Let's say i have these records:
- A mail.somedomain: 127.0.0.1
- A mail.mailserverdomain: 127.0.0.1
- MX somedomain: mail.somedomain
A MTA connects mail.somedomain
for delivering mail to somedomain
and gets a certificate for mail.mailserverdomain
presented, and the MTA presents its hostname as mail.mailserverdomain
in HELO
.
Is this a valid TLS session or would this mean a certificate for a wrong hostname (expecting somedomain
or reverse.somedomain
)?