First of all, upgrades should preserve all certs as long as they are not expired. So if the cert was regenerated during upgrade between 5.0.4 and 5.0.5 that would be considered a bug unless you manually regenerated the cert.
The second part of this is that nothing changed with the scope in zmssl.cnf between 5.0.4 and 5.0.5, so the certs should be created and signed in the same fashion with the same settings. Can you paste the exact IE error you are seeing as well as the output of
sudo /opt/zimbra/bin/zmcertmgr viewdeployedcrt
thanks |