It's not so easy, but it can still work. The problem is authentication MUST be done on port 80, so if your web server owns that port, then it has to take part.
In that situation you have two choices.
1) You can run another letsencrypt client that is integrated with your web server, and copy the resulting certificates and keys into surgemail. (this is the bad option)
2) You can user the setting: g_ssl_lets_path "/home/httpd/.well-known" to tell surgemail where to find the webservers well known path, in which it will place files to accomplish the authentication step. This can work really nicely. The only issue you have is making sure that path is 'writeable' by the user 'mail'. And make sure your webserver responds for all domains that you want to support.
ChrisP.
Hi Chris, Will this still work if you ar running an web server as well? Thanks Eddie Sent from my Samsung Galaxy smartphone. -------- Original message -------- From: Surgemail Support <surgemail-support@netwinsite.com> Date: 1/11/18 09:11 (GMT+12:00) To: surgemail-list@netwin.co.nz Subject: Re: [SurgeMail List] g_ssl_auto feature - how? On 1/11/2018 7:34 AM, Jeff Crowe wrote: Hi there, I have been looking for a fix for my broken Chrome SSL certs today and ran across this gem on the surgemail site: http://netwinsite.com/surgemail/help/letsencrypt.htm SurgeMail Version 7.3j2 or later With this version of surgemail ssl certificates are created and signed completely automatically for all domains, with one setting, no certbot or other external programs are required! I have questions! What signing authority is being used? Letsencrypt. Is it lets encrypt built into surgemail? Yes. Will it enable add certs for all services like pop3, imap, smtp as well as https? Yes. Will it automatically new certs close to expiration? Yes. and lastly, where do I download this version? the current version on the download site is 7.3i2. http://netwinsite.com/surgemail/betadownloads.htm ChrisP. Inquiring minds want to know! Thanks Jeff Crowe WTC Communications
Hi there, I have been looking for a fix for my broken Chrome SSL certs today and ran across this gem on the surgemail site: http://netwinsite.com/surgemail/help/letsencrypt.htm SurgeMail Version 7.3j2 or later With this version of surgemail ssl certificates are created and signed completely automatically for all domains, with one setting, no certbot or other external programs are required! I have questions! What signing authority is being used?
Is it lets encrypt built into surgemail?
Will it enable add certs for all services like pop3, imap, smtp as well as https?
Will it automatically new certs close to expiration?
and lastly, where do I download this version? the current version on the download site is 7.3i2.
Inquiring minds want to know! Thanks Jeff Crowe WTC Communications
Last Message | Next Message