How to install new SSL certificate on Linux Unifi controller
Step 1: Generate and Export Private Key
- Open OpenSSL.
- Generate a private key from the new SSL certificate:
- Export the private key:
Step 2: Move SSL Certificate and Private Key to UniFi Controller
- Use WinSCP to connect to the UniFi controller.
- Navigate to /home/localadmin/Certs/.
- Upload the SSL certificate (SSLCertificateName.crt) and private key (private.key) to this directory.
Step 3: SSH Login to UniFi Controller and Copy Certificates
- SSH login to the UniFi controller as ROOT.
- Navigate to the certs folder:
cd /home/localadmin/Certs/
- Copy the contents to the UniFi folder:
sudo cp * /usr/lib/unifi/
Step 4: Renew SSL Certificate on UniFi Controller
- Run the following two commands
wget https://get.glennr.nl/unifi/extra/unifi-easy-encrypt.sh
&
bash unifi-easy-encrypt.sh --signed-certificate /usr/lib/unifi/SSLCertificateName.crt --private-key /usr/lib/unifi/private.key
Replace SSLCertificateName with the actual name of your SSL certificate.
2. Select option 2: Apply Paid Certificates (advanced).
This process should renew the SSL certificate for your UniFi controller.