Issuing correct Let's Encrypt certificate for POP3 SSL logons

4 posts / 0 new
Last post
#1 Sun, 02/19/2017 - 13:31
No Expert

Issuing correct Let's Encrypt certificate for POP3 SSL logons

Hi there,

Hoping someone can help with this basic question.

Firstly, I can see someone else raising the same question here: https://www.virtualmin.com/node/39343

This relates to this bug which apparently was fixed with Virtualmin version 5.01 (I'm using 5.06) https://www.virtualmin.com/node/39341

So, I managed to correctly install Let's Encrypt on my CentOS 6.8 server and issued certificates for my domain.com and www.domain.com. These work correctly on the website.

When I generated the certificate I can see that it was also copied to Dovecot:

Copying certificate and key to Dovecot files ..
.. wrote out certificate in /etc/pki/dovecot/certs/dovecot.pem, key in /etc/pki/dovecot/private/dovecot.pem and CA cert in /dovecot.ca.pem

However when I tried to use the certificate, Thunderbird throws an error message because the certificate is only valid for domain.com and www.domain.com but not mail.domain.com

When I try to include mail.domain.com when generating a certificate I get: .. request failed : Domain has no website, and DNS-based validation is not possible

I would appreciate some help in resolving this.

Thanks

Wed, 02/22/2017 - 14:50
No Expert

Hi,

could anyone look at this?

Thanks

Tue, 02/28/2017 - 23:48
samrich

Did you ever find a solution to this problem?

Mon, 03/06/2017 - 07:33
Kiekomick
Kiekomick's picture

Hi,
same problem with admin.DOMAIN.TLD , etc.
Is there a turnaround for checking Let's Encrypt with DNS-base validation or you work on it?

thx
use:
Operating system Ubuntu Linux 16.04.1
Webmin version 1.831
Virtualmin version 5.06

Topic locked