[ejabberd] ssl certificate sectigo

Rick Gutierrez xserverlinux at gmail.com
Wed Jun 3 20:06:52 MSK 2020


hi list, i have a problem with the latest version of ejabberd, i am
trying to put a sectigo wildcard certificate, and i have joined the
private key with sectigo's others, but ejabberd does not accept them.

any ideas where it may be failing?

this is what i did:
cat domain.key STAR_domain.crt STAR_domain.ca-bundle >
/opt/ejabberd/ssl/ejabberd.pem

log of ejabberd:
2020-06-01 17:15:29.210 [critical]
<0.387.0>@ejabberd_pkix:stop_ejabberd:352 ejabberd initialization was
aborted due to invalid certificates configuration
2020-06-01 17:16:40.739 [error] <0.387.0>@ejabberd_pkix:log_errors:401
Failed to read PEM file /opt/ejabberd/ssl/domain.com.pem: at line 1:
no matching private key found for this certificate
2020-06-01 17:16:40.746 [critical]
<0.387.0>@ejabberd_pkix:stop_ejabberd:352 ejabberd initialization was
aborted due to invalid certificates configuration
2020-06-01 17:17:52.230 [error] <0.387.0>@ejabberd_pkix:log_errors:401
Failed to read PEM file /opt/ejabberd/ssl/domain.com.pem: at line 1:
no matching private key found for this certificate
2020-06-01 17:17:52.236 [critical]
<0.387.0>@ejabberd_pkix:stop_ejabberd:352 ejabberd initialization was
aborted due to invalid certificates configuration
2020-06-01 17:19:03.725 [error] <0.387.0>@ejabberd_pkix:log_errors:401
Failed to read PEM file /opt/ejabberd/ssl/domain.com.pem: at line 1:
no matching private key found for this certificate

files that come in the sectigo package:
AddTrustExternalCARoot.crt
SectigoRSADomainValidationSecureServerCA.crt  STAR_domain.com.crt

cert_chain.crt              STAR_domain.com.ca-bundle
 USERTrustRSACertificationAuthority.crt



-- 
rickygm

http://gnuforever.homelinux.com


More information about the ejabberd mailing list