Regenerate Self-Signed SSL Certificate - Single-Server

Regenerate Self-Signed SSL Certificate - Single-Server

   KB 21727        Last updated on 2015-07-12  

(0 votes)


Regenerate the SSL certificate in a Zimbra single server environment.


1. Begin by generating a new Certificate Authority (CA).

This step is optional and not required everytime you renew the self signed certificate.

/opt/zimbra/bin/zmcertmgr createca -new
/opt/zimbra/bin/zmcertmgr deployca

2. Then generate a certificate signed by the CA that expires in 365 days with either wildcard or subject altnames.

/opt/zimbra/bin/zmcertmgr createcrt -new -days 365

3. Next, deploy the certificate.

/opt/zimbra/bin/zmcertmgr deploycrt self 

4. To finish, verify the certificate was deployed.

/opt/zimbra/bin/zmcertmgr viewdeployedcrt
5. Restart zmcontrol to take the changes in effect.
su - zimbra zmcontrol restart

Additional Content

Verified Against: Zimbra Collaboration 8.6, 8.5, 8.0 Date Created: 02/24/2015
Article ID: Date Modified: 2015-07-12

Try Zimbra

Try Zimbra Collaboration with a 60-day free trial.
Get it now »

Want to get involved?

You can contribute in the Community, Wiki, Code, or development of Zimlets.
Find out more. »

Looking for a Video?

Visit our YouTube channel to get the latest webinars, technology news, product overviews, and so much more.
Go to the YouTube channel »

Wiki/KB reviewed by Gayle B Jorge Jenny Last edit by Jorge de la Cruz
Jump to: navigation, search