Koozali.org: home of the SME Server

Contribs.org Forums => Koozali SME Server 10.x Contribs => Topic started by: sti on November 27, 2023, 09:53:25 AM

Title: openvpn-bridge certificate
Post by: sti on November 27, 2023, 09:53:25 AM
I need to renew then openvpn-bridge smeserver-certificate
and I am not shure how to savely do that.

Can I just click "renew" in certificate management of the smeserver-website ?
--certificates are then copied automatically to the right place ?

--how are clients affected ? do they also need new files ?

thanks
 
Title: Re: openvpn-bridge certificate
Post by: ReetP on November 27, 2023, 11:36:24 AM
https://wiki.koozali.org/OpenVPN_Bridge
Title: Re: openvpn-bridge certificate
Post by: Jean-Philippe Pialasse on November 27, 2023, 02:21:55 PM
all depends on your pki CA root certificate state. if it is still valid,
- renew openvn certificate
- paste key and public cert in openvpn panel

you will need then to do the same for clients  only if the CA root cert has also reach its end of life and needed to be renewed. Plus you will need to do update also every other key/ certificates.

if your CA is almost at its end , you might rather want to do it as you are there. waiting might make it happen at a moment you have all your roadwarriors away