If you’ve been running ActiveSync on a dedicated subdomain with Horde you’ve probably been relying on Apache Alias directives to get it working. Now mod_php is deprecated, you don’t have that option.
You now have to set the handler for the /usr/share/psa-horde folder in Additional directives for HTTPS for the subdomain in Plesk.
I copied this over from the main webmail conf, the only change I made was to change PHP version to 7.4.
Here’s how I install SSL certificates for Horde and Roundcube bundled with Plesk 12.0.18 to remove chain issues, and keep the certificate in scope of Plesk backups.
Get the file names for the webmail certificate and CA certificate and make a custom horde and roundcube template (paths to follow) adding the following directives.
You can see I have also added ssl_session_cache in there along with HSTS, OCSP, dhparam and ECDH Curve.
Now regenerate the conf files with…
1
/opt/psa/admin/bin/httpdmng--reconfigure-all
Your webmail will now be properly secured and you won’t get any chain issues when testing your site at ssllabs.
Please note CentOS paths are different. The psa folder is located in /usr/local/.
Thanks for reading, I am working on formatting this article better so you can copy and paste directives like previous guides, unfortunately the code tags wouldn’t wrap the above php sections.