- by default, do not require TLS (connection security can be guaranteed by the underlying service mesh, e.g. istio) - add a new ENV variable to allow configuring TLS as mandatory
- Introduce the "probe" script for K8s probes
- Drop support for AmavisD - Drop support for client certificates - the authentication should be left to the underlying infrastructure (e.g. istio)
- Enable recipient_delimiter (address extension)
- Resolve various security vulnerabilities
- Fixing various CVEs in OpenSSL 3.0.7 and 1.1.1s
- Resolves security vulnerability CVE-2022-40674
- Resolves security vulnerabilities CVE-2022-2097, CVE-2022-30065, CVE-2022-37434