On Sat, Oct 01, 2022 at 09:32:49PM +0000, Eddie Rowe wrote: > > You should have at least an RSA certificate (2048-bit key, not more), and > > only > I do not recall seeing this on the PostFix web site that discusses TLS > settings as I struggle to setup TLS with our existing wildcard certificate. > Can you confirm a 4096-bit certificate will not work?
Who convinced you to use 4096-bit RSA in the first place? Even all those intermediate CA only use 2048-bit anyway. Bastian -- First study the enemy. Seek weakness. -- Romulan Commander, "Balance of Terror", stardate 1709.2