Re: [exim] Exim + Multi domain SSL + HA Proxy

Startseite
Nachricht löschen
Nachricht beantworten
Autor: Matt Bryant
Datum:  
To: Jeremy Harris
CC: exim-users
Betreff: Re: [exim] Exim + Multi domain SSL + HA Proxy
Dont have an issue with inbound and MX servers ... this is for a shared
outbound client SMTP relay cluster where SMTP Auth is used and clients
connect via a branded DNS name (potentially).

rgds

Matt Bryant
> Jeremy Harris <mailto:jgh@wizmail.org>
> 2 November 2015 at 7:41 PM
>
> Why on earth do something that fragile, when MX use gives perfectly
> good HA for a store-and-forward protocol?
> Matt Bryant <mailto:matt@the-bryants.net>
> 2 November 2015 at 11:09 AM
> All,
>
> For legacy reasons need to support smtps on port 465 and whilst exim
> supports SNI, and indeed have that working atm, am now trying to put
> it behind the HAProxy LB ... which is where things are going pear
> shape.. is this even possible ??? or would I need to terminate SSL on
> haproxy then just proxy on to backend ???
>
> TLS error on connection from [x.x.x.x] (SSL_accept):
> error:140760FC:SSL routines:SSL23_GET_CLIENT_HELLO:unknown protocol
>
> I dont need to route SSL just want everything to go to same server and
> haproxy to forward on the SNI information so that exim can pick up on
> it .. or am i totally off base here ????
>
> rgds
>
> Matt Bryant


--

<https://www.postbox-inc.com/?utm_source=email&utm_medium=siglink&utm_campaign=reach>