It's probably bad if the SOA expire is longer than MIN(signature expiration). If part of KASP, the auditor can make sure this does not happen.
It's probably bad if the SOA expire is longer than MIN(signature expiration). If part of KASP, the auditor can make sure this does not happen.