On 13.06.24 23:16, Erwin Hoffmann wrote:
could somebody pls check

ns1.samba.org? (from list.samba.org)

I get strange results here.

smtp.samba.org

is just fine.

see https://en.wikipedia.org/wiki/Nolisting

If you use "nolisting" and use DANE, you should make sure to have syntactically correct TLSA records for the nolisting MX hosts, which ideally don't match any other existing cert. This is what ns1.samba.org has:

# host -t TLSA _25._tcp.ns1.samba.org
_25._tcp.ns1.samba.org has TLSA record 3 0 1 00000000000000000000000000000000000000000000000000000000 00000000

Björn

Reply via email to