Looks like no one’s replied in a while. To start the conversation again, simply ask a new question.

Mail Not Remembering to Trust Certificate for SMTP Server

Ever since I updated to macOS Sierra, Mail is not recognizing the certificate for my IMAP-based e-mail account. See attached.


If I click on 'Show Certificate' and then I place a checkmark under 'Always trust "name of certificate" when connecting to "smtp.name of server", and afterwards I clock on 'Continue', everything will work well until I close Mail. Then, when I restart Mail, I have to go through the same cycle again and again. very frustrating.


It also takes 1-2 minutes from the moment I try to send the first e-mail until I get the error about the certificate. several times I thought an e-mail was sent, only to return a few hours later to the computer to discover the error.


What did Apple do that Mail does not remember the 'Always trust...' this certificate option any longer? This never happened to me before, on many previous versions of OS X? Could this annoying issue be fixed?


Note that my IMAP works account perfectly well on my iPad Pro and iPhone 6+.


Thank you.

MacBook Pro with Retina display, macOS Sierra (10.12.1), i7 2.6GHz, 16GB, 1TB SSD

Posted on Nov 3, 2016 4:57 PM

Reply
12 replies
Sort By: 

Jan 28, 2017 10:59 PM in response to Michael9009

I deleted the old certificate (expired) from Keychain and Mail saved the new one, but it is still not working. If I double-click on the certificate I see that the 'Use Custom Settings' option is selected (see the attached screenshot). However, if I change this setting to 'Always Trust', it will not be saved, so when I double-click on the certificate again, the 'Use Custom Setting' is again selected.


What is happening? Please User uploaded filehelp!

Reply

Mar 28, 2017 4:37 PM in response to Michael9009

Fantastic news! It seems that Apple fixed the Mail issue in macOS 10.12.4. 🙂


When I tried to send an e-mail in Mail on macOS 10.12.4, Mail asked again whether to trust the certificate. I selected 'Always Trust' and then, unlike never before, it prompted me for my administrator password. After this, it just works now. I closed and reopened Mail, and even restarted the computer and I've got no more certificate error, and Mail sends messages as it should.


Hopefully they've fixed the other bugs in Mail, like the frequent crashes, as well as in Preview.


Life is good now...

Reply

Jan 28, 2017 10:45 PM in response to ddonile

No, it still does not work. When I open Keychain I can only see a certificate that expired on 26 May 2014. The new certificate that Mail displays would expire on 3 May 2020. But even if I select 'Always Trust' in Mail when accepting the certificate, it does not get copied over to Keychain.


Why is the new certificate not being copied over to Keychain? Anyone, please?

Reply

Feb 2, 2017 4:14 PM in response to rbakelaar

Unfortunately, none of your suggestions worked, but thank you, anyway.


As I mentioned in my post above, if I change the first setting to 'Always Trust', it will not be saved. When I check the 'Get Info' again, the certificate reverts to 'Use Custom Settings'.


What needs to be done such that the system saves and remembers the 'Always Trust' option? Thanks.

Reply

Feb 4, 2017 10:31 AM in response to Michael9009

When I set up Mail for first time remembered was also asked if I trusted the server because it could not be confirmed from within Mail itself - just clicked yes and then finished the setup.


Just looked at the certificate and everything is set as yours - I think when we agree to accept it sets SSL and X.509 to "Always Trust", the top part just highlights it's now a custom setup.


Compare this to another certificate, say, thawte SSL CA - G2 - that has no values set and the top confirms it's using "Using System Default".


If I'm correct and the certificate is set properly then your issue might be another setting within Mail - trying checking under "SMTP Advanced" and see what TSL Certificate" has been set too, mines "None".


ps. Forgot to mention date for my Cert is 29-04-18, so it's still current - can't say why yours does'nt copy across.

Reply

Feb 25, 2017 9:36 AM in response to SiHancox

I wish I knew what was going on with Mail. I tend to think it may be an Apple Mail bug. I double-checked with the e-mail provider and all IMAP/SMTP parameters I am using are correct. Also, everything works perfectly well with the same parameters on my iPhone and iPad, and these never ask me about invalid certificates.


The even more frustrating issue is that Mail keeps crashing on me very, very often, which was not happening before Sierra. Every time Mail stops responding I have to kill it and restart it, and hence go through the same invalid certificate procedure/hassle over and over again.


Thirdly, having several e-mail accounts in Mail, the program seems to be taking the liberty of changing the outgoing server at its own will. Even though I had the correct account selected, e-mails that I sent went out from the wrong addresses. Very embarrassing!


Adding to this the frustration that Preview shows mark-ups in PDF files only randomly - so I was embarrassed when I told a client from work that his PDF document had no mark-ups when it actually had - plus from a tonne of other weird issues in Sierra, and I am beginning to question the stability of macOS and whether perhaps it may be time to switch to other platforms.

Reply

Mail Not Remembering to Trust Certificate for SMTP Server

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.