Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    webConfigurator not using renewed cert

    Scheduled Pinned Locked Moved ACME
    4 Posts 2 Posters 551 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T
      tknospdr
      last edited by

      I have successfully installed Acme certs, and am issuing 3 certificates.
      All 3 have successfully renewed as expected, but the one in use by webConfig is still showing that it's going to expire today even though there's a newer cert to be had.
      I have per the instructions (Restart the GUI on this firewall: Select "Shell Command" and enter /etc/rc.restart_webgui) set the GUI to restart.
      Not sure how to push the updated cert to the list...

      Screenshot 2023-10-31 at 2.44.30 PM.png

      Screenshot 2023-10-31 at 2.45.02 PM.png

      T 1 Reply Last reply Reply Quote 0
      • T
        tknospdr @tknospdr
        last edited by

        Alright, I see what I did.
        At some point when I first set up the certs I renamed one after creating it.
        That caused a 2nd copy with the new name to be created in the list of certs and so webconfig didn't know to jump over to it on renewal.
        I pointed the webgui to the new name and then deleted the old cert.
        We'll see how it all goes in another 50 days or so but I expect everything will be fine.

        GertjanG 1 Reply Last reply Reply Quote 0
        • GertjanG
          Gertjan @tknospdr
          last edited by

          @tknospdr said in webConfigurator not using renewed cert:

          another 50 days

          Or sooner 😊

          If you don't want to wait, just hit the

          184d98eb-598e-4f3b-8a1f-ed33931737d8-image.png

          Keep in mind : don't hit this button to often ^^
          Also : domain name validation is cached for a week (10 days) or so on the LE side.
          So, a real test with all bells and whistles is possible after this period.

          No "help me" PM's please. Use the forum, the community will thank you.
          Edit : and where are the logs ??

          T 1 Reply Last reply Reply Quote 0
          • T
            tknospdr @Gertjan
            last edited by

            @Gertjan Right, I don't mind waiting. I just hit that button about a week ago when I first noticed the issue and wanted to see if forcing an update would solve it.

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.