Ask HN: What's your solution for SSL on internal servers? 4 years ago
(Untested idea) I'd suggest creating your own Root CA with an expire-date far in the future. Install it's public key as a trusted certificate and all derived certificates should not prompt any issues anymore