Skip to content

OpenVPN tunnel: Increase server and client certificate duration #1481

@gsanchietti

Description

@gsanchietti

Proposed Feature
Enhance the OpenVPN tunnel server certificate management by increasing its default validity period and surfacing its validity in the user interface.

Purpose and Motivation
Currently, OpenVPN tunnel certificates are valid for 2 years, while the Certificate Authority (CA) is valid for 10 years. When the VPN certificate expires, it is not automatically renewed, requiring manual intervention and certificate reinstallation on the client side. This can lead to service interruptions and additional maintenance for users and administrators. Increasing the validity and improving visibility will enhance user experience and reduce administrative burden.

Proposed Solution

  • Extend the default VPN certificate duration from 2 years to 10 years (to align with the CA).
  • Show the VPN certificate's expiration date and validity period within the user interface, allowing administrators to easily monitor certificate status.

See Also

Metadata

Metadata

Assignees

No one assigned

    Labels

    verifiedAll test cases were verified successfully

    Projects

    Status

    Done ✅

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions