Replies: 3 comments 6 replies
-
|
Stalwarts generates all possible TLSA records, you need to choose the ones that make sense for your deployment. |
Beta Was this translation helpful? Give feedback.
-
|
I don't have a pony in this race, so to speak, but as a user of stalwart for my personal email (thanks!),, I am a little confused what I'm supposed to do with the DNS record/zonefile that is generated when I click "show DNS record". On the one hand, it seems like I'm supposed to copy all of the zonefile and update my DNS record with it, but on the other, given the response above, it sounds like I should not choose every line for the TLSA records, if i understood correctly? It would be nice at least to get some clarification on this, or if there is a best practices here, to have zonefile generation have an option to generate a "sensible defaults" For reference, I'll just paste the current output of my zonefile right now: I'm not an email expert by any means, just dipping my feet in (again thank you for the excellent software and great configuration story!), but it would be nice to know if in general I should only choose a subset of the TLSA lines, and maybe communicate that in either a info popup in the admin console, a comment (I don't think zonefiles support comments :/ ), or perhaps a different option to generate a default that uses sensible defaults for TLSA, or lastly update the documentation to note this important detail if we shouldn't use every line. Today currently, I believe the documentation suggests to copy the zonefile wholesale to your DNS records, which sounds like it might not be totally correct to do so? |
Beta Was this translation helpful? Give feedback.
-
|
Reopened #2328 |
Beta Was this translation helpful? Give feedback.
Uh oh!
There was an error while loading. Please reload this page.
-
What happened?
A quick read of the code suggests the following defects:
How can we reproduce the problem?
I can reproduce the problem by doing the following steps:
Version
v0.13.x
What database are you using?
None
What blob storage are you using?
None
Where is your directory located?
None
What operating system are you using?
None
Relevant log output
Code of Conduct
Beta Was this translation helpful? Give feedback.
All reactions