Certificate is not yet valid (BadCertificateTimeInvalid

Posted: 04 Jun 2018, 15:31
by gkalipershad

I am working with a customer who is using our SLIK-DA Server Toolkit. He generates his certificate file, but UA Expert shows that the validity of the certificate doesn't start for another 16 hours. He gets the BadCertificateTimeInvalid error. He can easily accept the server certificate temporarily for the session, but we are both still curious about why there would be a delay on the validity and how to ensure that the certificates validity begins immediately.


Ganesh Kalipershad
Applications Consultant
Software Toolbox

Re: Certificate is not yet valid (BadCertificateTimeInvalid

Posted: 11 Oct 2018, 11:18
by Support Team
This typically happens if the clocks of the different systems are not synchronized.

If certificates are created or verified on different systems and clocks are not in sync, this can always happen.

OPC UA security requires synchronized clocks. The requirements for precision of the synchronization are low but a similar time must be ensured.