Example 1
- notBefore 2024-01-01
- notAfter 2024-03-31
90
How many days from 2024-01-01 to 2024-03-31? 90. Two dates, not a live CA.
Type notBefore and notAfter. 2024-01-01 to 2024-03-31 give 90. 2024-01-01 to 2025-01-01 give 366. 2023-01-01 to 2024-01-01 give 365. Two dates, not a live CA.
(notAfter minus notBefore) / 86400000. Not a live certificate. Days to one date sit on SSL Certificate Expiry.
Enter data and click Calculate.
SSL Certificate Validity in this calculator counts days between two typed dates. 2024-01-01 to 2024-03-31 give 90. 2024-01-01 to 2025-01-01 give 366. 2023-01-01 to 2024-01-01 give 365. A span, not a live CA.
Field ssl-not-before and field ssl-not-after are dates. 31 March minus 1 January 2024 is 90. Leap year 2024 is 366. Plain 2023 is 365. The calculator does not read PEM.
90 does not come from openssl. 366 is not a Let's Encrypt probe. 365 does not know OCSP. You type both dates. There is no live CA.
SSL Certificate Expiry next door counts one date versus a reference day. Unix converts a stamp. Here 2024-01-01 and 2024-03-31 stay 90, the span alone.
Type 2024-01-01 and 2024-03-31, then Calculate. The result is 90. Reversed dates break the window. This is not a live certificate.
2024-01-01 to 2024-03-31 give 90. 2024-2025 give 366. 2023-2024 give 365. Another notAfter at 2024-01-01 changes 90.
days = round((notAfter - notBefore) / 86400000). Two typed dates, not a live CA.
Two dates, not a live CA. 2024-01-01 to 2024-03-31 give 90.
90
How many days from 2024-01-01 to 2024-03-31? 90. Two dates, not a live CA.
366
What about 2024-01-01 to 2025-01-01? 366.
365
What about 2023-01-01 to 2024-01-01? 365.
90. Two typed dates, not a live CA.
366. 2024 is a leap year.
365. A common year.
No. Two date fields. The calculator does not call a CA and does not read PEM.
No. The day difference alone. The Forum stays off the formula.
The window breaks or goes negative. Type notAfter after notBefore.
No. Two dates only. No revocation status.
On SSL Certificate Expiry. Here 90 from 2024-03-31 stays.
No. Both fields need a date. This is not a live CA.
The calculator counts bits, bytes or throughput from your numbers. Below are SI and bit definitions (NIST).
Page updated in 2026.
This calculator answers: how long is the certificate valid overall — from notBefore to notAfter. That is lifetime span, not a countdown of days remaining. Results show the span in days (plus ~months/years) and whether today sits inside the window.
Let’s Encrypt has issued 90-day certificates from the start, betting on automated renewal rather than manual work. That design got ahead of the trend the CA/Browser Forum is now pushing across the whole industry — a shorter window means less risk surface, but only if renewal is automated.
Shorter validity windows mean more frequent rollouts and a greater need for monitoring. Measure the current certificate’s lifetime against your policy — near 398 days means upcoming CA/B Forum caps will hurt without automation.
Mini checklist:
Enter the same dates in the form to see days / months / years.
| Typical length | notBefore (example) | notAfter (example) | Days |
|---|---|---|---|
| ~90 days (ACME / LE) | 2026-01-01 | 2026-04-01 | 90 |
| ~180 days | 2026-01-01 | 2026-07-01 | 181 |
| ~365 days | 2026-01-01 | 2027-01-01 | 365 |
| ~397–398 days (CA/B cap) | 2025-06-01 | 2026-07-04 | ~398 |