[mailop] key exchange parameters: ECDHE, DHE, RFC 7919

2023-07-11 Thread Paul Menzel via mailop
Dear mail operators, Testing the mail setup, I was surprised to have the key exchange parameters flagged [1]: a1241.mx.srv.dfn.de.DH-2048 insufficient Explanation: DHE: The security of Diffie-Hellman Ephemeral (DHE) key exchange depends on the lengths of the public and secret

Re: [mailop] key exchange parameters: ECDHE, DHE, RFC 7919

2023-07-13 Thread Paul Menzel via mailop
Dear Bastian, Thank you for your reply. Am 11.07.23 um 19:43 schrieb Bastian Blank: On Tue, Jul 11, 2023 at 05:47:12PM +0200, Paul Menzel via mailop wrote: Testing the mail setup, I was surprised to have the key exchange parameters flagged [1]: a1241.mx.srv.dfn.de.DH-2048

Re: [mailop] Legit-looking mail to the wrong address with no unsubscribe

2023-08-24 Thread Paul Menzel via mailop
Dear Chris, Am 24.08.23 um 14:12 schrieb Chris Adams via mailop: What do you do when legitimate mail (lately, DoorDash order info and Delta Airlines tickets) is sent to the wrong address? These types of messages rarely have an unsubscribe method. I get a ton of crap to a Gmail address that I

Re: [mailop] Success MiTM attack

2023-10-22 Thread Paul Menzel via mailop
Dear Mary, Am 22.10.23 um 11:48 schrieb Mary via mailop: from what I understand, this is a government issued wiretapping against that specific services/servers (hosted by Hetzner and Linode in Germany?) and not a general TLS exploit. so nothing interesting or unique. It was interesting and su

[mailop] MTA-STS: No TLS reports from Google since January 9th

2024-01-17 Thread Paul Menzel via mailop
Dear mail operators, Since January 9th, 2024 we have not received any (MTA-STS) TLS reports from google.com (noreply-smtp-tls-report...@google.com). We still get TLS reports from other organizations. Does somebody know more? Kind regards, Paul _

Re: [mailop] MTA-STS: No TLS reports from Google since January 9th

2024-01-25 Thread Paul Menzel via mailop
Dear mail operators, Am 17.01.24 um 10:04 schrieb Paul Menzel via mailop: Since January 9th, 2024 we have not received any (MTA-STS) TLS reports from google.com (noreply-smtp-tls-report...@google.com). We still get TLS reports from other organizations. Does somebody know more? I got one

Re: [mailop] Off-Topic - VMWare ESXI 7.0

2024-04-16 Thread Paul Menzel via mailop
Dear Eric, Am 16.04.24 um 01:06 schrieb Eric Tykwinski via mailop: I know this is totally off topic now, but how are you feeling about their support contracts. (ProxMox) (Nit: Proxmox is the official spelling – no camel-case.) 1.020 €/(year & CPU socket) for the plan *Premium* is quite cheap

[mailop] Google Mail rejects forwarded email despite `~all` in SPF

2024-04-22 Thread Paul Menzel via mailop
Dear mail operators, A users sends a message to x...@uni-potsdam.de, and the user X there has a forward set up to their y...@gmail.com address. Now smtpin.uni-potsdam.de returns a delivery failure from Google Mail: The following message to was undeliverable. The reason for the probl

[mailop] Problems with invoices.premierinn.de and postmas...@premierinn.de

2024-04-25 Thread Paul Menzel via mailop
Dear mail operators, Until now we rejected emails from donotre...@invoices.premierinn.de 2024-04-23.log:2024-04-23 17:48:53 194.95.238.12 <22>Apr 23 17:48:53 mgw6-erl postfix/smtpd[744016]: NOQUEUE: reject: RCPT from fra-smtp2.oracleindustry.com[138.1.67.161]:19102: 554 5.1.8 : Sender ad

Re: [mailop] Gmail not accepting bounces coming from vacation messages because of null sender and SPF/DKIM

2024-08-27 Thread Paul Menzel via mailop
Dear Eduardo, Am 27.08.24 um 12:56 schrieb Eduardo Diaz Comellas via mailop: I've got a couple of complains from customers saying that the vacation message is not being received by Gmail users. Our email service is quite standard, with dovecot+sieve processing the email storage and autorespo

[mailop] No TLS reports from microsoft.com since March 29th

2023-04-12 Thread Paul Menzel via mailop
Dear mail operators, Since March 29th, 2023 we have not received any (MTA-STS) TLS reports from microsoft.com. We still get TLS reports from google.com and SocketLabs. Have I missed an announcement, that Microsoft stopped sending such TLS reports? Does somebody know more? Kind regards, P

Re: [mailop] No TLS reports from microsoft.com since March 29th

2023-04-18 Thread Paul Menzel via mailop
Dear mail operators, Am 14.04.23 um 14:05 schrieb Gellner, Oliver: On 12.04.2023 at 17:03 Paul Menzel wrote: Since March 29th, 2023 we have not received any (MTA-STS) TLS reports from microsoft.com. We still get TLS reports from google.com and SocketLabs. I can confirm that the last TLS repo

[mailop] Unsolicited messages from *.outbound-mail.sendgrid.net

2024-10-14 Thread Paul Menzel via mailop
Dear mail operators, Since at least September 17th, 2024, we receive a lot of unsolicited messages from SendGrid. I forwarded five to ab...@sendgrid.net, but there was no reply and the problem persists. Today at least five messages from xvfrkpcc.outbound-mail.sendgrid.net [168.245.19.204] sl

[mailop] Gmail emoji reactions

2024-12-01 Thread Paul Menzel via mailop
Dear mail operators, Since this week I got some emails from Gmail with just an emoji in the body. A quick search leads to some marketing and a help article [1]: Reply to emails with emoji reactions Express yourself and quickly respond to emails with emojis. […] Why you may get emoji rea

Re: [mailop] freedesktop.org contact

2025-01-17 Thread Paul Menzel via mailop
Dear Marco, Am 16.01.25 um 17:48 schrieb Marco Moock via mailop: Do people from freedesktop.org read this list or do people know a contact address for the list server admins? Their Web site [1] says: The admins are reachable through GitLab issues or the sitewranglers list. In their GitLa

[mailop] OVH: RIPE listed abuse address sends automated reply to use form

2025-03-28 Thread Paul Menzel via mailop
Dear mail operators, I forwarded a message to ab...@ovh.net, listed in the RIPE database (`whois …`). I got the automated reply below: Am 28.03.25 um 10:23 schrieb no-re...@abuse.ovh.net: Thank you for taking the time to contact the OVHcloud Trust & Safety Team. This is an automatic reply

[mailop] STRATO sets _dmarc DNS record without notifying the customer

2025-05-29 Thread Paul Menzel via mailop
Dear mail operators, Just a heads-up, that the German hoster/provider STRATO set up the DMARC policy reject yesterday(?) for their customers without notifying them. $ dig txt _dmarc.example.net +short "v=DMARC1;p=reject;" Going into their configuration interface, under the DNS settin