This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

LetsEncrypt Certificate not trusted by Spohos XG Firewall

Hi folks

If create a Lets Encrypt certificate (pfx, fullchain cert) and uploaded it to my freshly installed Sophos XG (SFOS 18.5.1 MR-1-Build326).

The certificate is uploaded but shows up as untrusted (red cross). 

The chain of the certificate is: ISRG Root X1 -> R3 -> My Certificate

I search the CA Certs for R3 and it only shows two not related R3 certificates. It does not show an R3 only CA certificate.

I tried to upload the R3 CA certificate from the LetsEncrypt web site but Sophos XG tells me that there is already a certificate.

Can anybody help ? What am I doing wrong ?

Regards,

Oliver



This thread was automatically locked due to age.
Parents Reply
  • I have the same problem, Tried a fresh install of Sophos 18.5.1 MR-1, tried multiple times generate a new certificate from lets encrypt alos with new certbot instalation but no luck. I downloaded all root CA of lets encrypt en uploaded them on the sophos but still the same as above.

    I used the new certification on a web server protection rule and the clients are working with a valid certificate but i can't chose this new certification on the webadmin or portal because it is not valid.

Children