We all apply/renew SAP Certificates in PSE files (SSL). While verifying certificates in browser - Say fiori, web dispatcher, we might see different validity period shown in browser.
90% of Basis peoples say in simple - It's showing timings w.r.t User System time zone (IST, CET, ET, etc.,) or Server time zone.
But still, In 50% cases, Validity period timing won't match corresponding time zones when calculated and confuses us
Here's the hidden tick below.
Certificate Validity period/timings should be considered from UTC time zone shown near the validity. It can be seen from .CRT/.CER file as well.
Example:
User in ET Time zone which shows w.r.t current
EST/EDT.
User applied/renewed certificate now.
Currently, Assume it's EDT Time zone UTC-4 hours
PSE file will show:
Validity Start - 09.04.26 2:39:23
Not Before - 260409063923
Refers to 09.04.2026 - 06:39:23 - UTC
If user logged in browser with EDT - ET time zone and check period, It will show UTC -4 timestamp 2:39:23.
If user logged in browser on Nov 1, 2026 - (EST Starts) - ET time zone and check period, It will show UTC-5 timestamp 1:39:23
PSE file will show:
Validity Start - 09.04.26 2:39:23
Not Before - 260409063923
While checking in Browser, It will be 1:39:23.
In this way, Validity period shows with decreased/increased timings w.r.t time zones (day light savings time) accordingly. However, At the End, Validity period will be single one w.r.t UTC.
✨To avoid above confusions, Always check with PSE file - Not Before/After UTC timings.
Note 3430912 - Get Notification on Certification Expiration?
Thanks for visiting !!!
No comments:
Post a Comment