Asking for some guidance and knowledge please. Certificate chains are among the few things I haven't delved into much so far.
The Lets Encrypt root certificate expiration on 30 September 2021. Anyone still running Plesk on CentOS 7 servers are apparently affected as that OS still uses OpenSSL 1.0.2
It appears we need to remove the soon expired root certificate (DST Root CA X3), and add (if not yet in the store) the new ISRG Root X1 self-signed certificate.
This is where I'm not sure, and rather ask here as Plesk might keep certs in different locations then the OS's default. I'm also not sure about the procedure of removing/adding a cert.
Would be great if someone could provide knowledge and guidance on the matter.
Interesting articles:
https://scotthelme.co.uk/lets-encrypt-old-root-expiration/
https://letsencrypt.org/.../dst-root-ca-x3-expiration.../
https://www.openssl.org/.../09/13/LetsEncryptRootCertExpire/
The Lets Encrypt root certificate expiration on 30 September 2021. Anyone still running Plesk on CentOS 7 servers are apparently affected as that OS still uses OpenSSL 1.0.2
It appears we need to remove the soon expired root certificate (DST Root CA X3), and add (if not yet in the store) the new ISRG Root X1 self-signed certificate.
This is where I'm not sure, and rather ask here as Plesk might keep certs in different locations then the OS's default. I'm also not sure about the procedure of removing/adding a cert.
Would be great if someone could provide knowledge and guidance on the matter.
Interesting articles:
https://scotthelme.co.uk/lets-encrypt-old-root-expiration/
https://letsencrypt.org/.../dst-root-ca-x3-expiration.../
https://www.openssl.org/.../09/13/LetsEncryptRootCertExpire/