STARTTLS Everywhere
starttls-everywhere.org
STARTTLS Everywhere
1–10 of 106 posts
Re: STARTTLS Everywhere
#2Re: STARTTLS Everywhere
#3Except it’s not like let’s encrypt at all. This appears to test your mail server for starttls functionality, but it doesn’t issue certs or anything like that.
(Edit: in addition to the site tester that you noticed, there is also a public policy list and some forthcoming tools to enforce STARTTLS on the client MTA side when delivering e-mail, preventing downgrade and MITM attacks.)
However, you can also use Let's Encrypt to make this more useful by getting a publicly-trusted certificate for the TLS service on your mail server, and then listing your mail server with this list!
The introductions my colleagues posted about this today are at
https://www.eff.org/deeplinks/2018/06/announcing-starttls-ev...
https://www.eff.org/deeplinks/2018/06/technical-deep-dive-st...
which will hopefully give a clearer explanation of what the service is meant for.
Re: STARTTLS Everywhere
#4Re: STARTTLS Everywhere
#5Re: STARTTLS Everywhere
#6Re: STARTTLS Everywhere
#7Re: STARTTLS Everywhere
#8Re: STARTTLS Everywhere
#9Re: STARTTLS Everywhere
#10"STARTTLS Everywhere: HTTPS Everywhere, but for SMTP"