# \#tls

**URL:** https://community.replicated.com/tag/tls/71.md

[Latest](https://community.replicated.com/latest.md) · [Categories](https://community.replicated.com/categories.md) · [Tags](https://community.replicated.com/tags.md)

---

## [kURL: How to manually rotate an expired certificate for Envoy](https://community.replicated.com/t/kurl-how-to-manually-rotate-an-expired-certificate-for-envoy/889)

<div class="topic-metadata">

**Author:** [@diamon\_w](https://community.replicated.com/u/diamon_w)\
**Replies:** 0\
**Last updated:** [July 26, 2022, 4:05pm UTC](https://community.replicated.com/t/kurl-how-to-manually-rotate-an-expired-certificate-for-envoy/889 "2022-07-26T16:05:37Z")

</div>

In a kURL installation using Contour, the default generated Envoy certificate expires in a year. In versions of EKCO less than v0.15.0, this certificate was not rotated automatically. You can verify the expiration of th…
