Community Discussions and Support
SMTP security protocol problem

> Yesterday, that all changed.  Now I can only receive (POP3) emails,
> but my sending is blocked no matter which of the three security
> protocol buttons I choose.  I can ping the mail server; nothing
> wrong with the hardware link.

What we really need to see is a session log showing exactly what is happening between Pegasus Mail and the host.  I suspect from your mail that you need to be using STARTTLS with your username and password and then also use SMTP authentication.

>
> Three different error messages, "Never" brings "must start TTLS
> first."
>
> Use STARTTLS brings "user not authenticated."
>
> Via direct SSL brings no explanation except "network error."
>
> I've spent three long calls to my ISP support, which is Bell
> Telephone in Canada, emails ending in @sympatico.ca
>
> As English isn't the first language of the overseas support people,
> it's a little hard to communicate, but as far as I can tell, their
> system made a "security change" and who knows what that was, but it
> does block Pegasus sending.
>
> Sad to report, Windows Mail, the Vista incarnation of what used to
> be called "Outlook," DOES work.
>
> It appears that there is some additional security protocol feature in
> Windows Mail that doesn't exist in Pegasus.  (Sad sad day for the
> emailing world!)

Probably it because of something that outlook does not do, CRAM-MD5, and this has been causing all sorts of problems when it's advertised and then not implemented.  You can use PB1 and tell the system to never use CRAM-MD5.  From the PB1 help:

Do not use CRAM-MD5 authentication even if it is advertised  This one's a bit technical, so please bear with us... The process of logging into the SMTP server to authenticate your identity can take a variety of forms: the server "advertises" the forms it understands, and Pegasus Mail looks through that list, choosing the most secure form it recognizes. Some forms are very "weak", in that they either transmit your credentials as clear text or in a form that can be easily broken, while other forms are "strong", in the sense that it is very difficult to work out your credentials simply by observing the exchange of data between the two programs. Unfortunately, one of the strongest forms of authentication, called CRAM-MD5, is commonly misconfigured on SMTP servers, even at quite reputable ISPs - the server will advertise that it supports it, but will actually fail any attempt to use it. Getting the ISP to realize that they are at fault is a lost cause in most cases - it's almost always easier simply to check this control, which tells Pegasus Mail never to use CRAM-MD5 for this server. You should be aware that you reduce the security of your connection by checking this control: CRAM-MD5 is the only commonly-used authentication form that offers reasonable security, and by disabling it, you force Pegasus Mail to use less secure methods... But sometimes you may decide that being able to send mail is more important than being able to do it securely. The choice is yours.

> Yesterday, that all changed.  Now I can only receive (POP3) emails, > but my sending is blocked no matter which of the three security > protocol buttons I choose.  I can ping the mail server; nothing > wrong with the hardware link. What we really need to see is a session log showing exactly what is happening between Pegasus Mail and the host.  I suspect from your mail that you need to be using STARTTLS with your username and password and then also use SMTP authentication. > > Three different error messages, "Never" brings "must start TTLS > first." > > Use STARTTLS brings "user not authenticated." > > Via direct SSL brings no explanation except "network error." > > I've spent three long calls to my ISP support, which is Bell > Telephone in Canada, emails ending in @sympatico.ca > > As English isn't the first language of the overseas support people, > it's a little hard to communicate, but as far as I can tell, their > system made a "security change" and who knows what that was, but it > does block Pegasus sending. > > Sad to report, Windows Mail, the Vista incarnation of what used to > be called "Outlook," DOES work. > > It appears that there is some additional security protocol feature in > Windows Mail that doesn't exist in Pegasus.  (Sad sad day for the > emailing world!) Probably it because of something that outlook does not do, CRAM-MD5, and this has been causing all sorts of problems when it's advertised and then not implemented.  You can use PB1 and tell the system to never use CRAM-MD5.  From the PB1 help: <i><b>Do not use CRAM-MD5 authentication even if it is advertised</b>  This one's a bit technical, so please bear with us... The process of logging into the SMTP server to authenticate your identity can take a variety of forms: the server "advertises" the forms it understands, and Pegasus Mail looks through that list, choosing the most secure form it recognizes. Some forms are very "weak", in that they either transmit your credentials as clear text or in a form that can be easily broken, while other forms are "strong", in the sense that it is very difficult to work out your credentials simply by observing the exchange of data between the two programs. Unfortunately, one of the strongest forms of authentication, called CRAM-MD5, is commonly misconfigured on SMTP servers, even at quite reputable ISPs - the server will advertise that it supports it, but will actually fail any attempt to use it. Getting the ISP to realize that they are at fault is a lost cause in most cases - it's almost always easier simply to check this control, which tells Pegasus Mail never to use CRAM-MD5 for this server. You should be aware that you reduce the security of your connection by checking this control: CRAM-MD5 is the only commonly-used authentication form that offers reasonable security, and by disabling it, you force Pegasus Mail to use less secure methods... But sometimes you may decide that being able to send mail is more important than being able to do it securely. The choice is yours.</i>

I've been a very happy user of Pegasus since 1996.  Best package there is, as far as I'm concerned.

