I understand it might help a little bit to require TLS, but without
verficiation that a certificate is valid, TLS requirement is not such
a big win, is it?
I too have a transport that would require TLS for certain sending
domains, but I haven't yet required TLS verification, because it often
breaks.... So there we are...