This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How can I use SSL/TLS with Perfect Forward Secrecy

How can I enable PFS (Perfect Forward Secrecy) in addition to TLS for Mail Service?


This thread was automatically locked due to age.
Parents
  • Well, twaldorf, I'm sure your German is better than mine [;)], but I read that document as assuming that StartTLS is included in all of the comments about SSL/TLS.

    jlan, does your mail server support PFS?  If not, then I don't think turning on your DNAT will satisfy the authorities.

    Cheers - Bob
    PS I'd be interested in learning the politics of this.  I suspect that several politicians got large (legal, I'm sure) payments from somewhere.  This kind of government overreach occurs all too often.
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Reply
  • Well, twaldorf, I'm sure your German is better than mine [;)], but I read that document as assuming that StartTLS is included in all of the comments about SSL/TLS.

    jlan, does your mail server support PFS?  If not, then I don't think turning on your DNAT will satisfy the authorities.

    Cheers - Bob
    PS I'd be interested in learning the politics of this.  I suspect that several politicians got large (legal, I'm sure) payments from somewhere.  This kind of government overreach occurs all too often.
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Children
No Data