Enable TLS encryption?
TLS certificate file /path/to/your/certificate TLS private key file /part/to/your/key Optionally, if using a chained certificate: TLS certificate authority file /path/to/your/CA-file If you are using a chained certificate (including the popular low cost “Standard Certificate” offered by GoDaddy), the chain (called sf_issuing.crt from GoDaddy) file they provide is the one you need in the certificate authority field. Your key file should never be readable by anyone other than root (Postfix will start as root to bind to its ports and to read in configuration files and SSL files). Save it, and restart Postfix.