Welcome to the mailbox.org user forum!
 

MTA-STS

Fisher shared this question 10 months ago
Answered

I haven't found information on MTA-STS in the support section or forum.

1. Has anybody set up DNS records for MTA-STS with mailbox.org and a custom domain?

2. Does mailbox.org provide a policy? https://mailbox.org/.well-known/mta-sts.txt returns 404.


As far as I've understood the following `mta-sts.txt` should be it for mailbox.org hosting.

```

version: STSv1
mode: testing
mx: mxext1.mailbox.org
mx: mxext2.mailbox.org
mx: mxext3.mailbox.org
max_age: 604800

```

Best Answer
photo

I've implemented mta-sts on a custom domain by hosting the subdomain on github and pointing to it with a cname record. You can find instructions on this blog.

Replies (2)

photo
2

I've implemented mta-sts on a custom domain by hosting the subdomain on github and pointing to it with a cname record. You can find instructions on this blog.

photo
2

I have the same question, and also with DNSSEC. Did you figure anything out?

Mailbox.org recommended using the MECSA service to check the security of my email setup, which tells me I should use MTA-STS and DNSSEC, but I can't seem to find any info about setting those up.

photo
1

Check my domain danielfisher.com for MTA-STS. DNS will show the records that point to https://mta-sts.danielfisher.com/.well-known/mta-sts.txt.


You can view and validate my configuration here: https://mxtoolbox.com/SuperTool.aspx?action=mta-sts%3adanielfisher.com&run=toolpage

photo
Leave a Comment
 
Attach a file