pawoo.net is part of the decentralized social network powered by Mastodon.
The Social Coop Limited が運営するマストドンインスタンス「Pawoo」は、文章や画像を投稿して楽しむSNSです。 「創作活動や自由なコミュニケーションを楽しめる場」として、どなたにも幅広く使っていただけます。

Server stats:

26K
active users

Learn more

Stéphane Bortzmeyer<p>Email servers: Stalwart claims to replace the different programs (Postfix, Dovecot, SpamAssassin, OpenDKIM, etc) by one program.</p><p>"Installing is simple'" (curl | sudo bash…)</p><p>Bonus: there is an integrated analysis of <a href="https://mastodon.gougere.fr/tags/DMARC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DMARC</span></a> reports :-)</p><p><a href="https://mastodon.gougere.fr/tags/FOSDEM" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>FOSDEM</span></a></p>
Stéphane Bortzmeyer<p>Cours <a href="https://mastodon.gougere.fr/tags/SPF" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SPF</span></a> / <a href="https://mastodon.gougere.fr/tags/DKIM" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DKIM</span></a> / <a href="https://mastodon.gougere.fr/tags/DMARC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DMARC</span></a>. Je leur raconte quoi de joli ?</p>
Mike Kuketz 🛡<p>Warum du für ungenutzte Domains SPF- und DMARC-Records setzen solltest! 👇 </p><p><a href="https://www.kuketz-blog.de/warum-du-fuer-ungenutzte-domains-spf-und-dmarc-records-setzen-solltest/" rel="nofollow noopener noreferrer" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">kuketz-blog.de/warum-du-fuer-u</span><span class="invisible">ngenutzte-domains-spf-und-dmarc-records-setzen-solltest/</span></a></p><p><a href="https://social.tchncs.de/tags/mail" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>mail</span></a> <a href="https://social.tchncs.de/tags/dmarc" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>dmarc</span></a> <a href="https://social.tchncs.de/tags/spf" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>spf</span></a> <a href="https://social.tchncs.de/tags/spam" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>spam</span></a> <a href="https://social.tchncs.de/tags/schutz" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>schutz</span></a> <a href="https://social.tchncs.de/tags/sicherheit" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>sicherheit</span></a> <a href="https://social.tchncs.de/tags/security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>security</span></a></p>
FredOnline<p><span class="h-card"><a href="https://infosec.exchange/@freddieleeman" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>freddieleeman</span></a></span> Thank you for that information, the report in question was indeed an aggregate report. I have a few domains and thought I had changed them all to 'ruf' only but this domain had slipped through. I then changed this domain DMARC report to 'ruf' only. I now understand that because this was XML format it was an aggregate report, but a failure report should be in TXT format. I will update my blog entry accordingly.</p><p><a href="https://fosstodon.org/tags/DMARC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DMARC</span></a></p>
FredOnline<p>My rudimentary understanding of DMARC XML reports:</p><p><a href="https://fredonline.vivaldi.net/2024/11/19/how-to-understand-dmarc-xml-reports/" rel="nofollow noopener noreferrer" target="_blank"><span class="invisible">https://</span><span class="ellipsis">fredonline.vivaldi.net/2024/11</span><span class="invisible">/19/how-to-understand-dmarc-xml-reports/</span></a></p><p><a href="https://fosstodon.org/tags/DMARC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DMARC</span></a></p>
Afnic<p>🛡️ Cyber bonne pratique, cyber bonne nouvelle ! </p><p>🔐 La sécurité des emails se renforce, avec les protocoles SPF, DKIM et DMARC qui jouent un rôle crucial pour contrer la facilité d'usurpation d'adresse e-mail. </p><p>📊 Un an après notre premier état des lieux sur l’adoption de ces mécanismes dans la zone .fr, les résultats sont prometteurs !</p><p>🔗 Découvrez les résultats en détail : <a href="https://www.afnic.fr/observatoire-ressources/papier-expert/spf-dkim-et-dmarc-ladoption-monte-en-fleche-dans-la-zone-fr/" rel="nofollow noopener noreferrer" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">afnic.fr/observatoire-ressourc</span><span class="invisible">es/papier-expert/spf-dkim-et-dmarc-ladoption-monte-en-fleche-dans-la-zone-fr/</span></a></p><p><a href="https://mastodon.social/tags/Afnic" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Afnic</span></a> <a href="https://mastodon.social/tags/SPF" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SPF</span></a> <a href="https://mastodon.social/tags/DKIM" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DKIM</span></a> <a href="https://mastodon.social/tags/DMARC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DMARC</span></a> <a href="https://mastodon.social/tags/BIMI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BIMI</span></a> <a href="https://mastodon.social/tags/Innovation" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Innovation</span></a> <a href="https://mastodon.social/tags/Formation" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Formation</span></a></p>
