Hi all,

Just wanted to share some insights after using the ECC certificates on a few 
MTAs over the past month. I only did see problems with sending Cisco ESA's, 
which don't have ECC certificate support enabled for outbound traffic in their 
default configuration as it seems:
https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/200169-Configure-ESA-to-prefer-Perfect-Forward.html#anc8

Other sending MTAs did not pop up to my attention so far.

Regards
Norbert

-----Ursprüngliche Nachricht-----
Von: mailop <mailop-boun...@mailop.org> Im Auftrag von Fehlauer, Norbert via 
mailop
Gesendet: Montag, 18. November 2024 23:00
An: mailop@mailop.org
Betreff: Re: [mailop] ECC Certificate for SMTP TLS

Hi,

thanks to all that answered my question. I guess I'm going one MTA with ECC 
only and one with RSA certificate and keep an eye on the logs. Inbound-problems 
should either reflect in the TLS reports or the plaintext delivery should rise 
and outbound delivery should generate errors/NDRs.

Dual cert use seems complex and on the other hand our servers don't support 
that.

Regards
Norbert

Attachment: smime.p7s
Description: S/MIME cryptographic signature

_______________________________________________
mailop mailing list
mailop@mailop.org
https://list.mailop.org/listinfo/mailop

Reply via email to