Best setting for an valid SSL Email Cert


what is the best practice for setting up an valid STARTSSL, SSL, Certificate?

the Server/Webmin URL is server.domain1.tld

mail.domain2tld, mail.domain3tld resolves to server.domain.tld. I added all Maildomains to the ssl Cert request at server.domain.tld.

But says only the Cert for server.domain.tld is valid. but not the mail domains from the other domains. The Email Clients have problems with it.

Any idea? Maybe an CNAME Record is better to server.domain.tld?

Hi, Did you add the new cert generated with all domains to the postfix server?

It seems, that this work. :grinning:
i add the domains here:

okay. Don’t work.