Jesse Schooff<p>Apparently it doesn't go without saying, so here it is:</p><p>"v=DMARC1; p=none;" is not a valid DMARC record. 🙄</p><p><a href="https://infosec.exchange/tags/email" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>email</span></a> <a href="https://infosec.exchange/tags/dmarc" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>dmarc</span></a></p>
Bearstech<p>Vous faites des cauchemars à base d'e-mails ?</p><p>Comprenez et visualisez comment vos e-mails cheminent sur le Net (SPF, DKIM, <a href="https://mamot.fr/tags/DMARC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DMARC</span></a>) (p)</p><p>👉 learndmarc.com</p>
Goffi<p>My emails are often flagged as 'spam' for my recipients, notably on mailing lists. I've set everything up hopefully correctly (DKIM, DMARC, etc.) and I score 10/10 at <a href="https://www.mail-tester.com/" rel="nofollow noopener noreferrer" target="_blank"><span class="invisible">https://www.</span><span class="">mail-tester.com/</span><span class="invisible"></span></a> . I don't appear to be on any block list, and I own my domain (goffi.org) for over 20 years. </p><p>Any ideas what the problem might be?</p><p><a href="https://mastodon.social/tags/email" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>email</span></a> <a href="https://mastodon.social/tags/decentralization" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>decentralization</span></a> <a href="https://mastodon.social/tags/help" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>help</span></a> <a href="https://mastodon.social/tags/DKIM" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DKIM</span></a> <a href="https://mastodon.social/tags/DMARC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DMARC</span></a> <a href="https://mastodon.social/tags/askfedi" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>askfedi</span></a></p>
🆘Bill Cole 🇺🇦<p>Let’s not. </p><p><a href="https://toad.social/tags/DMARC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DMARC</span></a> adds value to email for very few entities and adds yet another way for email to break, if you let it. One of the hottest threads on the MailOp list right now is in regard to Mimecast mishandling mail in a way that breaks mail signatures, dependent on the encoding a MUA chooses for a message. </p><p>I have spent many hours debugging other people’s DMARC deployments. These are rarely billable hours and are deeply tedious. <a href="https://ioc.exchange/@percepticon/113347954887616002" rel="nofollow noopener noreferrer" target="_blank"><span class="invisible">https://</span><span class="ellipsis">ioc.exchange/@percepticon/1133</span><span class="invisible">47954887616002</span></a></p>
Afnic<p>🗓️ Formation Sécuriser son courrier électronique grâce au DNS avec DKIM, DMARC, SPF les 10 et 11 octobre ou 5 et 6 décembre 2024.</p><p>✅ Programme complet et inscriptions sur <a href="https://www.afnic.fr/produits-services/formations/dkim-dmarc-spf-securiser-son-courrier-electronique-grace-au-dns/" rel="nofollow noopener noreferrer" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">afnic.fr/produits-services/for</span><span class="invisible">mations/dkim-dmarc-spf-securiser-son-courrier-electronique-grace-au-dns/</span></a></p><p><a href="https://mastodon.social/tags/Formation" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Formation</span></a> <a href="https://mastodon.social/tags/DKIM" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DKIM</span></a> <a href="https://mastodon.social/tags/DMARC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DMARC</span></a> <a href="https://mastodon.social/tags/DNS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DNS</span></a> <a href="https://mastodon.social/tags/SPF" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SPF</span></a></p>
Jonathan Kamens<p><a href="https://federate.social/tags/MalwareBytes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MalwareBytes</span></a>, an <a href="https://federate.social/tags/infosec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infosec</span></a> company, has allowed their <a href="https://federate.social/tags/DMARC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DMARC</span></a> aggregate reports mailbox to fill multiple times in the years I've been interacting with them.<br>Reliable processes are a foundational requirement of successful <a href="https://federate.social/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybersecurity</span></a>. <br>Reliable monitoring is also a foundational requirement.<br>Ensuring your organization doesn't make the same mistake multiple times? Also foundational.<br>I don't trust MalwareBytes, and you probably shouldn't either.</p>
