Hi everyone!
As certificate validity periods continue to shrink (approaching the "90-day" or even "47-day" standards), the traditional "manual renewal" once a year is no longer sustainable. I wanted to open a discussion on how everyone is handling IBM MQ Certificate Rotation in 2026.
Are you using the "Label Swap" method (keeping two certs in the KDB and flipping the CERTLABLattribute) or the "Over-write" method (replacing the file and refreshing)? Is anyone successfully automated the end-to-end renewal? Or are we still relying on calendar alerts and manual KDB updates?
I'd love to hear from you: What was your last "Certificate Expired" horror story?
Thanks,
Purush
------------------------------
Purush Das
Founder/Principal Consultant
Integrationpath LLC
Charlotte
6142186410
------------------------------