Hi Wietse,

  Thanks for confirming — that answers the data_directory question clearly,
  appreciate it we'll build the rollout around that rather than trying
  to relocate it.

  Circling back to the main question from the original message, since I
  don't think it got addressed yet: has AWS-LC come up before as an
  alternative TLS backend for Postfix, the way HAProxy supports building
  against it? We measured a reproducible ~7-8x slower STARTTLS handshake
  under OpenSSL 3.5.7 vs OpenSSL 1.0.2k on otherwise identical hosts/config
  (numbers in the original message below), with the gap accelerating further
  under concurrent load. Mainly curious whether this is a known/discussed
  tradeoff of the 3.x provider architecture, or whether it's specific to our
  setup somehow.

Thanks again,
Rajesh Mishra
_______________________________________________
Postfix-users mailing list -- [email protected]
To unsubscribe send an email to [email protected]

Reply via email to