SSL Certificate for outgoing.mozilla.org

VERIFIED FIXED

Status

mozilla.org Graveyard
Server Operations
VERIFIED FIXED
7 years ago
3 years ago

People

(Reporter: fox2mike, Assigned: fox2mike)

Tracking

Details

(Whiteboard: Geotrust OrderID: 8092216)

(Assignee)

Description

7 years ago
outgoing.mozilla.org has been using the *.mozilla.org wildcard cert, which expires on 12/2. This certificate should be used in place of the wildcard.

-----BEGIN CERTIFICATE REQUEST-----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-----END CERTIFICATE REQUEST-----
(Assignee)

Comment 1

7 years ago
Dear Shyam Mani,

Congratulations! GeoTrust has approved your request for a Enterprise SSL certificate. Your certificate is included at the end of this email.

INSTALLATION INSTRUCTIONS

1. INSTALL CERTIFICATE:
Install the X.509 version of your certificate included at the end of this e-mail.
For installation instructions for your SSL Certificate, go to:
http://www.geotrust.com/support/installation-instructions/index.html

2. INTERMEDIATE CERTIFICATE ADVISORY:
You MUST install the GeoTrust intermediate Certificate included at end of this e-mail on your server together with your Certificate or it may not operate correctly

You can also get your GeoTrust intermediate Certificates at:
https://knowledge.geotrust.com/support/knowledge-base/index?page=content&actp=CROSSLINK&id=AR1423

3. CHECK INSTALLATION:
Ensure you have installed your certificate correctly at:
https://knowledge.geotrust.com/support/knowledge-base/index?page=content&id=SO9557&actp=LIST

4. INSTALL THE GEOTRUST TRUE SITE SEAL:
Additionally, as part of your SSL Certificate Service, you are entitled to display the GeoTrust True Site Seal - recognized across the Internet and around the world as a symbol of authenticity, security, and trust - to build consumer confidence in your Web site.

Installation instructions for the GeoTrust True Site Seal can be found on the following link:
https://www.geotrust.com/support/true-businessid/true-site-seal/

Visit the GeoTrust Support Web site, where you will find a range of support tools to help you:
http://www.geotrust.com/support

Best regards,

GeoTrust Customer Support
http://www.geotrust.com/support
Hours of Operation: Mon - Fri 05:00 - 17:00 (PST)
Email:     esslorders@geotrust.com
Web:       http://www.geotrust.com
Phone:     1-866-436-8787 or 1-678-366-8399
Live Chat: http://www.geotrust.com/support


** MICROSOFT IIS and TOMCAT USERS
Microsoft and Tomcat users are advised to download a PKCS #7 formatted certificate from the GeoTrust User Portal:
https://products.geotrust.com/orders/orderinformation/authentication.do. PKCS #7 is the default format used by these vendors during installation and includes the intermediate CA certificate, you may also install the below web server certificate and intermediate CA certificate individually.

Web Server CERTIFICATE
-----------------

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----


INTERMEDIATE CA:
---------------------------------------

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Status: NEW → RESOLVED
Last Resolved: 7 years ago
Resolution: --- → FIXED
Whiteboard: Geotrust OrderID: 8092216
(Assignee)

Comment 2

7 years ago
And installed!

fox2mike@woodpecker ~ $ curl -v -I https://outgoing.mozilla.org/
* About to connect() to outgoing.mozilla.org port 443 (#0)
*   Trying 63.245.209.155... connected
* Connected to outgoing.mozilla.org (63.245.209.155) port 443 (#0)
* successfully set certificate verify locations:
*   CAfile: none
  CApath: /etc/ssl/certs
* SSLv3, TLS handshake, Client hello (1):
* SSLv3, TLS handshake, Server hello (2):
* SSLv3, TLS handshake, CERT (11):
* SSLv3, TLS handshake, Server finished (14):
* SSLv3, TLS handshake, Client key exchange (16):
* SSLv3, TLS change cipher, Client hello (1):
* SSLv3, TLS handshake, Finished (20):
* SSLv3, TLS change cipher, Client hello (1):
* SSLv3, TLS handshake, Finished (20):
* SSL connection using RC4-SHA
* Server certificate:
* 	 subject: serialNumber=/GuXtVWuqts-AQwv-IOVgCyiUfop3Gtt; C=US; ST=California; L=Mountain View; O=Mozilla Corporation; OU=IT; CN=outgoing.mozilla.org
* 	 start date: 2011-11-27 18:30:19 GMT
* 	 expire date: 2013-11-30 07:12:44 GMT
* 	 subjectAltName: outgoing.mozilla.org matched
* 	 issuer: C=US; O=GeoTrust, Inc.; CN=GeoTrust SSL CA
* 	 SSL certificate verify ok.

Wil, Kumar : If you see any issues with outgoing.mozilla.org, let me know.
Status: RESOLVED → VERIFIED
Product: mozilla.org → mozilla.org Graveyard
You need to log in before you can comment on or make changes to this bug.