Mail server cannot use certificate because.. the filename is too long ?

Hi,
For some reasons, yesterday, I created a new certificate on our server (XServe with Mac OSX Server 10.6.2) and I assigned this certificate to the mail server. Since then, we are not able to connect to our mail server. We receive an error saying the server cannot open a connection on port 993.
I looked at the mail access log and I think I might have found the cause:
Jan 7 09:20:25 xs1 dovecot[1944]: Fatal: sslcafile: Can't use /etc/certificates/LemieuxBedard.com.264472D0EC029B3194A4B779D2187278189E8352.ch ain.pem Bedard.48DFB4D5FA4786D77DEF02C72591002CC865D5E1.chain.pem Bedard.48DFB4D5FA4786D77DEF02C72591002CC865D5E1.chain.pem Bedard.48DFB4D5FA4786D77DEF02C72591002CC865D5E1.chain.pem Bedard.48DFB4D5FA4786D77DEF02C72591002CC865D5E1.chain.pem Bedard.48DFB4D5FA4786D77DEF02C72591002CC865D5E1.chain.pem Bedard.48DFB4D5FA4786D77DEF02C72591002CC865D5E1.chain.pem: File name too long
I don't understand why the name is too long since the previous certificate had a name even longer. Is this a bug that should be corrected on the next update or have-I indeed done something wrong? Right now, I disable the certificate on the mail server and it works. However, I'd really like to use the certificate.
Thanks for any help.

No, you didn't do anything wrong, JeanPhilippe. I'm right there with you. There's even another thread on this issue:
<http://discussions.apple.com/thread.jspa?messageID=10808126>
I had the same problem: IMAP & POP services would not launch using SSL. Finally got it resolved today. It had nothing to do with certificates and their names, or creating them in openssl, and everything to do with a botched dovecot.conf file, courtesy of Server Admin.
It appears that every time I changed the certificate for IMAP & POP SSL in Server Admin, it appended the new selection to the dovecot.conf file on 3 separate lines. The result was an unhealthy list of every certificate file Server Admin had ever been pointed to for this service.
After making a backup, I edited the file (/etc/dovecot/dovecot.conf) down to the single cert file I wanted it to use. It happened to be first in the list, FWIW.
If you want to duplicate this, look for the lines beginning with:
"sslcertfile"
"sslkeyfile"
"sslcafile"
Obviously you need to be careful in there. But I did not even have to bounce the service before it took my changes. Thankfully, Server Admin did not overwrite my edits (which I've seen happen with manual config of other services, such as the iChat service.)
Good luck, and let me know if I can provide more detail.

Similar Messages

  • DNS server cannot be created because the authoritative parent zone

    I am working in 2008r2sp1.  I tried adding DNS Server and DHCP Roles first.  Then under DNS Forward Lookup Zones I added "mysite.com" as a New Zone.
    Also I searched my computer for a "NTDS" folder and the only on I found was "C:\Windows\inf\NTDS".
    A delegation for this DNS server cannot be created because the authoritative parent zone cannot be found or it does not run Windows DNS server. If you are integrating with an existing DNS infrastructure, you should manually create a delegation to this DNS server in the parent zone to ensure reliable name resolution from outside the domain "artisdextri.com". Otherwise, no action is required.
    The folder C:\Windows\inf\NTDS> is not valid. Specify a valid path, including drive letter. For example: C:\NTDS.
    dcpromo /unattend:"C:\Users\Administrator\Documents\ForestAdd.txt"
    ForestAdd.txt
    [DCINSTALL]
    InstallDNS="yes"
    NewDomain="forest"
    NewDomainDNSName="mysite.com"
    DomainNetBiosName="MYSITE"
    ReplicaOrNewDomain="domain"
    ForestLevel="4"
    DomainLevel="4"
    DatabasePath="C:\Windows\inf\NTDS>"
    LogPath="C:\Windows\inf\NTDS"
    SYSVOLPath="c:\Windows\SYSVOL"
    SafeModeAdminPassword="pass1"

