Renewing an SSL certificate is not a single click. It is a short sequence: buy the renewal from the same provider you used originally, let the Certificate Authority (CA) validate it, then install the new certificate on your server before the old one expires. Do it in the right order and with enough lead time, and your visitors never see a security warning. Leave it too late and you effectively start from scratch. Here is the full process, plus the timing detail most people miss.

1. Re-purchase from your original provider

To renew, simply re-purchase the certificate from the same SSL provider you originally bought it from. The important part is timing: you want to renew before the validity period actually expires, not after. There are two reasons for this.

  1. You do not want your protection to lapse. A gap leaves your website insecure, and that ends up costing you money in lost trust and blocked visitors. Issuing a certificate can also take a few days, so a late renewal can leave you without protection for as long as a week.
  2. Renewing early saves you the full validation process. If you renew before the certificate expires, the issuing CA can roll over the majority of the previously validated information, depending on the certificate type, as long as your business information remains the same. You may only have to satisfy a few requirements instead of the entire process. If you renew after the certificate has expired, you are not really renewing at all: you are purchasing a new certificate, and the CA will make you go through every step of validation again.

2. Validate and install

Your job is not done simply because you have renewed. The CA still has to validate the request and issue you a new certificate, and then you still have to install that certificate on your server. Do not make the mistake of thinking the work is finished just because you have paid for a renewal. A purchased-but-uninstalled renewal will still leave you without protection the moment your old certificate expires. Fit the new certificate, confirm the site loads over HTTPS without warnings, and you are good to go. If you manage several sites from one dashboard, our team can walk you through installs from the SSL certificates help section.

The unused time rolls over

Do not worry about losing the days left on your current certificate. That time rolls over too, up to a maximum of three months. So if you renew for an additional year while you still have two and a half months left on your original certificate's lifespan, you actually receive a renewal certificate that is good for the next fourteen and a half months, instead of just twelve. In other words, renewing early does not waste money; it protects you and banks up to three months of your remaining validity.

Renew early and the unused time carries over Original 12-month certificate 2.5 mo left renew here New renewal certificate 14.5 months of cover

Quick renewal checklist

  • Renew well before the expiry date, ideally a few weeks ahead, to absorb any issuance delay.
  • Re-purchase through the same provider so your validated details can be reused.
  • Keep your business and contact information unchanged where possible to minimise re-validation.
  • Complete any outstanding validation steps the CA asks for.
  • Install the newly issued certificate, then test the site over HTTPS.

Renewing SSL for a portfolio of sites

If you run several properties on dedicated Class C IPs, staggered expiry dates are easy to lose track of, and a single expired certificate can knock a site offline for days. Set a reminder ahead of each renewal date and batch the work. You can add, renew or manage certificates alongside your hosting on our SSL certificates page, and questions about invoices and renewal cycles are covered in billing and account. To keep certificates issuing and renewing smoothly, it also helps to understand the certificate lifecycle in general, which the Let's Encrypt documentation explains clearly for any provider.

Renew early, install promptly, and your certificates stay valid with no gap in protection, plus you bank up to three extra months of cover for renewing ahead of time.

Was this answer helpful? 28 Users Found This Useful (114 Votes)