[GF-Users] postfix-tlspol

Michael Webb michael.webb at integrilog.com
Fri Jun 20 15:34:23 MST 2025


Hi Peter

I have wanted to mention this package for some time. I consider it essential to postfix TLS and TLSRPT integration. Although I have been compiling myself and using this package on my production servers since January 2025 with ease, I believe it would benefit the EL community more to have it available on GhettoForge.

https://github.com/Zuplu/postfix-tlspol

To the best of my knowledge, it was the first (and possibly is still the only) open-source program to resolve both TLSA and MTA-STS records and prioritize DANE delivery when recipients have specified both record types. The author has been developing this since October 2024 and has brought Wietse Venema into the discussion several times to clarify IETF RFC language and postfix connectivity. A couple of European email services providers (with high and varied volume) also actively worked with the author to fix some issues. The integration was extremely well done with helpful logs, console query commands for testing, compact, high-speed processing, and using best practice in general. The only updates for about the last 6 weeks have been platform related and I personally consider it stable.

Mike
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.ghettoforge.org/pipermail/users/attachments/20250620/3c8f8b3b/attachment.html 


More information about the users mailing list