[TriLUG] help with mail logs

Jon Carnes jonc at nc.rr.com
Fri Jan 16 09:56:13 EST 2004


On Fri, 2004-01-16 at 08:56, Ryan Wheaton wrote:
> Good morning all.
> 
> I was perusing the logs on one of my list servers, and I came across 
> the following entries:
> 
> STARTTLS=client, relay=mx1c1.megamailservers.com., version=TLSv1/SSLv3, 
> verify=FAIL, cipher=DHE-RSA-AES256-SHA, bits=256/256: 1 Time(s)
>     STARTTLS=client, relay=webmail.vanion.com., version=TLSv1/SSLv3, 
> verify=FAIL, cipher=DES-CBC3-SHA, bits=168/168: 1 Time(s)
>     STARTTLS=client, relay=mail.randomwalk.com., version=TLSv1/SSLv3, 
> verify=FAIL, cipher=DHE-RSA-AES256-SHA, bits=256/256: 1 Time(s)
>     STARTTLS=client, relay=davegrover.com., version=TLSv1/SSLv3, 
> verify=FAIL, cipher=AES256-SHA, bits=256/256: 1 Time(s)
> 
> 
> there are people from the randomwalk.com and davegrover.com that are 
> members of lists on the box.  Does this mean that the messages did not 
> reach them?  Or is it their mail servers responding, probing me to see 
> if I'm an open relay?

My guess is that their MTA's are dropping off mail and looking for the
best protocol to use.  Of course they are starting with the most secure
and then dropping down to the least secure.

Jon




More information about the TriLUG mailing list