Community Discussions and Support
Session Log Help

[quote user="cynist"]

I am running V 4.62 on an XP Pro machine.  Everyone connects through IMAP.  I have only created one certificate in MercuryS.[/quote]

I don't know of any issues with that combination.  It may be the sending server at fault. 

[quote]If I turn this feature off then servers who send TLS messages will not be able to connect, correct?[/quote]

No, as Rolf says, it's always optional. 

[quote user="cynist"]<p>I am running V 4.62 on an XP Pro machine.  Everyone connects through IMAP.  I have only created one certificate in MercuryS.[/quote]</p><p>I don't know of any issues with that combination.  It may be the sending server at fault. </p> <p>[quote]If I turn this feature off then servers who send TLS messages will not be able to connect, correct?[/quote]</p><p>No, as Rolf says, it's always optional. </p>

Can someone tell me why this email is not being accepted for deliver?

 

11:34:54.734: Connection from 156.63.54.131, Wed Apr 22 11:34:54 2009<lf>

11:34:54.734: << 220 neocap.org ESMTP server ready.<cr><lf>

11:34:54.828: >> EHLO mail13.odjfs.state.oh.us<cr><lf>

11:34:54.828: << 250-neocap.org Hello mail13.odjfs.state.oh.us; ESMTPs are:<cr><lf>250-TIME<cr><lf>

11:34:54.828: << 250-SIZE 0<cr><lf>

11:34:54.828: << 250-AUTH CRAM-MD5 LOGIN<cr><lf>

11:34:54.828: << 250-AUTH=LOGIN<cr><lf>

11:34:54.828: << 250-STARTTLS<cr><lf>

11:34:54.828: << 250 HELP<cr><lf>

11:34:54.046: >> STARTTLS<cr><lf>

11:34:54.046: << 220 OK, begin SSL/TLS negotiation now.<cr><lf>

11:34:54.046: 20: Error -3 creating CryptLib session.

11:34:54.046: --- Connection closed normally at Wed Apr 22 11:34:54 2009. ---

11:34:54.046:

&lt;P&gt;Can someone tell me why this email is not being accepted for deliver?&lt;/P&gt; &lt;P&gt;&lt;SPAN lang=EN&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;11:34:54.734: Connection from 156.63.54.131, Wed Apr 22 11:34:54 2009&amp;lt;lf&amp;gt;&lt;/P&gt; &lt;P&gt;11:34:54.734: &amp;lt;&amp;lt; 220 neocap.org ESMTP server ready.&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;/P&gt; &lt;P&gt;11:34:54.828: &amp;gt;&amp;gt; EHLO mail13.odjfs.state.oh.us&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;/P&gt; &lt;P&gt;11:34:54.828: &amp;lt;&amp;lt; 250-neocap.org Hello mail13.odjfs.state.oh.us; ESMTPs are:&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;250-TIME&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;/P&gt; &lt;P&gt;11:34:54.828: &amp;lt;&amp;lt; 250-SIZE 0&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;/P&gt; &lt;P&gt;11:34:54.828: &amp;lt;&amp;lt; 250-AUTH CRAM-MD5 LOGIN&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;/P&gt; &lt;P&gt;11:34:54.828: &amp;lt;&amp;lt; 250-AUTH=LOGIN&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;/P&gt; &lt;P&gt;11:34:54.828: &amp;lt;&amp;lt; 250-STARTTLS&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;/P&gt; &lt;P&gt;11:34:54.828: &amp;lt;&amp;lt; 250 HELP&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;/P&gt; &lt;P&gt;11:34:54.046: &amp;gt;&amp;gt; STARTTLS&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;/P&gt; &lt;P&gt;11:34:54.046: &amp;lt;&amp;lt; 220 OK, begin SSL/TLS negotiation now.&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;/P&gt; &lt;P&gt;11:34:54.046: 20: Error -3 creating CryptLib session.&lt;/P&gt; &lt;P&gt;11:34:54.046: --- Connection closed normally at Wed Apr 22 11:34:54 2009. ---&lt;/P&gt; &lt;P&gt;11:34:54.046: &lt;/P&gt;&lt;/SPAN&gt;

Your log shows the connection if failing trying to set up the TLS - it's not getting as far as the actual message.

Can you see any successful  TLS connections from other senders in your logs?

