# Is key rotation made mandatory by 3.1 update?

**URL:** https://hub.mender.io/t/is-key-rotation-made-mandatory-by-3-1-update/4616
**Category:** General Discussions
**Created:** [February 15, 2022, 3:24pm UTC](https://hub.mender.io/t/is-key-rotation-made-mandatory-by-3-1-update/4616 "2022-02-15T15:24:22Z")
**Posts on this page:** 3
**Page:** 1

<div class="post-metadata">

### Author: ![spratesi](https://avatars.discourse-cdn.com/v4/letter/s/eb8c5e/32.png) [@spratesi](https://hub.mender.io/u/spratesi)
#### Post date: [February 15, 2022, 3:24pm UTC](https://hub.mender.io/t/is-key-rotation-made-mandatory-by-3-1-update/4616/1 "2022-02-15T15:24:22Z")

</div>

Hello,  
for what I’ve understood the update from the 3.0 to the 3.1 version requires creating new certificates, since the ones created with the script shipped with 3.0 does not use the SAN property. Also the storage-proxy certificate is dropped.  
Is this correct or there is something I’ve misunderstood?

Thank you very much

---

<div class="post-metadata">

### Author: ![eystein](https://avatars.discourse-cdn.com/v4/letter/e/e5b9ba/32.png) [@eystein](https://hub.mender.io/u/eystein)
#### Post date: [February 16, 2022, 6:50pm UTC](https://hub.mender.io/t/is-key-rotation-made-mandatory-by-3-1-update/4616/2 "2022-02-16T18:50:59Z")

</div>

Hello @spratesi ,

I don’t think so but any specific steps between versions should be covered in the upgrading documentation. I don’t see it, but check out your deployment option (e.g. Kubernetes): [Server installation | Mender documentation](https://docs.mender.io/3.1/server-installation)

Also wanted to note that Mender 3.2 is released recently. 🙂

---

<div class="post-metadata">

### Author: ![spratesi](https://avatars.discourse-cdn.com/v4/letter/s/eb8c5e/32.png) [@spratesi](https://hub.mender.io/u/spratesi)
#### Post date: [February 18, 2022, 10:57am UTC](https://hub.mender.io/t/is-key-rotation-made-mandatory-by-3-1-update/4616/3 "2022-02-18T10:57:09Z")

</div>

> any specific steps between versions should be covered in the upgrading documentation

I’m afraid it’s not…

And this is the commit where the change I’m referring to was made: [keygen: Change script and update demo certificate to use SAN · mendersoftware/integration@ea82d53 · GitHub](https://github.com/mendersoftware/integration/commit/ea82d532f1d12b06dbe9cb1504532017d38a6d71)
