自动更新期间是否克隆了密钥库标签? [英] Do keyvault tags get cloned during auto-renewal?
问题描述
我的用例是管理以下证书:-
My use case is managing certificates that are:-
- 通过Digicert API发行,
- 设置为自动续订.
如果我在最新版本的cert上设置了任何标签,是否会通过自动续订将其克隆到下一个发行版本?
我没有看到任何文档,这让我感到困惑,因为标签是通过转到证书的特定版本来设置的,而不是在列出所有版本的主页上.
I didn't see any documentation and it confused me since tags are set by going to a specific version of the certificate, not on the main page where all versions are listed.
推荐答案
如果我在cert的最新版本上设置了任何标签,是否会通过自动续订将其克隆到下一个发行版本?
If I set any tags on the latest version of cert, does it get cloned to the next issued version via auto-renew?
根据我的测试,标签也将被克隆到下一个版本.
Per my test, the tags will also be cloned to the next version.
如果您有任何疑问,也可以自己尝试.只需使用Validity Period (in months)
和Percentage Lifetime
生成一个自签名证书,如下所示.大约7.2
小时后,它将生成一个新版本,只需对其进行检查,就会发现标签已存在.
If you have some concerns, you could also try it by yourself. Just generate a self-signed certificate with the Validity Period (in months)
and Percentage Lifetime
like below. After about 7.2
hours later, it will generate a new version, just check it, you will find the tags are existing.
注意:请勿修改Issuance Policy
进行测试,发行策略仅会影响将来将要发行的证书.修改此发行策略不会影响任何现有证书.
Note: Don't modify Issuance Policy
to test, issuance policies only affect certificates that will be issued in the future. Modifying this issuance policy will not affect any existing certificates.
测试结果:
这篇关于自动更新期间是否克隆了密钥库标签?的文章就介绍到这了,希望我们推荐的答案对大家有所帮助,也希望大家多多支持IT屋!