Le 27/02/2016 00:46, Viktor Dukhovni a écrit : > "No" as in they should not leave SSLv2/EXPORT/1DES enabled? SSLv2 is no longer used or seen by MTA, so we can reasonably drop it's support. But cleartext is still more used than SSLv3, so why would you drop SSLv3 support before forbidding cleartext inbound and outbound your MTA ? As you said previously, it suits me better to ask postmasters to upgrade their MTA. -Solarus
Attachment:
signature.asc
Description: OpenPGP digital signature