small add for DNSSEC and MTA-STS
This commit is contained in:
parent
f670bec1b1
commit
b006c8f809
1 changed files with 5 additions and 0 deletions
|
|
@ -34,6 +34,11 @@ Run the unified diagnostics script from the repository root:
|
||||||
```
|
```
|
||||||
This combines the previous `diagnostic.sh` and `health_check.sh` checks.
|
This combines the previous `diagnostic.sh` and `health_check.sh` checks.
|
||||||
|
|
||||||
|
## Mail Security TODOs
|
||||||
|
- Enable DNSSEC at the DNS provider and ensure DS/DNSKEY are published.
|
||||||
|
- Add TLSA (DANE) records after DNSSEC is active.
|
||||||
|
- Verify MTA-STS policy and TLS-RPT DNS records after propagation.
|
||||||
|
|
||||||
## Install
|
## Install
|
||||||
### Prerequisites
|
### Prerequisites
|
||||||
1) Copy the env and docker-compose.override.yml to the service directories via the script.
|
1) Copy the env and docker-compose.override.yml to the service directories via the script.
|
||||||
|
|
|
||||||
Loading…
Add table
Add a link
Reference in a new issue