Re: Calmail SSL - OS 9 Eudora

From: Aron Roberts <aron_at_socrates.berkeley.edu>
Date: Fri Feb 04 2005 - 13:56:37 PST

In the message "Re: [MAGNet] Calmail SSL - OS 9 Eudora", dated
2005-01-24, Mikael Hansen wrote:

>It is my impression that 6.1.1 is the only Eudora version that works
>in successfully bridging security for Mac OS 9 and CalMail.

   FWIW, I've successfully used Eudora 5.2.1 for Mac OS 9 to connect
securely to CalMail to retrieve mail via POP and IMAP, and to send
mail via SMTP.

   In Eudora 5.2.1's "Special" menu, "Settings..." window, "SSL"
panel, this required selecting the "Required (Alternate Port")
options. (This connects to ports 995, 993, and 465, respectively,
via SSL 3.0 encryption.)

   Eudora 6.1.1 for Mac OS 9 can also connect securely to CalMail via
the CalMail-recommended "Required (TLS)" option in the "SSL" panel,
which Eudora 5.2.1 doesn't appear to support. (This uses TLS 1.0
encryption initiated via the STARTTLS mechanism on the standard POP,
IMAP, and SMTP ports, 110, 143, and 25.)

   Mikael (and others), have you had any long-term experiences with
5.2.1 that suggest that it might be unreliable when connecting
securely to CalMail?

   Obviously, any users encountering problems with that version are
encouraged to upgrade to 6.1.1 or later, and with a few exceptions,
we almost always recommend using current or otherwise relatively
recent versions of campus-distributed software products.

At 21:44 -0800 2005-01-25, Mikael Hansen wrote:
>At 11:03 -0800 1/25/05, Aron Roberts wrote:
>> Sending and receiving mail over SSL/TLS encrypted connections in
>>Eudora - under 'factory' or 'clean' (i.e. non-upgrade)
>>installations of Panther - will silently fail if this [adding at
>>least one cert to the default login keychain] isn't carried out
>>[per
>><http://seaotter.berkeley.edu/calmail/help/troubleshooting/eudoramac-encryption.html>].
>
>That may or may not be valid for 6.2, given the switch to OpenSSL
>and various related bug fixes. The latest release is 6.2.1, which
>can be picked up at <http://www.eudora.com/download/>; the 6.1.1 ucb
>site license registration works in 6.2.x.

   I may be mistaken, but my impression is that it was only the
Windows versions of Eudora which recently changed SSL libraries, from
Certicom SSL Plus to OpenSSL, and that Eudora for Mac OS X has used
OpenSSL all along. And the issue which causes Eudora to silently
fail to securely receive or send mail in some circumstances under
Panther isn't related, to the best of my knowledge, to the SSL
libraries used.

Aron Roberts
Workstation Software Support Group

------------------------------------------------------------------------
The following was automatically added to this message by the list server:

For information about MAGNet, its meetings and events, and its
mailing list, including information on subscribing and unsubscribing,
see the MAGNet Web site at <http://magnet.berkeley.edu/>.
Received on Fri Feb 4 13:58:11 2005

This archive was generated by hypermail 2.1.8 : Fri Feb 04 2005 - 13:58:11 PST