yawnbox :rebel:<p>what <a href="https://disobey.net/tags/email" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>email</span></a> providers do you trust, that supports the following?</p><p>1. bring your own domain.tld<br>2. supports <a href="https://disobey.net/tags/SPF" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SPF</span></a>, <a href="https://disobey.net/tags/DKIM" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DKIM</span></a>, <a href="https://disobey.net/tags/DMARC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DMARC</span></a><br>3. ideally: <a href="https://disobey.net/tags/DNSSEC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DNSSEC</span></a>/#DANE</p><p>no, i do not want feedback about self-hosted options, thank you. </p><p><a href="https://disobey.net/tags/infosec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infosec</span></a> <a href="https://disobey.net/tags/privacy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>privacy</span></a></p>
muxelplexer<p>is it normal that i’m getting failed spf DMARC mails from Mailing List forwarding? i guess so since i don’t have the Mailing Lists’s web-server as allowed sender…</p><p>is there a best practice for this?</p><p><a class="hashtag" href="https://larkspur.one/tag/mailcow" rel="nofollow noopener noreferrer" target="_blank">#mailcow</a> <a class="hashtag" href="https://larkspur.one/tag/dns" rel="nofollow noopener noreferrer" target="_blank">#dns</a> <a class="hashtag" href="https://larkspur.one/tag/spf" rel="nofollow noopener noreferrer" target="_blank">#spf</a> <a class="hashtag" href="https://larkspur.one/tag/mail" rel="nofollow noopener noreferrer" target="_blank">#mail</a> <a class="hashtag" href="https://larkspur.one/tag/dmarc" rel="nofollow noopener noreferrer" target="_blank">#dmarc</a></p>
Adrian Offerman<p>also available in English on SIDN.nl:<br>Plenty of requirements about using security standards, but no enforcement or sanctions -- New powers for Authority for Digital Infrastructure may bring about change<br><a href="https://www.sidn.nl/en/news-and-blogs/plenty-of-requirements-about-using-security-standards-but-no-enforcement-or" rel="nofollow noopener noreferrer" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">sidn.nl/en/news-and-blogs/plen</span><span class="invisible">ty-of-requirements-about-using-security-standards-but-no-enforcement-or</span></a></p><p>Many municipal websites don't meet the security standards they're supposed to meet. The problem isn't a lack of regulation, but a lack of compliance and enforcement.</p><p><a href="https://mastodon.offerman.com/tags/InternetSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InternetSecurity</span></a> <a href="https://mastodon.offerman.com/tags/infosec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infosec</span></a> <a href="https://mastodon.offerman.com/tags/DNSSEC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DNSSEC</span></a> <a href="https://mastodon.offerman.com/tags/DMARC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DMARC</span></a> <a href="https://mastodon.offerman.com/tags/STARTTLS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>STARTTLS</span></a><br><span class="h-card"><a href="https://mastodon.nl/@internet_nl" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>internet_nl</span></a></span></p>
Adrian Offerman<p>op SIDN.nl:<br>Een zee aan verplichtstellingen voor beveiligingsstandaarden, maar geen dwang of sancties -- Wellicht dat de Rijksinspectie voor Digitale Infrastructuur deze keer wel een verschil kan maken<br><a href="https://www.sidn.nl/nieuws-en-blogs/een-zee-aan-verplichtstellingen-voor-beveiligingsstandaarden-maar-geen-dwang-of-sancties" rel="nofollow noopener noreferrer" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">sidn.nl/nieuws-en-blogs/een-ze</span><span class="invisible">e-aan-verplichtstellingen-voor-beveiligingsstandaarden-maar-geen-dwang-of-sancties</span></a></p><p>Een groot deel van de gemeentelijke websites voldoet niet aan de verplichte beveiligingsstandaarden. Probleem is niet een gebrek aan regelgeving, maar de naleving en handhaving daarvan.</p><p><a href="https://mastodon.offerman.com/tags/InternetSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InternetSecurity</span></a> <a href="https://mastodon.offerman.com/tags/infosec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infosec</span></a> <a href="https://mastodon.offerman.com/tags/DNSSEC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DNSSEC</span></a> <a href="https://mastodon.offerman.com/tags/DMARC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DMARC</span></a> <a href="https://mastodon.offerman.com/tags/STARTTLS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>STARTTLS</span></a><br><span class="h-card"><a href="https://mastodon.nl/@internet_nl" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>internet_nl</span></a></span></p>
