On Tue, 3 Feb 2026 11:49:35 +1100
Viktor Dukhovni via Postfix-users <[email protected]> wrote:
[snip]
>
> The security levels are:
>
[snip]
>
> > SMTP TLS Policy Diagnostics
> > ---------------------------
[snip]
>
> I'll leave it to Wietse to comment on these.
>
I must be stating my goals poorly. I'll try again.
I don’t actually care what the TLS levels are, nor what the policies
mean. I’m not interpreting them or acting on them—I’m simply
reporting what is observed in the logs.
So the question I’m trying to answer is this:
What is a reasonable way to report what is seen in the logs, in a
way that is useful and is faithful to what Postfix actually emits?
What I’m currently inclined to do is something like:
SMTP TLS Tokens Observed
------------------------
nn level
nn policy
nn policy
nn policy
...
nn level
nn policy
nn policy
nn policy
...
...
That is: report how many times each level token is seen, and under
each level, how many times each policy token is seen in conjunction
with that level—without assigning semantics beyond what the log line
itself provides.
Does that seem like a reasonable and useful presentation of the data?
Regards,
Jim
--
Note: My mail server employs *very* aggressive anti-spam
filtering. If you reply to this email and your email is
rejected, please accept my apologies and let me know via my
web form at <http://jimsun.LinxNet.com/contact/scform.php>.
_______________________________________________
Postfix-users mailing list -- [email protected]
To unsubscribe send an email to [email protected]