My Openfire installation has a self-signed certificate and one issued by Let’s Encrypt.
I imported the Let’s Encrypt keys and the relative certificate.
Openfire does not distribute to clients the CA certificate but always with the self-signed one.
Sadly, some versions of Java will seemingly at random pick a certificate from the available certificates in its store. We’ve not yet been able to find a way to properly address this.
For now, please remove the certificates that you do not want to use.
1 Like
Perfect, I removed the self-signed certificate and it’s ok
1 Like