Some of our SSL certs are now affected by the new 199 day expiration - no longer valid for one year.
What a mess this makes on Windows Server running IIS.
Normally we have to create a Certificate Signing Request (CSR), then complete the cert install from there. That is a lot of messing around compared to Linux servers, especially when there are 10-20 certs on the server with the same renewal dates.
Apparently the certs will be automatically renewed in 6 months time, but updating them on the server is going to be a RPIA. Not sure how yet, but I am open to suggestions.
In any case, when did a circus like Google become 'the' authority on web security?