By default, timestamps do not expire with the certificate chain expires. This can be changed by using the “lifetime signer OID” or setreg.exe for environments that wish to be more locked down. See code signing best practices for details on timestamping.
Code-Signing Best Practices
This article is also available in the following languages:
Luigi Bruno edited Revision 7. Comment: Fixed a link.
Luigi Bruno edited Revision 6. Comment: Added the "Other Languages" section. Added the "Multi Language Wiki Articles" tag to the tags list.
Jewel Lambert edited Revision 5. Comment: corrected spelling typo
Nevin Janzen edited Revision 4. Comment: Tags Edit
Luigi Bruno edited Revision 3. Comment: Fixed some links.
Luigi Bruno edited Revision 2. Comment: Edited article's title and tags list.
Ed Price MSFT edited Revision 1. Comment: Added a "See Also" link.
Ed Price MSFT edited Original. Comment: Added See Also link.
how about net trust ?
Good Article.