summaryrefslogtreecommitdiffstats
path: root/qmail-smtpd.8
diff options
context:
space:
mode:
authormanuel <manuel@mausz.at>2015-06-22 21:28:22 +0200
committermanuel <manuel@mausz.at>2015-06-22 21:28:22 +0200
commit15a5232629a37b3df8a476f984343375950fa2ff (patch)
tree790fbad488ef2bc481ae1562ad5949afa4e818b6 /qmail-smtpd.8
parent3284e61d7a7a49620e64c7d634776f8bcf4f8119 (diff)
downloadqmail-15a5232629a37b3df8a476f984343375950fa2ff.tar.gz
qmail-15a5232629a37b3df8a476f984343375950fa2ff.tar.bz2
qmail-15a5232629a37b3df8a476f984343375950fa2ff.zip
Use DH parameters from OpenSSL and remove support for ephemeral RSA
This adds support for DH parameters from 1024 to 8192 bits.
Diffstat (limited to 'qmail-smtpd.8')
-rw-r--r--qmail-smtpd.817
1 files changed, 0 insertions, 17 deletions
diff --git a/qmail-smtpd.8 b/qmail-smtpd.8
index d1c9820..05d1239 100644
--- a/qmail-smtpd.8
+++ b/qmail-smtpd.8
@@ -171,17 +171,6 @@ is set, it overrides
171.IR databytes . 171.IR databytes .
172 172
173.TP 5 173.TP 5
174.I dh1024.pem
175If these 1024 bit DH parameters are provided,
176.B qmail-smtpd
177will use them for TLS sessions instead of generating one on-the-fly
178(which is very timeconsuming).
179.TP 5
180.I dh512.pem
181512 bit counterpart for
182.B dh1024.pem.
183
184.TP 5
185.I localiphost 174.I localiphost
186Replacement host name for local IP addresses. 175Replacement host name for local IP addresses.
187Default: 176Default:
@@ -281,12 +270,6 @@ Envelope recipient addresses without @ signs are
281always allowed through. 270always allowed through.
282 271
283.TP 5 272.TP 5
284.I rsa512.pem
285If this 512 bit RSA key is provided,
286.B qmail-smtpd
287will use it for TLS sessions instead of generating one on-the-fly.
288
289.TP 5
290.I servercert.pem 273.I servercert.pem
291SSL certificate to be presented to clients in TLS-encrypted sessions. 274SSL certificate to be presented to clients in TLS-encrypted sessions.
292Should contain both the certificate and the private key. Certifying Authority 275Should contain both the certificate and the private key. Certifying Authority