It would be useful to know the Mercury version and which Windows.

&lt;p&gt;Your log shows the connection if failing trying to set up the TLS - it&#039;s not getting as far as the actual message.&lt;/p&gt;&lt;p&gt;Can you see any successful&amp;nbsp; TLS connections from other senders in your logs?&lt;/p&gt;&lt;p&gt;It would be useful to know the Mercury version and which Windows. &lt;/p&gt;

It doesn't look like any other organization has tried to utilze TLS in the past few days.  I turned on session logging again this morning to try to caputre more data.  Is there settings in Mercury that I should look at in regards to TLS acceptance?  I have the SSL section checked and I have made a self-signed certificate.  Do I need anything else?  When I created my certificate I used the server name = neocap.org which is my domain.  Is this wrong?

&lt;P&gt;It doesn&#039;t look like any other organization has tried to utilze TLS in the past few days.&amp;nbsp; I turned on session logging again this morning to try to caputre more data.&amp;nbsp; Is there settings in Mercury that I should look at in regards to TLS acceptance?&amp;nbsp; I have the SSL section checked and I have made a self-signed certificate.&amp;nbsp; Do I need anything else?&amp;nbsp; When I created my certificate I used the server name = neocap.org which is my domain.&amp;nbsp; Is this wrong?&lt;/P&gt;

Here is one I capured that came through.

 

09:19:55.140: Connection from 160.33.128.137, Thu Apr 23 09:19:55 2009<lf><?xml:namespace prefix = o ns = "urn:schemas-microsoft-com:office:office" />

09:19:55.156: << 220 neocap.org ESMTP server ready.<cr><lf>

09:19:55.187: >> EHLO saiadsmxp01.sonystyle.com<cr><lf>

09:19:55.187: << 250-neocap.org Hello saiadsmxp01.sonystyle.com; ESMTPs are:<cr><lf>250-TIME<cr><lf>

