On 03.08.20 15:25, Asai wrote:
We've had some trouble over the years with iOS clients not being able to connect to our Postfix server until a reboot of the mobile client takes place.

In trying to upstep our general security, we're trying to implement some of the recommendations on this list: https://access.redhat.com/articles/1468593

It seems like the bulk of this is in raising the encryption on SMTP delivery.

One question I have is, if we implement some of these settings like, tls_auth_only, or tls_mandatory_protocls to exclude SSLv2 and SSLv3 will this break iOS (or any other) mobile operability?

Or, does anyone have any better general guidelines for hardening Postfix?

to allow clients you should enable ports submission (587) and submissions
(465) in master.cf.
--
Matus UHLAR - fantomas, uh...@fantomas.sk ; http://www.fantomas.sk/
Warning: I wish NOT to receive e-mail advertising to this address.
Varovanie: na tuto adresu chcem NEDOSTAVAT akukolvek reklamnu postu.
(R)etry, (A)bort, (C)ancer

Reply via email to