Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG 18.5.2 howto Skip TLS negotiation and verify?

Hi,

i need to Skip TLS  negotiation for a email adress/domain.

I already tried to add a FQDN-Host Entry like smtp.recipient.de
and the IP-Host with the corresponding MX IP-Adress here.

It´s still not working.

What would be the correct setup? 

All i get in smtp log is this entry

smtpd_main.log:2022-02-21 17:44:10.521 [32195] IZcrpP-I22JEJ-fM ** support@domain.de F=<sender@sender-domain.de> P=<jsender@sender-domain.de> R=default_mx_router T=remote_smtp: all hosts for 'recipient.de' have been failing for a long time (and retry time not reached) DT=0.000s
XGS2100_RL01_SFOS 18.5.2 MR-2-Build380# R=default_mx_router T=remote_smtp: all hosts for 'recipient.de' have been failing for a long time (and retry time not reached) DT=0.000s

or sometime this

smtpd_main.log:2022-02-16 16:35:01.320 [22759] vvGCp1-iNfUqI-cA == support@recipient.de R=default_mx_router T=remote_smtp defer (-37) H=smtp.recipient.de [217.69.67.179]:25 DT=0.081s: TLS session: (SSL_connect): error:14077102:SSL routines:SSL23_GET_SERVER_HELLO:unsupported protocol

with openssl i can verify that the recipient mail server only allowas TLSv1



This thread was automatically locked due to age.
Share Feedback
×

Submitted a Tech Support Case lately from the Support Portal?