On 15-Aug-07, at 10:08 PM, John Peacock wrote:
The reason for this is that you only need to "Trust forever" the
server-signed
cert once, when you first configure your client to use TLS. After
that, I'm not
aware of any mail clients that even give you any feedback that you
are using a
TLS
Brad Fitzpatrick wrote:
> But postfix/dovecot were only using the .crt and .key, as far as I can
> see. Why does qpsmtpd need the CA file? Isn't Geotrust in clients'
> default CA lists?
It isn't the client, rather it is the server that needs the Geotrust CA in it's
own CA file. OpenSSL on the s