What is a good certificate expiration time and how do you decide?



I've recently been asked to extend my workstation certificate expiration time to something longer than I currently have. I don't really want to say what it currently is, but I'm looking for advice on how to gauge a safe expiration time.We are a fairly large school district. We manage our own PKI infrastructure for all internal certificate usage, as it is much cheaper than buying hundreds of certificates for each service.We primarily use workstation certificates to authenticate on wireless. We may also use them for VPN configurations in the future, as we move toward AOV.The problem is that we h

