{% extends "base.html" %} {% block content %}
Certificate lifecycle

Renew certificate

Create a successor to {{ certificate['common_name'] }} with a new serial number and validity period.

Certificate details

Review the renewal

The previous certificate remains unchanged. Deploy the successor before deciding whether to revoke the previous certificate.

Previous serial
{{ certificate['serial_number'] }}
Previous issuer
{{ certificate['authority_name'] }}
New issuer
{{ authority['name'] if authority else 'No current Issuing CA' }}{% if authority and authority['id'] != certificate['authority_id'] %} — issuer changes; deploy the new trust chain too.{% endif %}
{% if blocked %}

{{ blocked }}

{% else %}

Use a new CSR to keep the key on the destination system. Generating a key requires an administrator to enable and perform its export. The previous private key is never reused automatically.

{% endif %}
{% endblock %}