<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Can&#x27;t remove broken Certificate Authority]]></title><description><![CDATA[<p dir="auto">After restoring my 2.5.0 pfsense firewall from fystical to a virtual machine (Proxmox) there is a problem with on of the Certificate Authorities. And a PHP error show up every time.</p>
<p dir="auto">When I check my Certificate Authorities I can't select delete (the edit, export and delete icons are not there).</p>
<p dir="auto"><img src="/assets/uploads/files/1655559092008-pfsense.jpg" alt="pfsense.jpg" class=" img-fluid img-markdown" /></p>
<p dir="auto">Does anyone know how to remove this Certificate Authority ?</p>
]]></description><link>https://forum.netgate.com/topic/172880/can-t-remove-broken-certificate-authority</link><generator>RSS for Node</generator><lastBuildDate>Tue, 21 Apr 2026 01:49:52 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/172880.rss" rel="self" type="application/rss+xml"/><pubDate>Sat, 18 Jun 2022 13:32:12 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Can&#x27;t remove broken Certificate Authority on Mon, 20 Jun 2022 09:39:32 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/stephenw10">@<bdi>stephenw10</bdi></a></p>
<p dir="auto">Yep, that's another possible issue :  Installing a package (always the latest version) on a pfSense system that is not on the latest (2.6.0 if you use the free edition) version can work out fine.<br />
More often it breaks stuff.</p>
<p dir="auto">That's why :<br />
If you decide NOT keep pfSense on the latest vesrion then you also decide not to upgrade / install packages any more.<br />
Not respecting this rule is like playing with a six barrel gun and a bullet.<br />
( we all saw the movie Deerhunter ones in our lives, right ? )</p>
<p dir="auto">Read / click on the image :</p>
<p dir="auto"><a href="https://www.netgate.com/blog/pfsense-plus-software-version-22.01-and-ce-2.6.0-are-now-available" target="_blank" rel="noopener noreferrer nofollow ugc"><img src="/assets/uploads/files/1655717628991-0c26b335-292e-4d62-bafd-2840b0cfa267-image.png" alt="0c26b335-292e-4d62-bafd-2840b0cfa267-image.png" class=" img-fluid img-markdown" /></a></p>
<p dir="auto">Note : with some 'small' packages, like "Notes",  you might get away with it.</p>
<p dir="auto">When you see this :</p>
<p dir="auto"><img src="/assets/uploads/files/1655717764197-6b4a7c6a-5366-4380-afa8-da3e98de2a03-image.png" alt="6b4a7c6a-5366-4380-afa8-da3e98de2a03-image.png" class=" img-fluid img-markdown" /></p>
<p dir="auto">and you see that huge stuff like php74  gets pulled in - and knowing that pfSense uses also php7x for it's WebGUI, I would consider that as a huge red flag.</p>
]]></description><link>https://forum.netgate.com/post/1047331</link><guid isPermaLink="true">https://forum.netgate.com/post/1047331</guid><dc:creator><![CDATA[Gertjan]]></dc:creator><pubDate>Mon, 20 Jun 2022 09:39:32 GMT</pubDate></item><item><title><![CDATA[Reply to Can&#x27;t remove broken Certificate Authority on Mon, 20 Jun 2022 09:24:16 GMT]]></title><description><![CDATA[<p dir="auto">I would guess that what happened here is when you restored the config it pulled in the acme package from 2.6 (the current stable version) and that broke some of the cert libs required.<br />
If you need to do it again I would either install 2.6 directly or upgrade the VM to 2.6 before you restore the config.</p>
<p dir="auto">Steve</p>