    Hello,
    If this is the first forest root DC, just ignore the information.
    Check the blog:
    A delegation for this DNS server cannot be created because the authoritative parent zone cannot be found or it does not run Windows DNS server.
    http://blogs.technet.com/b/activedirectoryua/archive/2011/07/07/a-delegation-for-this-dns-server-cannot-be-created-because-the-authoritative-parent-zone-cannot-be-found-or-it-does-not-run-windows-dns-server.aspx
    Hope this helps.

  • "Copying Music failed. The filename was too long or invalid." for Mac

    I'm getting this error when attempting to move itunes libary to new HD (Drobo FS)
    "Copying Music failed. The filename was too long or invalid."
    Are there any Apps or scritps i could run to locate these files to correct/delete?

    Unconsolidated should now give you a much shorter list, presumably the difficult track will be either first or last in this list...
    I've written a script called DeDuper which can help remove unwanted duplicates. See this  thread for background. You'll probably have to disable the progress bar again.
    It only works on files connected to iTunes that have identical tag info. If you're not certain it might pay to make sure first using iTunes Folder Watch to scan for files that are in the media folder but not in the library. It also has a "scan for dead tracks on startup" option with detects missing files.
    tt2

  • "Copying Music failed. The filename was too long or invalid."

    I've been trying to 'consolidate library' inorder to get all my music held and managed under Itunes so I can delete it from other places on my computer & avoid holding multiple copies (in line with Chris CA's guidance in this thread https://discussions.apple.com/thread/2812666?start=0&tstart=0)
    All goes well until I get to the 'consolidate library' step, it starts off copying files & seems to be going alright, then at some point I get the error message :"Copying Music failed. The filename was too long or invalid."
    This error message doesn't help me much as I've no idea where to go from here. I've tried consolidating library twice now and got the same message each time.
    I'm assuming there must be some way to either fix it or identify the file causing the issue?
    Thanks

    Unconsolidated should now give you a much shorter list, presumably the difficult track will be either first or last in this list...
    I've written a script called DeDuper which can help remove unwanted duplicates. See this  thread for background. You'll probably have to disable the progress bar again.
    It only works on files connected to iTunes that have identical tag info. If you're not certain it might pay to make sure first using iTunes Folder Watch to scan for files that are in the media folder but not in the library. It also has a "scan for dead tracks on startup" option with detects missing files.
    tt2

  • This report cannot be executed because it may take too long to execute

    Dear expert,
    i am getting below message when user is trying to execute the report. I am new to Basis support, can any one let me know how to resolve this problem. This in R3 4.6 version
    "This report cannot be executed because it may take too long to execute"
    Thanks in advance for your help.
    Regards.
    Ameture

    Hi Ameture,
    This is not permanant solution, for better and running smooth business pls inform to ababper to change bad codding and provide expert coding so that you can run this report at any time. Becuase same problem already done with me. I have checked all the thing even the coding also and inform to abaper to change specific coding and expert coding. I found result immediately, earlier that report took 3-4 hours and now take 15-20 minuts only. Now user and myself both are happy.
    Regards,
    Anil

  • Will not export because the film is too long

    Help. When I try and export my film and it gets to the end of the prosses it stops and say unable to publish because my film is too long. Someone help me.
    Kind Regards,
    Taylor

    It would seem logical to expect you to include information on the length of the film!
    Export to where/what? Using what codec?
    Also the version of iMovie you are using.

  • Cannot use tool because the target channel is hidden

    When I return to a previouse Layer and attempt to alter the Layer I receive the same Error "Could not use Blah Blah because the target channel is hidden.  This happens with Erasure, Selection too;, Move tool,  Pencil, Paintbrush and so on.  What is happening and what do I do to fix it?

