launchpad incoming mx.canonical.com should support opportunistic TLS

Bug #588105 reported by Martin Pool
10
This bug affects 1 person
Affects Status Importance Assigned to Milestone
Launchpad itself
Fix Released
Low
Unassigned

Bug Description

It would be useful if the MX for launchpad.net (mx.canonical.com) supported opportunistic TLS. (ie we don't insist on it, and we don't check the client certificate, but we do it if offered.) This would help keep eg private bug data private in transit. It should be easy to turn on in postfix.

scottk says he just tried this and it doesn't work.

We could have a separate bug for using TLS for outgoing mail from Launchpad if the recipient supports it, if that is not done already.

Revision history for this message
Scott Kitterman (kitterman) wrote :

 telnet mx.canonical.com 25
Trying 91.189.94.145...
Connected to mx.canonical.com.
Escape character is '^]'.
220 fiordland.canonical.com ESMTP Postfix (Ubuntu)
ehlo kitterman.com
250-fiordland.canonical.com
250-PIPELINING
250-SIZE 62914560
250-VRFY
250-ETRN
250-ENHANCEDSTATUSCODES
250-8BITMIME
250 DSN

affects: launchpad → launchpad-foundations
Gary Poster (gary)
Changed in launchpad-foundations:
status: New → Triaged
importance: Undecided → Low
assignee: nobody → Canonical LOSAs (canonical-losas)
Revision history for this message
Haw Loeung (hloeung) wrote :

RT#45780

Changed in launchpad:
assignee: Canonical WebOps (canonical-losas) → William Grant (wgrant)
William Grant (wgrant)
Changed in launchpad:
assignee: William Grant (wgrant) → nobody
Revision history for this message
Haw Loeung (hloeung) wrote :

This has been enabled a while back now:

Trying 91.189.94.145...
Connected to mx.canonical.com.
Escape character is '^]'.
220 fiordland.canonical.com ESMTP Postfix (Ubuntu)
ehlo tpgi.com.au
250-fiordland.canonical.com
250-PIPELINING
250-SIZE 62914560
250-VRFY
250-ETRN
250-STARTTLS
250-ENHANCEDSTATUSCODES
250-8BITMIME
250 DSN
quit
221 2.0.0 Bye
Connection closed by foreign host.

Changed in launchpad:
status: Triaged → Fix Released
Revision history for this message
Martin Pool (mbp) wrote : Re: [Bug 588105] Re: launchpad incoming mx.canonical.com should support opportunistic TLS

Nice, thanks Haw.

On Thu, Mar 26, 2015 at 11:10 PM Haw Loeung <email address hidden>
wrote:

> This has been enabled a while back now:
>
> Trying 91.189.94.145...
> Connected to mx.canonical.com.
> Escape character is '^]'.
> 220 fiordland.canonical.com ESMTP Postfix (Ubuntu)
> ehlo tpgi.com.au
> 250-fiordland.canonical.com
> 250-PIPELINING
> 250-SIZE 62914560
> 250-VRFY
> 250-ETRN
> 250-STARTTLS
> 250-ENHANCEDSTATUSCODES
> 250-8BITMIME
> 250 DSN
> quit
> 221 2.0.0 Bye
> Connection closed by foreign host.
>
> ** Changed in: launchpad
> Status: Triaged => Fix Released
>
> --
> You received this bug notification because you are subscribed to the bug
> report.
> https://bugs.launchpad.net/bugs/588105
>
> Title:
> launchpad incoming mx.canonical.com should support opportunistic TLS
>
> To manage notifications about this bug go to:
> https://bugs.launchpad.net/launchpad/+bug/588105/+subscriptions
>

To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.