Steps to remove expired domain certificate from domain level configuration: Difference between revisions
(Created page with "=== <h1>Steps_to_remove_expired_domain_certificate_from_domain_level_configuration</h1> === <hr> <br> <h2>Problem:</h2> Unable to remove expired domain certificate from do...") |
No edit summary |
||
(3 intermediate revisions by one other user not shown) | |||
Line 1: | Line 1: | ||
= | {{BC|Certified}} | ||
__FORCETOC__ | |||
<div class="col-md-12 ibox-content"> | |||
=Remove expired domain certificate from domain level configuration= | |||
<hr> | <hr> | ||
{{KB|{{ZC}}|{{ZCS 8.8}}|{{ZCS 8.7}}|{{ZCS 8.6}}|{{ZCS 8.5}}|}} | |||
====Problem==== | |||
Unable to remove expired domain certificate from domain configuration. | Unable to remove expired domain certificate from domain configuration. | ||
====Solution==== | |||
With the help of following steps we can remove expired domain certificate and key entry from domain configuration. <br> | With the help of following steps we can remove expired domain certificate and key entry from domain configuration. <br> | ||
'''1).''' Move old domain certificate from "domaincerts" directory to some other location. | '''1).''' Move old domain certificate from "domaincerts" directory to some other location. | ||
mv /opt/zimbra/conf/domaincerts/<OLD-CERT-FILES> /tmp/ | |||
'''2).''' Clear certificate and private key entries from domain level configuration. | '''2).''' Clear certificate and private key entries from domain level configuration. | ||
zmprov md DOMAIN.COM zimbraSSLCertificate "" zimbraSSLPrivateKey "" | |||
'''3).''' On proxy server regenerate nginx configuration files to take changes. | '''3).''' On proxy server regenerate nginx configuration files to take changes. | ||
/opt/zimbra/libexec/zmproxyconfgen -v -D -s <Any mailbox server name> | |||
OR | |||
/opt/zimbra/libexec/zmproxyconfgen -v -D | |||
OR | |||
/opt/zimbra/libexec/zmproxyconfgen -v | |||
'''4).''' Restart proxy service on all proxy servers. | '''4).''' Restart proxy service on all proxy servers. | ||
zmproxyctl restart | |||
{| class="wikitable" style="background-color:#d0f0c0;" cellpadding="10" | |||
|'''Submitted by''': Heera Singh Koranga | |||
|} | |||
{{Article Footer|ZCS 8.8, 8.7, 8.6, 8.5|2017-08-23}} |
Latest revision as of 16:32, 15 April 2020
Remove expired domain certificate from domain level configuration
Problem
Unable to remove expired domain certificate from domain configuration.
Solution
With the help of following steps we can remove expired domain certificate and key entry from domain configuration.
1). Move old domain certificate from "domaincerts" directory to some other location.
mv /opt/zimbra/conf/domaincerts/<OLD-CERT-FILES> /tmp/
2). Clear certificate and private key entries from domain level configuration.
zmprov md DOMAIN.COM zimbraSSLCertificate "" zimbraSSLPrivateKey ""
3). On proxy server regenerate nginx configuration files to take changes.
/opt/zimbra/libexec/zmproxyconfgen -v -D -s <Any mailbox server name> OR /opt/zimbra/libexec/zmproxyconfgen -v -D OR /opt/zimbra/libexec/zmproxyconfgen -v
4). Restart proxy service on all proxy servers.
zmproxyctl restart
Submitted by: Heera Singh Koranga |