Re: Should I enable STARTTLS for S2S in ejabberd

Peter Saint-Andre <[email protected]>
Newsgroups gmane.network.jabber.admin
Message-ID <[email protected]>
Damjan wrote:
> Hi all,
> I just installed ejabberd (2.0.1) on Debian and I'm planning to migrate
> several old (very old - I hate them) jabberd2 and jabberd1 domains to it.
> 
> No, I see by default on Debian there's a self signed certificate in
> /etc/ejabberd/ejabberd.pem and by default starttls is true. Will that
> make me problems with s2s operation? 

No, but you can get a free CA-issued cert here:

http://xmpp.org/ca/

> Should I disable s2s_use_starttls?

Not really. Most server implementations will try TLS and use it if
possible, but if they don't like your cert they'll just default to
server dialback. So there's no harm in trying. :)

Peter

-- 
Peter Saint-Andre
https://stpeter.im/


_______________________________________________
JAdmin mailing list
FAQ: http://www.jabber.org/discussion-lists/jadmin-faq
Forum: http://www.jabberforum.org/forumdisplay.php?f=19
Info: http://mail.jabber.org/mailman/listinfo/jadmin
Unsubscribe: [email protected]
_______________________________________________
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.