[Dovecot] Anonymous SSL Ciphers

Timo Sirainen tss at iki.fi
Mon Nov 23 22:25:47 EET 2009


On Mon, 2009-11-23 at 12:22 -0800, Jeffrey Nikoletich wrote:
> I am having an issue with getting anonymous ssl ciphers disabled in dovecot. I have googled like crazy to find the solution with no help.
..
> ssl_cipher_list: HIGH:MEDIUM:+TLSv1:!SSLv2:+SSLv3

Dovecot v2.0's default is:

ssl_cipher_list = ALL:!LOW:!SSLv2:!EXP:!aNULL

The important part for disabling anonymous ciphers is the !aNULL.

-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 197 bytes
Desc: This is a digitally signed message part
Url : http://dovecot.org/pipermail/dovecot/attachments/20091123/844e9ecd/attachment.bin 


More information about the dovecot mailing list