Gmail pop3 error "Leaf certificate is expired"

My domain is: acupuncture-nantes.fr
ubuntu 20.04.2 LTS

certbot renew tells me there is no certificate to renew :

Saving debug log to /var/log/letsencrypt/letsencrypt.log


Processing /etc/letsencrypt/renewal/acupuncture-nantes.fr.conf


Cert not yet due for renewal


Processing /etc/letsencrypt/renewal/mail.acupuncture-nantes.fr.conf


Cert not yet due for renewal


Processing /etc/letsencrypt/renewal/poterie-aisne.fr.conf


Cert not yet due for renewal


The following certs are not due for renewal yet:
/etc/letsencrypt/live/acupuncture-nantes.fr/fullchain.pem expires on 2021-08-13 (skipped)
/etc/letsencrypt/live/mail.acupuncture-nantes.fr/fullchain.pem expires on 2021-09-07 (skipped)
/etc/letsencrypt/live/poterie-aisne.fr/fullchain.pem expires on 2021-09-06 (skipped)
No renewals were attempted.

the problem is :
gmail usually fetches my emails on r0dy.net and acupuncture-nantes.fr (same ip, same vps) without problems, but since june 14 i get :
17 juin 2021 à 13:56 Erreur liée à la sécurité SSL. [ Aide ]
Le serveur a renvoyé l'erreur "SSL error: Leaf certificate is expired".

i tried to look into https://check-your-website.server-daten.de/?q=acupuncture-nantes.fr but it didn't get me any clue.

i also tried to restart dovecot but it didn't change anything.

Anyone has an idea ?

I'm not seeing any expired certificate on SMTP port 25 and port 587, IMAP and POP3.

What are the exact GMail settings?

1 Like

pop server : mail.acupuncture-nantes.fr
port : 995
always use SSL

Looks fine to me, I see the cert valid from June 9th.

1 Like

Yes, I renewed mail.acupuncture-nantes.fr on june 9th as you can see here :
Renewal on a roundcube config - #5 by r0dy

I did not change anything else, and gmail stopped accessing my pop server after june 13th.

As I was trying to find anomalies, I noticed that my disk was almost full.
I added some disk space, apt update / upgrade / --fix-broken install / cleaned everything, restarted, and now it works.
So i don't know how or why but the issue was related to full disk occupation, if that can help anyone in the future.

2 Likes

This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.