photog.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
A place for your photos and banter. Photog first is our motto Please refer to the site rules before posting.

Administered by:

Server stats:

244
active users

#mailadmin

0 posts0 participants0 posts today
Jan Wildeboer 😷:krulorange:<p><a href="https://social.wildeboer.net/tags/NerdTalk" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>NerdTalk</span></a> Wow. A multi-step, sophisticated way of spoofing emails that pass SPF, DKIM, DMARC. Hardcore.</p><p>"And most importantly, the key trick is that you can put anything you want in the App Name field in Google"</p><p>Le sigh. That's where they put the email text. In the App Name field. Google can fix this by sanitising input better. </p><p><a href="https://easydmarc.com/blog/google-spoofed-via-dkim-replay-attack-a-technical-breakdown/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">easydmarc.com/blog/google-spoo</span><span class="invisible">fed-via-dkim-replay-attack-a-technical-breakdown/</span></a></p><p><a href="https://social.wildeboer.net/tags/Spam" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Spam</span></a> <a href="https://social.wildeboer.net/tags/Phishing" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Phishing</span></a> <a href="https://social.wildeboer.net/tags/MailAdmin" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>MailAdmin</span></a></p>
rixx<p>because running a mail server wasn’t fun enough: the Dovecot 2.3 → 2.4 update has tons of breaking config changes</p><p>(h/t to <a href="https://willem.com/blog/2025-06-04_breaking-changes/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">willem.com/blog/2025-06-04_bre</span><span class="invisible">aking-changes/</span></a> for the exhaustive breakdown of the changes)</p><p><a href="https://chaos.social/tags/mailadmin" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>mailadmin</span></a> <a href="https://chaos.social/tags/dovecot" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dovecot</span></a> <a href="https://chaos.social/tags/postfix" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>postfix</span></a> <a href="https://chaos.social/tags/sysadmin" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sysadmin</span></a></p>
Jonathan Kamens 86 47<p><a href="https://federate.social/tags/tfw" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>tfw</span></a> You have to email a government agency, explain in excruciating detail why your mail server (and any other that enforces <a href="https://federate.social/tags/DMARC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DMARC</span></a>) can't receive certain emails they're sending that fail their DMARC policy, and then cross your fingers and pray that the tier 1 customer service rep who reads your email forwards it to someone who can fix the problem AND said someone actually takes the time to do it. *sigh*<br><a href="https://federate.social/tags/smtp" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>smtp</span></a> <a href="https://federate.social/tags/SysAdmin" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SysAdmin</span></a> <a href="https://federate.social/tags/MailAdmin" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>MailAdmin</span></a></p>
h3artbl33d :openbsd: :ve:<p>When you are running your own mailserver(s) - do you have SPF, DKIM and DMARC implemented? Utilizing DMARC properly can be cumbersome. Sure, you could throw the reports to some cloud, but that ain't privacy friendly.</p><p>I parse all the reports using Perl, throw them in a PostgreSQL database and visualize it with a PHP script.</p><p>The PHP script for the <a href="https://github.com/userjack6880/Open-DMARC-Analyzer" rel="nofollow noopener" target="_blank">webinterface can be found on GitHub</a>, likewise <a href="https://github.com/userjack6880/Open-Report-Parser" rel="nofollow noopener" target="_blank">for the Perl parser</a>.</p><p>Please be advised that the webui has no authentication or account system. Either run it locally or take proper measures.</p><p><a href="https://exquisite.social/tags/mailadmin" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>mailadmin</span></a> <a href="https://exquisite.social/tags/mailop" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>mailop</span></a> <a href="https://exquisite.social/tags/selfhosting" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>selfhosting</span></a> <a href="https://exquisite.social/tags/spf" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>spf</span></a> <a href="https://exquisite.social/tags/dkim" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dkim</span></a> <a href="https://exquisite.social/tags/dmarc" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dmarc</span></a> <a href="https://exquisite.social/tags/opensmtpd" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>opensmtpd</span></a></p>