

In a text editor, open the server certificate and the intermediate certificate.To make authentication by these certificates work, follow these steps to add the certificates to Kerio Connect: Kerio Connect allows authentication by intermediate certificates. To enable the server to use this certificate, select the certificate and click on the Set as Active button.Click on Import > Import Signed Certificate from CA.If your certificate authority uses intermediate certificates, follow the steps in intermediate certificates before importing the certificate. Once you obtain your certificate signed by a certification authority, click on Import > Import Signed Certificate from CA. Save the certificate to your disk and send it to a certification authority.Select the certificate and click on the Export > Export Request button.Open section Configuration > SSL Certificates and click on New > New Certificate Request.Supported browsers: Microsoft Edge 12 and newer Internet Explorer 11 Firefox. Therefore, run Kerio Connect Multi-Server in a dedicated private network. This browser or its version is not supported. All servers in Kerio Connect Multi-Server communicate between them unsecurely. Help users access the login page while offering essential notes during the login process. To use a certificate signed by a trustworthy certification authority, you must first generate a certificate request, send it to a certification authority and import a signed certificate upon receiving it. The detailed information for Kerio Mail Login Local User is provided. Creating certificates signed by a certification authority To enable the server to use this certificate, select the certificate and click on the Set as Default button ( Set as Active in older versions).

Go to section Configuration > SSL Certificates.To create a self-signed certificate, follow these steps: If you have multiple intermediate certificates, add them one by one to the server certificate file.Ĭreating certificates Creating self-signed certificates.If a certificate expires and you have already imported a new valid certificate to Kerio Connect for the same domain, delete the old certificate or restart the server to use the new valid certificate.Expired certificate for the domain hostname.Valid certificate for the domain hostname.Self-signed certificate for the domain hostname.Trusted certificate for the domain hostname.If multiple certificates exist for a single domain, Kerio Connect selects a certificate according to the following order: Kerio Connect then selects and uses the appropriate certificate. Since Kerio Connect 9.0.2, you can import certificates for different domains to Kerio Connect. Private key - the file is in RSA format and it has suffix.Certificate (public key) - X.509 Base64 in text format (PEM).Kerio Connect supports certificates in the following formats: To make the communication as secure as possible, you can: Disable all unsecured services or set an appropriate security policy Supported certificates
