<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Installing trusted intermediate certs on ActiveIQ Unified Manager (exOCUM) 9.7P1 for mailauth and AD in Active IQ Unified Manager Discussions</title>
    <link>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Installing-trusted-intermediate-certs-on-ActiveIQ-Unified-Manager-exOCUM-9-7P1/m-p/160066#M28000</link>
    <description>&lt;P&gt;I dont' get mails out with a new mailhost wich requires authentification, TSL and SSL.&lt;/P&gt;
&lt;P&gt;I also could not bind to our domain (which require SecureLDAP for authentification.&lt;BR /&gt;&lt;BR /&gt;As i have no clue what could it be i tried first if i could authentificate on a "plain" not by company managed linux instance, it failed until i updated the root certs.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;So I gained root access for the appliance VM (press e on bootup and init=/bin/bash - passwd and modify sshd.conf) :&lt;BR /&gt;openssl s_client -connect authmail.acme.biz:587 -starttls smtp --&amp;gt; showed errors&lt;BR /&gt;openssl s_client -connect authmail.acme.biz:587 -starttls smtp -CAfile certchain.pem --&amp;gt; worked&lt;BR /&gt;cp the chain in&amp;nbsp;/usr/local/share/ca-certificates/extra and run&amp;nbsp;update-ca-certificates&lt;BR /&gt;openssl s_client -connect authmail.acme.biz:587 -starttls smtp --&amp;gt; looks fine&lt;BR /&gt;&lt;BR /&gt;But sending out emails or testing "Remote Authentification" still fails.&lt;BR /&gt;&lt;SPAN&gt;"Failed to send email. Check that the SMTP server is configured correctly and refer to the SMTP server logs for details. Additional details: Could not connect to SMTP host: authmail.acme.biz port: 587"&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;BR /&gt;Does the use separate root ca stores i am not aware of ? &lt;BR /&gt;Which username format should i use for authentification against ActiveDirectory and Mailhost, UserprincipleName myuser@acme.biz or Netbios ACME\myuser format ?&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Wed, 04 Jun 2025 10:50:26 GMT</pubDate>
    <dc:creator>mario_grunert</dc:creator>
    <dc:date>2025-06-04T10:50:26Z</dc:date>
    <item>
      <title>Installing trusted intermediate certs on ActiveIQ Unified Manager (exOCUM) 9.7P1 for mailauth and AD</title>
      <link>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Installing-trusted-intermediate-certs-on-ActiveIQ-Unified-Manager-exOCUM-9-7P1/m-p/160066#M28000</link>
      <description>&lt;P&gt;I dont' get mails out with a new mailhost wich requires authentification, TSL and SSL.&lt;/P&gt;
&lt;P&gt;I also could not bind to our domain (which require SecureLDAP for authentification.&lt;BR /&gt;&lt;BR /&gt;As i have no clue what could it be i tried first if i could authentificate on a "plain" not by company managed linux instance, it failed until i updated the root certs.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;So I gained root access for the appliance VM (press e on bootup and init=/bin/bash - passwd and modify sshd.conf) :&lt;BR /&gt;openssl s_client -connect authmail.acme.biz:587 -starttls smtp --&amp;gt; showed errors&lt;BR /&gt;openssl s_client -connect authmail.acme.biz:587 -starttls smtp -CAfile certchain.pem --&amp;gt; worked&lt;BR /&gt;cp the chain in&amp;nbsp;/usr/local/share/ca-certificates/extra and run&amp;nbsp;update-ca-certificates&lt;BR /&gt;openssl s_client -connect authmail.acme.biz:587 -starttls smtp --&amp;gt; looks fine&lt;BR /&gt;&lt;BR /&gt;But sending out emails or testing "Remote Authentification" still fails.&lt;BR /&gt;&lt;SPAN&gt;"Failed to send email. Check that the SMTP server is configured correctly and refer to the SMTP server logs for details. Additional details: Could not connect to SMTP host: authmail.acme.biz port: 587"&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;BR /&gt;Does the use separate root ca stores i am not aware of ? &lt;BR /&gt;Which username format should i use for authentification against ActiveDirectory and Mailhost, UserprincipleName myuser@acme.biz or Netbios ACME\myuser format ?&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 04 Jun 2025 10:50:26 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Installing-trusted-intermediate-certs-on-ActiveIQ-Unified-Manager-exOCUM-9-7P1/m-p/160066#M28000</guid>
      <dc:creator>mario_grunert</dc:creator>
      <dc:date>2025-06-04T10:50:26Z</dc:date>
    </item>
    <item>
      <title>Re: Installing trusted intermediate certs on ActiveIQ Unified Manager (exOCUM) 9.7P1 for mailauth an</title>
      <link>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Installing-trusted-intermediate-certs-on-ActiveIQ-Unified-Manager-exOCUM-9-7P1/m-p/160254#M28008</link>
      <description>&lt;P&gt;Sorry for the latent reply. I'd open a support case since it isn't working.&lt;/P&gt;</description>
      <pubDate>Wed, 14 Oct 2020 15:11:18 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Installing-trusted-intermediate-certs-on-ActiveIQ-Unified-Manager-exOCUM-9-7P1/m-p/160254#M28008</guid>
      <dc:creator>paul_stejskal</dc:creator>
      <dc:date>2020-10-14T15:11:18Z</dc:date>
    </item>
  </channel>
</rss>

