The TLS cert on my home server
was approaching expiration, and in previous years I've been caught out (on one occasion I was left generating certificates on Christmas day!), so I decided to do it early this year. It's got a lot more complex with certificate pinning. I can't just generate a new certificate and use it, but must now maintain multiple simultaneously shifting them all one to the left each year. It needs much more careful planning, given I'm more than capable of forgetting everything from one year to the next. Still, I'm happy to say it's now all done for another few years, and with an A+ rating
from SSL Labs no less.