Your client warns about the certificate.
WHAT IT MEANS
You connected to mail.yourdomain.com and the certificate presented does not cover that name.
WHY
AutoSSL has not issued for the mail hostname The domain does not yet resolve here The mail record is proxied through Cloudflare, which breaks both the connection and validation
THE PROPER FIX
- If using Cloudflare, set mail records to DNS-only.
- cPanel > SSL/TLS Status. Tick the domain and its mail entries.
- Run AutoSSL.
- Reconnect the client.
THE INTERIM FIX
Use the server hostname from your welcome email as the mail server. That name is covered by the server's own certificate.
WHAT NOT TO DO
Do not permanently accept an invalid certificate or disable verification. That exposes your mailbox password on every connection and hides a real problem.
AFTER A MIGRATION
Mail certificate warnings are common. Run AutoSSL covering mail hostnames as part of your post-migration checks.