[BlueOnyx:24296] Re: TLS handshake still failing.

Michael Stauber mstauber at blueonyx.it
Mon Sep 14 15:16:59 -05 2020


Hi Gregg,

> No, the smtp.setarnet.aw <http://smtp.setarnet.aw> is the server that is
> not accepting the tls handshake.

Yes. And that server is misconfigured or broken. When talked to on port
25 and being asked if it supports STARTTLS, this server says YES, but
initiating STARTTLS then fails, because there are no SSL certificates
configured on port 25.

I'm asking: If that is not your server, then why do you want to bend
your BlueOnyx out of shape in order to make it "talk" to a broken box
that lies about STARTTLS support?

The webpage on www.setar.aw styles itself as "leader in Technology,
Media, and Telecommunications on Aruba", so they might actually want to
do something to fix their broken MTA. Because pretty much anyone else
trying to email to them will have the same issues - provided they use
any MTA that got released in the last decade or so.

> is there a way to make it check port 25, and then port 587?

No, not really. The "Try_TLS:server.com NO" like you did is the next
best thing.

-- 
With best regards

Michael Stauber



More information about the Blueonyx mailing list