Once I've obtained free certificates from Let's Encrypt, preferrably with dehydrated on FreeBSD, I'm going to modify Postfix's config file so they can be used to secure SMTP traffic.

Assuming I'm storing my Let's Encrypt certificates in dehydrated's default directory, and my domain is mimar.rs, the following lines in main.cf should do the trick:

smtpd_tls_cert_file = /usr/local/etc/dehydrated/certs/mimar.rs/fullchain.pem
smtpd_tls_key_file = /usr/local/etc/dehydrated/certs/mimar.rs/privkey.pem

