Hi all,,

hey i have been dealing with this issue for several months now..

Today I followed the information on this link: [SOLVED] Zimbra Certificates have expired and I'm having difficulty regenerating them

but, when I do the command:

mail:/opt# /opt/zimbra/bin/zmcertmgr deployca
** Importing CA /opt/zimbra/ssl/zimbra/ca/ca.pem into CACERTS...done.
** Saving global config key zimbraCertAuthorityCertSelfSigned...failed.
** Saving global config key zimbraCertAuthorityKeySelfSigned...failed.
** Copying CA to /opt/zimbra/conf/ca...done.
unable to load certificate
3074758284:error:0906D06C:PEM routines:PEM_read_bio:no start lineem_lib.c:696:Expecting: TRUSTED CERTIFICATE

I got that WEIRD error... i don't know if I have to update or install another lib for pem or something like that.

If I continue with the rest of the steps for regenerating the certificates, i tool a look to the log /opt/zimbra/log/mailbox.log I got the following:

2012-03-06 16:17:58,416 FATAL [Pop3SSLServer] [] system - accept loop failed
javax.net.ssl.SSLException: No available certificate or key corresponds to the SSL cipher suites which are enabled.
at com.sun.net.ssl.internal.ssl.SSLServerSocketImpl.c heckEnabledSuites(SSLServerSocketImpl.java:310)
at com.sun.net.ssl.internal.ssl.SSLServerSocketImpl.a ccept(SSLServerSocketImpl.java:255)
at com.zimbra.cs.tcpserver.TcpServer.run(TcpServer.ja va:178)
at java.lang.Thread.run(Thread.java:662)

Can you please help me on this?