On Wed, Apr 08, 2015 at 05:36:03PM +0000, Kevin San Diego wrote:
> Does anyone know of an SMTP+DANE email reflector address where you can
> send test email to in order to validate proper SMTP client DANE behavior?
What do you want the "reflector" to do? The "[email protected]"
address will accept email, and your Postfix logs for a probe DSN
report will show whether TLS verification for that domain succeeded.
$ sendmail -f [email protected] -bv [email protected]
Mail Delivery Status Report will be mailed to <[email protected]>.
The attached DSN report shows the message queue-id, and the logs (find my
"collate" perl script in the list archives) show.
Apr 8 17:47:22 mournblade postfix/pickup[25416]: 96F7F283034: uid=1034
from=<[email protected]>
Apr 8 17:47:22 mournblade postfix/cleanup[24430]: 96F7F283034:
message-id=<[email protected]>
Apr 8 17:47:22 mournblade postfix/qmgr[8720]: 96F7F283034:
from=<[email protected]>, size=302, nrcpt=1 (queue active)
Apr 8 17:47:25 mournblade postfix/smtp[9856]: Verified TLS connection
established to dane.sys4.de[194.126.158.134]:25: TLSv1.2 with cipher
ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)
Apr 8 17:47:25 mournblade postfix/smtp[9856]: 96F7F283034:
to=<[email protected]>, relay=dane.sys4.de[194.126.158.134]:25, delay=2.8,
delays=0.04/0.02/2.7/0.14, dsn=2.1.5, status=deliverable (250 2.1.5 Ok)
Apr 8 17:47:25 mournblade postfix/bounce[26846]: 96F7F283034: sender
delivery status notification: 84EBC283035
Apr 8 17:47:25 mournblade postfix/qmgr[8720]: 96F7F283034: removed
This was "Verified" so DANE worked as expected. Don't know of any
SMTP domains with deliberately broken TLSA records for test purposes
that should fail.
I don't think I should publish any of the (short) list of domains
that are broken through negligence as appropriate targets of public
tests.
--
Viktor.
--- Begin Message ---
This is the mail system at host mournblade.imrryr.org.
Enclosed is the mail delivery report that you requested.
The mail system
<[email protected]>: delivery via dane.sys4.de[194.126.158.134]:25: 250 2.1.5
Ok
Reporting-MTA: dns; mournblade.imrryr.org
X-Postfix-Queue-ID: 96F7F283034
X-Postfix-Sender: rfc822; [email protected]
Arrival-Date: Wed, 8 Apr 2015 17:47:22 +0000 (UTC)
Final-Recipient: rfc822; [email protected]
Action: deliverable
Status: 2.1.5
Remote-MTA: dns; dane.sys4.de
Diagnostic-Code: smtp; 250 2.1.5 Ok
Return-Path: <[email protected]>
Received: by mournblade.imrryr.org (Postfix, from userid 1034)
id 96F7F283034; Wed, 8 Apr 2015 17:47:22 +0000 (UTC)
From: [email protected]
Subject: probe
To: [email protected]
Message-Id: <[email protected]>
Date: Wed, 8 Apr 2015 17:47:22 +0000 (UTC)
--- End Message ---