Assume the following scenario:
- The online responders are configured to request signing certificates using a certificate template from an Active Directory integrated certificate authority.
- The online responders apply for a new signature certificate at regular intervals (every four hours), even though the existing certificate is still valid for a sufficiently long time.