OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: TLS Hub

From: Alex Satrapa (alex.satrapaapf.edu.au)
Date: Thu Dec 15 2005 - 21:17:38 CST


On 16 Dec 2005, at 13:47, Victor Duchovni wrote:

> One is still stuck with managing the restricted IP addresses, and is
> still only able to stop unecrypted sessions at MAIL FROM.

I might be missing something, but doesn't the second line mean that
connections that aren't started with TLS will be rejected? That is, am
I mistaken in understanding that any "EHLO" (and all subsequent
commands or data) will be sent over an encrypted socket due to the
reject_non_tls_client rule?

Alex