On 14/12/2018 16:18, Torsten Tributh via Exim-users wrote: > I tested under Debian Buster (actual testing version)
> with openssl. After the installation I lost the possibility to serve TLS
> to TLS1.0 and TLS1.1 Clients.
>
> Debian buster runs with openssl 1.1.1 and a new TLS security setting.
>
> In /etc/ssl/openssl.cnf we find
> > I am not right sure where would be the best place to add this setting.
Possibly the main-config option openssl_options?
The docs list possibilities including
no_tlsv1
no_tlsv1_1