We have one Enterprise Root CA and one Subordinate CA server in our environment. Subordinate CA issues certificates to many DCs and Webservers.
Now the certificate of Subordinate CA is getting expired and we have to renew. I would like to know what will happen if I renew Subordionate certificate with new key pair? all the existing certificates issued by Subordinate CA become invalid? or still continue to funtion till expiry date?