Security certificate lifetime

MicroShift certificates are digital certificates that secure communication with communication protocols such as HTTPS. They fall into two basic categories:

Short-lived certificates

Valid for one year. Most server or leaf certificates are short-lived.

Long-lived certificates

Valid for 10 years. For example, the client certificate for system:admin user authentication, or the kube-apiserver external serving certificate signer.

MicroShift restarts automatically depending on certificate age.