Re: [mailop] Filter out emoji from email adresses

2024-03-06 Thread Tim Bray via mailop
”. So, in  past life I used the Python Unidecode library to sort similar problems (not in email) https://pypi.org/project/Unidecode/ See also https://metacpan.org/pod/Text::Unidecode As for emoji specific, I don't know. -- Tim Bray Huddersfield, GB

Re: [mailop] How to contact ClamAVNet support

2022-06-06 Thread Tim Bray via mailop
On 03/06/2022 11:13, Carlota Iglesias Martinez via mailop wrote: I have managed to find that “Herustics” refers that they are coming from a financial institution and ‘SpoofedDomain’ means that they contain hyperlinks that are not known to be associated with the organization and may be

[mailop] IPv6 reverse DNS from office365

2022-02-10 Thread Tim Bray via mailop
the same problem.  A new problem that started sometime since  2022-02-09 20:39:38 UTC. (our users don't send much email over night in UK time. Tim Bray ___ mailop mailing list mailop@mailop.org https://list.mailop.org/listinfo/mailop

Re: [mailop] spamhaus blocking Linode IPv6 (2a01:7e01)

2021-11-25 Thread Tim Bray via mailop
https://bgp.he.net/AS63949#_prefixes6    They aren't exactly short of address space. :)   I'm sure linode could to go RIPE and ask for more space too.   (if Linode go past 52 billion customers, give me a call) -- Tim Bray Huddersfield, GB t...@koo

Re: [mailop] IMAP and SMTP in the same or separated IPs?

2021-10-15 Thread Tim Bray via mailop
her usages. ___ mailop mailing list mailop@mailop.org https://list.mailop.org/listinfo/mailop -- Tim Bray Huddersfield, GB t...@kooky.org ___ mailop mailing list mailop@mailop.org https://list.mailop.org/listinfo/mailop

[mailop] google at spamhaus

2021-08-31 Thread Tim Bray via mailop
/query/ip/2607:f8b0:4864:20::82d confirms 'has been detected 1 times in the last month. It has been removed 1 times.' Any thoughts? -- Tim Bray Huddersfield, GB t...@kooky.org ___ mailop mailing list mailop@mailop.org https://list.mailop.org/listinfo

Re: [mailop] mail.ru broke mailing lists

2021-07-19 Thread Tim Bray via mailop
On 19/07/2021 10:16, Thomas Walter via mailop wrote: On 19.07.21 10:56, Tim Bray via mailop wrote: I do this.  For a corporate email system is makes a lot of sense.   I shouldn't be receiving email externally with a From: domain which is local. As long as your users don't have an external

Re: [mailop] mail.ru broke mailing lists

2021-07-19 Thread Tim Bray via mailop
On 12/07/2021 12:00, Jaroslaw Rafa via mailop wrote: They required SMTP AUTH for all messages received on port 25 with the sender from their domain and rejected the messages if the session was not authenticated. A crazy idea, but they did exactly this. I do this.  For a corporate email

Re: [mailop] SMTP AUTH harassment

2021-07-18 Thread Tim Bray via mailop
My main motivation for getting the blocking right is to avoid having 1000s of connections from scanners, and so real mail not getting through. -- Tim Bray Huddersfield, GB t...@kooky.org ___ mailop mailing list mailop@mailop.org https://list.mailop.or

Re: [mailop] I disabled Spamhaus checking due to false-positives

2021-07-16 Thread Tim Bray via mailop
the automatic fix of 8.8.8.8 and not telling anybody and mail stopped for 50% of messages. -- Tim Bray Huddersfield, GB t...@kooky.org ___ mailop mailing list mailop@mailop.org https://list.mailop.org/listinfo/mailop

Re: [mailop] I disabled Spamhaus checking due to false-positives

2021-07-15 Thread Tim Bray via mailop
at Spamhaus rejects, timestamps are UTC): Just check which DNS servers you are using. And lot of the 8.8.8.8 and 9.9.9.9 of the world and similar don't work very well for RBLs I usually install a local unbound. Sorry if that is too obvious, but has caught me out before. -- Tim Bray

Re: [mailop] How stale is too stale for contacts?

