Zitat von Viktor Dukhovni <postfix-us...@dukhovni.org>:
For bonus points, you could look at "smtpd_tls_askccert" and "smtpd_tls_req_ccert". If either is set to "yes", append ':!aNULL' to the raw openssl cipher list.
could you please tell more about that? Andreas