Does anyone remember why we removed EXPERIMENTAL_REQUIRETLS
  commit 9883af7240d3c25b7a8a859c9e8482caacd5f1aa
  Author: Jeremy Harris <jgh146...@wizmail.org>
  Date:   Fri Mar 15 22:01:07 2019 +0000

    Retire EXPERIMENTAL_REQUIRETLS
?

It seems that we implemented a draft version of what became RFC8689,
which would be useful is we (I) implement "SMTP TLS Reporting"
from RFC8460.

Whilst "Require TLS" is not necessary for SMTP TLS Reporting,
the ability to turn *off* TLS could make sending reports of TLS failures
more reliable.

https://author-tools.ietf.org/iddiff?url1=draft-ietf-uta-smtp-require-tls-03&url2=rfc8689&difftype
=--hwdiff

Unless Jeremy removed REQUIRETLS for a stronger reason than "not currently useful", I intend to investigate resurrecting it as an EXPERIMENTAL feature.

I understand that Postfix 3.10 (expected next month) will use
   TLS_Required: no
when sending TLS reports, but obviously there are
dangers in allowing emails to disable TLS.

Thanks,

--
Andrew C. Aitchison                      Kendal, UK
                   and...@aitchison.me.uk

--
## subscription configuration (requires account):
##   https://lists.exim.org/mailman3/postorius/lists/exim-dev.lists.exim.org/
## unsubscribe (doesn't require an account):
##   exim-dev-unsubscr...@lists.exim.org
## Exim details at http://www.exim.org/
## Please use the Wiki with this list - http://wiki.exim.org/

Reply via email to