the request
If you require such a proxy, one option would be to engage RSA Professional Services Organization to write one that exactly matches your needs.
Related Articles
Why do certificate passed validity period still show active in RCM ? 12Number of Views When issuing a cert via AEP the validity period is always set to 1 year no matter the validity specified in the extensio… 7Number of Views Certificates can be created with longer validity than CAs. 13Number of Views After applying build 522 the validity period and extensions included in certificates issued via AEP Proxy are NOT as expe… 18Number of Views Adding a new user attribute in a user profile in RSA Authentication Manager 8.x 100Number of Views
Trending Articles
RSA Authentication Manager 8.9 Setup and Configuration Guide How to 'Trust' the RSA Authentication Manager Security Console Self-Signed Root CA certificate and prevent Cert warnings. RSA Authentication Manager 8.9 Release Notes (January 2026) Configure RSA Authentication Manager as a Secure Proxy Server for Cloud Access Service RSA Authentication Manager Upgrade Process
Don't see what you're looking for?