[swinog] Contacts and Experts for Security Incidents

2023-11-23 Diskussionsfäden Michael Righter via swinog

Hi

We are creating an emergency handbook if we would have a critical 
security incident.
Is there someone who can suggest a company which can help to find how 
the guys hacked the infrastructure and how to fix it?


I hope we never have to use it, but be prepared is better

Thanks Michael___
swinog mailing list -- swinog@lists.swinog.ch
To unsubscribe send an email to swinog-le...@lists.swinog.ch


[swinog] Spamfilter Solution

2023-07-17 Diskussionsfäden Michael Righter via swinog



Hi

Can anyone recommend a spamfilter solution:

- Cloud hosted (multihomed and HA)
- multiple domains
- user can release their spam mails
- Advanced threat protection
- API for different taks
- Good Web UI for Logs and configuration

We already have one, but the support is not that good anymore, and their 
blacklisting score is a blackbox...


Thanks and cheers

Michael___
swinog mailing list -- swinog@lists.swinog.ch
To unsubscribe send an email to swinog-le...@lists.swinog.ch


[swinog] Re: strange failure from online.de MX

2023-03-23 Diskussionsfäden Michael Righter via swinog

Seems to be this:

https://www.e-mail-made-in-germany.de/index.html

Is it a forwarded mail?



No it is directly sent from our side to the address
___
swinog mailing list -- swinog@lists.swinog.ch
To unsubscribe send an email to swinog-le...@lists.swinog.ch


[swinog] strange failure from online.de MX

2023-03-23 Diskussionsfäden Michael Righter via swinog



Hi

A mail to @online.de is blocked on their site with this error. Never 
seen such an error.

Anyone seen this before or knows a contact to them?

2023-03-21T09:00:04Z;EMIG;mx01.emig.kundenserver.de[217.72.192.66];400 
EmiG fingerprint mismatch
2023-03-21T09:30:04Z;EMIG;mx00.emig.kundenserver.de[212.227.15.40];400 
EmiG fingerprint mismatch
2023-03-21T10:00:04Z;EMIG;mx00.emig.kundenserver.de[212.227.15.40];400 
EmiG fingerprint mismatch
2023-03-21T10:30:04Z;EMIG;mx01.emig.kundenserver.de[217.72.192.66];400 
EmiG fingerprint mismatch
2023-03-21T11:00:03Z;EMIG;mx00.emig.kundenserver.de[212.227.15.40];400 
EmiG fingerprint mismatch
2023-03-21T11:30:02Z;EMIG;mx01.emig.kundenserver.de[217.72.192.66];400 
EmiG fingerprint mismatch


Thanks Michael___
swinog mailing list -- swinog@lists.swinog.ch
To unsubscribe send an email to swinog-le...@lists.swinog.ch


[swinog] AWS/Azure Architect Partner

2023-03-15 Diskussionsfäden Michael Righter via swinog



Hi

can anyone suggest a partner in CH to built a private Cloud on AWS 
and/or Azure?

No containers at the moment only VMs

Thanks

Michael___
swinog mailing list -- swinog@lists.swinog.ch
To unsubscribe send an email to swinog-le...@lists.swinog.ch


Re: [swinog] Weird Bluewin Server Problem (occasional 550 5.1.1)

2019-01-24 Diskussionsfäden Michael Righter

Hi Benoit

Be Careful mxbw.lb.bluewin.ch seems to be an entry wich is load balanced
with different A Records .
I've got a different IP after the TTL expired. So you are ending up on
different server on the bluewin site. 


maybe a server in the cluster which has a specific problem, just a
guess.

