• Plesk Uservoice will be deprecated by October. Moving forward, all product feature requests and improvement suggestions will be managed through our new platform Plesk Productboard.
    To continue sharing your ideas and feedback, please visit features.plesk.com

Question SSL Problem - Server Certificate

TobiasGo

New Pleskian
Hi,

on ssl labs, certificates are degraded to B in case of a problem with the server certificate:

The Certificate in #2 is outdated since 2 yeas and 3 months.

How to update this certificate?



Certificate #2: RSA 2048 bits (SHA256withRSA) No SNI
collapse.png

icon-certificate.png

Server Key and Certificate #1
https://www.ssllabs.com/ssltest/get...222b58a366a60a7c4c05d1e86e&time=1593586813181
SubjectPlesk
Fingerprint SHA256: 8b2df1e92705d653b0757c7b9bb4a680c6341d21b84c90353056be20c4b8ef32
Pin SHA256: 5Aof20Yqfs5o3LmX1ZiSeuVqoWsdyFkR+N0lY+Uf6mY=
Common namesPlesk
Alternative names- INVALID
Serial Number58b87a94
Valid fromThu, 02 Mar 2017 20:03:32 UTC
Valid untilFri, 02 Mar 2018 20:03:32 UTC (expired 2 years and 3 months ago) EXPIRED
KeyRSA 2048 bits (e 65537)
Weak key (Debian)No
IssuerPlesk Self-signed
Signature algorithmSHA256withRSA
Extended ValidationNo
Certificate TransparencyNo
OCSP Must StapleNo
Revocation informationNone
TrustedNo NOT TRUSTED
Mozilla Apple Android Java Windows

icon-certificates.png

Additional Certificates (if supplied)
https://www.ssllabs.com/ssltest/get...222b58a366a60a7c4c05d1e86e&time=1593586813181
Certificates provided1 (833 bytes)
Chain issuesNone

icon-chain.png

collapse.png
Certification Paths
MozillaAppleAndroidJavaWindows
Path #1: Not trusted (path does not chain to a trusted anchor)
https://www.ssllabs.com/ssltest/get...05d1e86e&time=1593586813181&id=1&trustStore=5
1Sent by server
Not in trust store
Plesk Self-signed
Fingerprint SHA256: 8b2df1e92705d653b0757c7b9bb4a680c6341d21b84c90353056be20c4b8ef32
Pin SHA256: 5Aof20Yqfs5o3LmX1ZiSeuVqoWsdyFkR+N0lY+Uf6mY=
RSA 2048 bits (e 65537) / SHA256withRSA
Valid until: Fri, 02 Mar 2018 20:03:32 UTC
EXPIRED
 
Or is it possible to deactivate this Server Certificate?
On SSLLabs it is a problem, with the second certificate, in case of missmatch in servername.
 
Back
Top