2 msgRemote backup Postfix server
7 msgchose interface for outgoing mail
2 msgIllegal address syntax ... in MAIL command: <...
1 msgMail Infrastructure and Zertificon
1 msgsasl password
6 msgpostfix TLS (configuration/user) problem
7 msgVirtual Alias Domain
3 msgcopy of email
2 msgDNS Caching?
5 msgUsing mysql for mynetworks
5 msgBlocking e-mail from a domain, to a particular ...
5 msgprevent open relay
15 msgcannot get mail from outside to my smtp server
6 msgError connecting Postfix to LDAP

Config ok for TLS/SASL/Client Cert via port 587?
\ Patrick (12 Mar 2008)
. \ Victor Duchovni (12 Mar 2008)
. . \ Patrick (12 Mar 2008)
. . . \ Victor Duchovni (12 Mar 2008)
. . . . \ Patrick (13 Mar 2008)

7 msgmail flow architecture
3 msgvirtual forward + deliver
1 msgRe: RESOLVED: Using Canonical Maps as an Overri...
14 msgdual mail server
3 msghow to specify different outgoing IP
Subject:Config ok for TLS/SASL/Client Cert via port 587?
Group:Postfix-users
From:Patrick
Date:12 Mar 2008


 
Hi all,

I would like to setup port 587 with TLS/SASL and client certificates so
I can relay email with Evolution from my laptop when I'm working remote.
Did some reading and here's what I've come up with so far. I'm using a
self signed CA and clients certs are signed by that self-signed CA.
Is this master.cf config correct?

submission inet n - n - - smtpd
-o smtpd_etrn_restrictions=reject
-o smtpd_tls_CAfile = /etc/postfix/CAcert.pem
-o smtpd_tls_security_level = encrypt
-o smtpd_tls_ask_ccert = yes
-o smtpd_tls_req_ccert = yes
-o smtpd_tls_fingerprint_digest = sha1
-o relay_clientcerts = hash:/etc/postfix/relay_clientcerts
-o permit_tls_clientcerts
-o smtpd_sasl_auth_enable = yes
-o smtpd_client_restrictions = permit_sasl_authenticated, reject

Is this all that's needed or do I have to fiddle with main.cf too?

Thanks for your feedback.

Regards,
Patrick







© 2004-2008 readlist.com