[pfx] Re: Configuration Settings for TLS 1.2 and 1.3 with No Weak Ciphers

2024-02-29 Thread Scott Hollenbeck via Postfix-users
08:55:04AM -0500, Scott Hollenbeck via Postfix- > users wrote: > > > Would someone please describe the configuration settings needed to > support > > TLS 1.2 and 1.3 with no weak ciphers? Here's what I currently have in my > > configuration files: > > This is n

[pfx] Re: Configuration Settings for TLS 1.2 and 1.3 with No Weak Ciphers

2024-02-28 Thread Scott Hollenbeck via Postfix-users
> -Original Message- > From: Wietse Venema via Postfix-users > Sent: Wednesday, February 28, 2024 3:11 PM > To: Postfix users > Subject: [pfx] Re: Configuration Settings for TLS 1.2 and 1.3 with No Weak > Ciphers > > Scott Hollenbeck via Postfix-users: > >

[pfx] Re: Configuration Settings for TLS 1.2 and 1.3 with No Weak Ciphers

2024-02-28 Thread Scott Hollenbeck via Postfix-users
- > From: Wietse Venema via Postfix-users > Sent: Wednesday, February 28, 2024 2:38 PM > To: Postfix users > Subject: [pfx] Re: Configuration Settings for TLS 1.2 and 1.3 with No Weak > Ciphers > > Scott Hollenbeck via Postfix-users: > > Thanks, here's the outp

[pfx] Re: Configuration Settings for TLS 1.2 and 1.3 with No Weak Ciphers

2024-02-28 Thread Scott Hollenbeck via Postfix-users
users > Subject: [pfx] Re: Configuration Settings for TLS 1.2 and 1.3 with No Weak > Ciphers > > Scott Hollenbeck via Postfix-users: > > Sorry, I should note that this is for postfix 3.6.4. > > > > postconf -H | grep -E 'high|medium' > > Wie

[pfx] Re: Configuration Settings for TLS 1.2 and 1.3 with No Weak Ciphers

2024-02-28 Thread Scott Hollenbeck via Postfix-users
Sorry, I should note that this is for postfix 3.6.4. Scott > -Original Message- > From: Scott Hollenbeck via Postfix-users > Sent: Wednesday, February 28, 2024 8:55 AM > To: postfix-users@postfix.org > Subject: [pfx] Configuration Settings for TLS 1.2 and 1.3 with

[pfx] Configuration Settings for TLS 1.2 and 1.3 with No Weak Ciphers

2024-02-28 Thread Scott Hollenbeck via Postfix-users
Would someone please describe the configuration settings needed to support TLS 1.2 and 1.3 with no weak ciphers? Here's what I currently have in my configuration files: main.cf: smtpd_tls_cert_file=/etc/letsencrypt/live/mysite.net/fullchain.pem smtpd_tls_key_file=/etc/letsencrypt/live/mysite.net/