101010.pl is one of the many independent Mastodon servers you can use to participate in the fediverse.
101010.pl czyli najstarszy polski serwer Mastodon. Posiadamy wpisy do 2048 znaków.

Server stats:

477
active users

#smtp

2 posts2 participants0 posts today

For some reason, my relay MTA accepts mail where one of the recipient domains in the Cc: list is invalid, while sendmail on my mail host issues a soft reject with (in this particular case) "host map: lookup (users.sourceforge.jp): deferred".

This is, indeed, currently a invalid domain. But why the hell does the mail pass through on the relay (also running sendmail)?

Eighteen Years of Greytrapping - Is the Weirdness Finally Paying Off? nxdomain.no/~peter/eighteen_ye (tracked bsdly.blogspot.com/2025/08/eig)

Friends, it finally happened. On August 7th, 2025, the number of spamtraps intended to woo the unwary spammer rolled past the number of inhabitants in my home country of Norway.

It's time for a retrospective.

nxdomain.noEighteen Years of Greytrapping - Is the Weirdness Finally Paying Off?

The BIG MAIL operators disappear valid mail. We have all seen it happen.

I am pondering starting a campaign to collect war stories with as much log data and other relevant data as possible in order to write an article which may
evolve to something else.

If you have potentially useful input, I want to hear from you.

#mail#smtp#bigmail
Replied in thread

🧵 4/5 Until now, I have been using IMAP+SMTP, and TbSync for address books and calendars. After going through a few iterations, I have now settled on using Exchange (native, experimental) accounts (yes, plural) for email and sticking with TbSync for calendars and address books.

Replied in thread

🧵 3/5 Right now, Exchange requires add-ons to work. Usually this means TbSync or OWL. Each of these has its own set of features and limitations to consider. Account Hub will show you Exchange in two flavors… one says “add-on required” and the other doesn’t. It’s the latter one that is the native integration in experimental form at this time (and does email ONLY for now).

Replied in thread

🧵 2/5 Further, the “native” connection to EWS/OWA within Thunderbird is only available in 140 when you enable a custom setting (search for “ews”). What you see in the new Account Hub will depend on whether that custom setting is enabled.

Replied in thread

🧵 5/5 TbSync was a small challenge because, as has happened in the past with major Thunderbird updates, it was declared unsupported and automatically disabled by Thunderbird 140esr. Following the instructions in github.com/jobisoft/TbSync/iss (file-based reinstall of TbSync and EAS-4-TbSync) resolves the issue for now.

GitHubTB-Sync does not work with TB 140.0 ? · Issue #753 · jobisoft/TbSyncBy Thunderfan1980

HELP !

Free m'a bloqué les ports #IMAP et #SMTP, et refuse de les réouvrir. Je vous raconte.

Je fais un peu de #autohébergement sur mon serveur, et derniièrement, j'y ai installé #docker-mailserver

je configure #thunderbird , tout fonctionne nickel, et au bout d'un moment, impossible d'envoyer des emails ou d'en recevoir
Il se trouve que #Free a bloqué le port 25
En 5G par contre, pas de probléme

Et le support a rejeté ma demande

Please #retoot en espérant atteindre quelqu'un de Free 🙏

Remember the threads¹² about #LetsEncrypt removing a crucial key usage from certificates issued by them in predictive obedience to their premium sponsor Google?

We were at first concerned about #SMTP. While I had lived through this problem with #StartSSL by #StartCom back in 2011, I only had a vague recollection of Jabber but recalled in detail that it broke server-to-server SMTP verification (whether the receiving server acted on it or just documented it).

Well, turns out someone now reported that it indeed breaks #XMPP entirely: https://community.letsencrypt.org/t/do-not-remove-tls-client-auth-eku/237427/66

This means that it will soon no longer be possible at all to operate Jabber (XMPP) servers because the servers use the operating system’s CA certificate bundle for verification, which generally follows the major browsers’ root stores, which has requirements from the CA/Browser forum who apparently don’t care about anything else than the webbrowser, and so no CA whose root certificate is in that store will be allowed to issue certificates suitable for Jabber/XMPP server-to-server communication while these CAs are the only ones trusted by those servers.

So, yes, Google’s requirement change is after all breaking Jabber entirely. Ein Schelm, wer Böses dabei denkt.

While https://nerdcert.eu/ by @jwildeboer would in theory help, it’s not existent yet, and there’s not just the question of when it will be included in operating systems’ root CA stores but whether it will be included in them at all.

Google’s policy has no listed contact point, and the CA/B forum isn’t something mere mortals can complain to, so I’d appreciate if someone who can, and who has significant skills to argument this in English and is willing to, to bring it to them.

① mine: https://toot.mirbsd.org/@mirabilos/statuses/01JV8MDA4P895KK6F91SV7WET8
② jwildeboer’s: https://social.wildeboer.net/@jwildeboer/114516238307785904

Let's Encrypt Community Support · Do *NOT* remove TLS Client Auth EKU!I was also bit by this. I switched to tlsserver profile, and when my XMPP certificate got renewed today, it failed to make any S2S connections :(. I'd to revert to classic profile. Could we please keep TLS client auth EKU ? Thanks!
As of today, #gmail seems to be rejecting all emails from my server because of its "low reputation". All MX tools online say my server is OK (SPF, DMARC, DKIM), my IP isn't in any blacklist, and I already have set up the TXT DNS records for Google's Postmaster.

Any idea on how to proceed?

These big providers are a PITA for self hosters 🤬

#smtp #spam #mx #FediHelp #selfhosting