2021-05-04 Thread Tim Bray via mailop
years ago. -- Tim Bray Huddersfield, GB t...@kooky.org ___ mailop mailing list mailop@mailop.org https://list.mailop.org/listinfo/mailop

Re: [mailop] Greylisting never passing on retry

2021-04-21 Thread Tim Bray via mailop
On 21/04/2021 11:23, Neil Youngman via mailop wrote: It doesn't behave exactly like a normal mail server, but it does retry more than five times. Not all retries are from the same IP, but I have observed that retries from the same IP don't get delivered. Can you just deliver to a normal

Re: [mailop] incoming rate limits

2021-04-19 Thread Tim Bray via mailop
On 16/04/2021 13:44, micah via mailop wrote: It seems to be a fun past-time for some people to mailbomb users (10k emails in minutes), to blow up a person's mailbox so they are over quota, or to make them miss an important email. I'm curious what others have settled on for reasonable rate

Re: [mailop] Current OSS anti-spam software best practice?

2021-02-16 Thread Tim Bray via mailop
On 16/12/2020 10:50, Thomas Walter via mailop wrote: we switched over to rspamd quite a while ago and will not look back. I switched on the back your suggestion.   rspamd seems way better. And switching on the dmarc module sends away the scammers. -- Tim Bray Huddersfield, GB t...@kooky.org

Re: [mailop] openssl on Ubuntu 20.04 - implications for email

2021-01-06 Thread Tim Bray via mailop
/  - this one can test a zillion things on your domain include DNSSEC, MTA-STS, DANE, DMARC.   It incudes website stuff in the tests. It is quite good fun getting a full set of greens. -- Tim Bray Huddersfield, GB t...@kooky.org ___ mailop mailing

Re: [mailop] scam prevention

2020-12-09 Thread Tim Bray via mailop
y will ask somebody else to use their company card to buy something for them.  These staff too junior to have their own cards. -- Tim Bray Huddersfield, GB t...@kooky.org ___ mailop mailing list mailop@mailop.org https://list.mailop.org/listinfo/mailop

Re: [mailop] scam prevention

2020-12-08 Thread Tim Bray via mailop
think any further DKIM checks will be done. I'll DKIM check and then make the change before it drops into the mailbox. -- Tim Bray Huddersfield, GB t...@kooky.org ___ mailop mailing list mailop@mailop.org https://list.mailop.org/listinfo/mailop

Re: [mailop] Effeciveness (or not) of SPF

2020-12-08 Thread Tim Bray via mailop
DKIM signature?    Is that possible?  Is that useful?  Mailinglists do this ?    Could somebody who understands this a bit better please say what they think ? -- Tim Bray Huddersfield, GB t...@kooky.org ___ mailop mailing list mailop@mailop.org

[mailop] scam prevention

2020-12-08 Thread Tim Bray via mailop
thinking they were on a special mission for the big boss. £1300 lost, some maybe recovered. If I stripped the name, they would have seen mablecri...@gmail.com and hopefully noticed sooner. Thoughts or ideas? -- Tim Bray Huddersfield, GB ___ mailop

Re: [mailop] JSON mail server logs ?

2020-11-20 Thread Tim Bray via mailop
t per line, then but then line breaks are in valid inside the json. -- Tim Bray Huddersfield, GB t...@kooky.org +44 7966479015 ___ mailop mailing list mailop@mailop.org https://list.mailop.org/listinfo/mailop

Re: [mailop] The 'DNS only requires UDP' misconception vs SPF et al -- historical reasons?

2020-09-30 Thread Tim Bray via mailop
On 30/09/2020 10:08, Peter N. M. Hansteen via mailop wrote: Back in the day I suppose you could get a sort of working setup with UDP-only DNS, but this has me wondering, is there a quasi-rational historical reason for blocking 53/TCP? As in, was there at some point in time a 'ping of

Re: [mailop] ANN: MTA-STS/TLSRPT for mailop.org MX

2020-09-30 Thread Tim Bray via mailop
On 30/09/2020 09:59, Thomas Mechtersheimer via mailop wrote: It does. Exim adds "s" to received_protocol for encrypted connections. Check your exim log for the cipher that was used... Oh, it is. My bad.  I was just expecting to see the cipher in the header. TLS1.3 - all good :) Tim

Re: [mailop] ANN: MTA-STS/TLSRPT for mailop.org MX

2020-09-30 Thread Tim Bray via mailop
On 30/09/2020 08:17, Patrick Ben Koetter via mailop wrote: At the moment the SMTP server itself supports STARTTLS and DANE. We plan to add MTA-STS when the feature becomes available. Should it be using TLS for outbound connections?  I'm not seeing that? (no problem if that is something you

Re: [mailop] Deutsche Telekom rejects connections because of missing "provider identification"

2020-08-27 Thread Tim Bray via mailop
iness letters, order forms and websites" Why t-mobile want to white list, I don't know.  But you can be sure they don't get random spam from random compromised home broadband or cloud servers. -- Tim Bray Huddersfield, GB t...@kooky.org ___ mail

Re: [mailop] STARTTLS - Constant Contact and yahoo.co.jp

2020-08-26 Thread Tim Bray via mailop
. -- Tim Bray Huddersfield, GB t...@kooky.org ___ mailop mailing list mailop@mailop.org https://chilli.nosignal.org/cgi-bin/mailman/listinfo/mailop

Re: [mailop] Delisting request from sendgrid customer about ip used in recent phishing campaign.

