OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Re: [Semi-OT] blocked port 465, anywhere?

From: Victor Duchovni (Victor.DuchovniMorganStanley.com)
Date: Thu Sep 20 2007 - 15:27:26 CDT


On Thu, Sep 20, 2007 at 10:22:57PM +0200, Frank Gruellich wrote:

> To provide our mail service to these networks we thought about doing
> some ugly VPN tricks, we thought about more ugly web mailers... but I
> would like the much simpler way to accept SMTP via SSL at 465 in the
> hope, that neither open servers nor infected boxes offer encrypted spam
> relay.

465 is the obsolete SSL wrapper mode supported by older Outlook clients.
The standard submission service is port 587 with STARTTLS.

> So what's your experience, is this a port that is treated same
> as port 25 or is there in general a better chance for this?

Use 587, but offer 465 to ancient clients can't to STARTTLS on 587.

--
        Viktor.

Disclaimer: off-list followups get on-list replies or get ignored.
Please do not ignore the "Reply-To" header.

To unsubscribe from the postfix-users list, visit
http://www.postfix.org/lists.html or click the link below:
<mailto:majordomopostfix.org?body=unsubscribe%20postfix-users>

If my response solves your problem, the best way to thank me is to not
send an "it worked, thanks" follow-up. If you must respond, please put
"It worked, thanks" in the "Subject" so I can delete these quickly.