Friends<p><a href="https://chaos.social/tags/DMARC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DMARC</span></a> enables you as a <a href="https://chaos.social/tags/domain" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>domain</span></a> owner to receive feedback from <a href="https://chaos.social/tags/email" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>email</span></a> recipients, incl. sending mail servers &amp; verification methods. With visibility, you can make changes to help recipients distinguish between legit &amp; malicious emails, achieving DMARC compliance. <a href="https://chaos.social/tags/BuildInPublic" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BuildInPublic</span></a></p>
Friends<p>I'm excited to announce the start of my journey to develop dmarced, a self-service <a href="https://chaos.social/tags/DMARC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DMARC</span></a> monitoring solution for EU-based SMEs! Follow me as I build in public and bring safer <a href="https://chaos.social/tags/email" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>email</span></a> practices to your business. Check out the first email report template! <a href="https://chaos.social/tags/BuildInPublic" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BuildInPublic</span></a></p>
Adrian Offerman<p>also available in English:<br>Germany's BSI publishes detailed technical guidelines on e-mail authentication -- "Labels and certification make invisible security measures visible"<br><a href="https://www.sidn.nl/en/news-and-blogs/germanys-bsi-publishes-detailed-technical-guidelines-on-e-mail-authentication" rel="nofollow noopener noreferrer" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">sidn.nl/en/news-and-blogs/germ</span><span class="invisible">anys-bsi-publishes-detailed-technical-guidelines-on-e-mail-authentication</span></a></p><p>Germany's Bundesamt für Sicherheit in der Informationstechnik (Federal Office for Security in Information Technology, or BSI) has published technical guidelines on e-mail authentication. The purpose of TR-03182 Email Authentication is to promote the adoption of SPF, DKIM and DMARC, thus making mail more secure and fighting spam and phishing. Mail processors and service providers that comply with the guidelines can seek audit-based certification, while service users can ask prospective providers for proof of compliance as part of their procurement procedures.</p><p><a href="https://mastodon.offerman.com/tags/SPF" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SPF</span></a> <a href="https://mastodon.offerman.com/tags/DKIM" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DKIM</span></a> <a href="https://mastodon.offerman.com/tags/DMARC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DMARC</span></a> <a href="https://mastodon.offerman.com/tags/InternetSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InternetSecurity</span></a> <a href="https://mastodon.offerman.com/tags/infosec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infosec</span></a> <br><span class="h-card"><a href="https://social.bund.de/@bsi" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>bsi</span></a></span> <span class="h-card"><a href="https://infosec.exchange/@xdc33" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>xdc33</span></a></span></p>

op SIDN.nl: Duitse BSI publiceert uitgebreide technische richtlijn e-mailauthenticatie -- "Labels en certificering maken onzichtbare beveiligingsmaatregelen zichtbaar"
sidn.nl/nieuws-en-blogs/duitse

Het Duitse Bundesamt für Sicherheit in der Informationstechnik (BSI) heeft een technische richtlijn gepubliceerd voor e-mail authenticatie. Doel van de richtlijn 'TR-03182 Email Authentication' is om de adoptie van SPF, DKIM en DMARC te vergroten, daarmee de veiligheid van mail te verhogen, en spam- en phishing-berichten tegen te gaan. Mail-verwerkers en dienstverleners die aan deze richtlijn voldoen, kunnen hun compliance laten toetsen en certificeren. Gebruikers (klanten) kunnen deze richtlijn bijvoorbeeld gebruiken in hun aanbestedingseisen (door te vragen om een 'proof of compliance').

#SPF #DKIM #DMARC #InternetSecurity #infosec
@bsi @xdc33

Duitse BSI publiceert uitgebreide technische richtlijn e-mailauthenticatie | Cybersecurity | SIDNSIDN - Het bedrijf achter .nl