Skip to content

Comment on STARTTLS Considered Harmfulparent

Comments

Not just applications, servers as well. My Postfix/Dovecot setup does support unencrypted connections, but will refuse to do authentication if the channel is not encrypted.

Which is pointless when the plaintext password has already been sent across the wire.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.