republican-creole
Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Selected ISP Support » Speakeasy » SMTP servers
Search Topic:
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
AuthorAll Replies


nixen
Rockin' the Boxen
Premium
join:2002-10-04
Alexandria, VA
·Cox HSI
·Speakeasy

reply to King P
Re: SMTP servers

said by King P See Profile :

My mail server only allows outgoing connections from my LAN,
Euw, why would you limit your SMTP server that way?? Just use SSL-encrypted SMTP client authentication. That way, you can relay from anywhere (you'll want to do it on a port other than 25 - 587 and 465 are typical - so that, if you're staying at a location that redirects port 25 to their own servers you don't get boned). It's pretty trivial to set up and will avoid the reliance on SE's servers.
--
Everyday, thousands of new cars are delivered to their new owners with poorly-selected radio station presets.


KoolMoe
Aw Man
Premium
join:2001-02-14
Annapolis, MD
clubs:
·Verizon FIOS
·Speakeasy

Does 'SSL-encrypted' SMTP authentication require an SSL certificate? If so, those can be pretty expensive. I use 'TLS if available' and my home-run SMTP server without any problem...
KM
--
Don't Lie - Be Kind - Realize your Potential


nixen
Rockin' the Boxen
Premium
join:2002-10-04
Alexandria, VA
·Cox HSI
·Speakeasy

said by KoolMoe See Profile :

Does 'SSL-encrypted' SMTP authentication require an SSL certificate? If so, those can be pretty expensive. I use 'TLS if available' and my home-run SMTP server without any problem...
KM
If all you're looking to do is encrypt your session, you can use self-signed certificates. Those are free. All you gotta do is generate one. There are dozens of tutorials on how to do so.

If, however, you want MTA-to-MTA traffic to be verifiable, then each MTA has to either have a verified copy of every certificate presented or the sending and receiving MTAs need to have their certificates from a common authority that both recognize as being valid. The "common authority" certificates are the one that are expensive.

You don't, however, need verification to perform encryption. So, use self-signed certificates and save yourself a non-trivial chunk of change.
--
Everyday, thousands of new cars are delivered to their new owners with poorly-selected radio station presets.


nixen
Rockin' the Boxen
Premium
join:2002-10-04
Alexandria, VA
·Cox HSI
·Speakeasy

reply to KoolMoe
said by KoolMoe See Profile :

Does 'SSL-encrypted' SMTP authentication require an SSL certificate? If so, those can be pretty expensive. I use 'TLS if available' and my home-run SMTP server without any problem...
KM
As a "p.s.": TLS uses SSL certificates. If you've not installed an SSL certificate - commercial or self-signed - into your home-run SMTP server, you aren't encrypting your sessions. In other words, every time you send an email through your MTA, you're sending your login ID and password over the wire in the clear.

Try changing from "TLS if available" to "TLS". If that fails, your MTA doesn't offer TLS and your chattering in the clear.
--
Everyday, thousands of new cars are delivered to their new owners with poorly-selected radio station presets.
Forums » Selected ISP Support » Speakeasy


Tuesday, 02-Dec 20:27:07 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 9 years online! © 1999-2008 dslreports.com.
page compression OFF
Most commented news this week
· [111] AT&T Metered Billing Trial Hits Second Market
· [85] UDP BitTorrent Will Destroy The Interwebs!
· [67] EFF Challenges Telecom Immunity
· [60] Comcast Tries To Slow Verizon's Philly Entry
· [36] Cablevision Bumps HD Count To 68
· [32] Verizon Tops Consumer Reports Wireless Satisfaction Ratings
· [27] Mega-ISPs, Consumer Advocates Demand Broadband Plan
· [26] Hawaii Telecom Files For Bankruptcy
· [26] T-Mobile Invisible Caps Return
· [26] Comcast To Offer Bandwidth Use Tracker In January
Most people now reading
· [Rant] Bestbuy receipt checker [Rants, Raves, & Praise]
· Is this a good thing for the net? [news,99366]
· Coalition Government Possible? [TekSavvy]
· It's official ... Macs need anti-virus software [Security]
· [WotLK] Starting the Rep Grind [World of Warcraft]
· Level 80 PVP gear info? [World of Warcraft]
· Notice, new uTorrent Alpha may be able to evade throttling [TekSavvy]
· New massive botnet being built with latest Windows exploit [Security]
· [WotLK] PVP gear at 80 [World of Warcraft]