ADH is susceptible to MITM attacks, but I can't seem to turn it off.

I've tried various permutations of

tls_preempt_cipherlist = yes
tls_high_cipherlist  (with !DH and !ADH)
smtpd_tls_mandatory_protocols = !SSLv2, !SSLv3
smtpd_tls_mandatory_ciphers = high

I'm running 2.9.6 on Debian Wheezy.

Any help appreciated. Thanks :)

Reply via email to