09:19:55.187: << 250-SIZE 0<cr><lf>

09:19:55.187: << 250-AUTH CRAM-MD5 LOGIN<cr><lf>

09:19:55.187: << 250-AUTH=LOGIN<cr><lf>

09:19:55.203: << 250-STARTTLS<cr><lf>

09:19:55.203: << 250 HELP<cr><lf>

09:19:55.281: >> MAIL From:<DoNotReply@am.sony.com> SIZE=9390<cr><lf>

09:19:55.281: << 250 Sender and size (9390) OK - send RCPTs.<cr><lf>

09:19:55.312: >> RCPT To:<r.blower@neocap.org><cr><lf>

09:19:55.312: << 250 Recipient OK - send RCPT or DATA.<cr><lf>

09:19:55.359: >> DATA<cr><lf>

09:19:55.359: << 354 OK, send data, end with CRLF.CRLF<cr><lf>

&lt;P&gt;Here is one I capured that came through.&lt;/P&gt; &lt;P mce_keep=&quot;true&quot;&gt;&amp;nbsp;&lt;/P&gt; &lt;P style=&quot;MARGIN: 0in 0in 0pt; mso-layout-grid-align: none&quot; class=MsoNormal&gt;&lt;SPAN style=&quot;FONT-FAMILY: &#039;Courier New&#039;; mso-bidi-font-size: 10.0pt&quot;&gt;09:19:55.140: Connection from 160.33.128.137, Thu Apr 23 09:19:55 2009&amp;lt;lf&amp;gt;&lt;?xml:namespace prefix = o ns = &quot;urn:schemas-microsoft-com:office:office&quot; /&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt; &lt;P style=&quot;MARGIN: 0in 0in 0pt; mso-layout-grid-align: none&quot; class=MsoNormal&gt;&lt;SPAN style=&quot;FONT-FAMILY: &#039;Courier New&#039;; mso-bidi-font-size: 10.0pt&quot;&gt;09:19:55.156: &amp;lt;&amp;lt; 220 neocap.org ESMTP server ready.&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt; &lt;P style=&quot;MARGIN: 0in 0in 0pt; mso-layout-grid-align: none&quot; class=MsoNormal&gt;&lt;SPAN style=&quot;FONT-FAMILY: &#039;Courier New&#039;; mso-bidi-font-size: 10.0pt&quot;&gt;09:19:55.187: &amp;gt;&amp;gt; EHLO saiadsmxp01.sonystyle.com&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt; &lt;P style=&quot;MARGIN: 0in 0in 0pt; mso-layout-grid-align: none&quot; class=MsoNormal&gt;&lt;SPAN style=&quot;FONT-FAMILY: &#039;Courier New&#039;; mso-bidi-font-size: 10.0pt&quot;&gt;09:19:55.187: &amp;lt;&amp;lt; 250-neocap.org Hello saiadsmxp01.sonystyle.com; ESMTPs are:&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;250-TIME&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt; &lt;P style=&quot;MARGIN: 0in 0in 0pt; mso-layout-grid-align: none&quot; class=MsoNormal&gt;&lt;SPAN style=&quot;FONT-FAMILY: &#039;Courier New&#039;; mso-bidi-font-size: 10.0pt&quot;&gt;09:19:55.187: &amp;lt;&amp;lt; 250-SIZE 0&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt; &lt;P style=&quot;MARGIN: 0in 0in 0pt; mso-layout-grid-align: none&quot; class=MsoNormal&gt;&lt;SPAN style=&quot;FONT-FAMILY: &#039;Courier New&#039;; mso-bidi-font-size: 10.0pt&quot;&gt;09:19:55.187: &amp;lt;&amp;lt; 250-AUTH CRAM-MD5 LOGIN&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt; &lt;P style=&quot;MARGIN: 0in 0in 0pt; mso-layout-grid-align: none&quot; class=MsoNormal&gt;&lt;SPAN style=&quot;FONT-FAMILY: &#039;Courier New&#039;; mso-bidi-font-size: 10.0pt&quot;&gt;09:19:55.187: &amp;lt;&amp;lt; 250-AUTH=LOGIN&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt; &lt;P style=&quot;MARGIN: 0in 0in 0pt; mso-layout-grid-align: none&quot; class=MsoNormal&gt;&lt;SPAN style=&quot;FONT-FAMILY: &#039;Courier New&#039;; mso-bidi-font-size: 10.0pt&quot;&gt;09:19:55.203: &amp;lt;&amp;lt; 250-&lt;STRONG&gt;STARTTLS&lt;/STRONG&gt;&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt; &lt;P style=&quot;MARGIN: 0in 0in 0pt; mso-layout-grid-align: none&quot; class=MsoNormal&gt;&lt;SPAN style=&quot;FONT-FAMILY: &#039;Courier New&#039;; mso-bidi-font-size: 10.0pt&quot;&gt;09:19:55.203: &amp;lt;&amp;lt; 250 HELP&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt; &lt;P style=&quot;MARGIN: 0in 0in 0pt; mso-layout-grid-align: none&quot; class=MsoNormal&gt;&lt;SPAN style=&quot;FONT-FAMILY: &#039;Courier New&#039;; mso-bidi-font-size: 10.0pt&quot;&gt;09:19:55.281: &amp;gt;&amp;gt; MAIL From:&amp;lt;DoNotReply@am.sony.com&amp;gt; SIZE=9390&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt; &lt;P style=&quot;MARGIN: 0in 0in 0pt; mso-layout-grid-align: none&quot; class=MsoNormal&gt;&lt;SPAN style=&quot;FONT-FAMILY: &#039;Courier New&#039;; mso-bidi-font-size: 10.0pt&quot;&gt;09:19:55.281: &amp;lt;&amp;lt; 250 Sender and size (9390) OK - send RCPTs.&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt; &lt;P style=&quot;MARGIN: 0in 0in 0pt; mso-layout-grid-align: none&quot; class=MsoNormal&gt;&lt;SPAN style=&quot;FONT-FAMILY: &#039;Courier New&#039;; mso-bidi-font-size: 10.0pt&quot;&gt;09:19:55.312: &amp;gt;&amp;gt; RCPT To:&amp;lt;r.blower@neocap.org&amp;gt;&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt; &lt;P style=&quot;MARGIN: 0in 0in 0pt; mso-layout-grid-align: none&quot; class=MsoNormal&gt;&lt;SPAN style=&quot;FONT-FAMILY: &#039;Courier New&#039;; mso-bidi-font-size: 10.0pt&quot;&gt;09:19:55.312: &amp;lt;&amp;lt; 250 Recipient OK - send RCPT or DATA.&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt; &lt;P style=&quot;MARGIN: 0in 0in 0pt; mso-layout-grid-align: none&quot; class=MsoNormal&gt;&lt;SPAN style=&quot;FONT-FAMILY: &#039;Courier New&#039;; mso-bidi-font-size: 10.0pt&quot;&gt;09:19:55.359: &amp;gt;&amp;gt; DATA&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt; &lt;P&gt;&lt;SPAN style=&quot;FONT-FAMILY: &#039;Courier New&#039;; FONT-SIZE: 10pt; mso-fareast-font-family: &#039;Times New Roman&#039;; mso-ansi-language: EN-US; mso-fareast-language: EN-US; mso-bidi-language: AR-SA&quot;&gt;09:19:55.359: &amp;lt;&amp;lt; 354 OK, send data, end with CRLF.CRLF&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;/SPAN&gt;&lt;/P&gt;

