Bug#314296: Re: Bug#314296: exim4 NOT verifying server certificate

Marc Haber Marc Haber <mh+debian-packages@zugschlus.de>, 314296@bugs.debian.org
Sun, 19 Jun 2005 09:59:28 +0200


On Sun, Jun 19, 2005 at 03:45:21PM +0800, Wenzhuo Zhang wrote:
> Quoting Marc Haber <mh+debian-packages@zugschlus.de>:
> > Take a look at the bug reports against exim4, and see what scenarios
> > we have to worry about. Roommates sharing a mail server, using
> > differnet freemailers which all of them demand that their addresses
> > get relayed through their smarthosts are quite common, and this is a
> > case where your setup breaks.
> 
> That's why I am suggesting adding a macro, instead of hardcoding the
> option in the smarthost transport definition. Users can easily enable
> verification of server certificate by adding the macro to
> exim4.conf.localmacros.

This will break if one of the smarthosts has a self-signed cert and
the other does not.

> It will be an even better idea if debconf can offer a check box on the
> smarthost prompt screen for enabling server certificate verification.

nosireebob, debconf is already too complicated.

Greetings
Marc

-- 
-----------------------------------------------------------------------------
Marc Haber         | "I don't trust Computers. They | Mailadresse im Header
Mannheim, Germany  |  lose things."    Winona Ryder | Fon: *49 621 72739834
Nordisch by Nature |  How to make an American Quilt | Fax: *49 621 72739835