Comment 2 for bug 1808649

Revision history for this message
Szépe Viktor (szepe.viktor) wrote : Re: [Bug 1808649] Re: TLS_CIPHER_LIST and TLS_PROTOCOL Ignored

Idézem/Quoting Gerald Drouillard <email address hidden>:

> Now that courier is compiled with gnutils instead of openssl the
> only setting in pop3d-ssl or imapd-ssl that will limit the ciphers
> or protocols is the setting TLS_PRIORITY.
> Example: TLS_PRIORITY="SECURE128:+SECURE192:-VERS-ALL:+VERS-TLS1.2"
> You can test pop with:
> nmap --script ssl-enum-ciphers -p 995 localhost
> . /etc/courier/pop3d-ssl
> gnutls-cli --priority="$TLS_PRIORITY" --list

Yes, see
https://github.com/szepeviktor/debian-server-tools/tree/master/mail/courier-check
it is called "Priority Strings"

SZÉPE Viktor, honlap üzemeltetés / Running your application
https://github.com/szepeviktor/debian-server-tools/blob/master/CV.md
--
ügyelet/hotline: +36-20-4242498 <email address hidden> skype: szepe.viktor
Budapest, III. kerület