Outlook Trust warning for self signed mail server

Hi,

  I use Outlook 2007, and from about 6 months ago, it started giving me a Trust Warning dialog for a mail account that resides on my own server.  The certificate on my server is self signed, and though I've added it to my Trusted Certificates list, I still get the warning.

  What do I need to do to stop this dialog from appearing?  Change to a different mail client?

Cheers

  • Moved by George Hua -MSFT Friday, September 27, 2013 6:40 AM outlook product issue
September 27th, 2013 4:15am

Hi Cheers,

Thank you for your posting.

Office Development Forum is used to discuss questions about Office development technologies such as VSTO, VBA and OpenXML. For Outlook product specific questions, I'd like to move this thread on Outlook IT Pro Discussions forum for more efficient response.

Free Windows Admin Tool Kit Click here and download it now
September 27th, 2013 9:40am

What is the exact error in full?
Have you checked the Certificate Path to see if it is indeed trusted?
Have you verified the dates on the certificate? Self signed certificates can also expire.
Also check the names which are on the certificate and verify it against the names that you used to configure Outlook.

Otherwise, you'll have to provide more info about your configuration like mail server being used, mail account type and how you added your certificate.

September 27th, 2013 10:25am

Internet Security Warning
!    The server you are connected to is using a security certificate that cannot be verified.
The target principal name is incorrect.
[View Certificate]
Do you want to continue using this server?
[Yes][No]

From the dialog box, I used the [View Certificate] option, and installed it in the "Intermediate Certificate Authorities" list.
The details of the certificate, email, name, address, etc are as I specified @ creation, and the certificate itself expires in 2022.
The details of the certificate are correct, including the name.  It is a sha1 RSA certificate.

My server is running Ubuntu 10.04 LTS with a LAMP stack, and Postfix/Dovecot/Amavisd/SpamAssassin/ClamAV for its mail.  It requires authentication both for reading and sending mail.  I use virtual hosting for a couple domains I run.

It would be nice to have Outlook acknowledge my trusted certificate, and not have the dialog box show at all.  But frankly, Outlook should remember my answer ( [yes] ) and not show me the message again.

Free Windows Admin Tool Kit Click here and download it now
September 27th, 2013 1:37pm

You must install the self-signed certificate in your Trusted Root Certification Authorities as there is no root yet to trust your certificate (which is why the intermediate store doesn't work).

It would be a security issue if Outlook would never prompt you again for untrusted certificates.

October 5th, 2013 9:17am

That makes me crazy too, so I wrote a little addin

Take look on this.

Free Windows Admin Tool Kit Click here and download it now
October 5th, 2013 2:39pm

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics