<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[How Extend CA&#x27;s on OpenVPN]]></title><description><![CDATA[<p dir="auto">Hi Guys,</p>
<p dir="auto">My OpenVPN user complaints they can't connect to VPN upon checking i notice the CA is expired 10 AUg 2021, I would to ask if there's a way to extend the CA's validity?</p>
<p dir="auto">My pfsense is still running on 2.3.5 p2.</p>
<p dir="auto">Thanks,<br />
A</p>
]]></description><link>https://forum.netgate.com/topic/165750/how-extend-ca-s-on-openvpn</link><generator>RSS for Node</generator><lastBuildDate>Tue, 10 Mar 2026 15:29:35 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/165750.rss" rel="self" type="application/rss+xml"/><pubDate>Wed, 11 Aug 2021 01:05:57 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to How Extend CA&#x27;s on OpenVPN on Mon, 16 Aug 2021 02:35:07 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/viragomann">@<bdi>viragomann</bdi></a></p>
<p dir="auto">Thanks for replying. I created a new CA and generate new client configuration.</p>
]]></description><link>https://forum.netgate.com/post/997207</link><guid isPermaLink="true">https://forum.netgate.com/post/997207</guid><dc:creator><![CDATA[albertmiclat]]></dc:creator><pubDate>Mon, 16 Aug 2021 02:35:07 GMT</pubDate></item><item><title><![CDATA[Reply to How Extend CA&#x27;s on OpenVPN on Wed, 11 Aug 2021 10:27:33 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/albertmiclat">@<bdi>albertmiclat</bdi></a> said in <a href="/post/996439">How Extend CA's on OpenVPN</a>:</p>
<blockquote>
<p dir="auto">I don't see any renew button on my instance i'm NOT sure if it is because of the version i'm currently using.</p>
</blockquote>
<p dir="auto">That's it. The renew function was added in 2.5.</p>
<p dir="auto">There is no possibilitly to renew a CA certificate in former versions as far as I know. CAs should be initially created with long live time.<br />
You will have to create a new CA and hand out new certs to servers and users.</p>
<p dir="auto">If you have many user certs, maybe it can be a workaround to install a temporary 2.5.2 instance, import the CA, renew the cert and transfer the CA back to your production pfSense. But never done that.</p>
]]></description><link>https://forum.netgate.com/post/996476</link><guid isPermaLink="true">https://forum.netgate.com/post/996476</guid><dc:creator><![CDATA[viragomann]]></dc:creator><pubDate>Wed, 11 Aug 2021 10:27:33 GMT</pubDate></item><item><title><![CDATA[Reply to How Extend CA&#x27;s on OpenVPN on Wed, 11 Aug 2021 01:09:09 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/albertmiclat">@<bdi>albertmiclat</bdi></a></p>
<p dir="auto">https://docs.netgate.com/pfsense/en/latest/certificates/renew.html - I don't see any renew button on my instance i'm NOT sure if it is because of the version i'm currently using.</p>
]]></description><link>https://forum.netgate.com/post/996439</link><guid isPermaLink="true">https://forum.netgate.com/post/996439</guid><dc:creator><![CDATA[albertmiclat]]></dc:creator><pubDate>Wed, 11 Aug 2021 01:09:09 GMT</pubDate></item></channel></rss>