LinuxQuestions.org
Help answer threads with 0 replies.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Software
User Name
Password
Linux - Software This forum is for Software issues.
Having a problem installing a new program? Want to know which application is best for the job? Post your question in this forum.

Notices


Reply
  Search this Thread
Old 06-23-2010, 03:28 PM   #1
kaplan71
Member
 
Registered: Nov 2003
Posts: 809

Rep: Reputation: 39
Configuring tls for a sendmail server


Hi there --

I want to configure tls for our sendmail 8.14.x server so that it will attempt to connect to a remote server using tls, and then fall back to an insecure connection. The sendmail.mc file has the following line:

Code:
dnl DAEMON_OPTIONS(`Port=smtps, Name=TLSMTA, M=s')dnl
Does this configuration already have the server attempt to connect using tls first, and then fall back to an insecure connection? If not, what would the syntax be in order to accomplish this?

Also, what is the best way to check to see how the connection is being made? Thanks.
 
Old 06-25-2010, 04:17 AM   #2
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
Best start at http://www.sendmail.org/m4/starttls.html#allow_con (or 'grep -rie tls_ /usr/share/sendmail-cf/cf/' or wherever else your Sendmail M4 macros live) for directives and information about tls_server, tls_client, and tls_rcpt rulesets. The logs should show any "^.*ruleset=tls_server.*TLS.handshake.failed" messages.
 
Old 06-25-2010, 07:47 AM   #3
kaplan71
Member
 
Registered: Nov 2003
Posts: 809

Original Poster
Rep: Reputation: 39
Hi there --

I ran the grep command, and checked the log files as you suggested in your e-mail. The grep command displayed a series of tls_server, tls_client, and tls_rcpt rulesets.

After that, I checked the maillog file, and did a grep for tls. There were indeed instances of tls handshakes using tls v1 and v3.

The above proves that tls is being used by the server, and it appears that it is the first choice for connection.

Thanks again for the help.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Need a little help configuring sendmail.cf for TLS snorket27 Linux - Server 5 05-06-2010 11:14 PM
Configuring Sendmail to forward to different mail server sweye Linux - Server 1 03-17-2009 12:55 PM
Configuring sendmail on a non-domain server ajatiti Linux - Enterprise 4 12-07-2007 08:57 AM
Configuring sendmail for mail forwarding to server Yalla-One Slackware 16 11-02-2007 06:27 PM
configuring sendmail to forward mails to Domino server mogundepo Linux - General 0 07-07-2006 11:15 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Software

All times are GMT -5. The time now is 12:07 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration