Score:0

Does Win-Acme / LetsEncrypt renew existing certificates or replace them?

ng flag

I'm at the initial stages of considering the use of LetsEncrypt certificates for my Windows radius server. I don't see any purpose in the purchase and renewal process every year for what it is used for.

My question is this...Using Win-Acme to automatically renew the certificates, does it extend/renew the existing certificate, or does it create a new certificate and remove the old?

In my Radius configuration I have to select the certificates to use for authentication. I'm concerned that the renewal process will generate a new certificate which will not be assigned on the Radius server, and authentication will fail. I'm assuming if this is the case, the next step would be to setup a script to possibly handle the Radius reconfiguration because I do not think Win-Acme will do it.

Score:1
in flag

After a quick view into the documentation it looks like the behaviour depends on what you select to store the certificates.

For example, for the windows certificate store there is a flag --keepexisting which indicates that by default the old certificate is removed on renewal.

For the other storage options, there is nothing mentioned explicitly, but there is an option DeleteStaleFiles, which defaults to false. If enabled, old files are removed from the certificate store path after 120 days. This indicates that by default old certificate files are kept (if you select files as the storage option).

I sit in a Tesla and translated this thread with Ai:

mangohost

Post an answer

Most people don’t grasp that asking a lot of questions unlocks learning and improves interpersonal bonding. In Alison’s studies, for example, though people could accurately recall how many questions had been asked in their conversations, they didn’t intuit the link between questions and liking. Across four studies, in which participants were engaged in conversations themselves or read transcripts of others’ conversations, people tended not to realize that question asking would influence—or had influenced—the level of amity between the conversationalists.