<?xml version="1.0" encoding="utf-8"?>
<?xml-stylesheet href="https://blog.keltia.net/feed_style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
    <tabi:metadata xmlns:tabi="https://github.com/welpo/tabi">
        <tabi:base_url>https:&#x2F;&#x2F;blog.keltia.net</tabi:base_url>
        <tabi:separator>
            •
        </tabi:separator>
        <tabi:about_feeds>This is a web feed, also known as an Atom feed. Subscribe by copying the URL from the address bar into your newsreader. Visit About Feeds to learn more and get started. It&#x27;s free.</tabi:about_feeds>
        <tabi:visit_the_site>Visit website</tabi:visit_the_site>
        <tabi:recent_posts>Recent posts</tabi:recent_posts>
        <tabi:last_updated_on>Updated on $DATE</tabi:last_updated_on>
        <tabi:default_theme></tabi:default_theme>
        <tabi:post_listing_date>date</tabi:post_listing_date>
        <tabi:current_section>mail</tabi:current_section>
    </tabi:metadata><title>Le blog de 22h43 - mail</title>
        <subtitle>UNIX, chats, Books, Photos, Rants, Cryptography and other stuff.</subtitle>
    <link href="https://blog.keltia.net/tags/mail/atom.xml" rel="self" type="application/atom+xml"/>
    <link href="https://blog.keltia.net/tags/mail/" rel="alternate" type="text/html"/>
    <generator uri="https://www.getzola.org/">Zola</generator><updated>2018-08-23T14:52:34+02:00</updated><id>https://blog.keltia.net/tags/mail/atom.xml</id><entry xml:lang="en">
        <title>MTA-STS or the worst of everything…</title>
        <published>2018-08-23T14:52:34+02:00</published>
        <updated>2018-08-23T14:52:34+02:00</updated>
        <author>
            <name>Ollivier Robert</name>
        </author>
        <link rel="alternate" href="https://blog.keltia.net/mta-sts-or-the-worst-of-everything-dot-dot-dot/" type="text/html"/>
        <id>https://blog.keltia.net/mta-sts-or-the-worst-of-everything-dot-dot-dot/</id>
        <summary type="html">Preambule
This is a rant.  You are warned.  Expect strong language.  There be Dragons.  You can still get away.
I have been protecting my personal 

    

DNS
 zone with 

    

DNSSEC
 for quite some time, it was not difficult, I used the “DNSSEC in 6 minutes” presentation a few years ago and it worked.  I have changed the way I manage my zones mainly because Let’s Encrypt happened in my 

    

TLS
 certificates workflow but still use DNSSEC.  It is fine…</summary>
        </entry>
</feed>
