Bug#440663: exim4-config: MAIN_TLS_* doesn't actually enable TLS

John Goerzen jgoerzen at complete.org
Mon Sep 3 21:28:22 UTC 2007


On Monday 03 September 2007 3:37:32 pm Marc Haber wrote:
> On Mon, Sep 03, 2007 at 12:30:40PM -0500, John Goerzen wrote:
> > One other thing...  if TLS is enabled by default, then it seems
> > unnecessary to have a MAIN_TLS_ENABLE macro.
>
> TLS is enabled by default for an exim _client_, and it needs to be
> manually enabled for an exim _server_ since that needs additional
> handholding (and a certificate).

I find the client/server distinction confusing for a thing such as exim, 
which is often both.

In this particular case, the exim with the problem was the one initiating the 
connection to the remote SMTP server (also a version of exim, though an 
earlier one).

> See also /usr/share/doc/exim4-base/README.Debian.gz chapter 2.2

I re-read it but found nothing of note.

> Can I close this bug?

No, I still think this is misleading.  Why should I manually have to add the 
lines to the smtp smarthost transport, when the comments in both the TLS 
config and README.Debian seem to indicate that this should Just Work, 
especially once I have pointed it at my cert and key?

What is the problem with adding the two lines I provided (wrapped in 
appropriate ifdefs as elsewhere) to the relevant transports?

-- John




More information about the Pkg-exim4-maintainers mailing list