Renovar Certificado do ZIMBRA

Comandos Usados para Gerar certficado do zimbra

/opt/zimbra/bin/zmcertmgr createcsr comm -new -keysize 2048 -subject “/C=BR/ST=PR/L=PINHAIS/O=MUNICIPIO DE PINHAIS/OU=TI/CN=webmail.pinhais.pr.gov.br”

/opt/zimbra/bin/zmcertmgr verifycrt comm ./commercial.key ./webmail.pinhais.pr.gov.br.crt ./commercial_ca.crt

/opt/zimbra/bin/zmcertmgr deploycrt comm ./webmail.pinhais.pr.gov.br.crt ./commercial_ca.crt

Zimbra 8, instalação de certificados SSL

root@srvmail:/opt/zimbra/ssl/zimbra/commercial# /opt/zimbra/bin/zmcertmgr verifycrt comm ./commercial.key ./webmail.pinhais.pr.gov.br.crt ./commercial_ca.crt
** Verifying ./webmail.pinhais.pr.gov.br.crt against ./commercial.key
Certificate (./webmail.pinhais.pr.gov.br.crt) and private key (./commercial.key) match.
Valid Certificate: ./webmail.pinhais.pr.gov.br.crt: OK

root@srvmail:/opt/zimbra/ssl/zimbra/commercial# /opt/zimbra/bin/zmcertmgr deploycrt comm ./webmail.pinhais.pr.gov.br.crt ./commercial_ca.crt
** Verifying ./webmail.pinhais.pr.gov.br.crt against /opt/zimbra/ssl/zimbra/commercial/commercial.key
Certificate (./webmail.pinhais.pr.gov.br.crt) and private key (/opt/zimbra/ssl/zimbra/commercial/commercial.key) match.
Valid Certificate: ./webmail.pinhais.pr.gov.br.crt: OK
** Copying ./webmail.pinhais.pr.gov.br.crt to /opt/zimbra/ssl/zimbra/commercial/commercial.crt
** Appending ca chain ./commercial_ca.crt to /opt/zimbra/ssl/zimbra/commercial/commercial.crt
cp: â./commercial_ca.crtâ and â/opt/zimbra/ssl/zimbra/commercial/commercial_ca.crtâ are the same file
** Importing certificate /opt/zimbra/ssl/zimbra/commercial/commercial_ca.crt to CACERTS as zcs-user-commercial_ca…done.
** NOTE: mailboxd must be restarted in order to use the imported certificate.
** Saving server config key zimbraSSLCertificate…done.
** Saving server config key zimbraSSLPrivateKey…done.
** Installing mta certificate and key…done.
** Installing slapd certificate and key…done.
** Installing proxy certificate and key…done.
** Creating pkcs12 file /opt/zimbra/ssl/zimbra/jetty.pkcs12…done.
** Creating keystore file /opt/zimbra/mailboxd/etc/keystore…done.
** Installing CA to /opt/zimbra/conf/ca…done.
root@srvmail:/opt/zimbra/ssl/zimbra/commercial#