On 12/3/23 08:48, jeremy ardley wrote:


Received: from edge.bronzemail.com (2403-5800-c000-1b7-f3d4-d970-ca28-bf4f.ip6.aussiebb.net [IPv6:2403:5800:c000:1b7:f3d4:d970:ca28:bf4f])
    (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits)
     key-exchange X25519 server-signature RSA-PSS (2048 bits)
     client-signature RSA-PSS (2048 bits))
    (Client CN "edge.bronzemail.com", Issuer "R3" (not verified))
    by mail.bronzemail.com (Postfix) with ESMTPS id 48D60860222
    for <jer...@ardley.org>; Sun, 12 Mar 2023 08:41:44 +0800 (AWST)


Jeremy

I have found that correcting my main.cf to use the correct directory and ca bundle improves things

smtpd_tls_CAfile = /etc/ssl/certs/ca-certificates.crt
smtp_tls_CAfile = /etc/ssl/certs/ca-certificates.crt

Received: from edge.bronzemail.com 
(2403-5800-c000-1b7-f3d4-d970-ca28-bf4f.ip6.aussiebb.net 
[IPv6:2403:5800:c000:1b7:f3d4:d970:ca28:bf4f])
        (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits)
         key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest 
SHA256
         client-signature RSA-PSS (2048 bits) client-digest SHA256)
        (Client CN "edge.bronzemail.com", Issuer "R3" (verified OK))
        by mail.bronzemail.com (Postfix) with ESMTPS id A883C860225
        for <jer...@ardley.org>; Sun, 12 Mar 2023 12:25:12 +0800 (AWST)
Received: from mail-pg1-f175.google.com (mail-pg1-f175.google.com 
[209.85.215.175])
        (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits)
         key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest 
SHA256
         client-signature RSA-PSS (2048 bits) client-digest SHA256)
        (Client CN "smtp.gmail.com", Issuer "GTS CA 1D4" (verified OK))
        by edge.bronzemail.com (Postfix) with ESMTPS id 70CF54037F
        for <jer...@ardley.org>; Sun, 12 Mar 2023 12:25:11 +0800 (AWST)


--
Jeremy
(Lists)

Reply via email to