2020-08-12 Thread Tim Bray via mailop
in some other software which allows people to easily steal sendgrid credentials. (of course, none of this helps if you are looking at your inbox and seeing more phishing) -- Tim Bray Huddersfield, GB t...@kooky.org +44 7966479015 ___ mailop mailing list

Re: [mailop] Outlook 2016: Excessive IMAP connections

2020-08-10 Thread Tim Bray via mailop
ping, and so firewall all ICMP, they need sending back to networking school) -- Tim Bray Huddersfield, GB t...@kooky.org ___ mailop mailing list mailop@mailop.org https://chilli.nosignal.org/cgi-bin/mailman/listinfo/mailop

Re: [mailop] Microsoft Block list (S3150)

2020-06-26 Thread Tim Bray via mailop
something if we were. Maybe we did nothing wrong and just tripped a rate limit, filter or keyword or something. Tim Bray ___ mailop mailing list mailop@mailop.org https://chilli.nosignal.org/cgi-bin/mailman/listinfo/mailop

Re: [mailop] SendGrid and Phishing

2020-06-17 Thread Tim Bray via mailop
damage. -- Tim Bray Huddersfield, GB t...@kooky.org ___ mailop mailing list mailop@mailop.org https://chilli.nosignal.org/cgi-bin/mailman/listinfo/mailop

[mailop] Sendgrid and phishing

2020-06-17 Thread Tim Bray via mailop
Hi, Anybody else seeing increase phishing through sendgrid?  They look fairly convincing. A few paypals, and a few amazons. I thought sendgrid were ok?    Has somebody leaked a big pile of sendgrid usernames and passwords or something? -- Tim Bray Huddersfield, GB t...@kooky.org

Re: [mailop] Force double opt in for marketing list companies per email address

2020-06-05 Thread Tim Bray via mailop
? Tim // -- Tim Bray Huddersfield, GB t...@kooky.org ___ mailop mailing list mailop@mailop.org https://chilli.nosignal.org/cgi-bin/mailman/listinfo/mailop

Re: [mailop] Force double opt in for marketing list companies per email address

2020-06-02 Thread Tim Bray via mailop
in the List-Unsubscribe ?? List-Unsubscribe: <https://cloud-distribution.us20.l -- Tim Bray Huddersfield, GB t...@kooky.org ___ mailop mailing list mailop@mailop.org https://chilli.nosignal.org/cgi-bin/mailman/listinfo/mailop

Re: [mailop] [EXTERNAL] Re: Force double opt in for marketing list companies per email address

2020-06-02 Thread Tim Bray via mailop
.  I guess depends whether mailchimp think they are governed by GDPR or not. -- Tim Bray Huddersfield, GB t...@kooky.org ___ mailop mailing list mailop@mailop.org https://chilli.nosignal.org/cgi-bin/mailman/listinfo/mailop

Re: [mailop] Is Gmails DMARC check broken?

2020-06-02 Thread Tim Bray via mailop
, but it is possible to have it working. -- Tim Bray Huddersfield, GB t...@kooky.org ___ mailop mailing list mailop@mailop.org https://chilli.nosignal.org/cgi-bin/mailman/listinfo/mailop

Re: [mailop] Google: 'Low reputation of the sending domain'

2020-06-02 Thread Tim Bray via mailop
mailserver  (I'd be suspicious of such a wide range of space for sending mailservers) -- Tim Bray Huddersfield, GB t...@kooky.org ___ mailop mailing list mailop@mailop.org https://chilli.nosignal.org/cgi-bin/mailman/listinfo/mailop

[mailop] Force double opt in for marketing list companies per email address

2020-06-02 Thread Tim Bray via mailop
don't want to globally do a mass block. (sorry mailchimp, you are like the best mailinglist people, so more comes from you) -- Tim Bray Huddersfield, GB t...@kooky.org ___ mailop mailing list mailop@mailop.org https://chilli.nosignal.org/cgi-bin

Re: [mailop] DNSxL lookups IPv6 - one /128 per DNS query

2020-02-03 Thread Tim Bray via mailop
On 02/02/2020 18:48, Matthias Leisi via mailop wrote: From one particular IPv6 range, each and every DNS query was sent from a unique IPv6 /128, and every /128 seen was used exactly once. Um, I do this.   To guard against cache poisoning attacks.   Each nameserver has a /64 to use for

Re: [mailop] Abandoning self hosting and moving to Protonmail - experiences?

