Start a conversation

Importing Renewed SSL Certificates into Kerio Connect

Overview


If you have renewed your expired SSL certificate with your certificate provider and received a .crt file, you must import the renewed certificate into Kerio Connect.

This article provides the steps to import the renewed certificate by using the administration console or importing the certificate manually.

 

NoteWhen renewing an SSL certificate from the same server, Kerio Connect uses the same private key that was initially used for generating the first certificate.

When importing an SSL certificate from another server, the SSL certificate uses a different private key, that is proprietary from the source server. If the original private key is not copied from the source server, the actual certificate will not be viewable from the Webadmin GUI (Graphical User Interface).

 


 

Process


Importing SSL Certificates Using the Kerio Connect Administration Console

 

  1. Open the Kerio Connect administration console.
  2. Navigate to ConfigurationSSL Certificates. Take note of the name of the active certificate.

    ssl01.png

 

  1. Click on the Request you created while renewing the certificate.
  2. Click Import > Import Signed Certificate from CA (Certification Authority).

    mceclip0.png

  3. Select the server SSL Certificate (.crt file) received from the CA.
  4. In the SSL Certificates window, select the new certificate.
  5. Click Set as Default.

    ssl03.png

  6. Restart Kerio Connect.

 

Importing SSL Certificates Manually

 

  1. Open the Kerio Connect administration console.
  2. Navigate to Configuration > SSL Certificates. Take note of the name of the active certificate.

    ssl01.png

 

  1. Stop Kerio Connect.
  2. Go to the SSL certificate folder for the MailServer.

    The default locations of the SSL certificate folder for each operating system are listed below.
    • Windows: C:\Program Files\Kerio\Mailserver\sslcert
    • Linux (root): /opt/kerio/mailserver/sslcert
    • macOS (root): /usr/local/kerio/mailserver/sslcert
  3. In the SSL certificate folder, make a backup of the .crt file that has the same name as your active certificate.
  4. Rename the new certificate (.crt file) to match the name of the active certificate. Copy the new certificate to the SSL certificate folder (replacing the previous active certificate).
  5. Start Kerio Connect.
  6. If there are any issues, stop Kerio Connect and perform the following steps:
    1. Put the original certificate that you have backed up in the SSL Certificate folder.
    2. Start Kerio Connect.
    3. Re-issue a new SSL certificate.

 

Back to top


 

Related Articles

 

 

Back to top

Choose files or drag and drop files
Was this article helpful?
Yes
No
  1. Priyanka Bhotika

  2. Posted
  3. Updated

Comments