On Sat, Jan 14, 2012 at 12:03:01AM +0100, Patrick Ben Koetter wrote: > > And if I used: smtpd_use_tls = yes and did not use certificate, then they > > password will be sent encrypted or not? > > This forces TLS on all clients. You must not do it on a publicly available MX > according to RFCs.
No, "smtpd_use_tls = yes" is the obsolete way to *enable* server-side TLS, it does not enforce TLS. The non-obsolete way (Postfix 2.3 and later) is to set "smtpd_tls_security_level = may". -- Viktor.