Displaying 20 results from an estimated 1442 matches for "renewable".
2018 Oct 11
4
Renewal of Let's Encrypt Certificates in Dovecot
Hi there. I've been using Dovecot for quite some time now but I just
started using Let's Encrypt certs. Since LE certs are renewed automatically
without user intervention I'm wondering if I will need to restart dovecot
after that renewal...
Has anybody had any experience with that?
Thanks so much for your help!
Ignacio
-------------- next part --------------
An HTML attachment was
2020 Oct 09
0
Feature request.
Automatic renewal
The Ubuntu package for certbot comes pre-configured with systemd timer that will automatically renew existing certificates. What it does not handle however is reloading postfix/dovecot so that they will begin using the new certificates. For that, we need to implement a hook.
Certbot has both pre and post hooks that you can use to execute a script prior to and after the renewal
2020 Oct 09
11
Feature request.
Hi,
I get my Email from my own SMTP server on the internet using
"fetchmail". Some time ago I did the smart thing and configured
dovecot to use SSL and the letsencrypt certificate that automatically
renews.
Welllll..... a few days ago my certificate expired and the fetchmail
deamon running in the background had nowhere to complain. So I didn't
notice.
It turns out that dovecot
2020 Jul 02
2
Kerberos ticket maximum renewable lifetime
I would like to set the renewable lifetime to 90 days.
What is the best way to set the Kerberos ticket maximum renewable lifetime.
~# smbd --version
Version 4.12.2-Ubuntu
~# klist
Ticket cache: FILE:/tmp/krb5cc_0
Default principal: administrator at MYDOM
Valid starting Expires Service principal
07/02/20 18:08:16...
2018 Sep 06
2
icecast ssl and letsencrypt renewal
That’s what I have been looking for, thanks !
From: Icecast [mailto:icecast-bounces at xiph.org] On Behalf Of Tycho Eggen
Sent: donderdag 6 september 2018 22:21
To: Icecast streaming server user discussions
Subject: Re: [Icecast] icecast ssl and letsencrypt renewal
You can add a posthook to your certbot cronjob:
certbot renew —post-hook “/etc/init.d/icecast restart”
Or however you restart
2018 Oct 11
1
Renewal of Let's Encrypt Certificates in Dovecot
El jue., 11 oct. 2018 a las 10:58, Reio Remma (<reio at mrstuudio.ee>)
escribi?:
> On 11/10/2018 11:55, Ignacio Garcia wrote:
> > Hi there. I've been using Dovecot for quite some time now but I just
> > started using Let's Encrypt certs. Since LE certs are renewed
> > automatically without user intervention I'm wondering if I will need
> > to restart
2020 Jul 03
2
Kerberos ticket maximum renewable lifetime
We are using tmux, screen and x2go to run long-running jobs on our
compute servers. $HOME and other data should be mounted via CIFS or
NFS4. Because such a job can run for more than a week, I would like to
increase the Kerberos ticket lifetime or better the Kerberos ticket
maximum renewable lifetime.
I found this guide:
https://wiki.samba.org/index.php/Samba_KDC_Settings
Unfortunately, only settings that are smaller than the following have an
effect:
kdc:user ticket lifetime = 24
kdc:renewal lifetime = 24
There appears to be an upper limit of 24 hours that none of these
settings...
2020 Oct 01
2
Kerberos ticket lifetime
On 10/1/2020 8:34 AM, Rowland penny via samba wrote:
> On 01/10/2020 13:30, Jason Keltz via samba wrote:
>> On 10/1/2020 8:28 AM, Rowland penny via samba wrote:
>>
>>> On 01/10/2020 13:17, Jason Keltz via samba wrote:
>>>> So why is it that winbind renews the ticket on the original system,
>>>> but on the system that I ssh to, it does not.
2016 Aug 19
5
a question about certificates from letsencrypt
Hello!
Certificates from letsencrypt are renewed every three months.
Does that mean a MUA has to accept the renewed certificates manually
everytime it is renewed?
Sorry if this is OT!
Greetings
Andreas
2019 Mar 14
4
Am I right to assume certificate renewal with the same filename requires a dovecot reload/restart
On 3/14/19 9:32 AM, Yassine Chaouche via dovecot wrote:
> The general answere here is try and see, as you could totally test it
> on your own. The certificate is read at startup and put in memory for
> the rest of the execution time. Dovecot won't monitor the file for
> changes on disk, as this would waste CPU cycles and make dovecot only
> slower for no reason. The process
2018 Sep 06
2
icecast ssl and letsencrypt renewal
Hi all,
I have setup icecast to work with letsencrypt ssl certificate, this works fine.
But now I am struggling a bit on how to renew the certificate every 3 months.
