[Debian-uk] Setting up Exim4 as an auth relay

Mark Brown broonie at sirena.org.uk
Wed, 16 May 2007 21:27:53 +0100


--2fHTh5uZTiUOsy+g
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

On Wed, May 16, 2007 at 06:40:06AM +0100, Sam Bashton wrote:
> On Wed, May 16, 2007 at 02:15:31AM +0100, Edward Macnaghten wrote:

> > Unfortunately, when I test I get an error....  It is complaining that i=
t=20
> > cannot send via STARTTLS because it cannot find STARTTLS in the EHLO=20
> > response

> The problem is exactly as the error message says - the client didn't
> advertise support for TLS, and your configuration doesn't allow
> authentication over an unencrypted link.

Other way around - the *server* did not say it supported TLS when the
client asked.

> Your two options are to enable TLS on the client (good idea), or set
> the variable AUTH_SERVER_ALLOW_NOTLS_PASSWORDS (bad idea).

There's documentation on how to enable TLS on both client and server
side in section 2.2 of /usr/share/doc/exim4-config/README.Debian.gz on
systems with exim4-config installed.

--=20
"You grabbed my hand and we fell into it, like a daydream - or a fever."

--2fHTh5uZTiUOsy+g
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: Digital signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)

iQCVAwUBRktpMQ2erOLNe+68AQJEaQP/RoQXaC6Z9n653ylGLtbk+G61EDd5kLsb
C5L7bVBsIKwhn2WKvPszuv73faEjrfaJgXf+bTc56tkOCPF5w0pIF+Zb98d7E2IO
EshRf6+FT8hYYusCxutJgspYcH3L2k8Wsg2Cmk5zBqJwQMQrs9O9OeXZFS/fgIa8
F0eL7gCrujY=
=Nlx8
-----END PGP SIGNATURE-----

--2fHTh5uZTiUOsy+g--