<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="pt-BR">
	<id>https://wiki.ourominas.com.br/index.php?action=history&amp;feed=atom&amp;title=Instala%C3%A7%C3%A3o_do_ZIMBRA</id>
	<title>Instalação do ZIMBRA - Histórico de revisão</title>
	<link rel="self" type="application/atom+xml" href="https://wiki.ourominas.com.br/index.php?action=history&amp;feed=atom&amp;title=Instala%C3%A7%C3%A3o_do_ZIMBRA"/>
	<link rel="alternate" type="text/html" href="https://wiki.ourominas.com.br/index.php?title=Instala%C3%A7%C3%A3o_do_ZIMBRA&amp;action=history"/>
	<updated>2026-04-17T14:49:16Z</updated>
	<subtitle>Histórico de revisões para esta página neste wiki</subtitle>
	<generator>MediaWiki 1.45.1</generator>
	<entry>
		<id>https://wiki.ourominas.com.br/index.php?title=Instala%C3%A7%C3%A3o_do_ZIMBRA&amp;diff=1679&amp;oldid=prev</id>
		<title>imported&gt;Admin: uma edição</title>
		<link rel="alternate" type="text/html" href="https://wiki.ourominas.com.br/index.php?title=Instala%C3%A7%C3%A3o_do_ZIMBRA&amp;diff=1679&amp;oldid=prev"/>
		<updated>2020-08-08T03:12:57Z</updated>

		<summary type="html">&lt;p&gt;uma edição&lt;/p&gt;
&lt;table style=&quot;background-color: #fff; color: #202122;&quot; data-mw=&quot;interface&quot;&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;tr class=&quot;diff-title&quot; lang=&quot;pt-BR&quot;&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;← Edição anterior&lt;/td&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;Edição das 03h12min de 8 de agosto de 2020&lt;/td&gt;
				&lt;/tr&gt;&lt;tr&gt;&lt;td colspan=&quot;4&quot; class=&quot;diff-notice&quot; lang=&quot;pt-BR&quot;&gt;&lt;div class=&quot;mw-diff-empty&quot;&gt;(Sem diferença)&lt;/div&gt;
&lt;/td&gt;&lt;/tr&gt;
&lt;!-- diff cache key omph_wiki-maquine_:diff:1.41:old-1678:rev-1679 --&gt;
&lt;/table&gt;</summary>
		<author><name>imported&gt;Admin</name></author>
	</entry>
	<entry>
		<id>https://wiki.ourominas.com.br/index.php?title=Instala%C3%A7%C3%A3o_do_ZIMBRA&amp;diff=1678&amp;oldid=prev</id>
		<title>2532252&gt;Jefferson em 23h52min de 30 de julho de 2019</title>
		<link rel="alternate" type="text/html" href="https://wiki.ourominas.com.br/index.php?title=Instala%C3%A7%C3%A3o_do_ZIMBRA&amp;diff=1678&amp;oldid=prev"/>
		<updated>2019-07-30T23:52:38Z</updated>

		<summary type="html">&lt;p&gt;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;Página nova&lt;/b&gt;&lt;/p&gt;&lt;div&gt;Instalar o Zimbra&lt;br /&gt;
Durante a instalação criar o diretorio /opt/zimbra/perl5&lt;br /&gt;
colocar como usuario e grupo o diretorio acima zimbra.zimbra&lt;br /&gt;
fazer&lt;br /&gt;
echo &amp;#039;Port 9282&amp;#039; &amp;gt; /opt/zimbra/ssl/config&lt;br /&gt;
e apos a instalacao fazer:&lt;br /&gt;
&lt;br /&gt;
#su - zimbra&lt;br /&gt;
$zmupdateauthkeys&lt;br /&gt;
$exit&lt;br /&gt;
#/opt/zimbra/libexec/zmsyslogsetup&lt;br /&gt;
#su - zimbra&lt;br /&gt;
zmprov ms mail.ourominas.net.br zimbraRemoteManagementPort 9282&lt;br /&gt;
$exit&lt;br /&gt;
#yum clean all&lt;br /&gt;
#yum -y update&lt;br /&gt;
&lt;br /&gt;
atrase em 30 segundos o start do zimbra&lt;br /&gt;
&lt;br /&gt;
#init 6&lt;br /&gt;
&lt;br /&gt;
Entrar no Zimbra e liberar que os acessos sejam via http e https&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Seguir os passos apresentados em:&lt;br /&gt;
https://www.sbarjatiya.com/notes_wiki/index.php/CentOS_7.x_Install_lets_encrypt_automated_SSL_certificate_in_Zimbra&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
