Re: Question about CA’s for the smtp client

2017-12-11 Thread Viktor Dukhovni
> On Dec 11, 2017, at 8:55 PM, J Doe wrote: > >> The recommended set of trusted CAs for the Postfix SMTP client is >> *empty*. TLS in SMTP is opportunistic, and email sent whether or >> not the peer appears to be authenticated. So any trusted CAs you >> might

Re: Question about CA’s for the smtp client

2017-12-11 Thread J Doe
Hi Victor, > On Dec 11, 2017, at 6:13 PM, Viktor Dukhovni > wrote: > >> On Dec 11, 2017, at 5:40 PM, J Doe wrote: >> >> I have a question regarding specifying where the list of trusted CA’s are in >> regards to the smtp client. > > The

Re: Question about CA’s for the smtp client

2017-12-11 Thread Viktor Dukhovni
> On Dec 11, 2017, at 5:40 PM, J Doe wrote: > > I have a question regarding specifying where the list of trusted CA’s are in > regards to the smtp client. The recommended set of trusted CAs for the Postfix SMTP client is *empty*. TLS in SMTP is opportunistic, and

Question about CA’s for the smtp client

2017-12-11 Thread J Doe
Hi, I have a question regarding specifying where the list of trusted CA’s are in regards to the smtp client. In man 5 postconf, I can see there are two configuration parameters regarding this: smtp_tls_CAfile smtp_tls_CApath The documentation (as I understand it), notes that: 1.