Try telnet to the different server and if you can find the specific
server -> then try to contact the mailmaster :-) 


On 24.01.2019 13:54, Benoit Panizzon wrote:


Dear List

Has anyone else experienced this problem? According to our customer, it
occurred a couple of times in the last days:

Sender and Destinations are the same in all examples:

Our customer is sending an email to bluewin:

Jan 23 13:32:42 obelix postfix-submit.obelix/smtp[28721 C5015C0CE5: 
to=<@bluewin.ch>, relay=mxbw.lb.bluewin.ch[195.186.120.50]:25, delay=57, 
delays=1.6/0.01/44/11, dsn=2.0.0, status=sent (250 2.0.0 mHh5gTobfzOqbmHhngLDSm mail 
accepted for delivery)

Bluewin Customer replies:

Jan 23 17:10:17 obelix milter-greylist: (unknown id): skipping greylist because address 
195.186.120.132 is in DNSRBL, (from=<@bluewin.ch>, 
rcpt=<@breitband.ch>, addr=vimdzmsp-sfwd03.bluewin.ch[195.186.120.132]) ACL 196

Our customer replies:

Jan 23 17:24:38 obelix postfix-submit.obelix/smtp[12583 D0AE7C10EE: 
to=<@bluewin.ch>, relay=mxbw.lb.bluewin.ch[195.186.120.50]:25, delay=101, 
delays=0.27/0.01/66/35, dsn=5.1.1, status=bounced (host mxbw.lb.bluewin.ch[195.186.120.50] 
said: 550 5.1.1 <*@bluewin.ch> recipient rejected, address unknown (in reply to 
RCPT TO command))

Same IP Address of same bluewin server as before, not replies the
destination does not exist. I can assure you, it is the same address as
before.

Our customer tries again:

Jan 23 17:32:23 obelix postfix-submit.obelix/smtp[26676 C9470C1271: 
to=<*@bluewin.ch>, relay=mxbw.lb.bluewin.ch[195.186.227.50]:25, delay=3, 
delays=0.24/0.02/0.59/2.1, dsn=2.0.0, status=sent (250 2.0.0 mJApg3d9Gp4S3mJAqgsUex 
mail accepted for delivery)

Now the email is getting through!

Mit freundlichen Grüssen

-Benoît Panizzon-
___
swinog mailing list
swinog@lists.swinog.ch
http://lists.swinog.ch/cgi-bin/mailman/listinfo/swinog


Re: [swinog] Coordinated network attacks?

2017-01-27 Diskussionsfäden Michael Righter
Would me interest too. 

Hostpoint says their nameservers didn't resolve anymore.
Metanet says the problem was coming from an important network device...
whatever that means, maybe BGP Core.. 

Am 27.01.2017 08:28, schrieb Mike Kellenberger:

> Hi all
> 
> The Scout-group on wednesday, Hostpoint yesterday, Metanet right now - all 
> having network problems.
> 
> Does anybody know any specifics or if these incidents are or could be related?
> 
> Regards,
> 
> Mike
___
swinog mailing list
swinog@lists.swinog.ch
http://lists.swinog.ch/cgi-bin/mailman/listinfo/swinog


Re: [swinog] DNS Admin tool

2016-02-07 Diskussionsfäden Michael Righter
 I've also tried to build some GUI tools for BIND. It's not that easy. 
I was only able to build some Perl Scripts so that people with low Linux
skills can manage the zones..

In the end we changed to PowerDNS and built or own GUI with PHP/MySQL.
Our Users are happy with it and they don't need any skills except of
what they put in their zones :-)

But we've only about 800 Zones, don't know how good PowerDNS scales in a
huge Environment 
___
swinog mailing list
swinog@lists.swinog.ch
http://lists.swinog.ch/cgi-bin/mailman/listinfo/swinog


[swinog] Nexus 5548UP to give away

2015-11-19 Diskussionsfäden Michael Righter
 Hi there

Is someone interested in Cisco Nexus 5548UP (We have 4 used pieces)??

Plz send me an offer PN.

thanks 
___
swinog mailing list
swinog@lists.swinog.ch
http://lists.swinog.ch/cgi-bin/mailman/listinfo/swinog