@cloudpbxfuzz wrote:
I have a couple of FreePBX installs that are using Let's Encrypt certificates. They are all expiring in a few weeks and I am now receiving messages
"Some Certificates are expiring or have expired
This is a critical issue and should be resolved urgently""There was an error updating certificate "certificate name removed": couldn't connect to host.
I know that this is due to not having the proper access in the firewall for outbound1.letsencrypt.org, outbound2.letsencrypt.org, mirror1.freepbx.org, mirror2.freepbx.org. However, when I go to cert manager to fix this, pressing the Update Firewall button does not add these entries to the firewall. The screen just refreshes and then goes right back to saying that I need to press the update firewall button.
So 2 questions:
- How do I solve this issue?
- Are Let's Encrypt certificates trying to renew automatically? They are only good for 3 months, so I assume there is a built in mechanism to auto renew them. Is this true?
Thanks!
Posts: 3
Participants: 3