Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG 18.5.2 howto Skip TLS negotiation and verify?

Hi,

i need to Skip TLS  negotiation for a email adress/domain.

I already tried to add a FQDN-Host Entry like smtp.recipient.de
and the IP-Host with the corresponding MX IP-Adress here.

It´s still not working.

What would be the correct setup? 

All i get in smtp log is this entry

smtpd_main.log:2022-02-21 17:44:10.521 [32195] IZcrpP-I22JEJ-fM ** support@domain.de F=<sender@sender-domain.de> P=<jsender@sender-domain.de> R=default_mx_router T=remote_smtp: all hosts for 'recipient.de' have been failing for a long time (and retry time not reached) DT=0.000s
XGS2100_RL01_SFOS 18.5.2 MR-2-Build380# R=default_mx_router T=remote_smtp: all hosts for 'recipient.de' have been failing for a long time (and retry time not reached) DT=0.000s

or sometime this

smtpd_main.log:2022-02-16 16:35:01.320 [22759] vvGCp1-iNfUqI-cA == support@recipient.de R=default_mx_router T=remote_smtp defer (-37) H=smtp.recipient.de [217.69.67.179]:25 DT=0.081s: TLS session: (SSL_connect): error:14077102:SSL routines:SSL23_GET_SERVER_HELLO:unsupported protocol

with openssl i can verify that the recipient mail server only allowas TLSv1



This thread was automatically locked due to age.
Parents Reply Children
No Data