On Wed, Apr 08, 2015 at 05:36:03PM +0000, Kevin San Diego wrote:

> Does anyone know of an SMTP+DANE email reflector address where you can
> send test email to in order to validate proper SMTP client DANE behavior?

What do you want the "reflector" to do?  The "[email protected]"
address will accept email, and your Postfix logs for a probe DSN
report will show whether TLS verification for that domain succeeded.

    $ sendmail -f [email protected] -bv [email protected]
    Mail Delivery Status Report will be mailed to <[email protected]>.

The attached DSN report shows the message queue-id, and the logs (find my
"collate" perl script in the list archives) show.

    Apr  8 17:47:22 mournblade postfix/pickup[25416]: 96F7F283034: uid=1034 
from=<[email protected]>
    Apr  8 17:47:22 mournblade postfix/cleanup[24430]: 96F7F283034: 
message-id=<[email protected]>
    Apr  8 17:47:22 mournblade postfix/qmgr[8720]: 96F7F283034: 
from=<[email protected]>, size=302, nrcpt=1 (queue active)
    Apr  8 17:47:25 mournblade postfix/smtp[9856]: Verified TLS connection 
established to dane.sys4.de[194.126.158.134]:25: TLSv1.2 with cipher 
ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)
    Apr  8 17:47:25 mournblade postfix/smtp[9856]: 96F7F283034: 
to=<[email protected]>, relay=dane.sys4.de[194.126.158.134]:25, delay=2.8, 
delays=0.04/0.02/2.7/0.14, dsn=2.1.5, status=deliverable (250 2.1.5 Ok)
    Apr  8 17:47:25 mournblade postfix/bounce[26846]: 96F7F283034: sender 
delivery status notification: 84EBC283035
    Apr  8 17:47:25 mournblade postfix/qmgr[8720]: 96F7F283034: removed

This was "Verified" so DANE worked as expected.  Don't know of any
SMTP domains with deliberately broken TLSA records for test purposes
that should fail.

I don't think I should publish any of the (short) list of domains
that are broken through negligence as appropriate targets of public
tests.

-- 
        Viktor.
--- Begin Message ---
This is the mail system at host mournblade.imrryr.org.

Enclosed is the mail delivery report that you requested.

                   The mail system

<[email protected]>: delivery via dane.sys4.de[194.126.158.134]:25: 250 2.1.5
    Ok
Reporting-MTA: dns; mournblade.imrryr.org
X-Postfix-Queue-ID: 96F7F283034
X-Postfix-Sender: rfc822; [email protected]
Arrival-Date: Wed,  8 Apr 2015 17:47:22 +0000 (UTC)

Final-Recipient: rfc822; [email protected]
Action: deliverable
Status: 2.1.5
Remote-MTA: dns; dane.sys4.de
Diagnostic-Code: smtp; 250 2.1.5 Ok
Return-Path: <[email protected]>
Received: by mournblade.imrryr.org (Postfix, from userid 1034)
	id 96F7F283034; Wed,  8 Apr 2015 17:47:22 +0000 (UTC)
From: [email protected]
Subject: probe
To:	[email protected]
Message-Id: <[email protected]>
Date: Wed,  8 Apr 2015 17:47:22 +0000 (UTC)

--- End Message ---

Reply via email to