[pfx] Re: struggling with smtpd_tls_security_level = encrypt - 5.7.0 Must issue a STARTTLS command first

2024-09-08 Thread hostmaster--- via Postfix-users
Interesting approach if i correctly understood what you do: You are running STARTTLS, basically accepting unencrypted connections but with "warn_if_reject reject_plaintext_session" you are rejecting unencrypted sessions once data transfer is about to start? Which is expected to generate the same ou

[pfx] Re: struggling with smtpd_tls_security_level = encrypt - 5.7.0 Must issue a STARTTLS command first

2024-09-08 Thread hostmaster--- via Postfix-users
On Sun, Sep 08, 2024 at 01:36:39AM +0200, hostmaster--- via Postfix-users wrote: >> >> smtp inet n - - - - smtpd >> -o smtpd_tls_security_level=encrypt >I thought you were using postscreen? The postscreen post came from the LinuxM

[pfx] Re: struggling with smtpd_tls_security_level = encrypt - 5.7.0 Must issue a STARTTLS command first

2024-09-07 Thread hostmaster--- via Postfix-users
command first hostmaster--- via Postfix-users: > Hi all > > I'm struggling with smtpd_tls_security_level = encrypt. > > I have a postfix installation/configuration with smtpd_tls_security_level = > may and public (letsencrypt) certificates running nicely since years. > Po

[pfx] Re: struggling with smtpd_tls_security_level = encrypt - 5.7.0 Must issue a STARTTLS command first

2024-09-07 Thread hostmaster--- via Postfix-users
endet: Samstag, 7. September 2024 17:10 An: postfix-users@postfix.org Betreff: [pfx] Re: struggling with smtpd_tls_security_level = encrypt - 5.7.0 Must issue a STARTTLS command first On Sat, Sep 07, 2024 at 03:22:21PM +0200, hostmaster--- via Postfix-users wrote: > So I set smtpd_tls_securi

[pfx] struggling with smtpd_tls_security_level = encrypt - 5.7.0 Must issue a STARTTLS command first

2024-09-07 Thread hostmaster--- via Postfix-users
Hi all I'm struggling with smtpd_tls_security_level = encrypt. I have a postfix installation/configuration with smtpd_tls_security_level = may and public (letsencrypt) certificates running nicely since years. Postfix is offering STARTTLS upon connections from incoming smtp servers which a good pa