1
0
mirror of https://github.com/openshift/openshift-docs.git synced 2026-02-05 12:46:18 +01:00
Files
openshift-docs/modules/virt-automatic-certificates-renewal.adoc
2025-11-18 16:29:25 +01:00

30 lines
884 B
Plaintext

// Module included in the following assemblies:
//
// * virt/about_virt/virt-security-policies.adoc
:_mod-docs-content-type: CONCEPT
[id="virt-automatic-certificates-renewal_{context}"]
= TLS certificates
[role="_abstract"]
TLS certificates for {VirtProductName} components are renewed and rotated automatically. You are not required to refresh them manually.
== Automatic renewal schedules
TLS certificates are automatically deleted and replaced according to the following schedule:
* KubeVirt certificates are renewed daily.
* Containerized Data Importer controller (CDI)
certificates are renewed every 15 days.
* MAC pool certificates are renewed every year.
Automatic TLS certificate rotation does not disrupt any operations. For example, the following operations continue to function without any disruption:
* Migrations
* Image uploads
* VNC and console connections