Hi All
First the essentials:
dovecot --version: 2.2.15
ssl = required
ssl_cert = </usr/local/openssl/certs/mail.domain.com.chained.dovecot.ecdsa.crt
ssl_key = </usr/local/openssl/certs/mail.domain.com.ecdsa.key
ssl_protocols = !SSLv2 !SSLv3
ssl_prefer_server_ciphers = yes
I would really appreciate it if someone could tell me if my config is super secure? I run the following email clients:
K9 on Android 4.4.2 Thunderbird 31.4 Outlook 2010
I'm interested to know if the config I have is secure and that my cipher list is acceptable. I'm also keen to hear thoughts on my config in respect of Forward Secrecy and the SSLv3/POODLE attack.