With the recent heartbleed SSL vulnerability, FastMail have updated their SSL certificates. Here's how to download the certificate and convert it into PEM form.
Find out which certificate you need:
% msmtp -a fastmail --tls-certcheck=off --tls-trust-file= --serverinfo
Download the certificate:
% curl -O https://www.digicert.com/CACerts/DigiCertHighAssuranceCA-3.crt
Convert it into PEM format:
% openssl X509 \
> -inform DER -in DigiCertHighAssuranceCA-3.crt \
> -outform PEM -out DigiCertHighAssuranceCA-3.pem
@huynhtanloc2612 I run the following command to obtain a new TLS fingerprint:
…And I have a
~/.msmtprcfile like this:I have redacted my email address and TLS fingerprint for obvious reasons. You can use the above as an example, but you'll need to change it to suit your own setup.