IMAP PEM cert issue

Discussion in 'ISPConfig 3 Priority Support' started by jpcyrenne, Nov 19, 2015.

  1. jpcyrenne

    jpcyrenne Member HowtoForge Supporter

    Good day,
    Using ISPconfig 3.0.5.4p8 on CentOS6.7 with Postfix and Dovecot.
    I created an email account and when I log into Squirrelmail I get:
    ERROR: Connection dropped by IMAP server.

    maillog:
    Nov 18 19:46:54 host dovecot: imap-login: Fatal: Can't load ssl_cert: There is no valid PEM certificate.
    Nov 18 19:46:54 host dovecot: master: Error: service(imap-login): command startup failed, throttling
    Nov 18 19:50:01 host postfix/smtpd[9054]: warning: cannot get RSA certificate from file /etc/postfix/smtpd.cert: disabling TLS support
    Nov 18 19:50:01 host postfix/smtpd[9054]: warning: TLS library problem: 9054:error:0906D06C:pEM routines:pEM_read_bio:no start line:pem_lib.c:703:Expecting: TRUSTED CERTIFICATE:
    Nov 18 19:50:01 host postfix/smtpd[9054]: warning: TLS library problem: 9054:error:140DC009:SSL routines:SSL_CTX_use_certificate_chain_file:pEM lib:ssl_rsa.c:730:
    Nov 18 19:50:01 host postfix/smtpd[9054]: connect from localhost[::1]
    Nov 18 19:50:01 host dovecot: pop3-login: Fatal: Can't load ssl_cert: There is no valid PEM certificate.
    Nov 18 19:50:01 host dovecot: imap-login: Fatal: Can't load ssl_cert: There is no valid PEM certificate.
    Nov 18 19:50:01 host dovecot: master: Error: service(pop3-login): command startup failed, throttling
    Nov 18 19:50:01 host dovecot: master: Error: service(imap-login): command startup failed, throttling
    Nov 18 19:50:01 host postfix/smtpd[9054]: lost connection after CONNECT from localhost[::1]
    Nov 18 19:50:01 host postfix/smtpd[9054]: disconnect from localhost[::1]

    Thanks ahead,

    JP
     
  2. florian030

    florian030 Well-Known Member HowtoForge Supporter

    Check /etc/postfix/smtpd.cert and smtpd.key.
     
  3. jpcyrenne

    jpcyrenne Member HowtoForge Supporter

    They are there. Should I regenerate them?
     
  4. till

    till Super Moderator Staff Member ISPConfig Developer

    Check that dovecot uses them in /etc/dovecot/dovecot.conf file. If that's the case then they might be broken and you should regenerate them.
     
  5. jpcyrenne

    jpcyrenne Member HowtoForge Supporter

    I replaced them and it's all good now. Thank you once again.
    JP
     

Share This Page