Koozali.org: home of the SME Server

openvpn-bridge certificate

Offline sti

  • *
  • 29
  • +0/-0
openvpn-bridge certificate
« on: November 27, 2023, 09:53:25 AM »
I need to renew then openvpn-bridge smeserver-certificate
and I am not shure how to savely do that.

Can I just click "renew" in certificate management of the smeserver-website ?
--certificates are then copied automatically to the right place ?

--how are clients affected ? do they also need new files ?

thanks
 

Offline ReetP

  • *
  • 3,810
  • +5/-0
Re: openvpn-bridge certificate
« Reply #1 on: November 27, 2023, 11:36:24 AM »
...
1. Read the Manual
2. Read the Wiki
3. Don't ask for support on Unsupported versions of software
4. I have a job, wife, and kids and do this in my spare time. If you want something fixed, please help.

Bugs are easier than you think: http://wiki.contribs.org/Bugzilla_Help

If you love SME and don't want to lose it, join in: http://wiki.contribs.org/Koozali_Foundation

Offline Jean-Philippe Pialasse

  • *
  • 2,819
  • +11/-0
  • aka Unnilennium
    • http://smeserver.pialasse.com
Re: openvpn-bridge certificate
« Reply #2 on: November 27, 2023, 02:21:55 PM »
all depends on your pki CA root certificate state. if it is still valid,
- renew openvn certificate
- paste key and public cert in openvpn panel

you will need then to do the same for clients  only if the CA root cert has also reach its end of life and needed to be renewed. Plus you will need to do update also every other key/ certificates.

if your CA is almost at its end , you might rather want to do it as you are there. waiting might make it happen at a moment you have all your roadwarriors away