On Sat, 7 Feb 2015 08:40:07 -0500
Jeff Potter <jpotter-cour...@codepuppy.com> wrote:

> 465 has the benefit that the STARTTLS keyword can’t be MITM stripped.

That's kinda the thing: STARTTLS doesn't really make that much sense
any more in a world where we essentially want to deprecate
non-crypto-logins.

Mail settings with "starttls if available" should be considered
dangerous. If they use starttls they need to fixate that and make sure
it can't be randomly removed.

(would be worth having a project checking various mailclients for that)

-- 
Hanno Böck
http://hboeck.de/

mail/jabber: ha...@hboeck.de
GPG: BBB51E42

Attachment: pgpkan5C_z16K.pgp
Description: OpenPGP digital signature

------------------------------------------------------------------------------
Dive into the World of Parallel Programming. The Go Parallel Website,
sponsored by Intel and developed in partnership with Slashdot Media, is your
hub for all things parallel software development, from weekly thought
leadership blogs to news, videos, case studies, tutorials and more. Take a
look and join the conversation now. http://goparallel.sourceforge.net/
_______________________________________________
courier-users mailing list
courier-users@lists.sourceforge.net
Unsubscribe: https://lists.sourceforge.net/lists/listinfo/courier-users

Reply via email to