I've used it with complete success over the years in Windows 98, XP and Vista.

Yesterday, that all changed.  Now I can only receive (POP3) emails, but my sending is blocked no matter which of the three security protocol buttons I choose.  I can ping the mail server; nothing wrong with the hardware link. 

Three different error messages, "Never" brings "must start TTLS first."

Use STARTTLS brings "user not authenticated."

Via direct SSL brings no explanation except "network error."

I've spent three long calls to my ISP support, which is Bell Telephone in Canada, emails ending in @sympatico.ca

As English isn't the first language of the overseas support people, it's a little hard to communicate, but as far as I can tell, their system made a "security change" and who knows what that was, but it does block Pegasus sending.

Sad to report, Windows Mail, the Vista incarnation of what used to be called "Outlook," DOES work.

It appears that there is some additonal security protocol feature in Windows Mail that doesn't exist in Pegasus.  (Sad sad day for the emailing world!)

* If anyone on this forum is aware of this problem, and knows of a workaround, I'd be grateful if they would post it here and email me a copy too - ewraven1@sympatico.ca

* By the way, my favourite feature of Pegasus is that you can maintain your email lists as SIMPLE TEXT FILES, without having to go through nightmarish menus to just add a single email address.

By keeping the mailing lists as text files, one can put the emails in order, and rapidly switch each address on and off by just slipping a backslash in front of addresses to be turned off.  Can't do that in Windows Mail ... you are forced to flip through menus in alphabetical order.  In Windows Mail you can't switch addresses off - you have to remove them.  It's clear their staff doesn't use much in the way of emailing lists.

All good things to David Harris - may he live long and prosper!  (I'd be glad to pay for this package!)

Eleanor White
Elliot Lake, Ontario
Canada

<P>I've been a very happy user of Pegasus since 1996.  Best package there is, as far as I'm concerned.</P> <P>I've used it with complete success over the years in Windows 98, XP and Vista.</P> <P>Yesterday, that all changed.  Now I can only receive (POP3) emails, but my sending is blocked no matter which of the three security protocol buttons I choose.  I can ping the mail server; nothing wrong with the hardware link.  </P> <P>Three different error messages, "Never" brings "must start TTLS first."</P> <P>Use STARTTLS brings "user not authenticated."</P> <P>Via direct SSL brings no explanation except "network error."</P> <P>I've spent three long calls to my ISP support, which is Bell Telephone in Canada, emails ending in @sympatico.ca</P> <P>As English isn't the first language of the overseas support people, it's a little hard to communicate, but as far as I can tell, their system made a "security change" and who knows what that was, but it does block Pegasus sending.</P> <P>Sad to report, Windows Mail, the Vista incarnation of what used to be called "Outlook," DOES work.</P> <P>It appears that there is some additonal security protocol feature in Windows Mail that doesn't exist in Pegasus.  (Sad sad day for the emailing world!)</P> <P>* If anyone on this forum is aware of this problem, and knows of a workaround, I'd be grateful if they would post it here and email me a copy too - <A href="mailto:ewraven1@sympatico.ca">ewraven1@sympatico.ca</A></P> <P>* By the way, my favourite feature of Pegasus is that you can maintain your email lists as SIMPLE TEXT FILES, without having to go through nightmarish menus to just add a single email address.</P> <P>By keeping the mailing lists as text files, one can put the emails in order, and rapidly switch each address on and off by just slipping a backslash in front of addresses to be turned off.  Can't do that in Windows Mail ... you are forced to flip through menus in alphabetical order.  In Windows Mail you can't switch addresses off - you have to remove them.  It's clear their staff doesn't use much in the way of emailing lists.</P> <P>All good things to David Harris - may he live long and prosper!  (I'd be glad to pay for this package!)</P> <P>Eleanor White Elliot Lake, Ontario Canada </P>
live preview
enter atleast 10 characters
WARNING: You mentioned %MENTIONS%, but they cannot see this message and will not be notified
Saving...
Saved
With selected deselect posts show selected posts
All posts under this topic will be deleted ?
Pending draft ... Click to resume editing
Discard draft