Re: [Exim-users-de] TLS in gesplitteter Debian-Config

Top Page
Delete this message
Reply to this message
Author: Andreas Metzler
Date:  
To: exim-users-de
Subject: Re: [Exim-users-de] TLS in gesplitteter Debian-Config
On 2020-01-25 Jutta Wrage via Exim-users-de <exim-users-de-So9TfXB7aA8@???> wrote:
[...]
> Auf der Serverseite starte das ganze mit:


> SNMP connect from [...]
> SMTP protocol error in "STARTTLS" H=CLIENTHOST (mail.example.com) [My_IP] I=[Server_IP]:587 STARTTLS command used when not advertised

[...]
> Für mich ist das en Hinweis, daß auf unserem Server irgend etwas in
> der Configuration fehlt oder falsch ist.


> In der Config des Servers steht unter anderem:


> MAIN_TLS_CERTIFICATE = CONFDIR/exim.crt
> MAIN_TLS_PRIVATEKEY = CONFDIR/exim.key


> unter /etc/exim4/ sind exim.crt und exim.key links auf andere Dateien.

[...]

Aus der vielgeliebten /usr/share/doc/exim4-base/README.Debian.gz
(Version buster):
| 2.2.2. Enabling TLS support for Exim as server
| 
|    You should have created certificates in /etc/exim4/ either by hand or
|    by usage of the exim-gencert (which requires openssl). exim-gencert is
|    shipped in /usr/share/doc/exim4-base/examples/ and takes care of proper
|    access privileges on the private key file.
| 
|    Now, enable TLS by setting the macro MAIN_TLS_ENABLE in a local
|    configuration file as described in Section 2.1.3, "Using Exim
|    Macros to control the configuration".


Ist das von deiner Seite durchgeführt worden?

lg Andreas
--
`What a good friend you are to him, Dr. Maturin. His other friends are
so grateful to you.'
`I sew his ears on from time to time, sure'