On Tue, Jun 11, 2024 at 09:55:56AM +0800, Jeff Peng via Postfix-users wrote:
> Jun 11 01:52:16 tls-mail postfix/smtpd[67409]: warning:
> TLS library problem:error:1417A0C1:SSL routines:
> tls_post_process_client_hello:no shared cipher:
> ../ssl/statem/statem_srvr.c:2283:
> Jun 11 01:52:16 tls-mail postfix/smtpd[67409]: lost connection after
> STARTTLS from unknown[172.210.47.140]
The client IP address is question is assigned to Microsoft, perhaps an
Azure cloud IP (so a probe from someone running a TLS scan), or perhaps
an actual Microsoft outbound MTA. Hard to tell without inspecting their
SPF records.
For maximal compatibility, use an RSA 2048-bit certificate on your end,
and don't overly restrict the choice of ciphers. Defaults are best.
--
Viktor.
_______________________________________________
Postfix-users mailing list -- [email protected]
To unsubscribe send an email to [email protected]