Hi, if i use verify in /etc/smtpd.conf sometimes I reciveerrors like this:
Nov 25 16:33:04 server smtpd[12808]: smtp-in: New session 95548f7f974b7523
from host example.com [x.x.x.x]
Nov 25 16:33:05 server smtpd[12808]: smtp-in: Started TLS on session
95548f7f974b7523: version=TLSv1/SSLv3,
+cipher=DHE-RSA-AES128-GCM-SHA256, bits=128
Nov 25 16:33:05 server smtpd[12808]: smtp-in: Disconnecting session
95548f7f974b7523: client did not present certificate
Any suggestion to fix this problem?
Thank you!
OpenBSD 5.7-stable
OpenSMTPD 5.4.4
$ cat /etc/mail/smtpd.conf
queue compression
queue encryption key 5fd06dd95d86ebb57144e516b42799cf
table aliases db:/etc/mail/aliases.db
table domains file:/etc/mail/domains
table users file:/etc/mail/users
table blacklist-recipients file:/etc/mail/blacklist-recipients
pki mail.example.it key "/etc/ssl/private/mail.example.it.key"
pki mail.example.it certificate "/etc/ssl/mail.example.it.crt"
max-message-size 50M
listen on egress pki mail.example.it smtps auth hostname example.it
listen on egress pki mail.example.it tls-require verify hostname
example.it mask-source
accept from any \
recipient !<blacklist-recipients> \
for domain <domains> \
virtual <users> \
deliver to maildir "/var/mail/%{user.username}/Inbox"
accept \
recipient !<blacklist-recipients> \
for local alias <aliases> \
deliver to maildir "/var/mail/%{user.username}/Inbox"
listen on lo0 hostname example.it
listen on lo0 port 10028 tag DKIM hostname example.it
accept tagged DKIM \
for any \
relay \
hostname example.it
accept from local \
for any \
relay via smtp://127.0.0.1:10027
[demime 1.01d removed an attachment of type application/pgp-signature which had
a name of signature.asc]