2020-01-27 Thread Tim Bray via mailop
On 27/01/2020 12:57, Lennert Van Alboom via mailop wrote: Alternatives? https://www.migadu.com/ Tim ___ mailop mailing list mailop@mailop.org https://chilli.nosignal.org/cgi-bin/mailman/listinfo/mailop

Re: [mailop] Blank emails to office 365

2019-11-26 Thread Tim Bray via mailop
ot hotmail or Microsoft here) --srs *From:* mailop on behalf of Tim Bray via mailop *Sent:* Tuesday, November 26, 2019 3:40 PM *To:* mailop@mailop.org *Subject:* [mailop] Blank emails to office 365 Hi, Weird problem. We hav

[mailop] Blank emails to office 365

2019-11-26 Thread Tim Bray via mailop
Hi, Weird problem. We have a system that sends order updates to our customers. Plain text emails.  Not changed for years. Same system, same customers. We suddenly have a problem  for some where customers receive the email, but it looks blank.  The problem has only occurred with people using

Re: [mailop] No response on DNS queries to NS for zen.spamhaus.org

2019-10-30 Thread Tim Bray via mailop
Hi, I think you really need to use your own recursive resolver to use spamhaus.  Like install unbound and use localhost as resolver. like using 8.8.8.8 results in no answer.   Maybe your ISP's resolvers have the same problem.    Does your provider transparently proxy port 53 traffic?

Re: [mailop] Certified Senders Alliance

2019-10-03 Thread Tim Bray via mailop
On 03/10/2019 08:46, Neil Youngman via mailop wrote: It is now October. The emails are still coming and there has been no further communication from CSA. I'd be tempted to complain to the information commissioner.   You are lucky because you actually know who is sending the stuff, and they

[mailop] Heads up on Exim, gnutls, TLS1.3 and gmail

2019-08-28 Thread Tim Bray via mailop
don't know why this is. But came around because I need to run the older exim until I've solved another problem. exim4-daemon-heavy 4.92-8+deb10u1 from Debian Buster works fine. TLS1.3 does work. -- Tim Bray Huddersfield, GB t...@kooky.org +44

Re: [mailop] Business justification for DNSSEC?

2018-10-18 Thread Tim Bray
On 16/10/2018 08:08, Patrick Ben Koetter wrote: DNSSEC is an investment into your business relationship. Your partners benefit from it. It provides them a reliable resource to build other things upon. It removes the need to believe and provides the certainty to know. This said, it is one of the

Re: [mailop] Disabling TLS1.0 for SMTP

2018-05-25 Thread Tim Bray
On 22/05/18 15:47, Al Iverson wrote: > Are folks disabling TLS1.0 support in SMTP? Our security team has > asked, but I'm a bit concerned about potential failure cases when > trying to deliver mail to smaller corporate sites that might be doing > stuff like requiring TLS but supporting 1.0

Re: [mailop] GDPR and WHOIS PRIVACY

2018-05-04 Thread Tim Bray
On 04/05/18 11:55, Stefano Bagnara wrote: > BTW not every data processing/publication require consent according to > GDPR. There's "legitimate interest" and it may have to be discussed if > publishing that data do harms more than not-publishing it. legitimate interest vital interest necessary for

Re: [mailop] Slow botnet IMAP scans?

2017-10-06 Thread Tim Bray
On 06/10/17 10:51, Otto J. Makela wrote: > Are you keeping an eye out for (mostly Chinese) botnets doing slow IMAP scans, > using scraped email addresses and apparently going through whole dictionaries? I haven't seen them.  But we are getting a lot more SMTP auth scanners than we used to. We

Re: [mailop] Office365 question...

2016-11-11 Thread Tim Bray
On 11/11/16 03:15, Bill Cole wrote: > > I think it's a perfectly reasonable TTL for a mail system that uses > round-robin DNS for loadbalancing and high availability. Arbitrarily > forcing it higher on the client end could have unintended negative > consequences. (quick reply) The other

Re: [mailop] Gmail red open padlock composing message

2016-04-01 Thread Tim Bray
On 31/03/16 17:38, Kirk MacDonald wrote: > With thanks to Google for pushing the cause, I implemented STARTTLS > functionality on my org’s MX (as well as outbound SMTP with > opportunistic STARTTLS). Firstly - well done for doing it. Everybody should be enabling TLS. Did you test the install?