Skip to main content

Is there an Exim directives configuration explained?

Comments

6 comments

  • cPanelLauren
    That would be a ton of documentation, to narrow it down can you point me in the direction of what you're looking to do specifically?
    0
  • Klymax
    Hi Lauren. Of course. I got this log: 2020-01-10 12:38:10.133 [1419] 1ipwMT-0000Mt-DB <= compras@senderdomain.com H=(compras2) [201.222..]:30589 I=[65.60..]:25 P=esmtpa L- A=dovecot_login:compras@senderdomain.com S=69568 M8S=0 RT=0.723s id=003a01d5c7cb$f5f154e0$e1d3fea0$@senderdomain.com T="correo de prueba" from for juliamorinigo@remotedomain.com 2020-01-10 12:38:10.173 [1422] 1ipwMT-0000Mt-DB Sender identification U=enercp D=senderdomain.com S=compras@senderdomain.com 2020-01-10 12:38:10.173 [1422] 1ipwMT-0000Mt-DB SMTP connection outbound 1578670690 1ipwMT-0000Mt-DB senderdomain.com juliamorinigo@remotedomain.com 2020-01-10 12:38:11.906 [1425] 1ipwMT-0000Mt-DB TLS session: (SSL_connect): error:14077102:SSL routines:SSL23_GET_SERVER_HELLO:unsupported protocol: delivering unencrypted to H=mx-server.remotedomain.com [200.108..] (not in hosts_require_tls) 2020-01-10 12:38:13.307 [1422] 1ipwMT-0000Mt-DB => juliamorinigo@remotedomain.com F= P= R=lookuphost T=remote_smtp S=71049 H=mx-server.remotedomain.com [200.108..]:25 I=[65.60..]50388 L C="250 ok 1578670697 qp 28368" QT=3.898s DT=1.370s 2020-01-10 12:38:13.307 [1422] 1ipwMT-0000Mt-DB Completed QT=3.899s
    And the advice is to set the directive hosts_avoid_tls with the IP(s) of the server that Exim should not try to start a TLS session. In another
    0
  • cPanelLauren
    Hello, There really isn't a configurable setting for this in cPanel/WHM's Exim Configuration Manager. This is occurring because the server does not accept SSL connections. The only real way around this is to allow SSLv3 connections on the server.
    0
  • Klymax
    Hello Lauren. Thank you for your help. I got 2 questions: The server that does not accept SSL connections, is the remote server, right? and Can this be done on a per-domain basis? I mean, allowing SSLv3 for some MX servers. Again, thank you!
    0
  • cPanelLauren
    The server that does not accept SSL connections, is the remote server, right? and

    Correct, and the only way your mail is being sent over an SSLv3 connection is in the instance you're using a mail client which utilizes this encryption method. Typically this is an older Outlook client. You might look at the following threads:
    0
  • Klymax
    Thank you Lauren. I'll check the articles and comeback here to update the thread. Blessings. ~ceci
    0

Please sign in to leave a comment.