I did the same thing on the console and this is what happens: bash-3.2$ openssl s_client -connect example.com:993 CONNECTED(00000003) [...] Server certificate -----BEGIN CERTIFICATE----- [...] -----END CERTIFICATE----- [...] CA --- No client certificate CA names sent --- SSL handshake has read 4595 bytes and written 322 bytes --- New, TLSv1/SSLv3, Cipher is DHE-RSA-AES256-SHA Server public key is 2048 bit Compression: NONE Expansion: NONE SSL-Session: [...] --- * OK Dovecot ready . login admin at example.com secret . OK Logged in. . select INBOX * FLAGS (\Answered \Flagged \Deleted \Seen \Draft KMAILFORWARDED KMAILTODO KMAILWATCHED KMAILIGNORED $FORWARDED $TODO $WATCHED $IGNORED NonJunk) * OK [PERMANENTFLAGS (\Answered \Flagged \Deleted \Seen \Draft KMAILFORWARDED KMAILTODO KMAILWATCHED KMAILIGNORED $FORWARDED $TODO $WATCHED $IGNORED NonJunk \*)] Flags permitted. * 4 EXISTS * 0 RECENT * OK [UNSEEN 1] First unseen. * OK [UIDVALIDITY 1230136990] UIDs valid * OK [UIDNEXT 77] Predicted next UID . OK [READ-WRITE] Select completed. . copy 1 Trash closed