svarshavchik / courier

Courier Mail Server
http://www.courier-mta.org
72 stars 12 forks source link

Issue reported by internet.nl: Client-initiated renegotiation #23

Closed andrejpodzimek closed 3 years ago

andrejpodzimek commented 4 years ago

There doesn't seem to be a way to disable client-initiated renegotiation in courier-mta configs.

image

Here's the link from the screenshot

svarshavchik commented 4 years ago

Feel free to investigate the required new features for both GnuTLS and OpenSSL, and submit a pull request. But, by itself, some issue claimed by some random website on the Internet, that, TMK, nobody else ever heard of, carries very little weight.

andrejpodzimek commented 3 years ago

My server with the pull request above (svarshavchik/courier-libs#19) scores "all green" on internet.nl (after I set TLS_PROTOCOL=TLSv1.2++).

Just for the record, it sounds rather unfair to call this page some random website on the Internet; I think its reputation has grown way past that over the years.

svarshavchik commented 3 years ago

Merged