--On Monday, November 23, 2015 3:13 AM +0000 Viktor Dukhovni
<postfix-us...@dukhovni.org> wrote:
Setting lmtp_tls_CApath fixed this (although that wasn't necessary in
2.11.4). Sorry for the noise. :)
I am at a loss to explain what lmtp_tls_CApath has to do with this,
most likely you just happened to flush sufficiently old messages.
You're correct. It didn't resolve the issue. ;) It just retried with
plaintext, which I didn't notice. :)
And hm, you're right, it is a different OpenSSL version too (1.0.1p vs
1.0.1m). So it was the change in retry behavior that got me. I'll poke at
my other SSL/TLS settings and see if I can track down why OpenSSL is
unhappy now.
--Quanah
--
Quanah Gibson-Mount
Platform Architect
Zimbra, Inc.
--------------------
Zimbra :: the leader in open source messaging and collaboration