Ticket #385 (closed maintenance: fixed)

Opened 5 years ago

Last modified 5 years ago

Install new SSL certificate on TN.org

Reported by: laura Owned by: chris
Priority: major Milestone:
Component: Live server Keywords:
Cc: Estimated Number of Hours: 0.5
Add Hours to Ticket: 0 Billable?: yes
Total Hours: 0.7

Description

The SSL certificate has been renewed today via Gandi and needs to be set up.
(Chris see email sent earlier today!)

Change History

comment:1 Changed 5 years ago by laura

  • Component changed from Drupal modules & settings to Live server

comment:2 Changed 5 years ago by chris

  • Add Hours to Ticket changed from 0.0 to 0.2
  • Status changed from new to accepted
  • Total Hours changed from 0.0 to 0.2

Whoever gets admin@… will need to click through a link:

we will send a confirmation email to the address
admin@… for validation. If
this address does not exist, then you will need
to create it first.

I'm following the process documented at wiki:NewLiveServer#HTTPS

comment:3 Changed 5 years ago by laura

Hi Chris -
Thanks for this.
I received the email, logged in and validated the request. (received message - Confirmation registered. The SSL activation process will now continue).

comment:4 Changed 5 years ago by chris

Thanks, it's "In progress"... the existing cert is valid till 10th Feb so we can wait to see where it's at on Monday.

comment:5 Changed 5 years ago by chris

  • Add Hours to Ticket changed from 0.0 to 0.1
  • Total Hours changed from 0.2 to 0.3

It's still "in progress" -- I have raised a ticket with gandi about this.

comment:6 Changed 5 years ago by chris

This is the reply from gandi.net:

On Fri 13-Jan-2012 at 01:02:13PM +0100, pro-en@… wrote:

Hi Chris,

Actually your SSL request is at the last step in the validation
process. You should have received a verification mail sent by our
partner Comodo to the e-mail address admin@…. In
this mail you will find a validation link.

Once you have done that validation, your SSL certificate will be
issued right away.

If that mailbox does not exist, please create it and make sure that it
works. Then get back to me so I can relaunch the request which will
make Comodo resend that mail.

I am at your disposal should you need any further information.

Best regards,

Karim

Laura, can you double check that there isn't a email to admin@ that you missed?

comment:7 follow-up: ↓ 8 Changed 5 years ago by laura

Hmm, looking into this, I don't think I receive admin@ emails....

comment:8 in reply to: ↑ 7 ; follow-up: ↓ 9 Changed 5 years ago by chris

Replying to laura:

I don't think I receive admin@ emails....

We need to track down who does as they will have one to click through to renew the cert.

comment:9 in reply to: ↑ 8 ; follow-up: ↓ 10 Changed 5 years ago by laura

Replying to chris:

Replying to laura:

I don't think I receive admin@ emails....

We need to track down who does as they will have one to click through to renew the cert.

Just looked on the UH cpanel for email accounts and also email forwarders... nowt for admin@ (unless you know any different from your bits there!) Let me know if I need to set up an admin@ email account or forwarder.
Thanks

comment:10 in reply to: ↑ 9 ; follow-up: ↓ 11 Changed 5 years ago by chris

Replying to laura:

Let me know if I need to set up an admin@ email account or forwarder.

Yes, either, all it'll get is a email once a year to renew the cert with a link that needs to be clicked, set it up as an alias for webproject@ or yourself or whatever and let me know when it's done and I'll email gandi.net to ask them to have the email resent.

comment:11 in reply to: ↑ 10 Changed 5 years ago by laura

Replying to chris:

Replying to laura:

Let me know if I need to set up an admin@ email account or forwarder.

Yes, either, all it'll get is a email once a year to renew the cert with a link that needs to be clicked, set it up as an alias for webproject@ or yourself or whatever and let me know when it's done and I'll email gandi.net to ask them to have the email resent.

I've set admin@… to forward to webproject@ (which forwards to my tn email address!)

comment:12 Changed 5 years ago by chris

  • Add Hours to Ticket changed from 0.0 to 0.4
  • Status changed from accepted to closed
  • Resolution set to fixed
  • Total Hours changed from 0.3 to 0.7

I have installed and tested the new certificates on both the live and the development servers, everything seems fine so I'm closing this ticket.

Note: See TracTickets for help on using tickets.