]]></description><link>https://forum.netgate.com/post/1047330</link><guid isPermaLink="true">https://forum.netgate.com/post/1047330</guid><dc:creator><![CDATA[stephenw10]]></dc:creator><pubDate>Mon, 20 Jun 2022 09:24:16 GMT</pubDate></item><item><title><![CDATA[Reply to Can&#x27;t remove broken Certificate Authority on Mon, 20 Jun 2022 08:54:56 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/boumacor">@<bdi>boumacor</bdi></a> said in <a href="/post/1047326">Can't remove broken Certificate Authority</a>:</p>
<blockquote>
<p dir="auto">Any idea's how to fix this ?</p>
</blockquote>
<p dir="auto">And it's more easier as you think ;)<br />
Use the very first trick that pfSense offers you : delete it using tools you trust and manage : a text editor (Install Notepad++).</p>
<p dir="auto">Get a first complete config backup, put this is a safe place. If anything goes wrong, you will be back at where you started.<br />
Get a second copy, open it using Notepadd++ an look for these (example) :</p>
<p dir="auto"><img src="/assets/uploads/files/1655714989140-f2b6e998-9776-42fc-b5da-f680c2f43f4b-image.png" alt="f2b6e998-9776-42fc-b5da-f680c2f43f4b-image.png" class=" img-fluid img-markdown" /></p>
<p dir="auto">Delete your &lt;ca&gt; .... &lt;/ca&gt;<br />
You'll recognise it when looking at the <strong>descr</strong>iption field.</p>
<p dir="auto">Remember to respect leading tabs, spaces, whatever, do a clean cut.</p>
<p dir="auto">Save the file.<br />
Import it back in pfSense.<br />
Have pfSense reboot.<br />
Done.</p>
]]></description><link>https://forum.netgate.com/post/1047327</link><guid isPermaLink="true">https://forum.netgate.com/post/1047327</guid><dc:creator><![CDATA[Gertjan]]></dc:creator><pubDate>Mon, 20 Jun 2022 08:54:56 GMT</pubDate></item><item><title><![CDATA[Reply to Can&#x27;t remove broken Certificate Authority on Mon, 20 Jun 2022 08:28:42 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/nollipfsense">@<bdi>nollipfsense</bdi></a> After a reboot the problem is the same. The 3 icons don't show. I've tryed 2 times.</p>
<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/stephenw10">@<bdi>stephenw10</bdi></a> I didn't set the update branch to 2.5.0. Just used the 2.5.0 installer in my VM and then restored the configuration. Acme is already gone from the system, but now the CA seems to be the problem.</p>
<p dir="auto">Any idea's how to fix this ?</p>
]]></description><link>https://forum.netgate.com/post/1047326</link><guid isPermaLink="true">https://forum.netgate.com/post/1047326</guid><dc:creator><![CDATA[boumacor]]></dc:creator><pubDate>Mon, 20 Jun 2022 08:28:42 GMT</pubDate></item><item><title><![CDATA[Reply to Can&#x27;t remove broken Certificate Authority on Sat, 18 Jun 2022 23:25:46 GMT]]></title><description><![CDATA[<p dir="auto">Is the new VM also pfSense 2.5.0? Did you set the update branch to deprecated before installing acme if so?</p>
<p dir="auto">Steve</p>
]]></description><link>https://forum.netgate.com/post/1047227</link><guid isPermaLink="true">https://forum.netgate.com/post/1047227</guid><dc:creator><![CDATA[stephenw10]]></dc:creator><pubDate>Sat, 18 Jun 2022 23:25:46 GMT</pubDate></item><item><title><![CDATA[Reply to Can&#x27;t remove broken Certificate Authority on Tue, 21 Jun 2022 02:25:14 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/boumacor">@<bdi>boumacor</bdi></a> Had you tried reboot then immediately go to certificate after logging in, then see whether it allows you to delete?</p>
]]></description><link>https://forum.netgate.com/post/1047211</link><guid isPermaLink="true">https://forum.netgate.com/post/1047211</guid><dc:creator><![CDATA[NollipfSense]]></dc:creator><pubDate>Tue, 21 Jun 2022 02:25:14 GMT</pubDate></item></channel></rss>