Answered: Question regarding the securing of a virtual server

Thanks to the generous help of forum readers, my new virtualmin server is up and running. I plan to update my DNS records this weekend and start using it for real.

I have tested my Outlook configuration and it works with SSL for both POP and SMTP. Thus, my question: Should I ‘disable’ non-SSL SMTP connections on port 25 and/or POP connections on port 110? If so, how do I do this?

Thank you.


It’s personal preference whether or not to allow that, but if you wish to disable plantext logins in Dovecot, you can do that by going into Webmin -> Servers -> Dovecot -> SSL Configuration, and in there, you can set “Disallow plaintext authentication in non-SSL mode?” to “Yes”.