    Are the composite Channels selected (Red, Green and Blue for RGB, Cyan, Magenty, Yellow and Black for CMYK etc.)?
    Could you please post a screenshot with the pertinent Panels visible?

  • Completed a project in iMovie which is 41 minutes long (2 GB) . When I attempt to  create a iDVD disk(via clicking on share) ,I am advised that an error occurred because the project is too long. Have made other movies/created disks that are longer than 41

    Have completed a project in project library that is 41 minutes long ( 2.1 GB ) . When I click share and attempt to create an iDVD disk , an error notice appears claiming the new project is too long.  Have created other iMovie/DVD disks in the past which were longer than 41 minutes.  What corrections do I need to make to ensure I can create  a DVD disk for this 41 minute ( 2 GB ) project... I am using a 17 MacBook pro for this project.

    PS - have found other posts indicating that clips smaller than 2s or sometimes 5s, or "short files" can cause this. Modern style editing often uses short takes ! Good grief I cannot believe Apple. Well I deleted a half a dozen short sections and can export, but now of course the video is a ruined piiece of junk and I need to re-do the whole thing, the sound etc. which is basically taking as much time as the original. And each time I re-do it I risk again this lovely error -50 and again trying to figure out what thing bugs it via trial and error instead of a REASONABLE ERROR MESSAGE POINTING TO THE CLIP IT CAN'T PROCESS. What a mess. I HATE this iMovie application - full of BUGS BUGS BUGS which Apple will not fix obviously, since I had this product for a few years and see just hundreds of hits on Google about this error with disappointed users. Such junk I cannot believe I paid money for it and Apple does not support it with fixes !!!
    If anyone knows of a GOOD reasonably priced video editing program NOT from APPLE I am still looking for suggestions. I want to do more video in future, but obviously NOT with iMovie !!!

  • If i dont have apple care will the apple store fix my phone for free? i cannot use headphones because the port is messed up..

    My headphone port is messed up, I cant use headphones.. Will the apple store fix it for me for free or will they charge me to do so? I dont think i have apple care?

    If you dont have AppleCare but you are still within your Apple 1 year limited warranty then hardware service is free as long as the issue was not caused by physical or liquid damage.

  • "Cannot update iPod because the selected playlists no longer exist"

    That is an error message I'm now getting. My iPod is erased but iTunes works fine. How do I fix this? (I've already restored all settings, updated, software, etc.)
    HP   Windows XP  

    " When I try to put it back it says "Songs on the iPod cannot update because all of the playlists selected for
    syncing no longer exist"."
    http://discussions.apple.com/thread.jspa?messageID=607312&#607312

  • HT3728 I need to reset the name of the network because the name was too long.  What do you suggest?

    I have a fully functioning Air Port Express.  The only item which does not cooperate is my printer.  When I insert the network name, all letters are on the same line except for one letter.  I think this is causing the problem.  I think if I shortened the network name that would solve my problem.  Any suggestions?

    Remove any spaces that you have in the name at this time. Otherwise, shorten the actual name to fit the requirements. "Wireless" certainly works if you are not sure how to name the network.

  • I am trying to disable "show notes in inbox" on icloud account but keep receiving error "incoming mail server cannot be empty"

    HI -
    I am trying to uncheck "show notes in inox" on my icloud account but keep receiving error message:
    "incoming mail server cannot be empty" message
    The incoming mail server on the account is set automatically is is greyed out so I cannot edit anything.  I also tred editing account.plist but the icloud account does not have the neccasary string to be edited as with my other mail accounts.
    Would apprecate any assistence.
    Regards,

    Hi there freegreg,
    You may find the troubleshooting steps in the article below helpful.
    OS X Mail: Troubleshooting sending and receiving email messages
    http://support.apple.com/kb/ts3276
    -Griff W.

  • I participated in the mountain lion free upgrade for new mac owners but the password is too long to unlock the content code. HELP!!!

    i participated in the mountain lion free upgradde for new owners but i cannot open the content code because the password is too long! HELP!

