Hello world, I'm not sure it this is the right place to ask, so if it's not, feel free to tell me.
I configured DANE TLSA RRs for incertum.net, port 25 a few days ago, but until now, the only "test" I could perform was bootstrapping a recent Postfix snapshot and the latest OpenSSL and send myself a message from this test installation - which is by no means a real interoperability test. Does someone know of any sites that either provide reflector like services, verifying the sender's TLSA records, or perhaps a web based verifier for TLSA RRs? And while we are at it, one more question, slightly unrelated: draft-dukhovni-dane-ops-01 does not mention MSAs. Is it commonly expected that user agents will not support TLSA RRs? Thanks Stefan