Certificate Expiration Enforcement and Auto-Rotation

You can configure the server and agents to mitigate the security risks associated with vulnerable agent certificate expiration dates.

When you install an agent, a self-signed certificate and a key pair are generated with a validity of 20 years. However, you can allow agents to automatically rotate their certificates at regular intervals of time. You can also configure the Deploy server to enforce the certificate expiration of all clients and set their validity.