# Signing every outgoing mail

**URL:** https://community.ciphermail.com/t/signing-every-outgoing-mail/434
**Category:** Gateway
**Created:** [March 19, 2015, 6:18pm UTC](https://community.ciphermail.com/t/signing-every-outgoing-mail/434 "2015-03-19T18:18:02Z")
**Posts on this page:** 2
**Page:** 1

<div class="post-metadata">

### Author: ![Markus\_Zimmermann](https://avatars.discourse-cdn.com/v4/letter/m/db5fbb/32.png) [@Markus\_Zimmermann](https://community.ciphermail.com/u/Markus_Zimmermann)
#### Post date: [March 19, 2015, 6:18pm UTC](https://community.ciphermail.com/t/signing-every-outgoing-mail/434/1 "2015-03-19T18:18:02Z")

</div>

Hello,

I have a problem with signing my mails.

I created an internal user and imported the encryption and the signing certificate (comodo). The Info field of the certificates contains: "Error building certPath. No issuer certificate for certificate in certification path found."

I followed the steps in the manual,

-set Locality to "internal"

- set encrypt mode to "allow"

- unchecked the "Only sign when encrypt" box

When sending a mail from the specific user to a testuser the mail is not signed.

Does anyone of you know, what the mistake is?

Thank, Markus

Mit freundlichen Grüßen

mareco gmbh & co.kg

Dipl.-Ing.(FH)

Markus Zimmermann

Geschäftsführer der Komplementärin

Rothelebuch 7, 87637 Seeg

Tel. +49 (8364) 984009-0

Fax. +49 (8364) 984009-9

E-Mail. info(a)mareco.biz

Internet. www.mareco.biz

Sitz Seeg, HRA8889 Amtsgericht Kempten

Persönlich haftende Gesellschafterin

CRM Verwaltungs-GmbH

Sitz Seeg, HRB9745 Amtsgericht Kempten

Geschäftsführer Markus Zimmermann

> **···**
>

---

<div class="post-metadata">

### Author: ![martijn](https://dub1.discourse-cdn.com/flex017/user_avatar/community.ciphermail.com/martijn/32/127_2.png) [@martijn](https://community.ciphermail.com/u/martijn)
#### Post date: [March 19, 2015, 6:35pm UTC](https://community.ciphermail.com/t/signing-every-outgoing-mail/434/2 "2015-03-19T18:35:25Z")

</div>

The message "Error building certPath. No issuer certificate for  
certificate in certification path found." means that the certificate  
chain is not valid, i.e., a certificate chain up to a trusted root  
cannot be found. Only if a certificate is trusted, will it be used for  
signing.

There are two options

1. Make sure that chain is valid. You need to import the root  
certificate that issued the certificate into the root store and import  
any intermediate certificate into the certificates store. Since you  
imported the key, the intermediate certs are probably already in the  
certificates store. You need to check whether the root certificate is in  
the root store.

2. If you are unable to import a root or if you only want to trust this  
signing certificate, you can manually trust the signing certificate by  
placing it on the certificate trust list (CTL)

I think option 1 is the best approach since this ensures that if you  
renew the certificate after it is expired it will be automatically trusted.

Kind regards,

Martijn Brinkers

> **···**
>
> On 03/19/2015 07:18 PM, Markus Zimmermann wrote:
> 
> > I have a problem with signing my mails.
> > 
> > I created an internal user and imported the encryption and the  
> > signing certificate (comodo). The Info field of the certificates  
> > contains: "Error building certPath. No issuer certificate for  
> > certificate in certification path found."
> > 
> > I followed the steps in the manual,
> > 
> > -set Locality to "internal"
> > 
> > - set encrypt mode to "allow"
> > 
> > - unchecked the "Only sign when encrypt" box
> > 
> > When sending a mail from the specific user to a testuser the mail is  
> > not signed.
> > 
> > Does anyone of you know, what the mistake is?
> 
> --  
> CipherMail email encryption
> 
> Open source email encryption gateway with support for S/MIME, OpenPGP  
> and PDF messaging.
> 
> > **[CipherMail email encryption and digital signatures](https://www.ciphermail.com)**
> >
> > Easy to use server-side email encryption for automatic encryption and digital signing of email.
> 
> Twitter: [http://twitter.com/CipherMail](http://twitter.com/CipherMail)
