Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 11 Mar 2019 17:04:02 +0100
From:      "Julian H. Stacey" <jhs@berklix.com>
To:        Larry Rosenman <ler@FreeBSD.org>
Cc:        ports@FreeBSD.org
Subject:   Re: ./dovecot start Can't open file /etc/ssl/certs/dovecot.pem
Message-ID:  <201903111604.x2BG42a6009516@fire.js.berklix.net>
In-Reply-To: Your message "Mon, 11 Mar 2019 10:54:44 -0500." <8b138bd6cc344514e842cf7e4ebbf65a@FreeBSD.org>

next in thread | previous in thread | raw e-mail | index | archive | help
Hi, Reference:
> From:		Larry Rosenman <ler@FreeBSD.org>
> Date:		Mon, 11 Mar 2019 10:54:44 -0500

Larry Rosenman wrote:
> On 03/11/2019 10:46 am, Julian H. Stacey wrote:
> > Hi ports@
> > Anyone else seen this or got ideas please:
> > cd /usr/local/etc/rc.d; ./dovecot start
> > 	Can't open file /etc/ssl/certs/dovecot.pem
> > /usr/ports/mail/dovecot MAINTAINER=     ler@FreeBSD.org	cc'd
> > pkg info dovecot-2.3.4.1  Secure, fast and powerful IMAP and POP3 
> > server
> > 
> > I'm happily running dovecot-1.2.17_6 K on another 10.3-STABLE  with no 
> > ssl.
> > 
> > This host is 12.0-RELEASE-p3 (was previously much older , but I
> > upgraded & moved the conf file which it hints at below)
> > I have tried adding ssl=no but it still errors
> >   doveconf: Fatal: Error in configuration file
> > /usr/local/etc/dovecot/conf.d/10-ssl.conf line 12: ssl_cert: Can't
> > open file /etc/ssl/certs/dovecot.pem: No such file or directory
> > 
> > Commenting them out in /usr/local/etc/dovecot/conf.d/10-ssl.conf :
> > ##JHS## ssl_cert = </etc/ssl/certs/dovecot.pem
> > ##JHS## ssl_key = </etc/ssl/private/dovecot.pem
> > 
> 
> do those files exist?

No they dont exist.  Host only has /etc/ssl/
	cert.pem@ -> /usr/local/share/certs/ca-root-nss.crt
	11002 Feb 28 15:29 openssl.cnf
openssl.cnf is not from me, same date as some other /etc/ files from
when jail was created before I received it (ive since done cd src;make install)

> You need either a self-signed certificate or a Let's Encrypt
> (or other public CA signed certificate).

Thanks, how do I generate a self signed certficate ?

Cheers,
Julian
-- 
Julian Stacey, Consultant Systems Engineer, BSD Linux Unix, Munich Aachen Kent
 Brexit now minority:  2.1 M now over 18, More Remainers;  1.5 M died, less
 Leavers; 700 K votes Stolen from British Remainers in EU; + 3 M globaly
 dis- franchised; + drift to Remain + avoid chaos.  MPs should urge Queen: 
 Dismiss May, appoint new PM for unity government & 2nd Referendum.  Revoke
 Art. 50, plan better, refile Art.50 later?  http://ExitBrexit.UK/#email_an_mp



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?201903111604.x2BG42a6009516>