Checking your expiration date
In cPanel, go to Security → SSL/TLS Status — this displays the current expiration date for every domain’s active certificate.
Renewing a free AutoSSL certificate
Nothing to do — AutoSSL automatically renews Let’s Encrypt certificates roughly every 60–90 days as long as it remains enabled and your domain continues passing its validation checks. If a renewal fails, cPanel will email the account owner with the specific reason (commonly a DNS or file-validation check that’s no longer passing).
Renewing a paid SSL certificate
- Purchase a renewal through your original Certificate Authority or Sysop Solutions (typically available 30–90 days before expiration).
- Some CAs let you reuse your original CSR; others require generating a new one (see our CSR generation guide).
- Complete any required re-validation (domain, organization, or extended validation documents).
- Install the renewed certificate the same way as the original installation.
Setting up renewal reminders
Most Certificate Authorities send automatic renewal reminder emails — make sure the registered contact email is one that’s actively monitored, not a forgotten inbox, since a missed paid-certificate renewal will take your site offline with a browser security warning until it’s fixed.