[websites-team] [Bug 3209] Improve SMTP/IMAP/HTTP encryption settings to pass starttls.info

Kolab Bugzilla noreply at kolab.org
Mon Jul 28 19:47:04 CEST 2014


https://issues.kolab.org/show_bug.cgi?id=3209

--- Comment #4 from Greve, Georg <greve at kolabsys.com> ---
Useful resource.

We should provide that link to our support department.

That said, this issue is a bit of a misnomer, as the original request from
months ago was "check our configuration against known best practice and see
whether improvement is possible" with regards looking at best practice for

https://wiki.mozilla.org/Security/Server_Side_TLS

and (came across this one recently)

https://istlsfastyet.com

If we can also ensure we do not suffer from the reputation risk associated to
starttls.info then that is a bonus, and would be quite worthwhile.

But the main point was to ensure we keep our SSL setup at maximum strength for
MyKolab.com and possibly also Enterprise Customers. Haven't yet seen whether
any changes to our config would fall out of the above resources.

So closing the issue would go through one of three possible scenarios,
typically: 

 (a) we already run the best possible configuration;

 (b) we have improved the configuration based on above resource;

 (c) we are running a different configuration, but it is better than the above
config for reasons (i), (ii), (iii) that can be communicated via support.

-- 
You are receiving this mail because:
You are on the CC list for the bug.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.kolabsys.com/pipermail/websites-team/attachments/20140728/8f2a25b4/attachment.htm>


More information about the websites-team mailing list