Re: Enforcing TLS by recipient and sender domain

2009-02-12 Thread Wietse Venema
Urban Hillebrand: Hello list, is there a way to enforce TLS dependent on the sender domain? Yes. Use check_sender_access and reject_plaintext_session. Wietse Background: Many customers are using our SMTP infrastructure (opportunistic TLS is active). Now one customer wants to

Re: Enforcing TLS by recipient and sender domain

2009-02-12 Thread Urban Hillebrand
On Thu, Feb 12, 2009 at 07:13:19AM -0500, Wietse Venema wrote: Urban Hillebrand: Hello list, is there a way to enforce TLS dependent on the sender domain? Yes. Use check_sender_access and reject_plaintext_session. Thank you Wietse, but isnĀ“t this a smtpD setting? My problem is about

Re: Enforcing TLS by recipient and sender domain

2009-02-12 Thread Wietse Venema
Victor Duchovni: On Thu, Feb 12, 2009 at 08:33:35AM -0500, Wietse Venema wrote: is there a way to enforce TLS dependent on the sender domain? This would have to be simulated with sender_dependent_relayhost_maps. Specify a Postfix instance that encrypts all outbound mail. Postfix