pki dhparams

2017-01-30 Thread opensmtpd
Hello, was there any special reason to remove the pki parameter dhparams? On my systems I try to create the dhfile.pem by myselve and now I can't use it any more on opensmtpd. cheers wof -- You received this mail because you are subscribed to misc@opensmtpd.org To unsubscribe, send a mail to:

Re: OpenSmtpd not RFC compliant ?

2017-01-30 Thread Mik J
Thank you Gilles for this clarification > Le Lundi 30 janvier 2017 9h35, Gilles Chehade a écrit : > > On Sun, Jan 29, 2017 at 08:12:21PM +, Mik J wrote: >> Hello Gilles, >> Thank you for your answer. >> For the first point I have this ruletable domains

Re: tls-require not working as expected

2017-01-30 Thread Jason Mann
Here it is: --- smtpd.conf --- ca mail.mydomain.net certificate "/usr/local/etc/letsencrypt/archive/ mydomain.net/chain1.pem" pki mail.mydomain.net certificate "/usr/local/etc/letsencrypt/archive/ mydomain.net/cert1.pem" pki mail.mydomain.net key "/usr/local/etc/letsencrypt/archive/

Re: tls-require not working as expected

2017-01-30 Thread Gilles Chehade
On Fri, Jan 27, 2017 at 02:41:47PM +, Jason Mann wrote: > Hello list. > > I'm trying to configure OpenSMTPD 5.9.2 on a FreeBSD server but I'm seeing > anomalous behaviour with one of my listen directives. > > The directive in question is: > > listen on egress tls-require hostname

Re: OpenSmtpd not RFC compliant ?

2017-01-30 Thread Gilles Chehade
On Sun, Jan 29, 2017 at 08:12:21PM +, Mik J wrote: > Hello Gilles, > Thank you for your answer. > For the first point I have this ruletable domains file:/etc/mail/domains > table users file:/etc/mail/users > accept tagged CLAM_IN for domain virtual deliver to maildir >