Comment on What is the best trategie to refresh ssh keys?
non_burglar@lemmy.world 1 week agoRe-gen the keys. In this environment, you would have PKI setup and automation to handle cert renewal.
Having the certs expire is an advantage, security-wise. Auth will expire with certs, stolen creds can be instantly invalidated.