Re: StartTLS log issues

2016-05-19 Thread Johannes Eckhardt via Info-cyrus
Ah I see. In fact my clients don't have TLS certificates for authentication ;-) Many thanks for the clarification. Best, Johannes On 19.05.2016 13:59, Ken Murchison via Info-cyrus wrote: This means that the client didn't present a valid TLS certificate to be used for authentication during t

Re: StartTLS log issues

2016-05-19 Thread Ken Murchison via Info-cyrus
This means that the client didn't present a valid TLS certificate to be used for authentication during the TLS exchange. I'm guessing very few clients are configured for TLS auth, so what you're seeing is normal and nothing to be concerned about. On 05/19/2016 02:05 AM, Johannes Eckhardt vi

StartTLS log issues

2016-05-18 Thread Johannes Eckhardt via Info-cyrus
Hi, I'm using cyrus-imap version 2.4.17. StartTLS is configured and working but I often see the following messages in my logfiles: starttls: TLSv1.2 with cipher AES128-SHA256 (128/128 bits new) no authentication starttls: TLSv1.2 with cipher DHE-RSA-AES256-GCM-SHA384 (256/256 bits new) no au