As per letsencrypt recommendation I run a cronjob to check for renewal every day,
problem is when there is a new certificate Icecast needs to be restarted to pick it up, as the certificate only seems to be loaded at startup of
2018 Sep 15
1
icecast ssl and letsencrypt renewal
Install letsencrypt and request a certificate specifying the webroot of your Icecast server and the host.domain:
certbot-auto certonly --webroot --webroot-path /usr/share/icecast2/web/ -d icecast.domain.name
Now you should have a certificate for your server, it's only in the wrong format for Icecast, copy the key and the certificate to 1 file with the following cmd:
cat
2012 Aug 27
2
Inexplicably different results using subset vs bracket notation on logical variable
Hi,
Would anyone have any idea as to why I would obtain completely different results when subsetting using the subset function vs bracket notation?
I have a data frame with 65 variables and 4382 rows. When I use execute the following subset command I get the correct results (125 rows)
> subset(df, Renewal==TRUE, 1:2)
However, I tried to obtain the same results with bracket notation as
2020 Jul 03
3
Kerberos ticket maximum renewable lifetime
...screen and x2go to run long-running jobs on our
>> compute servers. $HOME and other data should be mounted via CIFS or
>> NFS4. Because such a job can run for more than a week, I would like to
>> increase the Kerberos ticket lifetime or better the Kerberos ticket
>> maximum renewable lifetime.
>>
>> I found this guide:
>>
>> https://wiki.samba.org/index.php/Samba_KDC_Settings
>>
>> Unfortunately, only settings that are smaller than the following have an
>> effect:
>>
>> kdc:user ticket lifetime = 24
>> kdc:renewal life...
2014 Apr 11
1
4.0 stopped working after updating xubuntu 13.04
...htime: 2014-04-11T09:02:21 starttime: unset endtime:
2014-04-11T19:02:21 renew till: 2014-04-18T09:02:21
Kerberos: Client supported enctypes: aes256-cts-hmac-sha1-96,
aes128-cts-hmac-sha1-96, arcfour-hmac-md5, 24, -135, des-cbc-md5, using
arcfour-hmac-md5/arcfour-hmac-md5
Kerberos: Requested flags: renewable-ok, canonicalize, renewable,
forwardable
Terminating connection - 'kdc_tcp_call_loop:
tstream_read_pdu_blob_recv() - NT_STATUS_CONNECTION_DISCONNECTED'
single_terminate: reason[kdc_tcp_call_loop: tstream_read_pdu_blob_recv()
- NT_STATUS_CONNECTION_DISCONNECTED]
Kerberos: AS-REQ poe at SOMED...
2020 Oct 02
2
Kerberos ticket lifetime
On 02/10/2020 13:01, Jason Keltz via samba wrote:
> On 10/2/2020 5:25 AM, Rowland penny via samba wrote:
>
>> On 01/10/2020 21:46, Rowland penny via samba wrote:
>>> On 01/10/2020 21:23, Jason Keltz via samba wrote:
>>>>
>>>>
>>>> Okay - I guess the failure of kdc: lines in smb.conf is a bug.
>>>>
>>>> Let's wait
2020 Oct 02
3
Kerberos ticket lifetime
On 01/10/2020 21:46, Rowland penny via samba wrote:
> On 01/10/2020 21:23, Jason Keltz via samba wrote:
>>
>>
>> Okay - I guess the failure of kdc: lines in smb.conf is a bug.
>>
>> Let's wait and see what happens with your ticket after 10 hours.
>> Maybe there's a bug there as well.
> It will be in the middle of the night here, so I will report
2019 Mar 14
0
Re: Am I right to assume certificate renewal with the same filename requires a dovecot reload/restart
On Thu, Mar 14, 2019, at 11:33 AM, Yassine Chaouche via dovecot wrote:
> On 3/14/19 9:32 AM, Yassine Chaouche via dovecot wrote:
> > The general answere here is try and see, as you could totally test it
> > on your own. The certificate is read at startup and put in memory for
> > the rest of the execution time. Dovecot won't monitor the file for
> > changes on
2014 May 20
2
Ubuntu client ddns failure
...me: 2014-05-20T14:01:35 starttime: unset endtime:
2014-05-21T00:01:35 renew till: 2014-05-21T14:01:35
Kerberos: Client supported enctypes: aes256-cts-hmac-sha1-96,
aes128-cts-hmac-sha1-96, arcfour-hmac-md5, des3-cbc-sha1, 25, 26, using
arcfour-hmac-md5/arcfour-hmac-md5
Kerberos: Requested flags: renewable-ok
Kerberos: TGS-REQ LUBUNTU-LAPTOP$@HH3.SITE from ipv4:192.168.1.22:40240
for ldap/hh16.hh3.site at HH3.SITE [canonicalize, renewable]
Kerberos: TGS-REQ authtime: 2014-05-20T14:01:35 starttime:
2014-05-20T14:01:35 endtime: 2014-05-21T00:01:35 renew till:
2014-05-21T14:01:35
Terminating connecti...
2017 Sep 08
5
Dovecot and Letsencrypt certs
So this morning at 4am I was awoken to my mail clients getting certificate errors for an expired certificate.
I hopped on to the server and checked and? no, the LE certs renewed last month and are valid until November.
After some moments of confusion I noticed that dovecot had been running since before the renewal, so I did a quick service dovecot restart which fixed everything.
Should dovecot