On Thu, Jul 19, 2018 at 11:15:34PM -0700, dln wrote: > The advice to use the MX record to 'redirect' email for client-domain.net to > mail.server.com (for example) will work happily. > > However (referring to the OP's use case), won't the client (say a > Thunderbird user) be presented with the LE certificate for server.com and > not one from his own "client-domain"? > > Such an appearance may cause confusion/distrust? (and perhaps it should!) > > Your thoughts? =dn
In my not so copious spare time, I'm working on server-side SNI support for Postfix. -- Viktor.