Thorsten Glaser: > On Wed, 27 Feb 2013, Wietse Venema wrote: > > > Well, how does one migrate **AN OPEN TLS SESSION** from one process > > into the other? I am not aware an OpenSSL API for doing that. > > Then just don?t do that? keep it in the other process. > > (I think OpenSSH does that, though probably not standard TLS.)
I welcome you to propose a design that is as scalable as the rest of Postfix. A centralized process that proxies all TLS sessions for Postfix does not meet that requirement. Wietse