I'm trying to figure out if this is advisable. I have come across a situation where a mixed-mode 12.5.1 SU2 CUCM cluster has had multiple trust certificates expire either at the same time or within a short span of time. The expired certificates are all CallManager-trust and CAPF-trust certs. In trying to ensure that I don't cause an unexpected problem I have been deleting them one at a time and restarting services with each deletion. This understandably takes a bit of time to work through the list. So, I am wondering if there was anything that could go wrong if I were to delete all of the same type of expired trust certs in one go, and restart the services afterward. Unless I am missing something, the expired trust certs shouldn't be actively affecting anything in a cert chain. I guess my worry is will I cause cause something to break badly by removing too many expired trust certs at the same time.
Solved! Go to Solution.
Thank you Nithin! I must have looked at those instructions 20 times. Step 3 just didn't register as a "repeat as necessary" step.