On 19.08.2013 05:31, ITechGeek wrote:
PGP mails, and I'm thinking about enforcing TLS.
If you enforce TLS, you won't be able to send/receive email for many
domains.
Yes.
I want to have a script that scans all incoming mail for the used cipher
and in the case of a weak, non-PFS cipher, or no TLS at all, emails both
the sender and postmaster@senderdomain to get their stuff fixed and to
get the sender to move to a proper provider. I want this not only for
this gateway, but for all mail servers I operate. The script should
support pure notification, but also "bouncing" the mail with this custom
reply for non-TLS (before-queue Milter).