[quote user="cynist"]

Here is one I capured that came through.

 

09:19:55.140: Connection from 160.33.128.137, Thu Apr 23 09:19:55 2009<lf>

09:19:55.156: << 220 neocap.org ESMTP server ready.<cr><lf>

09:19:55.187: >> EHLO saiadsmxp01.sonystyle.com<cr><lf>

09:19:55.187: << 250-neocap.org Hello saiadsmxp01.sonystyle.com; ESMTPs are:<cr><lf>250-TIME<cr><lf>

09:19:55.187: << 250-SIZE 0<cr><lf>

09:19:55.187: << 250-AUTH CRAM-MD5 LOGIN<cr><lf>

09:19:55.187: << 250-AUTH=LOGIN<cr><lf>

09:19:55.203: << 250-STARTTLS<cr><lf>[/quote]

 

This is your server advertising that it can do STARTTLS - the chevrons point to the left, so it is a message *from* your server. 

 

[quote]09:19:55.203: << 250 HELP<cr><lf>

09:19:55.281: >> MAIL From:<DoNotReply@am.sony.com> SIZE=9390<cr><lf>

09:19:55.281: << 250 Sender and size (9390) OK - send RCPTs.<cr><lf>

09:19:55.312: >> RCPT To:<r.blower@neocap.org><cr><lf>

09:19:55.312: << 250 Recipient OK - send RCPT or DATA.<cr><lf>

09:19:55.359: >> DATA<cr><lf>

09:19:55.359: << 354 OK, send data, end with CRLF.CRLF<cr><lf>[/quote]

The rest is OK, but the client never asked for a startTLS connection.

If you don't need TLS then you can turn it off in the MercuryS config.  If it fails for just one server, you could try to debug it with their tech people.  Have you set up your own, separate, certificates?

I still don't know what you are running. 

