I'd be very surprised if correctly configured SMTP using TLS is intercepted.
If I use SMTP to send via gmail with SSL/TLS over port 587, the headers show it hopping through 5 stanford.edu servers, and finally `spf=softfail (google.com: domain of transitioning xxx@gmail.com does not designate (a stanford IP) as permitted sender)`.
Stripping TLS is unforgivable. Shame on them.
Been some time since I used a desktop email client, so I'm unsure if clients have now been upgraded to reject sending mails to/through servers that don't do STARTTLS. But I'm guessing no.
It's sometimes quite helpful to built on the codebase that invented SSL.
Honestly, if you think that's bad, try getting a server online (in the datacenter!). The network admins take their firewall rules very seriously (as well they should).
For me, the biggest pain is the two (yes, two) backup services that must be installed for my department.
This doesn't make any sense - either you were sending them via Stanford or you weren't. If you weren't, how can they be relayed via Stanford?
http://serverfault.com/questions/382329/routing-smtp-and-pop...