<html>
  <head>
    <meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
  </head>
  <body>
    <p>Hi,</p>
    <p>I use the current stable 16.1 and didn't setup DKIM yet (but I
      want to).</p>
    <p>Did you check which TLS and ciphers your system offers to the
      world? With "nmap --script ssl-enum-ciphers servername" you'll get
      an overview.</p>
    <p><br>
    </p>
    <p>Best regards,</p>
    <p>d.<br>
    </p>
    <p><br>
    </p>
    <div class="moz-cite-prefix">Am 18.10.19 um 16:43 schrieb Milan
      Petrovic:<br>
    </div>
    <blockquote type="cite"
cite="mid:CAPGMBaqOcaiGGAVeFynu0B=UM9Mb5R23hrKGJtJ-kQJ-=4M-fQ@mail.gmail.com">
      <meta http-equiv="content-type" content="text/html; charset=UTF-8">
      <div dir="ltr">
        <div>My logs are the same, but I didn't find it odd. Maybe I
          should :)</div>
        <div><br>
        </div>
        <div>On an unrelated note: what version of Kolab do you have and
          have you been setting DKIM?<br>
        </div>
      </div>
      <br>
      <div class="gmail_quote">
        <div dir="ltr" class="gmail_attr">On Thu, Oct 17, 2019 at 2:24
          PM David Obando <<a href="mailto:david@cryptix.net"
            moz-do-not-send="true">david@cryptix.net</a>> wrote:<br>
        </div>
        <blockquote class="gmail_quote" style="margin:0px 0px 0px
          0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex">
          <div>
            <p>Hi,</p>
            <p>unfortunately not.</p>
            <p>I hardenen cyrus:</p>
            <p>Oct 17 14:20:19 mail02 imaps[13990]: inittls: Loading
              hard-coded DH parameters<br>
              Oct 17 14:20:19 mail02 imaps[13990]: starttls: TLSv1.2
              with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits
              reused) no authentication</p>
            <p><br>
            </p>
            <p>but my server still offers TLSv1 and v1.1 plus weak
              ciphers.</p>
            <p><br>
            </p>
            <p>Best regards,</p>
            <p>David<br>
            </p>
            <p><br>
            </p>
            <div>Am 16.10.19 um 23:27 schrieb Milan Petrovic:<br>
            </div>
            <blockquote type="cite">
              <div dir="ltr">
                <div>As far as my understanding is, guam is just a proxy
                  for cyrus, so, any details you define in your
                  imapd.conf. Guam as a proxy should just be able to
                  pass through the connection.</div>
                <div><br>
                </div>
                <div>It's just my understanding, maybe I'm wrong.<br>
                </div>
              </div>
              <br>
              <div class="gmail_quote">
                <div dir="ltr" class="gmail_attr">On Wed, Oct 16, 2019
                  at 4:54 PM David Obando <<a
                    href="mailto:david@cryptix.net" target="_blank"
                    moz-do-not-send="true">david@cryptix.net</a>>
                  wrote:<br>
                </div>
                <blockquote class="gmail_quote" style="margin:0px 0px
                  0px 0.8ex;border-left:1px solid
                  rgb(204,204,204);padding-left:1ex">Hi all,<br>
                  <br>
                  I'm new to the list and about to setup a new kolab
                  system.<br>
                  <br>
                  As I'm about to harden all services I got stuck with
                  tweaking guams tls<br>
                  settings.<br>
                  <br>
                  Is there a way to at least define TLS protocol version
                  and TLS ciphers?<br>
                  <br>
                  <br>
                  Thanks and best regards,<br>
                  <br>
                  David<br>
                  <br>
                  <br>
                  <br>
                  -- <br>
                  encrypt!<br>
                  gpg --keyserver <a href="http://pgp.mit.edu"
                    rel="noreferrer" target="_blank"
                    moz-do-not-send="true">pgp.mit.edu</a> --recv-keys
                  6A25B6A3<br>
                  Schl.-Fingerabdruck = 15FF 16DC 494C EABD 6DF8  B388
                  4EB8 056C 6A25 B6A3<br>
                  _______________________________________________<br>
                  users mailing list<br>
                  <a href="mailto:users@lists.kolab.org" target="_blank"
                    moz-do-not-send="true">users@lists.kolab.org</a><br>
                  <a
                    href="https://lists.kolab.org/mailman/listinfo/users"
                    rel="noreferrer" target="_blank"
                    moz-do-not-send="true">https://lists.kolab.org/mailman/listinfo/users</a><br>
                </blockquote>
              </div>
              <br>
              <fieldset></fieldset>
              <pre>_______________________________________________
users mailing list
<a href="mailto:users@lists.kolab.org" target="_blank" moz-do-not-send="true">users@lists.kolab.org</a>
<a href="https://lists.kolab.org/mailman/listinfo/users" target="_blank" moz-do-not-send="true">https://lists.kolab.org/mailman/listinfo/users</a></pre>
            </blockquote>
            <pre cols="72">-- 
encrypt!
gpg --keyserver <a href="http://pgp.mit.edu" target="_blank" moz-do-not-send="true">pgp.mit.edu</a> --recv-keys 6A25B6A3
Schl.-Fingerabdruck = 15FF 16DC 494C EABD 6DF8  B388 4EB8 056C 6A25 B6A3</pre>
          </div>
          _______________________________________________<br>
          users mailing list<br>
          <a href="mailto:users@lists.kolab.org" target="_blank"
            moz-do-not-send="true">users@lists.kolab.org</a><br>
          <a href="https://lists.kolab.org/mailman/listinfo/users"
            rel="noreferrer" target="_blank" moz-do-not-send="true">https://lists.kolab.org/mailman/listinfo/users</a></blockquote>
      </div>
    </blockquote>
    <pre class="moz-signature" cols="72">-- 
encrypt!
gpg --keyserver pgp.mit.edu --recv-keys 6A25B6A3
Schl.-Fingerabdruck = 15FF 16DC 494C EABD 6DF8  B388 4EB8 056C 6A25 B6A3</pre>
  </body>
</html>