Topic: Letsencrypt and openldap issue
==== Required information ====
- iRedMail version (check /etc/iredmail-release): 0.9.7
- Linux/BSD distribution name and version: FreeBSD 11
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): LDAP
- Web server (Apache or Nginx): Nginx
- Manage mail accounts with iRedAdmin-Pro? no
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====
I am using Letsencrypt + acme-client for my mail server, everything seems working except openldap.
When replacing existing self cert by Letsencrypt, openldap is unable to start. i also followed instruction in this topic, but still not get it solved.
http://www.iredmail.org/forum/topic1166 … r-tls.html
Here is my openldap with tls section:
TLSCACertificateFile /usr/local/etc/ssl/acme/domain.com/fullchain.pem
TLSCertificateFile /usr/local/etc/ssl/acme/domain.com/cert.pem
TLSCertificateKeyFile /usr/local/etc/ssl/acme/private/privkey.pem
And error as below:
Jul 2 15:44:21 moon slapd[13241]: main: TLS init def ctx failed: -1
Jul 2 15:44:21 moon slapd[13241]: DIGEST-MD5 common mech free
Jul 2 15:44:21 moon slapd[13241]: DIGEST-MD5 common mech free
Jul 2 15:44:21 moon slapd[13241]: slapd stopped.
Jul 2 15:44:21 moon slapd[13241]: connections_destroy: nothing to destroy.
Please advise me how to fix this issue.
Thank you.
----
Spider Email Archiver: On-Premises, lightweight email archiving software developed by iRedMail team. Supports Amazon S3 compatible storage and custom branding.