Debian/Apache with existing cert - automation?


Hey there!

I run a Debian 8 / Apache server with an existing certificate (StartSSL) which will expire within the next 14 days. Perfect time to start with let’s encrypt.

Will letsencrypt-auto consider this existing cert in any way? Will it be “deactivated”? Will it fail to configure apache?

So, should I remove the StartSSL-cert before starting the let’s encrypt process? Any suggestions or already experiences?

Thanks! :slight_smile:


In my experience so far (only one case where I had an existing none LE cert) letsencrypt-auto will replace the existing cert with the new one. I’d do a backup of the existing certs of course beforehand, as it’s still “beta”