[Mac_crypto] postfix TLS on OS X?
Lucky Green
shamrock@cypherpunks.to
Sun, 28 Jul 2002 19:04:35 -0700
Vinnie wrote:
> At 6:18 PM -0700 7/28/02, Lucky Green wrote:
> >I am looking for pointers to set up postfix with the postfix TLS
> >patches on OS X. The postfix site, the postfix_TLS site, and Google
> >have been unhelpful.
>
> see for info on ssl...
> http://www.afp548.com/Articles/security/stunne> l.html
I am familiar with stunnel, but what I am looking for is how to get
postfix TLS to work with postfix under OS X. While many SSL-enabled
applications simply utilize an SSL-wrapped variant of the protocol on a
different port, SMTP offers an explicit command to start TLS that has to
be supported by the MTA. The only MUA's that used an SSL wrapper are
very old versions of MS Outlook Express that you positively wouldn't
want to connect to your MTA since such old copies of Outlook Express are
in all likelihood riddled with worms and viruses.
SMTP is one of the few protocols for which an SSL-wrapper, such as
stunnel, will not offer interoperability with the deployed security
infrastructure.
Sooo, who knows how to make postfix, postfix TLS, and Cyrus-SASL work on
OS X?
Thanks,
--Lucky Green <shamrock@cypherpunks.to>
STARTTLS in your mailer prevents snooping and government
mandated cleartext retention. If you don't know how to
enable STARTTLS, email me for details.