Bjoern Franke via mailop <[email protected]> (Fr 12 Jul 2019 18:47:40 CEST):
> Am 11.07.19 um 21:29 schrieb Ross Tajvar via mailop:
> > Yes, this is exactly what I was wondering. I'm sure it's possible to
> > validate on any reasonably modern MTA, but I am curious if hosted mail
> > providers (or even large enterprises) are actually doing this validation.
>
> Posteo and United Internet (e.g. GMX) do, at least they provide TLSA
> records.

Providing TLSA records is only one half of the story. The sender has to
use them. Currently there is no way to force the sender to use my TLSA
records, is there?

(Though, I can force all senders to use TLS when talking to me, but I
can't force them to use my provided TLSA records and to do any
verification. And I do not have a chance to check, if they did, do I?)

    Best regards from Dresden/Germany
    Viele Grüße aus Dresden
    Heiko Schlittermann
--
 SCHLITTERMANN.de ---------------------------- internet & unix support -
 Heiko Schlittermann, Dipl.-Ing. (TU) - {fon,fax}: +49.351.802998{1,3} -
 gnupg encrypted messages are welcome --------------- key ID: F69376CE -
 ! key id 7CBF764A and 972EAC9F are revoked since 2015-01 ------------ -

Attachment: signature.asc
Description: PGP signature

_______________________________________________
mailop mailing list
[email protected]
https://chilli.nosignal.org/cgi-bin/mailman/listinfo/mailop

Reply via email to