Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    SMTP Notifications issues with TLS/SSL & STARTTLS (resolved but curious)

    Scheduled Pinned Locked Moved General pfSense Questions
    2 Posts 2 Posters 258 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • CatSpecial202C
      CatSpecial202
      last edited by CatSpecial202

      Update: I changed the port to 465 and it seems like i can send notifications now. I had to save the notifications page BEFORE performing the test.

      So, it works when both check boxes are ticked in Secure SMTP Connection and Validate SSL/TLS with port 465.

      However, when i have port 587 it ONLY works when I have Validate SSL/TLS connection ticked and not Secure SMTP connection.

      Why is that? Is one more secure than the other?

      When I have both of the SSL/TLS options check and port 587 i get this error ...

      Could not send the message to <email@removed.com> -- Error: Failed to connect to 
      ssl://smtp.myserver.ch:587 [SMTP: Failed to connect socket: fsockopen(): Unable to connect to ssl://smtp.myserver.ch:587 
      (Unknown error) (code: -1, response: )]
      

      smtp2.png

      When i only have the first option Enabled SMTP over SSL/TLS checked and port 587....

      538ab21b-0f6f-4465-9c20-a89a10d59bd2-image.png

      I get this error:

      Could not send the message to <email@removed.com>-- Error: Failed to connect to 
      ssl://smtp.myserver.ch:587 [SMTP: Failed to connect socket: stream_socket_client(): Unable to connect to 
      ssl://smtp.myserver.ch:587 (Unknown error) (code: -1, response: )]
      

      When i only have the second one and port 587 it works ...

      61854504-a5cb-4ab5-91ad-f973675ba072-image.png

      SMTP testing e-mail successfully sent
      
      johnpozJ 1 Reply Last reply Reply Quote 1
      • johnpozJ
        johnpoz LAYER 8 Global Moderator @CatSpecial202
        last edited by johnpoz

        @CatSpecial202 there is another thread going over this topic actually..

        587 is explicit use of tls, ie it would make a non secure connection and then use starttls to to convert to an encrypted session. While port 465 is implicit connection only, so no that checkbox would prob not work on port 587

        here is the thread where that is being discussed, kind of as a side topic

        https://forum.netgate.com/topic/190885/empty-message-id-in-smtp-test-email

        An intelligent man is sometimes forced to be drunk to spend time with his fools
        If you get confused: Listen to the Music Play
        Please don't Chat/PM me for help, unless mod related
        SG-4860 24.11 | Lab VMs 2.8, 24.11

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.