Szerző: Cyborg Dátum: Címzett: exim-users Tárgy: Re: [exim] if you use openssl v3+ with exim
Am 09.12.22 um 18:22 schrieb Viktor Dukhovni via Exim-users: >
> Are there any destination domains or MX hostnames you're willing and
> able to share which exhibit this issue? If this is reproducible also
> with e.g. Postfix and other MTAs, then there's nothing here for Exim
> to do. The remote server does not have an interoperable STARTTLS
> implementation: something is broken on the Internet...
>
Guys, it was just a FYI without the FYI mark. I will add it next time :)
There is nothing exim can do or should do. It's 100% caused by outdated
legacy servers, ignoring the year 2009 CVE.
The issue is reproduceable with openssl s_client directly: