Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login
    Introducing Netgate Nexus: Multi-Instance Management at Your Fingertips.

    Acme certificate expiring notice after deletion

    Scheduled Pinned Locked Moved General pfSense Questions
    10 Posts 4 Posters 370 Views 5 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • 4 Offline
      4o4rh
      last edited by

      I used acme to create a duckdns certificate which i no longer need.
      i deleted the certificate, under certificate manager, but i keep getting notifications

      The following CA/Certificate entries are expiring:
      Certificate: DuckDNS-xxxxxxx (68b14b77xxxxx): Expired 86 days ago @ 2026-05-06 03:01:00
      The following CA/Certificate entries are expiring:
      Certificate: DuckDNS-xxxxxxx (68b14b77xxxxx): Expired 87 days ago @ 2026-05-07 03:01:00
      

      Where is it coming from?

      1 Reply Last reply Reply Quote 0
      • stephenw10S Offline
        stephenw10 Netgate Administrator
        last edited by

        Hmm, so it's no longer shown in the cert manager? Or in use by anything? It shouldn't be possible if it's been removed from the manager.

        Is the ACME package still showing it?

        4 1 Reply Last reply Reply Quote 0
        • 4 Offline
          4o4rh @stephenw10
          last edited by

          @stephenw10 it's very weird Steve.
          The only Acme certificate is the one i currently use for a different system.
          The one referenced below was deleted from the Acme one.
          I also deleted the entry from duckdns.org.
          Under the Certificate Authorities I have two Acmecert CN=R13 and CN=R12,
          but I don't think that has anything to do with it.

          The following CA/Certificate entries are expiring:
          Certificate: DuckDNS-xxxx  (68b14b779xxxx): Expired 86 days ago @ 2026-05-06 03:01:00
          The following CA/Certificate entries are expiring:
          Certificate: DuckDNS-xxxx (68b14b779xxxx): Expired 87 days ago @ 2026-05-07 03:01:00
          The following CA/Certificate entries are expiring:
          Certificate: DuckDNS-xxxx (68b14b779xxxx): Expired 88 days ago @ 2026-05-08 03:01:00
          The following CA/Certificate entries are expiring:
          Certificate: DuckDNS-xxxx (68b14b779xxxx): Expired 89 days ago @ 2026-05-09 03:01:00
          The following CA/Certificate entries are expiring:
          Certificate: DuckDNSxxxx (68b14b779xxxx): Expired 90 days ago @ 2026-05-10 03:01:00
          
          johnpozJ 1 Reply Last reply Reply Quote 0
          • stephenw10S Offline
            stephenw10 Netgate Administrator
            last edited by

            Hmm, check the config file for the the cert reference number. It must still be present somewhere.

            4 1 Reply Last reply Reply Quote 0
            • 4 Offline
              4o4rh @stephenw10
              last edited by

              @stephenw10 which config file pls

              luckman212L 1 Reply Last reply Reply Quote 0
              • luckman212L Offline
                luckman212 LAYER 8 @4o4rh
                last edited by

                THE config file ๐Ÿ™‚ - it's at /cf/conf/config.xml

                or if you want to do it using the GUI, go to Diagnostics โ†’ Edit File and then use ctrl+F/cmd+F...

                search for <cert> ...

                6d47f133-f290-4cbf-85b4-bc37c1bad8a3-CleanShot 2026-05-13 at 08.59.21.png

                1 Reply Last reply Reply Quote 1
                • stephenw10S Offline
                  stephenw10 Netgate Administrator
                  last edited by

                  The pfSense config file, if you download it from Diag > Backup.

                  1 Reply Last reply Reply Quote 0
                  • johnpozJ Online
                    johnpoz LAYER 8 Global Moderator @4o4rh
                    last edited by

                    @4o4rh said in Acme certificate expiring notice after deletion:

                    Under the Certificate Authorities I have two Acmecert CN=R13 and CN=R12,

                    Did you look under just certificates?

                    An intelligent man is sometimes forced to be drunk to spend time with his fools
                    If you get confused: Listen to the Music Play
                    Please don't Chat/PM me for help, unless mod related
                    SG-4860 26.03.1 | Lab VMs 2.8.1, 26.07

                    4 1 Reply Last reply Reply Quote 0
                    • 4 Offline
                      4o4rh @johnpoz
                      last edited by

                      @johnpoz thanks John, that was it... don't know why I missed that it was blaring in red... expired.

                      johnpozJ 1 Reply Last reply Reply Quote 1
                      • johnpozJ Online
                        johnpoz LAYER 8 Global Moderator @4o4rh
                        last edited by

                        @4o4rh yeah guess that could be read as CA Certificates, vs CA and or just Certificates ;)

                        An intelligent man is sometimes forced to be drunk to spend time with his fools
                        If you get confused: Listen to the Music Play
                        Please don't Chat/PM me for help, unless mod related
                        SG-4860 26.03.1 | Lab VMs 2.8.1, 26.07

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2026 Rubicon Communications LLC (Netgate). All rights reserved.
                        Privacy Policy · Cookie Policy