    What happened was that the password was 32 characters long and the field that they give you to use would not allow you to manually type those characters in (crazy huh?) but it took it when i copied and pasted it in!

  • The mail could not be sent to the recipients because of the mail server failure. (Sending Mail using Account 1 (2013-04-30T16:36:52). Exception Message: Cannot send mails to mail server. (Mailbox unavailable. The server response was: 5.7.1 Client does not

    Interesting db mail issue. If i click send test mail from sql mgmt studio, it works fine, but when i execute a SP to send a mail, it fails. One thing I noticed is that the "LastModified" column in the mail log shows the domain account when a test
    mail was sent from mgmt studio, but show "sa" when the SP was used to send mail. 
    This is from SQL 2012, did not see this in sql 2008, looks like 2008 always used the service account.  any ideas ?
    Get this error:
    The mail could not be sent to the recipients because of the mail server failure. (Sending Mail using Account 1 (2013-04-30T16:36:52). Exception Message: Cannot send mails to mail server. (Mailbox unavailable. The server response was: 5.7.1 Client does not
    Thanks.
    Ranga

    Hi Ranga,
    I also use SQL Server 2012. I send a test email through SQL Server Management and the last modified By “sa”.
    If you used stored procedure to send a test email. Please use the command below:
    EXEC msdb.dbo.sp_send_dbmail
    @profile_name = 'Adventure Works Administrator',
    @recipients = '[email protected]',
    @body = 'The stored procedure finished successfully.',
    @subject = 'Automated Success Message' ;
    I can both send test email through SQL Server Management Studio and SP. Make sure you have the right profile. Since you could send test mail via SQL Server Management Studio, please try again to send it via SP.
    Thanks.
    If you have any feedback on our support, please click
    here.
    Maggie Luo
    TechNet Community Support

  • I tried to send a mail message to too many addees. when the rejection came back "cannot send message using the server..." the window is too long to be able to see the choices at the bottom of it. how can i see the choices at the bottom of that window?

    I tried to send a mail message to too many addees. when the rejection came back "cannot send message using the server..." the window is too long to be able to see the choices at the bottom of it. how can I see the choices at the bottom of that window?

    I tried to send it through gmail and the acct is  a POP acct
    I'm not concerned about sending to the long address list. I just can't get the email and window that says "cannot send emai using the server..." to go away. The default must be "retry", because although I cannot see the choices at the bottom of the window if I hit return it trys again... and then of course comes back with the very long pop up window that I cannot see the bottom of so I can tell it to quit trying...

Maybe you are looking for

  • Dynamic Box's

    Hi All,     I have a one question , in SAP Scripts/Smartforms how can i draw a dynamic box's.  if there is one record one box (Like  Table with 3 Cells(rows & coloums))  has to appear, if it is 2 ,two box's has to appear depending up on the records.

  • Employee Code Flow from HR to FI Automatically

    Dear Employee Personnel Numbers are being updated regularly from HR.  In FI they are not being updated automatically.  Once again in FI they are being created as Employee Vendors either through LSMW or directly if they are small in number.  Now the p

  • Component SALV_WD_TABLE - Read data

    Hi all, i'm using component SALV_WD_TABLE to display data in my web dynpro abap application. The application implements a search which reads the whole amout of data and displays the entries in the grid. (configuration: about 20 entries are shown) But

  • Stemming

    Hi, Can someone explain the code in the folloiwng- I need a detailed explanation class Stemmer {  private char[] b; private int i, /* offset into b */ i_end, /* offset to end of stemmed word */ j, k; private static final int INC = 50; /* unit of size

  • How do i connect to an OHP (Overhead Projector) with MacBook Air?

    How do i connect to an OHP (Overhead Projector) with MacBook Air? Is it possible? What leads would I need? Thanks.