CentOS 7.x Install lets encrypt automated SSL certificate in Zimbra&lt;br /&gt;
SSL certificate setup&lt;br /&gt;
To setup lets encrypt SSL certificates use:&lt;br /&gt;
&lt;br /&gt;
First stop web and mailbox services as *zimbra user*:&lt;br /&gt;
zmproxyctl stop&lt;br /&gt;
&lt;br /&gt;
zmmailboxdctl stop&lt;br /&gt;
Download letsencrypt github package as *root user*&lt;br /&gt;
yum -y install git epel-release&lt;br /&gt;
&lt;br /&gt;
git clone https://github.com/letsencrypt/letsencrypt&lt;br /&gt;
&lt;br /&gt;
cd letsencrypt&lt;br /&gt;
Get letsencrypt certificates for domain using:&lt;br /&gt;
./letsencrypt-auto certonly --standalone -d mail.zimbra.ourominas.net.br -d zimbra.ourominas.net.br&lt;br /&gt;
On various prompts use:&lt;br /&gt;
Emergency email - saurabh@ourominas.net.br&lt;br /&gt;
Agree/Cancel - A&lt;br /&gt;
Yes/No - Y&lt;br /&gt;
The important file locations are:&lt;br /&gt;
/etc/letsencrypt/live/mail.zimbra.ourominas.net.br/fullchain.pem&lt;br /&gt;
/etc/letsencrypt/live/mail.zimbra.ourominas.net.br/privkey.pem&lt;br /&gt;
Download Root and intermediate certificates from https://letsencrypt.org/certificates/ Example&lt;br /&gt;
cd /etc/letsencrypt/live/mail.zimbra.ourominas.net.br/&lt;br /&gt;
&lt;br /&gt;
wget https://letsencrypt.org/certs/isrgrootx1.pem.txt&lt;br /&gt;
&lt;br /&gt;
wget https://letsencrypt.org/certs/letsencryptauthorityx3.pem.txt&lt;br /&gt;
To give access to zimbra to certificates copy them to a sub-folder inside /opt/zimbra *as root*:&lt;br /&gt;
cd /etc/letsencrypt/live/mail.zimbra.ourominas.net.br/&lt;br /&gt;
&lt;br /&gt;
cat isrgrootx1.pem.txt letsencryptauthorityx3.pem.txt chain.pem &amp;gt; combined.pem&lt;br /&gt;
&lt;br /&gt;
mkdir /opt/zimbra/ssl/letsencrypt&lt;br /&gt;
&lt;br /&gt;
cp /etc/letsencrypt/live/mail.zimbra.ourominas.net.br/* /opt/zimbra/ssl/letsencrypt/&lt;br /&gt;
&lt;br /&gt;
chown zimbra:zimbra /opt/zimbra/ssl/letsencrypt/*&lt;br /&gt;
&lt;br /&gt;
ls -la /opt/zimbra/ssl/letsencrypt/&lt;br /&gt;
Install certificates *as zimbra* user:&lt;br /&gt;
cd /opt/zimbra/ssl/letsencrypt/&lt;br /&gt;
&lt;br /&gt;
/opt/zimbra/bin/zmcertmgr verifycrt comm privkey.pem cert.pem combined.pem&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
#If above validation succeeds&lt;br /&gt;
&lt;br /&gt;
cp /opt/zimbra/ssl/letsencrypt/privkey.pem /opt/zimbra/ssl/zimbra/commercial/commercial.key&lt;br /&gt;
&lt;br /&gt;
/opt/zimbra/bin/zmcertmgr deploycrt comm cert.pem combined.pem&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
zmcontrol restart&lt;br /&gt;
Open https://mail.zimbra.ourominas.net.br:7071/zimbraAdmin/ and verify that certificate along with root &amp;quot;ISRG Root X1&amp;quot; and Intermediate &amp;quot;Lets Encrypt Authority X3&amp;quot; is coming up properly.&lt;br /&gt;
Test certificates using:&lt;br /&gt;
openssl s_client -starttls smtp -connect zimbra.ourominas.net.br:25 -showcerts&lt;br /&gt;
&lt;br /&gt;
openssl s_client -connect zimbra.ourominas.net.br:465 -showcerts&lt;br /&gt;
&lt;br /&gt;
openssl s_client -connect zimbra.ourominas.net.br:443 -showcerts&lt;br /&gt;
&lt;br /&gt;
openssl s_client -connect zimbra.ourominas.net.br:993 -showcerts&lt;br /&gt;
&lt;br /&gt;
openssl s_client -starttls imap -connect zimbra.ourominas.net.br:143 -showcerts&lt;br /&gt;
&lt;br /&gt;
Refer:&lt;br /&gt;
&lt;br /&gt;
