Results 1 to 3 of 3

Thread: Zimbra 5 - reporting no owner for SSL cert?

  1. #1
    Mistoffeles is offline Senior Member
    Join Date
    Oct 2007
    Posts
    70
    Rep Power
    7

    Default Zimbra 5 - reporting no owner for SSL cert?

    I am having a problem with Thunderbird clients sending email with Zimbra configured to only user SSL ports (pop3 995 and smtp 465). T-Bird is saying that there is a domain name mismatch in the certificate (there isn't), and their support people are asking if the MTA is playing any shennanigans with the SSL connection details.

    I am leaning towards this being a T-Bird problem, since everything appears to work fine in other email clients, but jsut to be safe I am asking here:

    Does Zimbra 5.x not report all of the details, specifically the owner of the certificate, when a client is authenticating to send smtps mail on port 465?

    Cheers,
    - Misty

  2. #2
    phoenix is online now Zimbra Consultant & Moderator
    Join Date
    Sep 2005
    Location
    Vannes, France
    Posts
    23,504
    Rep Power
    57

    Default

    Quote Originally Posted by Mistoffeles View Post
    I am having a problem with Thunderbird clients sending email with Zimbra configured to only user SSL ports (pop3 995 and smtp 465). T-Bird is saying that there is a domain name mismatch in the certificate (there isn't), and their support people are asking if the MTA is playing any shennanigans with the SSL connection details.

    I am leaning towards this being a T-Bird problem, since everything appears to work fine in other email clients, but jsut to be safe I am asking here:
    I've never seen this problem using a Self-Signed certificate (I assume you are?) via SSL prots and any authenticated client such as Thunderbird, ZD etc. Where (or when) does Thunderbird throw the error?

    Quote Originally Posted by Mistoffeles View Post
    Does Zimbra 5.x not report all of the details, specifically the owner of the certificate, when a client is authenticating to send smtps mail on port 465?
    The correct Submission port is 587 and the RFC for port 486 has never been ratified, it's also deprecated for use as the submission port. By default Port 587 is enabled in ZCS 6.x and you can enable it in ZCS 5.x, use the following to enable it:

    Code:
    This port can be enabled by making the following change to /opt/zimbra/postfix/conf/master.cf, at the top of that file you'll find the following lines:
    
    #submission inet n      -       n       -       -       smtpd
    #   -o smtpd_etrn_restrictions=reject
    #   -o smtpd_client_restrictions=permit_sasl_authenticated,reject
    
    uncomment the three lines (leaving the white space on lines 2 & 3) and save the file.
    Regards


    Bill


    Acompli: A new adventure for Co-Founder KevinH.

  3. #3
    Mistoffeles is offline Senior Member
    Join Date
    Oct 2007
    Posts
    70
    Rep Power
    7

    Default

    This is a commercially signed certificate.

    T-Bird throws the error on an attempted send. I have no problems otherwise, and have used several email clients to send and receive email on this server using pop3s on 995 and smtps on 465.

    When I asked what ports to use in these forums earlier I was completely ignored, so I assumed nobody ever used SSL ports with Zimbra, which isn't acceptable in our environment (server shared between internal and outside users).

    Zimbra is configured to use 465, I wish I could remember where that was confirmed for me, on the console or in the admin console, but it did confirm it and I have been able to send email with Outlook (both with and without the Outlook connector), OE and The Bat. Of course ZDC and the webmail work.

    There is more detail posted here:

    T-Bird problem, or CA, or *gasp* maybe something I did? • mozillaZine Forums

    Cheers,
    - Misty

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Similar Threads

  1. [SOLVED] Moving Zimbra to a new server
    By krolen in forum Administrators
    Replies: 109
    Last Post: 02-05-2009, 11:38 AM
  2. slapd message error
    By smoke in forum Administrators
    Replies: 7
    Last Post: 04-27-2008, 03:23 PM
  3. Major Issue - 5.0RC2 NE to 5.0GA NE failed
    By DougWare in forum Installation
    Replies: 7
    Last Post: 01-06-2008, 09:56 PM
  4. Can't start Zimbra!
    By zibra in forum Administrators
    Replies: 5
    Last Post: 03-22-2007, 11:34 AM
  5. 3.1 on FC4 problems
    By cohnhead in forum Installation
    Replies: 8
    Last Post: 05-26-2006, 11:16 AM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •