fighting for truth, justice, and a kick-butt lotus notes experience.

Announcing - Lets Encrypt for Domino v2.2 - Just Do SSL

 25 September 2019 12:27:51
Today we are pleased to announce the new version 2.2.0 of midpoints Let's Encrypt 4 Domino aka LE4D

Image:Announcing - Lets Encrypt for Domino v2.2 - Just Do SSL
LE4D 2.2.0 uses the ACME v2 protocol, based on Java 8, and is supported on Domino 10 and Domino 9.0.1 FP8+ on Windows & Linux.

What's new in LE4D 2.2.0

This versionscontains an updated LetsEncrypt agent.

Let’s Encrypt has introduced a change to its API that requires an update on our side. You must upgrade to v2.2.0 until November 1, 2019 to keep LE4D working.

Upgrade Instruction

-        Request the new version here:
              We are sending out the new version by mail. Please, check your spam folder, if you don't receive it within 15 minutes after sending the request.

-        Sign the new downloaded Template

-        Upgrade the database design of your existing LE4D database

-        Open the database and your existing settings documents once and save them

If you have any feedback or suggestion, pls. let us know.

Let' Encrypt !


1s4i  15.12.2019 14:35:24  Announcing - Lets Encrypt for Domino v2.2 - Just Do SSL

Guten Tag!

Das Erstellen eines Lets Encrypt - Zertifikates hat sehr gut funktioniert. Vielen Dank für das Programm und die gute Anleitung!

Jetzt gibt es allerdings bei einem Renewal-Aufruf folgende Fehlermeldung in Domino-Konsole:


AMgr: Start executing agent 'letsencrypt' in 'le4d.nsf'

AMgr: Agent 'letsencrypt' in 'le4d.nsf' encountered error: The Address Book does not contain a cross certificate capable of validating the public key.


Muss man das Cross Certificate manuell in das Adressbuch (names.nsf?) des Domino Servers importieren?

2Detlev Poettgen  16.12.2019 09:21:03  Announcing - Lets Encrypt for Domino v2.2 - Just Do SSL

Ich vermute, das nach einem Update die LE4D Datenbank bzw. das Template nicht mit einer eigenen Notes ID (Admin-User- oder Server-ID) signiert wurde.

3Tony Byrne  04.02.2020 10:44:03  Announcing - Lets Encrypt for Domino v2.2 - Just Do SSL


I'm running 9.0.1FP9 and have just upgraded from v2.0.0 to v2.2.0 and am getting an error. Can you help?

This is using the same configuration document that was working using v2.0.0

2020-02-04 09:38:18 INFO LE4D - ... challenge: /home/notes/domino/html/.well-known/acme-challenge/qS7NoyjWuYVBfl2dTvzhr2UySLcmPF_vIJjDw7AQOM4

2020-02-04 09:39:25 INFO LE4D - auth.getStatus(): 'PENDING'

2020-02-04 09:39:25 INFO LE4D - Downloading certificate

2020-02-04 09:39:25 ERROR LE4D - org.shredzone.acme4j.exception.AcmeServerException: Order's status ("invalid") is not acceptable for finalization

2020-02-04 09:39:25 INFO LE4D - OUPS!! Something went wrong!

2020-02-04 09:39:25 INFO LE4D - midpoints LE4D finished!

4Detlev Poettgen  05.02.2020 15:43:55  Announcing - Lets Encrypt for Domino v2.2 - Just Do SSL

The reason for "Order Status invalid" is explained in our First Steps guide, which is included as an PDF in the download package.

Please, take a look at the last page.

5Jonathan Cohen  21.03.2020 21:45:17  Announcing - Lets Encrypt for Domino v2.2 - Just Do SSL

Hi Detlev,

I am having problems with LE4D v2.2 on a Domino 9.01. PF10 server.

I have tried to renew my cert and keep getting this message ... tried everything and not sure what to do.


2020-03-21 16:34:03 INFO LE4D - Processing configuration document: '6E63205C127A07808525853200565735'.

2020-03-21 16:34:03 INFO LE4D - Using Html directory: domino/html

2020-03-21 16:34:03 INFO LE4D - Running in staging mode

2020-03-21 16:34:03 INFO LE4D - Requesting certificates.

2020-03-21 16:34:03 INFO LE4D - Writing file: 'C:\Program Files\IBM\Lotus\Domino\data\le4d-workdir\6E63205C127A07808525853200565735\user.key'

2020-03-21 16:34:03 INFO LE4D - Session URL: acme://

2020-03-21 16:34:04 INFO LE4D - Writing file: 'C:\Program Files\IBM\Lotus\Domino\data\le4d-workdir\6E63205C127A07808525853200565735\domain.key'

2020-03-21 16:34:05 INFO LE4D - Creating challenge file for domain ''.

2020-03-21 16:34:05 INFO LE4D - ... challenge: C:\Program Files\IBM\Lotus\Domino\data\domino/html\.well-known\acme-challenge\IFK_78o83eTCPU0y0KqKTZyHBum_k6Q-VebDa9_r2i8

2020-03-21 16:35:10 INFO LE4D - auth.getStatus(): 'PENDING'

2020-03-21 16:35:11 INFO LE4D - Creating challenge file for domain ''.

2020-03-21 16:35:11 INFO LE4D - ... challenge: C:\Program Files\IBM\Lotus\Domino\data\domino/html\.well-known\acme-challenge\CzgJj1xG0tFxZy_DNJNfl90qsL_XnW-Yp7NRggZ4Bi8

2020-03-21 16:36:14 INFO LE4D - auth.getStatus(): 'PENDING'

2020-03-21 16:36:14 INFO LE4D - Downloading certificate

2020-03-21 16:36:14 ERROR LE4D - org.shredzone.acme4j.exception.AcmeServerException: Order's status ("invalid") is not acceptable for finalization

2020-03-21 16:36:14 INFO LE4D - OUPS!! Something went wrong!

2020-03-21 16:36:14 INFO LE4D - midpoints LE4D finished!

Any Ideas?? Any help would be greatly appreciated.


Jonathan Cohen

6Roberto  29.09.2021 16:06:18  Announcing - Lets Encrypt for Domino v2.2 - Just Do SSL


when i try to run the agent to get the certificate i get this message

2021-09-29 15:24:12 INFO LE4D - midpoints LE4D (c) 2017 - 2021, V 2.2.0_20190930

2021-09-29 15:24:12 INFO LE4D - Logging events and errors to: 'e:\notes\Data\MIDPOINTS_TECHNICAL_SUPPORT\le4d\le4d.log'

2021-09-29 15:24:12 INFO LE4D - No configuration document found for server: 'cn=ZZZZZ/o=XXXXXXXX'

2021-09-29 15:24:12 INFO LE4D - midpoints LE4D finished!

  • Hinweis zum Datenschutz und Datennutzung:
    Bitte lesen Sie unseren Hinweis zum Datenschutz bevor Sie hier einen Kommentar erstellen.
    Zur Erstellung eines Kommentar werden folgende Daten benötigt:
    - Name
    - Mailadresse
    Der Name kann auch ein Nickname/Pseudonym sein und wird hier auf diesem Blog zu Ihrem Kommentar angezeigt. Die Email-Adresse dient im Fall einer inhaltlichen Unklarheit Ihres Kommentars für persönliche Rückfragen durch mich, Detlev Pöttgen.
    Sowohl Ihr Name als auch Ihre Mailadresse werden nicht für andere Zwecke (Stichwort: Werbung) verwendet und auch nicht an Dritte übermittelt.
    Ihr Kommentar inkl. Ihrer übermittelten Kontaktdaten kann jederzeit auf Ihren Wunsch hin wieder gelöscht werden. Senden Sie in diesem Fall bitte eine Mail an blog(a)poettgen(punkt)eu

  • Note on data protection and data usage:
    Please read our Notes on Data Protection before posting a comment here.
    The following data is required to create a comment:
    - Name
    - Mail address
    The name can also be a nickname/pseudonym and will be displayed here on this blog with your comment. The email address will be used for personal questions by me, Detlev Pöttgen, in the event that the content of your comment is unclear.
    Neither your name nor your e-mail address will be used for any other purposes (like advertising) and will not be passed on to third parties.
    Your comment including your transmitted contact data can be deleted at any time on your request. In this case please send an email to blog(a)poettgen(dot)eu