lst_ho...@kwsoft.de wrote > Zitat von Michael Ströder <mich...@stroeder.com>: > > > Peter wrote: > >> It's pointless for MX hosts because they don't validate the certificate > >> anyways. > > > > Which has to be changed. > > http://www.postfix.org/TLS_README.html#client_tls_dane
But it needs securely operated DNSSEC. Ciao, Michael.