mailu: the smtp provision serves the name its certificate answers to #105

Merged
jschoubben merged 1 commits from fix/smtp-serves-its-tls-name into main 2026-09-26 17:27:07 +00:00
Owner

A consumer connecting by the binding's address meets a certificate for mail.novox.be and refuses it — found live by the forwarder's cutover proof, one send before production would have. The TLS name is mailu's own fact (HOSTNAMES), so the binding carries it; consumers say ${bound:smtp:name} and verification holds. de-spiegel can adopt the same key in its own time.

A consumer connecting by the binding's address meets a certificate for `mail.novox.be` and refuses it — found live by the forwarder's cutover proof, one send before production would have. The TLS name is mailu's own fact (`HOSTNAMES`), so the binding carries it; consumers say `${bound:smtp:name}` and verification holds. de-spiegel can adopt the same key in its own time.
jschoubben added 1 commit 2026-09-26 17:27:01 +00:00
A consumer connecting by the binding's address meets a certificate for
mail.novox.be and refuses it — found live by the forwarder's cutover
proof, one send before production would have. The TLS name is mailu's
own fact (HOSTNAMES), so the binding carries it; consumers say
${bound:smtp:name} and verification holds.
jschoubben merged commit a59750fa28 into main 2026-09-26 17:27:07 +00:00
jschoubben deleted branch fix/smtp-serves-its-tls-name 2026-09-26 17:27:07 +00:00
Sign in to join this conversation.
No Reviewers
No labels
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: novox/mesh-catalog#105