On Thu, Sep 25, 2014 at 03:15:19PM +0100, Mike Cardwell wrote:
> Hi,
>
> Is it possible to use different TLS certificates for different ports?
> I'd like to use one for SMTP on port 25, and a different one for
> submission on ports 587 and 465...
Yes.
main.cf:
submission_tls_cert_file = ...
submission_tls_key_file = ...
master.cf
465 inet n - n - - smtpd
-o smtpd_tls_wrapper_mode=yes
-o smtpd_tls_cert_file=$submission_tls_cert_file
-o smtpd_tls_key_file=$submission_tls_key_file
...
587 inet n - n - - smtpd
-o smtpd_tls_security_level=encrypt
-o smtpd_tls_cert_file=$submission_tls_cert_file
-o smtpd_tls_key_file=$submission_tls_key_file
...
--
Viktor.