Skip to content

Consider shorter default TTL for Cells service mTLS

The current design document is based on the the Dedicated Internal TLS

Root CA - 20 years
Intermediate/Subordinate CA -  5-10 years
End-entity cert - 6 months - 1 year

Action items

  • Use much shorter default TTL, like 1 month.
  • Explicitly state this in the design document along with the reason for a short TTL
Edited by Thong Kuah
To upload designs, you'll need to enable LFS and have an admin enable hashed storage. More information