• Debian 11 is approaching its end-of-life (vendor EOL date - August 31, 2026). Plesk Obsidian 18.0.80 will be the last release to support it.
    If you are running Plesk Obsidian on Debian 11, we recommend you upgrade those servers to Debian 12 using our dist-upgrade tool.
  • We plan to deprecate and remove the support for XML RPC protocol versions earlier than 1.6.9.1 in Plesk Obsidian 18.0.82. We strongly recommend that you update all existing integrations using earlier versions of the XML RPC protocol to comply with the version 1.6.9.1 specification.

Question SSL error when accessing mail.example.com

spg_nueve

New Pleskian
Server operating system version
CentOS Linux 7.7.1908 (Core)
Plesk version and microupdate number
Plesk Obsidian 18.0.51
Hello, I have a problem with the ssl certificate of my server's domains.

When accessing through a browser to https://mail.example.com this gives me as not secure since it shows the root ssl certificate of the server (server.com)

I need that when entering https://mail.example.com the certificate is that of the domain, since all the pentesting tools give me a security alert for this issue.

The certificate assigned in the domain is a lets encrypt wildcard and is configured for both webmail and mail.
 
Hello,
Instead using the subdomain mail you can use webmail and configure this option for your domain.
Using all others subdomain except webmail is not possible with let's encrypt with Plesk, this is a well-known big problem, we have for example lists.example.ext and mailman.
Best Regards
AR
 
Hello,
Instead using the subdomain mail you can use webmail and configure this option for your domain.
Using all others subdomain except webmail is not possible with let's encrypt with Plesk, this is a well-known big problem, we have for example lists.example.ext and mailman.
Best Regards
AR
correction: "using all others subdomains..." it is, of course, possible to create a subdomain and create a certificate on it, I mean a subdomain name without creating explicitly a subdomain like lists.
 
The mail prefix of a domain isn't secured by any SSL certificate. Instead you can either use the domain itself (example.com) or the full host name of your server for secured email connections (IMAP/POP/SMTP).
 
Back
Top