您的位置:主页 > 新闻资讯 >

Zimbra8.7.x备份和转移SSL证书

日期:2019-08-13 01:51

果为Zimbra默许闭闭了明文的端心,只开放了加稀端心;以是给Zimbra申请安拆第三圆国际SSL证书便很有需要;但最远逢到更换Zimbra办事器,正在新办事器上齐新安拆Zimbra后,老办事器上的SSL证书怎样转移到新办事器便是个题目了。上面记载一下圆法,以便后用。

老办事器操做

创坐/sslbk目次

# mkdir /sslbk

复造/opt/zimbra/ssl下齐部文件到/sslbk

# \cp -ar /opt/zimbra/ssl/* /sslbk/

压缩/sslbk目次为/sslbk.zip

# zip -r /sslbk.zip /sslbk/

用scp敕令把/sslbk.zip传输到新办事器的根目次下

# scp -P2222 /sslbk.zip root@192.168.0.77:/

新办事器操做

停止zimbra办事

# su zimbra$ zmcontrol stop

做为root登录,重定名/opt/zimbra/ssl目次

# mv /opt/zimbra/ssl/ /opt/zimbra/ssl.bak

解压缩刚从老办事器传输曩昔的/sslbk.zip

# unzip /sslbk.zip

复造解压后的/sslbk到/opt/zimbra/,重定名为ssl,并建正ssl所属用户和组为zimbra

# \cp -ar /sslbk /opt/zimbra/# mv /opt/zimbra/sslbk/ /opt/zimbra/ssl# chown zimbra:zimbra /opt/zimbra/ssl -R

切换到zimbra帐号登录,并进进/opt/zimbra/bin目次

# su zimbra$ cd /opt/zimbra/bin/

履行上面敕令

$ ./zmcertmgr deploycrt comm /sslbk/zimbra/commercial/commercial.crt //sslbk/zimbra/commercial/commercial_ca.crt

履行结束后,有上面提示,道明SSL证书转移胜利

** NOTE: restart services to use the new certificates.** Cleaning up 3 files from '/opt/zimbra/conf/ca'** Removing /opt/zimbra/conf/ca/ca.key** Removing /opt/zimbra/conf/ca/ca.pem** Removing /opt/zimbra/conf/ca/dd182a49.0** Copying CA to /opt/zimbra/conf/ca** Copying '/opt/zimbra/ssl/zimbra/ca/ca.key' to '/opt/zimbra/conf/ca/ca.key'** Copying '/opt/zimbra/ssl/zimbra/ca/ca.pem' to '/opt/zimbra/conf/ca/ca.pem'** Creating CA hash symlink 'dd182a49.0' -> 'ca.pem'** Creating /opt/zimbra/conf/ca/commercial_ca_1.crt** Creating CA hash symlink '157753a5.0' -> 'commercial_ca_1.crt'** Creating /opt/zimbra/conf/ca/commercial_ca_2.crt** Creating CA hash symlink 'd6325660.0' -> 'commercial_ca_2.crt'** Creating /opt/zimbra/conf/ca/commercial_ca_3.crt** Creating CA hash symlink '8d28ae65.0' -> 'commercial_ca_3.crt'

启动zimbra办事,使SSL证墨客效

$ zmcontrol start

上一篇:手机:小米5S、小米5和荣耀8拍照哪个更好一点?
下一篇:没有了