Am 04.02.2013 22:02, schrieb Robert Moskowitz: > The online tester is rather 'dumb' as it does not consider that starttls is > available as well. Of course that > means all of the POP clients are properly configured to use it for sending > mail and thus not expose their identities.
no - if a client is not configured for using STARTTLS it does not mayn clients these days at the FIRST setup check this and try to use a encrypted connection - but there are way too much "plaintext without any encryption"-configs if i could i would tun off port 25 completly and enforce 587 with encyryption - sadly this is not doable if you have hundrets of users with all sorts of clients
signature.asc
Description: OpenPGP digital signature