Skip to content

Documentation request: recommended way for enabling STARTTLS SMTP with a trusted CA #186

@abctaylor

Description

@abctaylor

Steps To Reproduce

How can we mount a trusted root CA for Bitwarden to trust STARTTLS SMTP? I think it should go in /etc/bitwarden/ca-certificates but don't see any of the 4 main PVC mounts holding this path from the charts yaml.

Expected Result

Working mail over STMP with STARTTLS.

Actual Result

      An error occurred while attempting to establish an SSL or TLS connection.

      The server's SSL certificate could not be validated for the following reasons:
      • The server certificate has the following errors:
        • unable to get local issuer certificate

      MailKit.Security.SslHandshakeException: An error occurred while attempting to establish an SSL or TLS connection.

      The server's SSL certificate could not be validated for the following reasons:
      • The server certificate has the following errors:
        • unable to get local issuer certificate

Screenshots or Videos

No response

Additional Context

No response

Chart Version

self-host-2024.9.1

Environment Details

k8s 1.27

Issue Tracking Info

  • I understand that work is tracked outside of Github. A PR will be linked to this issue should one be opened to address it, but Bitwarden doesn't use fields like "assigned", "milestone", or "project" to track progress.

Metadata

Metadata

Assignees

Labels

bugSomething isn't working

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions