Logout

Alt-N Discussion Groups > MDaemon Discussion Groups > MDaemon Support > Archive > MDaemon 11 and TLS 1.2

 [F] Alt-N Discussion Groups  / MDaemon Discussion Groups  / MDaemon Support  / Archive  /

MDaemon 11 and TLS 1.2

[Belov, Sergey]
Sergey Belov
Newbie
Newbie
Posts: 2
Sergey Belov - 06:05pm, Nov 13 2020

I have MDaemon 11.0.4 running at Windows Server 2008 R2 SP1.
KB3140245 installed. TLS 1.2 activated in a registry:
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\SCHANNEL\Protocols\TLS 1.2\Client]
"DisabledByDefault"=dword:00000000
"Enabled"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\SCHANNEL\Protocols\TLS 1.2\Server]
"DisabledByDefault"=dword:00000000
"Enabled"=dword:00000001

But MDaemon uses only TLS 1.0 not 1.2. I checked it by Qualys and OpenSSL (openssl s_client -tls1_2 -starttls smtp -crlf -connect 127.0.0.1:25).

I find a similar problem: David C, "some emails blocked" #1, 8 Nov 2019 4:41 pm
David C said: "MDaemon does not control the versions of SSL or the protocols, ciphers, hashes, and key exchange algorithms used in network connections to email clients and other mail servers."

Is it possible to use TLS 1.1 and TLS 1.2 in MDaemon 11.0.4? Or I should upgrade to MDaemon 14.5 or newer?

  (older msg: 1)All MessagesOldest ItemsOlder ItemsNewer ItemsNewest Items

Sergey Belov - Nov 14, 2020 4:41 am (#2 Total: 2)  

 

Photo of Author
Sergey Belov
Newbie
Newbie
Posts: 2
Thank you!

To help someone else google and find out this problem:

<-- 220 2.0.0 Ready to start TLS

SSL negotiation failed, error code 0x80090302

<-- 220 2.0.0 Ready to start TLS

SSL negotiation failed, error code 0x80090308

[Last Editor: Sergey Belov, Nov 14, 2020 4:48 am. Total Edits: 2]



  All MessagesOldest ItemsOlder ItemsNewer ItemsNewest Items



 Content:

Read New | Search

 Guest:

Email to Admin



You are visiting as a Guest user.