Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Removing a CA key

    Scheduled Pinned Locked Moved OpenVPN
    8 Posts 4 Posters 841 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • GilG
      Gil Rebel Alliance
      last edited by

      I have some imported CA's. (generated in a stand-alone RootCA VM)
      I then (post) imported the key.
      Is it possible to remove the key from the CA again via the GUI?
      or;
      should I manually remove it within the xml?

      11 cheers for binary

      1 Reply Last reply Reply Quote 0
      • kiokomanK
        kiokoman LAYER 8
        last edited by

        system / cert manager , is there no bin or edit icon to press, next to the imported CA ?

        ̿' ̿'\̵͇̿̿\з=(◕_◕)=ε/̵͇̿̿/'̿'̿ ̿
        Please do not use chat/PM to ask for help
        we must focus on silencing this @guest character. we must make up lies and alter the copyrights !
        Don't forget to Upvote with the 👍 button for any post you find to be helpful.

        GilG 1 Reply Last reply Reply Quote 0
        • GilG
          Gil Rebel Alliance @kiokoman
          last edited by

          @kiokoman The CA is still in use, and I want the cert. But not the key, as I don't want the ability to generate certs from this server.

          11 cheers for binary

          1 Reply Last reply Reply Quote 0
          • jimpJ
            jimp Rebel Alliance Developer Netgate
            last edited by

            Click the pencil icon to edit the CA. Delete the key. Save.

            Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

            Need help fast? Netgate Global Support!

            Do not Chat/PM for help!

            GilG 1 Reply Last reply Reply Quote 0
            • GilG
              Gil Rebel Alliance @jimp
              last edited by

              @jimp That's exactly what I was attempting to do, but it doesn't work.
              I edit and save, but the CA still indicates that it is an internal CA.
              When I go back into edit the CA again, the key is still there.

              11 cheers for binary

              1 Reply Last reply Reply Quote 0
              • jimpJ
                jimp Rebel Alliance Developer Netgate
                last edited by

                Hmm, yeah, I guess that doesn't let you remove the key.

                Worst case scenario, back up the config, edit out the key, restore.

                Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

                Need help fast? Netgate Global Support!

                Do not Chat/PM for help!

                1 Reply Last reply Reply Quote 0
                • GilG
                  Gil Rebel Alliance
                  last edited by

                  That does appear to be a bit of a bug.
                  I'll manually edit the xml.
                  Thanks.

                  11 cheers for binary

                  viktor_gV 1 Reply Last reply Reply Quote 0
                  • viktor_gV
                    viktor_g Netgate @Gil
                    last edited by

                    @Gil said in Removing a CA key:

                    That does appear to be a bit of a bug.
                    I'll manually edit the xml.
                    Thanks.

                    Fix:
                    https://redmine.pfsense.org/issues/10509

                    1 Reply Last reply Reply Quote 1
                    • First post
                      Last post
                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.