X-Git-Url: https://git.exim.org/users/jgh/exim.git/blobdiff_plain/8ac90765750f87c573300b9e953af3d8090cab8b..d16931c81f3e500fa6eafe5ec1c5d8e7db63e65a:/doc/doc-txt/experimental-spec.txt diff --git a/doc/doc-txt/experimental-spec.txt b/doc/doc-txt/experimental-spec.txt index 43f14237b..7805c258e 100644 --- a/doc/doc-txt/experimental-spec.txt +++ b/doc/doc-txt/experimental-spec.txt @@ -709,6 +709,8 @@ an external directory retaining the exim spool format. The spool files can then be processed by external processes and then requeued into exim spool directories for final delivery. +However, note carefully the warnings in the main documentation on +qpool file formats. The motivation/inspiration for the transport is to allow external processes to access email queued by exim and have access to all the @@ -881,12 +883,15 @@ The Exim implementation includes Differences from spec: - we support upgrading the requirement for REQUIRETLS, including adding - it from cold, withing an MTA. The spec only define the sourcing MUA + it from cold, within an MTA. The spec only define the sourcing MUA as being able to source the requirement, and makes no mention of upgrade. - No support is coded for the RequireTLS header (which can be used - to annul DANE and/or STS policiy). [can this be done in ACL?] + to annul DANE and/or STS policiy). [this can _almost_ be done in + transport option expansions, but not quite: it requires tha DANE-present + but STARTTLS-failing targets fallback to cleartext, which current DANE + coding specifically blocks] -Note that REQUIRETLS is only advertised once a TLS connection is acheived +Note that REQUIRETLS is only advertised once a TLS connection is achieved (in contrast to STARTTLS). If you want to check the advertising, do something like "swaks -s 127.0.0.1 -tls -q HELO".