[Mimedefang] Skipping SA on TLSMTA connections?

Steffen Kaiser skmimedefang at smail.inf.fh-bonn-rhein-sieg.de
Fri Nov 24 03:32:32 EST 2006


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Thu, 23 Nov 2006, John Rudd wrote:

> Philip Prindeville wrote:
>
>> dnl # The following causes sendmail to additionally listen to port 465, but
>> dnl # starting immediately in TLS mode upon connecting. Port 25 or 587 
>> followed
>> dnl # by STARTTLS is preferred, but roaming clients using Outlook Express 
>> can't
>> dnl # do STARTTLS on ports other than 25. Mozilla Mail can ONLY use 
>> STARTTLS
>> dnl # and doesn't support the deprecated smtps; Evolution <1.1.1 uses smtps
>> dnl # when SSL is enabled-- STARTTLS support is available in version 1.1.1.
>> dnl #
>> dnl # For this to work your OpenSSL certificates must be configured.
>> dnl #
>> dnl DAEMON_OPTIONS(`Port=smtps, Name=TLSMTA, M=s')dnl
>> dnl #
>
>
> That's kind of funny.  "starting immediately in TLS mode" is not "TLS".  It's 
> SSL.  They should have named that "SSLMTA" not "TLSMTA".
>
> But that's just me being picky.
>
> I wouldn't dnl it.  I might change the Name, but you don't really have to 
> disable it.

Last time I tried, sentmail did not recognize a SSL connection, I had to 
use stunnel to wrap the connection. Insofar, it makes no sense.

Bye,

- -- 
Steffen Kaiser
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (GNU/Linux)

iQEVAwUBRWauIegJIbZtwg6XAQIyfgf/a98PaNSx5Y3RX4Yht3d4t8RqUmGjjeh/
UtToK/tsWnI5e0gaB2nBFQANTaY3wS4NBREala1NM74I/5+Sj1/+AgWB2HliTag5
j8ZGBcdpgbM1lUvu7S/SaKgY5oGvr/yW3lCG9uR+D0kuq5O2pgyy7UjuOy8I6kIG
5f9jpuJv1UxQai1xn2ZTd2RoacoPMJMC/5ezDr9lzYPJRwlSExSPY/sh+gOW5oHO
yLlpX2C+GHEi7Wc0jyENGmw81i4BsdCZ0hGQIEW3ALQMpY97+pwL21hnu3H6H4uo
8GeWZ8H7f2kSbvNzYIoXy006LEGcyoC7mBiVOlSxycHUK0z+k9SIyg==
=pPzv
-----END PGP SIGNATURE-----



More information about the MIMEDefang mailing list