This issue affects only self-signed certificates that were generated by the Cisco IOS or Cisco IOS XE device and applied to a service on the device. Any service that relies on these self-signed certificates to establish or terminate a secure connection might not work after the certificate expires. After that time, unfixed IOS systems will be unable to generate new SSCs. Note: This document contains the contents of FN40789, along with additional context, examples, updates, and Q&As.Īt 00:00 on UTC, all Self-Signed Certificates (SSC) that were generated on IOS/IOS-XE systems will expire, unless the system was running a fixed version of IOS/IOS-XE when the SSC was generated.