Follow

@disroot Force e-mail to use TLS 1.2 for all clients using IMAP and authenticated SMTP, but allow weak ciphers and even plaintext on submission (port 25). Weak encryption is better than none and there are old, unmaintained mail servers.

Clients, however, can be told to upgrade. That's how it should be.