Join the Mozilla’s Test Days event from Dec 2–8 to test the new Firefox address bar on Firefox Beta 134 and get a chance to win Mozilla swag vouchers! 🎁

Search Support

Avoid support scams. We will never ask you to call or text a phone number or share personal information. Please report suspicious activity using the “Report Abuse” option.

Learn More

Èròjà atẹ̀lélànà yii ni a ti fi pamọ́ fọ́jọ́ pípẹ́. Jọ̀wọ́ béèrè ìbéèrè titun bí o bá nílò ìrànwọ́.

S/MIME and trusting other certificates

  • 2 àwọn èsì
  • 1 ní ìṣòro yìí
  • 340 views
  • Èsì tí ó kẹ́hìn lọ́wọ́ alan158

more options

I am trying to get S/MIME set up properly. I have my personal certificate set up and installed - I can send signed messages. However, when I try to send an ecrypted message to a recipent with a DOD certificate, I run into an error that the certificate is not valid. I have installed the DOD root certificates, trusted them for email/websites, and imported the individual's signature cert into the store.

How do I change the settings / trust on the individual's certificate to trust it? It is within the valid date range.

I am trying to get S/MIME set up properly. I have my personal certificate set up and installed - I can send signed messages. However, when I try to send an ecrypted message to a recipent with a DOD certificate, I run into an error that the certificate is not valid. I have installed the DOD root certificates, trusted them for email/websites, and imported the individual's signature cert into the store. How do I change the settings / trust on the individual's certificate to trust it? It is within the valid date range.

Ọ̀nà àbáyọ tí a yàn

I had already installed the DOD root certificates as you had mentioned.

I had to manually go through each DOD certificate and "Edit Trust" to allow them to identify websites and email. That solved the problem.

Ka ìdáhùn ni ìṣètò kíkà 👍 0

All Replies (2)

more options

Generally the issue is missing intermediate certificates. But Personally I think it is funny the supposedly most secure organizations in the world can't meet a public test on their integrity that would see them included in the trusted authorities immediately.

However basically I suggest following the guide for Firefox here https://public.cyber.mil/pki-pke/end-users/getting-started/linux-firefox/

So Step 1 from the web site In Thunderbird open options/ preferences and search for cert then click the Manage Certificates button. The pages are generally the same in Thunderbird and Firefox as Thunderbird uses the same pki code to manage certificates as Firefox. Skip to step 7. from the web site

more options

Ọ̀nà àbáyọ Tí a Yàn

I had already installed the DOD root certificates as you had mentioned.

I had to manually go through each DOD certificate and "Edit Trust" to allow them to identify websites and email. That solved the problem.

Ti ṣàtúnṣe nípa alan158