Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 24 Nov 2024 16:05:01 -0500
From:      Panayotis Manganaris <panos.manganaris@gmail.com>
To:        Paul Eskello <paul.eskello@gmail.com>, freebsd-questions@freebsd.org
Subject:   Re: dragonfly mail agent (dma) no tls by default
Message-ID:  <875xocz6ki.fsf@ASCALON.mail-host-address-is-not-set>
In-Reply-To: <CAAtiVbVBO6POVVHYF8tT8cJ=bUF%2BOO3RcBAvvuKPfVvc-PPEKg@mail.gmail.com>
References:  <CAAtiVbVBO6POVVHYF8tT8cJ=bUF%2BOO3RcBAvvuKPfVvc-PPEKg@mail.gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help
Paul Eskello <paul.eskello@gmail.com> writes:

> why is tls (yeah well, starttls) disabled by default?

I reckon this is because the relevant configuration is not entirely standardized.

Many servers offer IMAP+STARTTLS i.e. STARTTLS over IMAP port 143 instead of the traditional IMAP over SSL/TLS (IMAPS) on port 993.

> Isn't that too conservative in soon-to-be 2025?

Regardless of date, an engineer should be as conservative as needed to uphold the principle of least surprise. Sometimes that means admins must assign ports as needed.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?875xocz6ki.fsf>