Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    unable to remove unused Certificate in "Certificate Manager"

    Scheduled Pinned Locked Moved General pfSense Questions
    9 Posts 4 Posters 1.0k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • joshgreyzJ
      joshgreyz
      last edited by

      After navigating to "System -> Certificate Manager -> Certificates", there is a certificate which is not being used for anything but there is no "Trash Icon" to remove it as we see described in the "Remove a Certificate" section of the pfSense documentation. What am I missing here? Thanks.

      NogBadTheBadN 1 Reply Last reply Reply Quote 0
      • NogBadTheBadN
        NogBadTheBad @joshgreyz
        last edited by NogBadTheBad

        @joshgreyz Is it still in use ?

        Screenshot 2022-01-24 at 19.53.43.png

        Andy

        1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

        joshgreyzJ 1 Reply Last reply Reply Quote 1
        • stephenw10S
          stephenw10 Netgate Administrator
          last edited by

          There are some things that don't show as 'in use' there in 21.05.2 such as:
          https://redmine.pfsense.org/issues/12206
          https://redmine.pfsense.org/issues/12205
          https://redmine.pfsense.org/issues/12204

          But since it is in use cannot be deleted.

          Steve

          1 Reply Last reply Reply Quote 0
          • R
            Ryzon62
            last edited by Ryzon62

            Same issue for me. Says OpenVPN Client is In Use, but even when I disable the service and client it still thinks the client is in use.

            NogBadTheBadN 1 Reply Last reply Reply Quote 0
            • NogBadTheBadN
              NogBadTheBad @Ryzon62
              last edited by

              @ryzon62 You need to remove or replace it in the OVPN config, not just disable the service.

              Andy

              1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

              R 1 Reply Last reply Reply Quote 0
              • R
                Ryzon62 @NogBadTheBad
                last edited by

                @nogbadthebad Thanks for the quick reply. That can be done somewhere in the WebGUI?

                NogBadTheBadN 1 Reply Last reply Reply Quote 0
                • NogBadTheBadN
                  NogBadTheBad @Ryzon62
                  last edited by

                  @ryzon62 In the same place you configured it in the OVPN section of the web GUI.

                  Andy

                  1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

                  R 1 Reply Last reply Reply Quote 0
                  • R
                    Ryzon62 @NogBadTheBad
                    last edited by

                    @nogbadthebad I had two VPNs created, and previously deleted the second offending client, but that did not resolve the issue. I think the problem is that because the second VPN server was a clone of the first it created issues with the CA certificates. So, based on your message, I deleted the other client too and that now gives me the ability to delete the offending CA. I’ll just recreate the client. Thanks much!

                    1 Reply Last reply Reply Quote 1
                    • joshgreyzJ
                      joshgreyz @NogBadTheBad
                      last edited by

                      @nogbadthebad thank you for that visual clarification. I had to go into the Acme(1) section [which was "using" it] and remove it there first. Then I was able remove it from the Certificate Manager.

                      1 Reply Last reply Reply Quote 0
                      • First post
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.