Pak Syafril,

Setelah saya coba trial error ekspor certificate valid ke .pfx untuk backup dan 
kemudian delete dari list SSL lalu create ulang menggunakan let's encrypt 
ternyata berhasil.

berikut lognya:

Starting Script run at 08/03/2022 09:33:10.
Get the MDaemon paths.
The MDaemon.ini Path is D:\MDaemon\APP\MDaemon.ini.
The MDaemon APP Path is D:\MDaemon\APP\.
The MDaemon Pem path is D:\MDaemon\PEM\.
The MDaemon Log path is D:\MDaemon\Logs\.
The MDaemon RAW path is D:\MDaemon\Queues\Raw\.
The WorldClient Path is D:\MDaemon\WorldClient.
The WorldClient HTML Path is D:\MDaemon\WorldClient\HTML.
The well-known path is D:\MDaemon\WorldClient\HTML\.well-known.
The Acme-Challenge path is 
D:\MDaemon\WorldClient\HTML\.well-known\Acme-challenge.
The State Path is D:\MDaemon\PEM\_LEState.
The FQDN is set to mail.richtex.co.id.
The email address is set to [email protected].
Setting the system to use the LetsEncrypt Live Service.
The certificate thumbrpint in the MDaemon.ini file is B5A5 E418 6DEC 35F9 B7CF 
B1F3 A4A7 EC95 0CE6 5945.
Looking for the local certificate.
The certificate is not from LetsEncrypt, requesting a new certificate.
Importing the ACMESharp module.
Getting an updated state.
The account either doesn't exist or is not valid. It will be deleted and 
recreated.
Creating a new AcmeState.
Getting service directory.
Getting a new Nonce
Creating a new Account Key.
Creating a new Account.
Getting an updated state.
Getting service directory.
Getting a new Nonce
Getting identifier for smtp.richtex.co.id.
Getting identifier for smtp.richtex.co.id.
Getting identifier for imap.richtex.co.id.
Getting identifier for imap.richtex.co.id.
Getting identifier for pop3.richtex.co.id.
Getting identifier for pop3.richtex.co.id.
Getting identifier for mail.richtex.co.id.
Getting identifier for mail.richtex.co.id.
Creating new certificate.
Creating a new order for mail.richtex.co.id using dns:smtp.richtex.co.id 
dns:imap.richtex.co.id dns:pop3.richtex.co.id dns:mail.richtex.co.id
Getting an updated state.
Getting service directory.
Getting an authorization for the dns:imap.richtex.co.id dns:mail.richtex.co.id 
dns:pop3.richtex.co.id dns:smtp.richtex.co.id.
Getting service directory.
Getting an updated state.
The .well-known path for is D:\MDaemon\WorldClient\HTML\.well-known
The Acme Challenge path for 
D:\MDaemon\WorldClient\HTML\.well-known\Acme-challenge
The path D:\MDaemon\WorldClient\HTML\.well-known does not exist, it will be 
created.
The path D:\MDaemon\WorldClient\HTML\.well-known\Acme-challenge does not exist, 
it will be created.
Selecting the http-01 challenge and getting challenge data for 
dns:imap.richtex.co.id.
The challenge status URL is 
https://acme-v02.api.letsencrypt.org/acme/chall-v3/137694941186/m9UFwQ.
The challenge identifier is dns:imap.richtex.co.id.
The URL to verify the challenge is 
imap.richtex.co.id/.well-known/acme-challenge/HR3pgYAf4zOLP3BwipgDIZHZfr8bfNnzBQVUT8vrwDs.
The Challenge file name for dns:imap.richtex.co.id is 
HR3pgYAf4zOLP3BwipgDIZHZfr8bfNnzBQVUT8vrwDs
The Challenge Content for dns:imap.richtex.co.id is 
HR3pgYAf4zOLP3BwipgDIZHZfr8bfNnzBQVUT8vrwDs.b-AUUxxpkBAcRRwo8Y162_CQkzgSKeDvTUb115zS9UQ
Creating 
D:\MDaemon\WorldClient\HTML\.well-known\Acme-challenge\HR3pgYAf4zOLP3BwipgDIZHZfr8bfNnzBQVUT8vrwDs
 for dns:imap.richtex.co.id.
Submitting the ACME challenge for dns:imap.richtex.co.id for verification.
Selecting the http-01 challenge and getting challenge data for 
dns:mail.richtex.co.id.
The challenge status URL is 
https://acme-v02.api.letsencrypt.org/acme/chall-v3/137694941196/WSX1hg.
The challenge identifier is dns:mail.richtex.co.id.
The URL to verify the challenge is 
mail.richtex.co.id/.well-known/acme-challenge/Ihbq9Qu8zsnImpZT44m07DwpxYJz0YBT17Ni9YR7n_g.
The Challenge file name for dns:mail.richtex.co.id is 
