![]() |
![]() |
RouterOS Scripts a collection of scripts for MikroTik RouterOS |
ℹ️ Info: This script can not be used on its own but requires the base installation. See main README for details.
This script renews certificates issued by a local certificate authority (CA). Optionally the certificates are exported with individual passphrases for easy pick-up.
Just install the script:
$ScriptInstallUpdate certificate-renew-issued;
The configuration goes to global-config-overlay, there is just one
parameter:
CertRenewPass: an array holding individual passphrases for certificatesℹ️ Info: Copy relevant configuration from
global-config(the one without-overlay) to your localglobal-config-overlayand modify it to your specific needs.
Run the script to renew certificates issued from a local CA.
/system/script/run certificate-renew-issued;
Only scripts with a remaining lifetime of three weeks or less are renewed.
The old certificate is revoked automatically. If a passphrase for a specific
certificate is given in CertRenewPass the certificate is exported and
PKCS#12 file (cert-issued/CN.p12) can be found on device’s storage.
⬅️ Go back to main README
⬆️ Go back to top
RouterOS Scripts documentation generated on Thu, 20 Nov 2025 20:47:50 +0100 for main/3287/699be25b
Copyright © 2013-2025 Christian Hesse <mail@eworm.de>