[quote user=&quot;cynist&quot;]&lt;p&gt;Here is one I capured that came through.&lt;/p&gt; &lt;p mce_keep=&quot;true&quot;&gt;&amp;nbsp;&lt;/p&gt; &lt;p style=&quot;margin: 0in 0in 0pt;&quot; class=&quot;MsoNormal&quot;&gt;&lt;span style=&quot;font-family: &#039;Courier New&#039;;&quot;&gt;09:19:55.140: Connection from 160.33.128.137, Thu Apr 23 09:19:55 2009&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt; &lt;p style=&quot;margin: 0in 0in 0pt;&quot; class=&quot;MsoNormal&quot;&gt;&lt;span style=&quot;font-family: &#039;Courier New&#039;;&quot;&gt;09:19:55.156: &amp;lt;&amp;lt; 220 neocap.org ESMTP server ready.&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt; &lt;p style=&quot;margin: 0in 0in 0pt;&quot; class=&quot;MsoNormal&quot;&gt;&lt;span style=&quot;font-family: &#039;Courier New&#039;;&quot;&gt;09:19:55.187: &amp;gt;&amp;gt; EHLO saiadsmxp01.sonystyle.com&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt; &lt;p style=&quot;margin: 0in 0in 0pt;&quot; class=&quot;MsoNormal&quot;&gt;&lt;span style=&quot;font-family: &#039;Courier New&#039;;&quot;&gt;09:19:55.187: &amp;lt;&amp;lt; 250-neocap.org Hello saiadsmxp01.sonystyle.com; ESMTPs are:&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;250-TIME&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt; &lt;p style=&quot;margin: 0in 0in 0pt;&quot; class=&quot;MsoNormal&quot;&gt;&lt;span style=&quot;font-family: &#039;Courier New&#039;;&quot;&gt;09:19:55.187: &amp;lt;&amp;lt; 250-SIZE 0&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt; &lt;p style=&quot;margin: 0in 0in 0pt;&quot; class=&quot;MsoNormal&quot;&gt;&lt;span style=&quot;font-family: &#039;Courier New&#039;;&quot;&gt;09:19:55.187: &amp;lt;&amp;lt; 250-AUTH CRAM-MD5 LOGIN&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt; &lt;p style=&quot;margin: 0in 0in 0pt;&quot; class=&quot;MsoNormal&quot;&gt;&lt;span style=&quot;font-family: &#039;Courier New&#039;;&quot;&gt;09:19:55.187: &amp;lt;&amp;lt; 250-AUTH=LOGIN&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt; &lt;p style=&quot;margin: 0in 0in 0pt;&quot; class=&quot;MsoNormal&quot;&gt;&lt;span style=&quot;font-family: &#039;Courier New&#039;;&quot;&gt;09:19:55.203: &amp;lt;&amp;lt; 250-&lt;b&gt;STARTTLS&lt;/b&gt;&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;[/quote]&lt;/span&gt;&lt;/p&gt;&lt;p style=&quot;margin: 0in 0in 0pt;&quot; class=&quot;MsoNormal&quot;&gt;&amp;nbsp;&lt;/p&gt;&lt;p style=&quot;margin: 0in 0in 0pt;&quot; class=&quot;MsoNormal&quot;&gt;This is your server advertising that it can do STARTTLS - the chevrons point to the left, so it is a message *from* your server.&amp;nbsp;&lt;/p&gt;&lt;p style=&quot;margin: 0in 0in 0pt;&quot; class=&quot;MsoNormal&quot;&gt;&amp;nbsp;&lt;/p&gt; &lt;p style=&quot;margin: 0in 0in 0pt;&quot; class=&quot;MsoNormal&quot;&gt;&lt;span style=&quot;font-family: &#039;Courier New&#039;;&quot;&gt;[quote]09:19:55.203: &amp;lt;&amp;lt; 250 HELP&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt; &lt;p style=&quot;margin: 0in 0in 0pt;&quot; class=&quot;MsoNormal&quot;&gt;&lt;span style=&quot;font-family: &#039;Courier New&#039;;&quot;&gt;09:19:55.281: &amp;gt;&amp;gt; MAIL From:&amp;lt;DoNotReply@am.sony.com&amp;gt; SIZE=9390&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt; &lt;p style=&quot;margin: 0in 0in 0pt;&quot; class=&quot;MsoNormal&quot;&gt;&lt;span style=&quot;font-family: &#039;Courier New&#039;;&quot;&gt;09:19:55.281: &amp;lt;&amp;lt; 250 Sender and size (9390) OK - send RCPTs.&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt; &lt;p style=&quot;margin: 0in 0in 0pt;&quot; class=&quot;MsoNormal&quot;&gt;&lt;span style=&quot;font-family: &#039;Courier New&#039;;&quot;&gt;09:19:55.312: &amp;gt;&amp;gt; RCPT To:&amp;lt;r.blower@neocap.org&amp;gt;&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt; &lt;p style=&quot;margin: 0in 0in 0pt;&quot; class=&quot;MsoNormal&quot;&gt;&lt;span style=&quot;font-family: &#039;Courier New&#039;;&quot;&gt;09:19:55.312: &amp;lt;&amp;lt; 250 Recipient OK - send RCPT or DATA.&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt; &lt;p style=&quot;margin: 0in 0in 0pt;&quot; class=&quot;MsoNormal&quot;&gt;&lt;span style=&quot;font-family: &#039;Courier New&#039;;&quot;&gt;09:19:55.359: &amp;gt;&amp;gt; DATA&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt; &lt;p&gt;&lt;span style=&quot;font-family: &#039;Courier New&#039;; font-size: 10pt;&quot;&gt;09:19:55.359: &amp;lt;&amp;lt; 354 OK, send data, end with CRLF.CRLF&amp;lt;cr&amp;gt;&amp;lt;lf&amp;gt;&lt;/span&gt;[/quote]&lt;/p&gt;&lt;p&gt;The rest is OK, but the client never asked for a startTLS connection.&lt;/p&gt;&lt;p&gt;If you don&#039;t need TLS then you can turn it off in the MercuryS config.&amp;nbsp; If it fails for just one server, you could try to debug it with their tech people.&amp;nbsp; Have you set up your own, separate, certificates?&lt;/p&gt;&lt;p&gt;I still don&#039;t know what you are running.&amp;nbsp;&lt;/p&gt;

