> Source: [sk170558](https://support.checkpoint.com/results/sk/sk170558)

# sk170558 - How to adjust the VPN certificate's expiration period

| Property | Value |
|----------|-------|
| Solution ID | sk170558 |
| Date Created | 2020-11-18 |
| Last Modified | 2020-11-19 |
| Technical Level | General |
| Products | Security Gateway, Security Management Server |
| Versions | R82.10, R82, R81.20, R82.10, R82, R81.20, R82.20 |
| OS | Gaia |

## Solution

Do the following to increase or decrease the expiration period on VPN certificates:

1. Activate the ICA tool if you have not done so already. For instructions, refer to [sk30501](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk30501 "ICA Tool").
2. When the ICA is activated, go to **https://Mgmt_ip:18265**
3. On the page select **Configure the CA**.
4. Under **Validity Attributes** :
   * Go to**IKE Certificate validity period:** edit the value to the desired amount.
     * Example: 3 years = 1095 days
5. Click **Apply**to save changes.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
