Difference between revisions of "5.x Commercial Certificates Guide"

(Adding note)
(Third Party Certificate Articles)
Line 33: Line 33:
See [[Installing a Verisign Test Certificate on Zimbra Server]].
See [[Installing a Verisign Test Certificate on Zimbra Server]].
=== Gandi ===
See [[Installing a Gandi Commercial Certificate on ZCS 5.0.x and 6.0.x]]
See [[Installing a Verisign Secure Site Certificate]].
See [[Installing a Verisign Secure Site Certificate]].

Revision as of 14:05, 1 February 2010

Important: See Administration Console and CLI Certificate Tools before installing a third party certificate using an article listed below. Third party certificate articles are community contributions and may include unsupported steps.

Administration and CLI Tools

Zimbra offers both Administration Console and Command Line Interface (CLI) tools for installing, viewing, and managing certificates. For more information about these tools, see Administration Console and CLI Certificate Tools.

Third Party Certificate Articles

The following third party certificates have their own Wiki articles with installation instructions.

Comodo SSL

See Installing a Comodo SSL Certificate with zmcertmgr.

GeoTrust Certificate

See Installing_a_GeoTrust_Commercial_Certificate

GlobalSign Certificate

See Installing a GlobalSign Commercial Certificate

GoDaddy Certificate

See Installing a GoDaddy Commercial Certificate on ZCS 5.0.x.

IPSCA Certificate

See Installing_a_IPSCA_Commercial_Certificate

Network Solutions Certificate

See Installing a Network Solutions Certificate on ZCS 5.0.x.

RapidSSL Certificate

See Installing_a_RapidSSL_Commercial_Certificate

Thawte SSL Certificate (SSL123 format)

See Installing a Thawte SSL Certificate on ZCS 5.0.x.


See Installing a Verisign Test Certificate on Zimbra Server.


See Installing a Gandi Commercial Certificate on ZCS 5.0.x and 6.0.x

See Installing a Verisign Secure Site Certificate.


If you are experiencing issues installing, viewing, or managing your certificates, see the Category:Troubleshooting Certificates category.


  • Inspect your CSR
openssl req -in <server.csr> -noout -text
  • Inspect your certificate
openssl x509 -in <server.crt> -noout -text
  • Clear the passphrase of the private key
openssl rsa -in <server.key> -out <server.key.decr>
  • Get Jetty keystore password
zmlocalconfig -s -m nokey mailboxd_keystore_password
  • Create a CSR via the CLI
sudo /opt/zimbra/bin/zmcertmgr createcsr <self|comm> [-new] [subject] [-subjectAltNames "host1,host2"]
  • View deployed certificate via the command line
 sudo /opt/zimbra/bin/zmcertmgr viewdeployedcrt
  • Convert the cert format from DER to PEM
openssl x509 -in input.cer -inform DER -out output.cer -outform PEM
Verified Against: Zimbra Collaboration Suite 5.x Date Created: 1/16/2008
Article ID: https://wiki.zimbra.com/index.php?title=5.x_Commercial_Certificates_Guide Date Modified: 2010-02-01

Try Zimbra

Try Zimbra Collaboration with a 60-day free trial.
Get it now »

Want to get involved?

You can contribute in the Community, Wiki, Code, or development of Zimlets.
Find out more. »

Looking for a Video?

Visit our YouTube channel to get the latest webinars, technology news, product overviews, and so much more.
Go to the YouTube channel »

Jump to: navigation, search