LetsEncrypt Finally Works with Mailserver too.

Figured it out, we need to add these two lines in main.cf located at etc/postfix/main.cf
Or you can also edit postfix config from mailserver settings and add these two lines of code:

smtp_tls_security_level = may
smtpd_tls_security_level = may

Restart postfix and davecot services and it will remove security error message from email reception that server did not encrypt this message.

    8 days later

    i've added ssl certificate but still can't connect to SSL port 25, only can connect to unsecured connections.

    and theres problem with paging in email user list, can change to another page

      shm
      Please use the 465 port connection after adding ssl.
      Pagination issues will be fixed when the next version is released

        a year later

        aaPanel_Jose Whatif the letsencrypt SSL expired, will the email service auto replicate the pem file to the email SSL configuration.
        Or we need to manually copy and paste it?

          by the way anyone know why I cant delete SSL from mail service.

            2 years later

            aaPanel_Jose

            Hello. I used your tip: was add site with the same name as my mail domain, received certificate and manually copied it to Mail Server. It's work fine.

            But what about auto renew this cert???
            My site will receive updated cert automaticaly, but every 2-3 monts I need go to control panel and manualy copy cert from my site to my Mail Server?
            Any idias how to do this simple move AUTOMATICALY?

              18 days later

              aaPanel_Kern
              thanks for answer. can you tell us where is stored this certs wich manually add to mail server?

              Idea is write simple bash script that copy Cert and Private key from site (that stored in /www/server/panel/vhost/ssl/exampe.com/*****)
              to file/db where stored certs for mailserver domains (tell us where please) and add this sctipt to cron

              And when certs on site will update - script copy it to mail server

                Hello everyone, I hope you are well. I also have a question related to the certificate so I ended up hitching a ride here. I'm new to unmanaged Vps, we're running Contabo with Centos and AApanel. my problem is with smtp port 587 with Tls authentication. I've tried everything but I couldn't authenticate on the port, just without Tls. I checked, it's open. My email service is sending and receiving via webmail and even Outlook, but no Tls authentication. Someone who has the email service (Dovecot+ Postifix) running and authenticating through Outlook with Tls and could share the configuration files with me? I thank you all.

                3 years later

                Why is there no option to create a mail cert with LE or copy the existing? Its a bit annoying, to copy all cerst to the domain by hand. Or is there any option i missed?

                  Connect with us: 📨 Telegram 💬 Discord Email: support@aapanel.com