Hello everyone.
Our latest PCI Compliancy scan is failing on "SMTP Service Cleartext Login Permitted" on port 465. It's saying that the server is advertising PLAIN or LOGIN, and to only allow less secure connections via secured channels.
I've actually read just about every article and forum post online regarding this, but I still cannot figure out a way to pass.
I've set:
- WHM > Service Configuration > Mailserver Configuration > Allow Plaintext Authentication = Disabled
- WHM > Service Configuration > Exim Configuration Manager > Require clients to connect with SSL or issue starttls command before they are allowed to authenticate with the server = Enabled
- tls_on_connect_ports = Removing 465 breaks our emails.. So that's a no-go.
Would appreciate some help in resolving this. Thank you!
Our latest PCI Compliancy scan is failing on "SMTP Service Cleartext Login Permitted" on port 465. It's saying that the server is advertising PLAIN or LOGIN, and to only allow less secure connections via secured channels.
I've actually read just about every article and forum post online regarding this, but I still cannot figure out a way to pass.
I've set:
- WHM > Service Configuration > Mailserver Configuration > Allow Plaintext Authentication = Disabled
- WHM > Service Configuration > Exim Configuration Manager > Require clients to connect with SSL or issue starttls command before they are allowed to authenticate with the server = Enabled
- tls_on_connect_ports = Removing 465 breaks our emails.. So that's a no-go.
Would appreciate some help in resolving this. Thank you!