Zimbra 8.6.0 Open Source is installed.
I had self signed certificate and it expired. I decided to use new one from intranet corporate CA (Microsoft) to not populate self-signed via GPO again.
I have successfully done certificate and root CA deployment and everything seems work well, like web-interface via https in browsers, imap and smtp with ssl but i noticed that shared folders stopped working and I see this error if I try run zmprov
Code: Select all
ERROR: zclient.IO_ERROR (invoke java.security.cert.CertificateException: Certificates does not conform to algorithm constraints, server: localhost) (cause: javax.net.ssl.SSLHandshakeException java.security.cert.CertificateException: Certificates does not conform to algorithm constraints)
Code: Select all
New, TLSv1/SSLv3, Cipher is ECDHE-RSA-AES256-GCM-SHA384
Server public key is 2048 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
SSL-Session:
Protocol : TLSv1.2
Cipher : ECDHE-RSA-AES256-GCM-SHA384
I commented #jdk.certpath.disabledAlgorithms= in /opt/zimbra/java/jre/lib/security/java.security but with no luck.
The cipher is modern and one of the most strong, what is causing such error?