Edmund Lodewijks via Postfix-users <[email protected]> wrote:

> I am wanting to monitor whether my mail server is successfully using DANE.
> 
> At first I was confused, as `smtp_tls_loglevel = 1` only showed TLS being 
> verified. E.g.:
> 
>  postfix/smtp[930739]: Verified TLS connection established to 
> mail.sys4.de[2001:1578:400:111::7]:25: TLSv1.2 with cipher 
> ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)

If I am not mistaken "Verified TLS connection" is all that is needed to confirm 
DANE is working.

> However, with `smtp_tls_loglevel = 2` I see:
> 
>  postfix/smtp[931046]: mail.sys4.de[194.126.158.132]:25: Matched DANE EE 
> certificate at depth 0: 3 1 1 
> 236831AEEAB41E7BD10DC14320600B245C791B338121383D5A2916F7EF97B49B

>From my point of view there is no need for that loglevel.

Regards,
Michael
_______________________________________________
Postfix-users mailing list -- [email protected]
To unsubscribe send an email to [email protected]

Reply via email to