Https connexion with Letsencrypt's certificate doesn't work

  • Hi to the community,
    I have a problem when I try to connect to https.
    When i use a certificate created from omv the connection works correctly except the security message. But when I use a Letsencrypt's certificate created from the omv plugin and still available, i get the following message when saving changes:


    Failed to execute command 'export PATH=/bin:/sbin:/usr/bin:/usr/sbin:/usr/local/bin:/usr/local/sbin; export LANG=C; nginx -t 2>&1' with exit code '1': nginx: [emerg] SSL_CTX_use_PrivateKey_file("/etc/ssl/private/openmediavault-e1645972-5803-4343-95d0-f31849e9f23b.key") failed (SSL: error:0B080074:x509 certificate routines:X509_check_private_key:key values mismatch) nginx: configuration file /etc/nginx/nginx.conf test failed


    I understand that the problem is related to NGINX but I do not know what solution is used to solve this problem.
    Would you have any ideas to help me?
    Thanks

  • Hello,


    The message you get seems to talk aboutthe ssl certificate created by OMV not Let's encrypt (the Let's encryptcertificates are normally created in /etc/letsencryp/).
    What you should do in webgui is disablehttps and see if you still have error. Then start over the let's encryptprocess.



    Are you sure that the let's encryptcertificate is successfully created ?

  • Hi BenBenJD,
    Thanks for your answer.
    Actually i'm using SLL certificate created by OMV cause Let'sencrypt certificate generate a error message.
    When i disable the https the connexion on port 80 runs.


    the let's encrypt certificate seem to be good




    should I change some Nginx configuration files (/etc/nginx/site-available/....)or erase the existing letsencrypt certifcate??

  • Hello,


    Actually I haven’t figured out but I also have a problem with my let’s encrypt certificate. I’m able to generate it throw plugin but it not appears in SSL section. I’m not using it for my OMV Webui but for a reverse proxy so it’s not a problem for me but maybe you have a general problem.
    I suggest to try to recreate it : delete the folder /etc/letsencrypt and click generate in let’s encrypt plugin section. Look closely at what is written in the popup window. And check if the certificate is successfully created (you’ll see your certificate in /etc/letsencrypt/live/YOURCERT/***.pem


    And see if you still have the problem.

Jetzt mitmachen!

Sie haben noch kein Benutzerkonto auf unserer Seite? Registrieren Sie sich kostenlos und nehmen Sie an unserer Community teil!