<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
</head>
<body>
<p>Hi,</p>
<p>unfortunately not.</p>
<p>I hardenen cyrus:</p>
<p>Oct 17 14:20:19 mail02 imaps[13990]: inittls: Loading hard-coded
DH parameters<br>
Oct 17 14:20:19 mail02 imaps[13990]: starttls: TLSv1.2 with cipher
ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits reused) no
authentication</p>
<p><br>
</p>
<p>but my server still offers TLSv1 and v1.1 plus weak ciphers.</p>
<p><br>
</p>
<p>Best regards,</p>
<p>David<br>
</p>
<p><br>
</p>
<div class="moz-cite-prefix">Am 16.10.19 um 23:27 schrieb Milan
Petrovic:<br>
</div>
<blockquote type="cite"
cite="mid:CAPGMBaqLTrFPZWD-v=LoVqaadE3B8Oby4C32nUdNccbJGk4Rfg@mail.gmail.com">
<meta http-equiv="content-type" content="text/html; charset=UTF-8">
<div dir="ltr">
<div>As far as my understanding is, guam is just a proxy for
cyrus, so, any details you define in your imapd.conf. Guam as
a proxy should just be able to pass through the connection.</div>
<div><br>
</div>
<div>It's just my understanding, maybe I'm wrong.<br>
</div>
</div>
<br>
<div class="gmail_quote">
<div dir="ltr" class="gmail_attr">On Wed, Oct 16, 2019 at 4:54
PM David Obando <<a href="mailto:david@cryptix.net"
moz-do-not-send="true">david@cryptix.net</a>> wrote:<br>
</div>
<blockquote class="gmail_quote" style="margin:0px 0px 0px
0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex">Hi
all,<br>
<br>
I'm new to the list and about to setup a new kolab system.<br>
<br>
As I'm about to harden all services I got stuck with tweaking
guams tls<br>
settings.<br>
<br>
Is there a way to at least define TLS protocol version and TLS
ciphers?<br>
<br>
<br>
Thanks and best regards,<br>
<br>
David<br>
<br>
<br>
<br>
-- <br>
encrypt!<br>
gpg --keyserver <a href="http://pgp.mit.edu" rel="noreferrer"
target="_blank" moz-do-not-send="true">pgp.mit.edu</a>
--recv-keys 6A25B6A3<br>
Schl.-Fingerabdruck = 15FF 16DC 494C EABD 6DF8 B388 4EB8 056C
6A25 B6A3<br>
_______________________________________________<br>
users mailing list<br>
<a href="mailto:users@lists.kolab.org" target="_blank"
moz-do-not-send="true">users@lists.kolab.org</a><br>
<a href="https://lists.kolab.org/mailman/listinfo/users"
rel="noreferrer" target="_blank" moz-do-not-send="true">https://lists.kolab.org/mailman/listinfo/users</a><br>
</blockquote>
</div>
<br>
<fieldset class="mimeAttachmentHeader"></fieldset>
<pre class="moz-quote-pre" wrap="">_______________________________________________
users mailing list
<a class="moz-txt-link-abbreviated" href="mailto:users@lists.kolab.org">users@lists.kolab.org</a>
<a class="moz-txt-link-freetext" href="https://lists.kolab.org/mailman/listinfo/users">https://lists.kolab.org/mailman/listinfo/users</a></pre>
</blockquote>
<pre class="moz-signature" cols="72">--
encrypt!
gpg --keyserver pgp.mit.edu --recv-keys 6A25B6A3
Schl.-Fingerabdruck = 15FF 16DC 494C EABD 6DF8 B388 4EB8 056C 6A25 B6A3</pre>
</body>
</html>