On 14 May 2025, at 12:06, Bill Cole via Postfix-users wrote:

>> OTOH that setup doesn't seem so simple in that (AFAICT) neither certbot nor 
>> acme.sh can generate such a combined file.
>
> Really?
>
> $ postconf smtpd_tls_eccert_file
> smtpd_tls_eccert_file = /var/root/.acme.sh/scconsult.com_ecc/fullchain.cer
>
> Works for me.

Oh, sorry, I read too fast. I thought you were talking about combining the 
private key and the full chain into one file, which postfix docs recommend: 
"Storing a key and its associated certificate chain in separate files is not 
recommended, because this is prone to race conditions during key rollover, as 
there is no way to update multiple files atomically."

Sean
_______________________________________________
Postfix-users mailing list -- postfix-users@postfix.org
To unsubscribe send an email to postfix-users-le...@postfix.org

Reply via email to