I am running V 4.62 on an XP Pro machine.  Everyone connects through IMAP.  I have only created one certificate in MercuryS. 

If I turn this feature off then servers who send TLS messages will not be able to connect, correct?

 Sorry, I forgot that info.

&lt;P&gt;I am running V 4.62 on an XP Pro machine.&amp;nbsp; Everyone connects through IMAP.&amp;nbsp; I have only created one certificate in MercuryS.&amp;nbsp; &lt;/P&gt; &lt;P&gt;If I turn this feature off then servers who send TLS messages will not be able to connect, correct?&lt;/P&gt; &lt;P&gt;&amp;nbsp;Sorry, I forgot that info.&lt;/P&gt;

If you turn it off Mercury won't announce that it supports STARTTLS, and consequently no connecting server should attempt to use it.

/Rolf 

&lt;p&gt;If you turn it off Mercury won&#039;t announce that it supports STARTTLS, and consequently no connecting server should attempt to use it. &lt;b&gt;&lt;/b&gt;&lt;/p&gt;&lt;p&gt;/Rolf&amp;nbsp;&lt;/p&gt;

[quote user="Rolf Lindby"]

If you turn it off Mercury won't announce that it supports STARTTLS, and consequently no connecting server should attempt to use it.

/Rolf 

[/quote]

But will this result in me not getting the message at all or will the sending server convert the message and send it unencrypted?

[quote user=&quot;Rolf Lindby&quot;] &lt;P&gt;If you turn it off Mercury won&#039;t announce that it supports STARTTLS, and consequently no connecting server should attempt to use it. &lt;B&gt;&lt;/B&gt;&lt;/P&gt; &lt;P&gt;/Rolf&amp;nbsp;&lt;/P&gt; &lt;P&gt;[/quote]&lt;/P&gt; &lt;P&gt;But will this result in me not getting the message at all or will the sending&amp;nbsp;server convert the message and&amp;nbsp;send it unencrypted?&lt;/P&gt;

TLS is a way to encrypt a data transmission, so the message itself isn't really encrypted and will need no conversion to be sent without TLS (even if the sending party submitted it to his mail server using TLS).

Any normal, public mail server will send without TLS if  STARTTLS isn't available. Within an organization of some kind there might be special restrictions that require encryption, but if so you should know about it.

/Rolf 

&lt;p&gt;&lt;span class=&quot;Apple-style-span&quot; style=&quot;font-family: Tahoma; &quot;&gt;TLS is a way to encrypt a data transmission, so the message itself isn&#039;t really encrypted and will need no conversion to be sent without TLS (even if the sending party submitted it to his mail server using TLS).&lt;/span&gt;&lt;/p&gt;&lt;p&gt;Any normal, public mail server will send without TLS if &nbsp;&lt;span class=&quot;Apple-style-span&quot; style=&quot;font-family: Tahoma; &quot;&gt;STARTTLS isn&#039;t available. Within an organization of some kind there might be special restrictions that require encryption, but if so you should know about it.&lt;/span&gt;&lt;/p&gt;&lt;p&gt;/Rolf&nbsp;&lt;/p&gt;

Thanks for the explaination.  This helps a lot.  I'm going to turn it off and see what happens.

Thanks for the explaination.&amp;nbsp; This helps a lot.&amp;nbsp; I&#039;m going to turn it off and see what happens.
live preview
enter atleast 10 characters
WARNING: You mentioned %MENTIONS%, but they cannot see this message and will not be notified
Saving...
Saved
With selected deselect posts show selected posts
All posts under this topic will be deleted ?
Pending draft ... Click to resume editing
Discard draft