<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[The following CA&#x2F;Certificate entries are expiring: Certificate: GUI default ...]]></title><description><![CDATA[<p dir="auto">No doubt this is a terribly naive question, but should I expect the GUI certificate to be expiring, and if so, where ought I fetch an updated one?</p>
]]></description><link>https://forum.netgate.com/topic/200061/the-following-ca-certificate-entries-are-expiring-certificate-gui-default-...</link><generator>RSS for Node</generator><lastBuildDate>Sat, 13 Jun 2026 03:09:49 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/200061.rss" rel="self" type="application/rss+xml"/><pubDate>Mon, 02 Feb 2026 05:38:53 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to The following CA&#x2F;Certificate entries are expiring: Certificate: GUI default ... on Mon, 09 Feb 2026 02:52:35 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/johnpoz">@<bdi>johnpoz</bdi></a> with that music going haha</p>
]]></description><link>https://forum.netgate.com/post/1237548</link><guid isPermaLink="true">https://forum.netgate.com/post/1237548</guid><dc:creator><![CDATA[JonathanLee]]></dc:creator><pubDate>Mon, 09 Feb 2026 02:52:35 GMT</pubDate></item><item><title><![CDATA[Reply to The following CA&#x2F;Certificate entries are expiring: Certificate: GUI default ... on Sun, 08 Feb 2026 18:56:50 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/jonathanlee">@<bdi>JonathanLee</bdi></a> said in <a href="/post/1237522">The following CA/Certificate entries are expiring: Certificate: GUI default ...</a>:</p>
<blockquote>
<p dir="auto">Like the movie Logan’s Run you know ?</p>
</blockquote>
<p dir="auto">haha - one of my favs..</p>
<p dir="auto">Enter the Carousel. This is the time of renewal.</p>
<p dir="auto"><img src="/assets/uploads/files/1770577008623-renewal.jpg" alt="renewal.jpg" class=" img-fluid img-markdown" /></p>
]]></description><link>https://forum.netgate.com/post/1237528</link><guid isPermaLink="true">https://forum.netgate.com/post/1237528</guid><dc:creator><![CDATA[johnpoz]]></dc:creator><pubDate>Sun, 08 Feb 2026 18:56:50 GMT</pubDate></item><item><title><![CDATA[Reply to The following CA&#x2F;Certificate entries are expiring: Certificate: GUI default ... on Sun, 08 Feb 2026 18:16:33 GMT]]></title><description><![CDATA[<p dir="auto">Yeah renew!!! Like the movie Logan’s Run you know ?</p>
]]></description><link>https://forum.netgate.com/post/1237522</link><guid isPermaLink="true">https://forum.netgate.com/post/1237522</guid><dc:creator><![CDATA[JonathanLee]]></dc:creator><pubDate>Sun, 08 Feb 2026 18:16:33 GMT</pubDate></item><item><title><![CDATA[Reply to The following CA&#x2F;Certificate entries are expiring: Certificate: GUI default ... on Mon, 02 Feb 2026 19:20:26 GMT]]></title><description><![CDATA[<p dir="auto">In addition per https://forum.netgate.com/post/1236652 they plan to auto-renew it in future versions.</p>
]]></description><link>https://forum.netgate.com/post/1237126</link><guid isPermaLink="true">https://forum.netgate.com/post/1237126</guid><dc:creator><![CDATA[SteveITS]]></dc:creator><pubDate>Mon, 02 Feb 2026 19:20:26 GMT</pubDate></item><item><title><![CDATA[Reply to The following CA&#x2F;Certificate entries are expiring: Certificate: GUI default ... on Mon, 02 Feb 2026 19:03:28 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/khb">@<bdi>khb</bdi></a> I concur that should prob be longer, but in a recent thread that some of these browser makers are getting a bit overly zealous if you will on even local type certs.</p>
<p dir="auto">safari seems to have a limit of 825 days for even a local CA.. What I do is create my own ca, sign my pfsense gui cert with that ca that my browser trusts (firefox, and others) I don't use safari.</p>
<p dir="auto">I set them for 10 years. I also put in the fqdn I am using, currently for my pfsense gui sg4860.home.arpa - yes I know its very creative and imaginative, hehehhe being currently its a netgate sg-4860 model..</p>
<p dir="auto">I also put in the IP of my lan as SAN, so I can access via name or IP and my browser is happy and doesn't complain.  And more than likely will have newer machine well before that cert expires ;)</p>
<p dir="auto"><img src="/assets/uploads/files/1770058969658-cert.jpg" alt="cert.jpg" class=" img-fluid img-markdown" /></p>
<p dir="auto">This one is good from 2024, when I changed over from using local.lan as my local domain to the approved home.arpa domain.</p>
]]></description><link>https://forum.netgate.com/post/1237110</link><guid isPermaLink="true">https://forum.netgate.com/post/1237110</guid><dc:creator><![CDATA[johnpoz]]></dc:creator><pubDate>Mon, 02 Feb 2026 19:03:28 GMT</pubDate></item><item><title><![CDATA[Reply to The following CA&#x2F;Certificate entries are expiring: Certificate: GUI default ... on Mon, 02 Feb 2026 18:01:25 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/steveits">@<bdi>SteveITS</bdi></a> said in <a href="/post/1237077">The following CA/Certificate entries are expiring: Certificate: GUI default ...</a>:</p>
<blockquote>
<p dir="auto">https://docs.netgate.com/pfsense/en/latest/certificates/index.html</p>
</blockquote>
<p dir="auto">Thank you. While I appreciate the security upside of having external “things” certificates expire, what’s the benefit of this for the appliance's local GUI, especially since its self signed?</p>
]]></description><link>https://forum.netgate.com/post/1237105</link><guid isPermaLink="true">https://forum.netgate.com/post/1237105</guid><dc:creator><![CDATA[khb]]></dc:creator><pubDate>Mon, 02 Feb 2026 18:01:25 GMT</pubDate></item><item><title><![CDATA[Reply to The following CA&#x2F;Certificate entries are expiring: Certificate: GUI default ... on Mon, 02 Feb 2026 06:57:59 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/khb">@<bdi>khb</bdi></a> yes. You can just renew it. https://docs.netgate.com/pfsense/en/latest/certificates/index.html</p>
]]></description><link>https://forum.netgate.com/post/1237077</link><guid isPermaLink="true">https://forum.netgate.com/post/1237077</guid><dc:creator><![CDATA[SteveITS]]></dc:creator><pubDate>Mon, 02 Feb 2026 06:57:59 GMT</pubDate></item></channel></rss>