Support for TLS

Eshat Cakar info at eshat.de
Wed Jan 26 16:19:56 GMT 2011


Hi,

> OK, so what we should be doing then is to first try with TLSv1
> explicitely and if that fails, we try to connect with SSLv3. 

this sounds good to me, if it does not take too much time to recognize, that the server does not support TLS for the SSLv3 users.

> Or should we poke the server the first time we connect
> and cache the type that we can use somewhere so we don't have to find
> that out on each and every run?

Another option, which maybe is easier to implement, would be a line in the configuration file, to let the user choose which version of SSL/TLS to use.

Since I am not a programmer, I do not know how this is handled typically.

-- 
eshat cakar
web: www.eshat.de                                gpg-id: 799B 95D5
gpg-fingerprint: D59E 3B77 8662 D221 0900 D758 9D0F C2C1 799B 95D5




More information about the OfflineIMAP-project mailing list