Hello,
Thank you for posting in Q&A forum.
To ensure a smooth certificate renewal process, the following are some of our suggestions:
Considering that old certificates are manually added to multiple locations (such as devices on Linux servers), it is recommended to keep the old certificates during the transition period. If the old certificate is deleted, any services that rely on the old certificate may be immediately affected. It is recommended to keep both the old and new certificates during the transition period to ensure that all services can seamlessly switch to the new certificate.
During the process of renewing a certificate, old certificates are usually not immediately deleted. Old certificates can remain valid until their natural expiration. This allows services and applications enough time to transition to the new certificate.
The new certificate request will be validated based on the new subordinate CA certificate. If the old certificate is still retained and valid, the system and services will verify it based on the certificate chain.
Best regards,
Jill Zhou
If the Answer is helpful, please click "Accept Answer" and upvote it.