The validity period of the initial device certificates can be defined according to the security requirements and intended use of the devices. For production certificates, MTG recommends validity periods of approximately two to seven years as a best practice.
The initial certificates are intended to provide a secure device identity during production, delivery, and commissioning. During later operation, they can be replaced in a timely manner by certificates from the operational or Corporate PKI.