Greetings, A. Schulze!

>> So yes, you can't have wrapper mode for just the fallback relay.


> Hello,

> I had a similar problem some time ago and also found what you sumarize now.

> I'm still using 587+STARTTLS but that "break" our `more general rule`  
> to prefer implicit TLS over STARTTLS

> So, at least I would now announce that it would be nice to have  
> something like this:

> master.cf
>    smtp      unix  -       -       n       -       -       smtp
>      -o smtp_fallback_relay=[relayhost.example]:465
>      # not yet existing option :-)
>      -o smtp_fallback_relay_wrappermode=on

I think, a more transparent solution would be to extend influence of
preferences set in smtp_tls_policy_maps to the wrappermode setting, or have a
new dedicated flag in this file to the same meaning.

As it is right now, the smtp_tls_wrappermode setting is more a nuisance than a
solution to any problem, and should be either removed or lowered in its
necessity.

P.S.
Stunnel works like a charm.


-- 
With best regards,
Andrey Repin
Thursday, November 29, 2018 20:12:04

Sorry for my terrible english...

Reply via email to