https://wiki.zimbra.com/wiki/Installing_a_LetsEncrypt_SSL_Certificate&lt;br /&gt;
&lt;br /&gt;
Listen on port 80 with forced HTTPS redirection&lt;br /&gt;
To configure Zimbra to listen on port 80 for forced HTTPS redirection use:&lt;br /&gt;
&lt;br /&gt;
Configure forced HTTPS redirection&lt;br /&gt;
su - zimbra&lt;br /&gt;
&lt;br /&gt;
~/libexec/zmproxyconfig -e -w -o -a 8080:80:8443:443 -x https  -H `zmhostname`&lt;br /&gt;
&lt;br /&gt;
zmprov ms `zmhostname` zimbraReverseProxyMailMode redirect&lt;br /&gt;
Note that earlier method of simply using &amp;#039;zmtlsctl redirect&amp;#039; is no longer available in latest versions. Hence above steps are required&lt;br /&gt;
Refer:&lt;br /&gt;
&lt;br /&gt;
https://blog.christosoft.de/2015/06/zimbra-redirect-http-to-https/&lt;br /&gt;
&lt;br /&gt;
SSL certificate renewal configuration via crontab&lt;br /&gt;
This auto-renewal assumes that chain (Root and Intermediate) remains same.&lt;br /&gt;
&lt;br /&gt;
Create /root/renew-certificate.sh with:&lt;br /&gt;
su - zimbra -c &amp;quot;zmcontrol stop&amp;quot;&lt;br /&gt;
&lt;br /&gt;
/root/letsencrypt/letsencrypt-auto renew&lt;br /&gt;
&lt;br /&gt;
cp /etc/letsencrypt/live/mail.zimbra.ourominas.net.br/privkey.pem /opt/zimbra/ssl/letsencrypt/&lt;br /&gt;
&lt;br /&gt;
cp /etc/letsencrypt/live/mail.zimbra.ourominas.net.br/cert.pem /opt/zimbra/ssl/letsencrypt/&lt;br /&gt;
&lt;br /&gt;
cp /opt/zimbra/ssl/letsencrypt/privkey.pem /opt/zimbra/ssl/zimbra/commercial/commercial.key&lt;br /&gt;
&lt;br /&gt;
chown zimbra:zimbra /opt/zimbra/ssl/letsencrypt/*&lt;br /&gt;
&lt;br /&gt;
su - zimbra -c &amp;quot;cd /opt/zimbra/ssl/letsencrypt/; /opt/zimbra/bin/zmcertmgr deploycrt comm cert.pem combined.pem&amp;quot;&lt;br /&gt;
&lt;br /&gt;
su - zimbra -c &amp;quot;zmcontrol start&amp;quot;&lt;br /&gt;
chmod +x /root/renew-certificate.sh&lt;br /&gt;
For root user crontab (crontab -e) add:&lt;br /&gt;
10 5 * * 0 /root/renew-certificate.sh&lt;br /&gt;
where instead of 10 and 5 use a random value between 5 and 55 for minutes (first number) and random value between 1 and 5 for hour (second number)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
arq_zimbra.txt&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
./letsencrypt-auto certonly --standalone -d mail.ourominas.net.br -d mx.ourominas.net.br -d smtp.ourominas.net.br -d imap.ourominas.net.br -d ldap.ourominas.net.br -d pop.ourominas.net.br -d www.ourominas.net.br -d webmail.ourominas.net.br -d ftp.ourominas.net.br -d ourominas.net.br&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
su - zimbra -c &amp;quot;zmcontrol stop&amp;quot;&lt;br /&gt;
/root/letsencrypt/letsencrypt-auto renew&lt;br /&gt;
cp /etc/letsencrypt/live/mail.zimbra.sbarjatiya.com/privkey.pem /opt/zimbra/ssl/letsencrypt/&lt;br /&gt;
cp /etc/letsencrypt/live/mail.zimbra.sbarjatiya.com/cert.pem /opt/zimbra/ssl/letsencrypt/&lt;br /&gt;
cp /opt/zimbra/ssl/letsencrypt/privkey.pem /opt/zimbra/ssl/zimbra/commercial/commercial.key&lt;br /&gt;
chown zimbra:zimbra /opt/zimbra/ssl/letsencrypt/*&lt;br /&gt;
su - zimbra -c &amp;quot;cd /opt/zimbra/ssl/letsencrypt/; /opt/zimbra/bin/zmcertmgr deploycrt comm cert.pem combined.pem&amp;quot;&lt;br /&gt;
su - zimbra -c &amp;quot;zmcontrol start&amp;quot;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category: TI]]&lt;br /&gt;
[[Category: ZIMBRA]]&lt;/div&gt;</summary>
		<author><name>2532252&gt;Jefferson</name></author>
	</entry>
</feed>