{"repo":"PennockTech/smtpdane","free":true,"listed":false,"github":"https://github.com/PennockTech/smtpdane","clone":"git clone https://github.com/PennockTech/smtpdane.git","description":"SMTP DANE testing tool","language":"Go","stars":24,"topics":["smtp","smtp-client","dane","tls","probe","dnssec","ocsp","tlsa","monitoring","nagios-plugin"],"license":"MIT","category":"analytics","readme_excerpt":"smtpdane ======== SMTP Service monitoring of DANE-protected services, with optional NAGIOS-compatible behavior. A bit short on tests but has been used for a few years now and so far has both succeeded when it should and failed when it should. --- go install go.pennock.tech/smtpdane@latest (optional helpers documented below) (or use prebuilt binaries) This is an SMTP client which can connect to an SMTP server, issue STARTTLS and verify the certificate using DANE (TLSA records signed with DNSSEC). Validity of the certificate is checked, including date validity periods, but not PKIX CA anchoring. Per [RFC7672][] we only support DANE-TA(2) and DANE-EE(3) ; PKIX-TA(0) and PKIX-EE(1) are explicitly unsupported. This relies upon a validating DNS resolver; we do not yet validate internally. (Most tools should not validate themselves, but perhaps a monitoring tool should?) Optionally this client can speak TLS-on-connect instead of STARTTLS, for [RFC8314][] submissions service (historically called smtps or ssmtp ); this is port 465 mail service for clients to submit mail. The tool will connect to each SMTP server specified, in parallel. If there are multiple IP addresses, then each will be connected to, in parallel. Flags may be used to request looking up MX records or SRV records for a domain. --- Below, find: Installation (binaries and from source) Invoking (with Examples available) Access needed to help with security sandboxing --- Installation Binaries We use [GoReleaser][] to make","default_branch":null,"files":null,"tree":[],"storefront":"/r/PennockTech","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/PennockTech/smtpdane/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}