Manuel Schneider writes:
So what does define the STARTTLS protocol on esmtpd a) TLS_PROTOCOL in esmtpd or b) TLS_STARTTLS_PROTOCOL in esmtpd-ssl?
One is for esmtp over ssl (port 465), then other one is for STARTTLS. For all practical purposes, they should all be the same, now.
Yes, I am using OpenSSL. What I should have mentioned: As I want to use SSL3 and TLS only, I set all TLS_PROTOCOL settings to TLS1. * with TLS, all is fine * with SSL2 there is a simple error (as expected) But with SSL3 it give an error that it's not available (as with SSL2), instead it tries to negotiate a cipher and then fails. That is what I don't understand. The same ciphers work with SSL3 on apache fine.
I believe that's an oddity in the way OpenSSL names its protocols. Try specifying SSL23.
pgp3KXGB1XSgZ.pgp
Description: PGP signature
------------------------------------------------------------------------------ October Webinars: Code for Performance Free Intel webinars can help you accelerate application performance. Explore tips for MPI, OpenMP, advanced profiling, and more. Get the most from the latest Intel processors and coprocessors. See abstracts and register > http://pubads.g.doubleclick.net/gampad/clk?id=60134071&iu=/4140/ostg.clktrk
_______________________________________________ courier-users mailing list courier-users@lists.sourceforge.net Unsubscribe: https://lists.sourceforge.net/lists/listinfo/courier-users