On 13.06.24 23:16, Erwin Hoffmann wrote:
could somebody pls check
ns1.samba.org? (from list.samba.org)
I get strange results here.
smtp.samba.org
is just fine.
see https://en.wikipedia.org/wiki/Nolisting
If you use "nolisting" and use DANE, you should make sure to have
syntactically correct TLSA records for the nolisting MX hosts, which
ideally don't match any other existing cert. This is what ns1.samba.org has:
# host -t TLSA _25._tcp.ns1.samba.org
_25._tcp.ns1.samba.org has TLSA record 3 0 1
00000000000000000000000000000000000000000000000000000000 00000000
Björn