Ihbq9Qu8zsnImpZT44m07DwpxYJz0YBT17Ni9YR7n_g
The Challenge Content for dns:mail.richtex.co.id is 
Ihbq9Qu8zsnImpZT44m07DwpxYJz0YBT17Ni9YR7n_g.b-AUUxxpkBAcRRwo8Y162_CQkzgSKeDvTUb115zS9UQ
Creating 
D:\MDaemon\WorldClient\HTML\.well-known\Acme-challenge\Ihbq9Qu8zsnImpZT44m07DwpxYJz0YBT17Ni9YR7n_g
 for dns:mail.richtex.co.id.
Submitting the ACME challenge for dns:mail.richtex.co.id for verification.
Selecting the http-01 challenge and getting challenge data for 
dns:pop3.richtex.co.id.
The challenge status URL is 
https://acme-v02.api.letsencrypt.org/acme/chall-v3/137694941206/8iAZiA.
The challenge identifier is dns:pop3.richtex.co.id.
The URL to verify the challenge is 
pop3.richtex.co.id/.well-known/acme-challenge/GUrwdEEYmpQFjEh_jKWjcJzxUw9ZYFZkL7VAAyjB8rQ.
The Challenge file name for dns:pop3.richtex.co.id is 
GUrwdEEYmpQFjEh_jKWjcJzxUw9ZYFZkL7VAAyjB8rQ
The Challenge Content for dns:pop3.richtex.co.id is 
GUrwdEEYmpQFjEh_jKWjcJzxUw9ZYFZkL7VAAyjB8rQ.b-AUUxxpkBAcRRwo8Y162_CQkzgSKeDvTUb115zS9UQ
Creating 
D:\MDaemon\WorldClient\HTML\.well-known\Acme-challenge\GUrwdEEYmpQFjEh_jKWjcJzxUw9ZYFZkL7VAAyjB8rQ
 for dns:pop3.richtex.co.id.
Submitting the ACME challenge for dns:pop3.richtex.co.id for verification.
Selecting the http-01 challenge and getting challenge data for 
dns:smtp.richtex.co.id.
The challenge status URL is 
https://acme-v02.api.letsencrypt.org/acme/chall-v3/137694941216/Aji6Wg.
The challenge identifier is dns:smtp.richtex.co.id.
The URL to verify the challenge is 
smtp.richtex.co.id/.well-known/acme-challenge/83sC9NWzRAuxb3XMDCxgx5z_DhjpB0YwGRLWFZ7owSA.
The Challenge file name for dns:smtp.richtex.co.id is 
83sC9NWzRAuxb3XMDCxgx5z_DhjpB0YwGRLWFZ7owSA
The Challenge Content for dns:smtp.richtex.co.id is 
83sC9NWzRAuxb3XMDCxgx5z_DhjpB0YwGRLWFZ7owSA.b-AUUxxpkBAcRRwo8Y162_CQkzgSKeDvTUb115zS9UQ
Creating 
D:\MDaemon\WorldClient\HTML\.well-known\Acme-challenge\83sC9NWzRAuxb3XMDCxgx5z_DhjpB0YwGRLWFZ7owSA
 for dns:smtp.richtex.co.id.
Submitting the ACME challenge for dns:smtp.richtex.co.id for verification.
Waiting for the order status to update... 0
Order is ready, getting the certificate key.
Completing order for dns:imap.richtex.co.id dns:mail.richtex.co.id 
dns:pop3.richtex.co.id dns:smtp.richtex.co.id
The Certificate URL is 
https://acme-v02.api.letsencrypt.org/acme/cert/04de2f0cd075148e04f2cce61ac16783b87c
Exporting the certificate.
All done, there's a pfx file at 
D:\MDaemon\PEM\mail.richtex.co.id_Cert_2022_08_637951159907384240.pfx.
The thumbprint of the new certificate is: 
78D1791A0B7CD9C3F797EF54CDAB9A9545D3988E
Importing the certificate.
Setting the certificate hash value in the MDaemon.ini file to 78D1 791A 0B7C 
D9C3 F797 EF54 CDAB 9A95 45D3 988E.
Setting the certificate hash value in the 
D:\MDaemon\WorldClient\WorldClient.ini file to 78D1 791A 0B7C D9C3 F797 EF54 
CDAB 9A95 45D3 988E.
Setting the certificate hash value in the D:\MDaemon\WebAdmin\WebAdmin.ini file 
to 78D1 791A 0B7C D9C3 F797 EF54 CDAB 9A95 45D3 988E.
Stopping MDaemon...
The MDaemon service has stopped.
The MDaemon Remote Administration service has stopped.
Starting MDaemon...
Starting MDaemon Remote Administration.
Cleaning up old files.
Checking for PFX files that begin with mail.richtex.co.id and are older than 
180 days in the D:\MDaemon\PEM\ directory.
Checking for files older than 180 days in the 
D:\MDaemon\WorldClient\HTML\.well-known\Acme-challenge directory.
Checking for certificates that expired more than 30 days ago
The script run is complete.

Terima kasih pak.


--
--[mdaemon-l]----------------------------------------------------------
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke [email protected]
Henti Langgan: Kirim mail ke [email protected]
Versi terakhir: MDaemon 22.0.2, SecurityGateway 8.5.3


Kirim email ke