Connect. Communicate. Collaborate. Securely.

Home » Kerio User Forums » Kerio Connect » mail delivery error, TLS, handshake failure (mail delivery error, TLS, handshake failure)
  •  
adminsfsby

Messages: 9
Karma: 0
Send a private message to this user
  •  
adminsfsby

Messages: 9
Karma: 0
Send a private message to this user
send mail from seafoodservice.by to tbc.su - ok
  •  
adminsfsby

Messages: 9
Karma: 0
Send a private message to this user
send mail from tbc.su to seafoodservice.by - mail delivery error, TLS, handshake failure
  •  
adminsfsby

Messages: 9
Karma: 0
Send a private message to this user
Kerio Connect 9.2.5 patch 3 (3336)
  •  
adminsfsby

Messages: 9
Karma: 0
Send a private message to this user
sorry ... (You cannot use links until you have posted more than 5 messages.)
  •  
adminsfsby

Messages: 9
Karma: 0
Send a private message to this user
Hi.

send mail from seafoodservice.by to tbc.su - ok
[img] https://cdn1.savepice.ru/uploads/2017/10/15/5fb645fe81525d3b 052ad3c41d69d889-full.jpg[/img]


send mail from tbc.su to seafoodservice.by - mail delivery error, TLS, handshake failure
[img] https://cdn1.savepice.ru/uploads/2017/10/15/b58b8a28039cf607 ea0d32171b340a85-full.jpg[/img]

Kerio Connect 9.2.5 patch 3 (3336)
  •  
adminsfsby

Messages: 9
Karma: 0
Send a private message to this user
debug.log

[15/Oct/2017 11:59:58][2948] {smtps} Task 668 handler BEGIN
[15/Oct/2017 11:59:58][2948] {conn} Connection from 213.79.104.226:13361 to 192.168.8.12:25, socket 51080.
[15/Oct/2017 11:59:58][2948] {smtps} Task 668 handler starting
[15/Oct/2017 11:59:58][2948] {smtps} SMTP server session begin; client connected from 213.79.104.226:13361
[15/Oct/2017 11:59:58][2948] {smtps} Delaying SMTP greeting to 213.79.104.226:13361 for 25 seconds
[15/Oct/2017 12:00:23][2948] {smtps} Sent SMTP greeting to 213.79.104.226:13361
[15/Oct/2017 12:00:23][2948] {smtps} Command EHLO mail.tbc.su
[15/Oct/2017 12:00:23][2948] {smtps} Sent reply to EHLO: 250 mail.seafoodservice.by ...
[15/Oct/2017 12:00:23][2948] {smtps} Command STARTTLS
[15/Oct/2017 12:00:23][2948] {conn} Connection from 213.79.104.226:13361 to 192.168.8.12:25, socket 51080.
[15/Oct/2017 12:00:23][2948] {conn} SSL debug: id 00000000019FDA50 SSL handshake started: before/accept initialization
[15/Oct/2017 12:00:23][2948] {conn} SSL debug: id 00000000019FDA50 SSL_accept:before/accept initialization
[15/Oct/2017 12:00:23][2948] {conn} SSL debug: id 00000000019FDA50 SSL_accept:error in SSLv2/v3 read client hello A
[15/Oct/2017 12:00:23][2948] {conn} SSL debug: id 00000000019FDA50 Client requests does not contain SMTP server name
[15/Oct/2017 12:00:23][2948] {conn} SSL debug: id 00000000019FDA50 SSL3 alert write:fatal:handshake failure
[15/Oct/2017 12:00:23][2948] {conn} SSL debug: id 00000000019FDA50 SSL_accept:error in error
[15/Oct/2017 12:00:23][2948] {conn} SSL debug: id 00000000019FDA50 SSL_accept:error in error
[15/Oct/2017 12:00:23][2948] {conn} Cannot accept SSL connection from 213.79.104.226:13361 to 192.168.8.12:25: SSL code 1, system error: (0) Операция успешно завершена.
[15/Oct/2017 12:00:23][2948] {conn} SSL error stack: 2948:error:1408A0C1:SSL routines:SSL3_GET_CLIENT_HELLO:no shared cipher:.\ssl\s3_srvr.c:1440:
[15/Oct/2017 12:00:23][2948] {smtps} Failed STARTTLS in SMTP connection with 213.79.104.226
[15/Oct/2017 12:00:23][2948] {smtps} SMTP server session end
[15/Oct/2017 12:00:23][2948] {conn} Closing socket 51080
[15/Oct/2017 12:00:23][2948] {smtps} Task 668 handler END
  •  
adminsfsby

Messages: 9
Karma: 0
Send a private message to this user
Wireshark log ...

  •  
adminsfsby

Messages: 9
Karma: 0
Send a private message to this user
ServerTlsCiphers in mailserver.cfg

In this variable, you can change the cipher list used by Kerio Connect.
Leave the variable empty to use a default cipher list:
AESGCM:HIGH:+EDH-RSA-DES-CBC3-SHA:+EDH-DSS-DES-CBC3-SHA:+DES -CBC3-SHA
To use a custom cipher list, type the cipher list in the variable.
For the full syntax of cipher lists, see the OpenSSL website.

i am changed:
AESGCM:HIGH:+EDH-RSA-DES-CBC3-SHA:+EDH-DSS-DES-CBC3-SHA:+DES -CBC3-SHA:+RC4-SHA
not work (
AESGCM:MEDIUM:+EDH-RSA-DES-CBC3-SHA:+EDH-DSS-DES-CBC3-SHA:+DES-CBC3-SHA:+RC4-SHA
not work (

[Updated on: Tue, 17 October 2017 14:58]

Previous Topic: Multiple Domain config and changes
Next Topic: Kerio Connect crashing every 10 minutes
Goto Forum:
  


Disclaimer:
Kerio discussion forums are intended for open communication between forum members and may contain information and material posted by members which may be useful in learning about Kerio products. The discussion forums are not intended to provide technical support for any specific product. Any information implied or expressed in the discussion forums is that of the posting member. Kerio is in no way responsible for the information posted in the forums, or its accuracy. Kerio employees may participate in the discussions, but their postings do not represent an offical position of the company on any issues raised or discussed. Kerio reserves the right to monitor and maintain the forums to promote free and accurate exchange of information.

Current Time: Tue Nov 21 09:00:00 CET 2017

Total time taken to generate the page: 0.00431 seconds
.:: Contact :: Home ::.
Powered by: FUDforum 3.0.4.