Age | Commit message (Collapse) | Author | |
---|---|---|---|
2018-04-08 | stat portability | Phil Pennock | |
I forgot how much I loathe basic stuff like "get the size of a file, portably, in shell". Bleh. | |||
2018-04-08 | Added util/renew-opendmarc-tlds.sh script to renew PSL | Phil Pennock | |
2018-04-08 | OpenSSL: Revert the disabling of the session-cache. Bug 2255 | Jeremy Harris | |
Session cacheing is never useful, as we use a new context for every TLS startup. However, removing the support triggers odd behaviour from Outlook Express (only when there is an IMAP server on the same machine as Exim): an initial connect from the OE client fails, the immediate retry works. | |||
2018-04-07 | ARC: fix verify to not evaluate the top AMS twiceexim-4_91_RC4 | Jeremy Harris | |
2018-04-06 | Logging: fix DKIM precis received log line element. | Jeremy Harris | |
Broken-by: 2c47372fad | |||
2018-04-04 | compiler quietening | Heiko Schlittermann (HS12-RIPE) | |
2018-04-04 | compiler quietening | Jeremy Harris | |
2018-04-04 | Actually reap node2 process in redis cluster test | Graeme Fowler | |
2018-04-02 | Avast: rework interfaceexim-4_91_RC3 | Heiko Schlittermann (HS12-RIPE) | |
2018-04-02 | Avast: implement pass_unscanned option | Heiko Schlittermann (HS12-RIPE) | |
2018-04-02 | Avast: improve compliance with avast-protocol(5) | Heiko Schlittermann (HS12-RIPE) | |
Treat scanner errors as malware. Defer on scanner tmpfail only. | |||
2018-03-31 | Testsuite: ignore config-optional -bP output | Jeremy Harris | |
2018-03-31 | Docs: tidy the ChangeLog file | Jeremy Harris | |
2018-03-30 | Merge branch 'dane_require_tls_ciphers' | Phil Pennock | |
New SMTP Transport option for simplified improved security for DANE. | |||
2018-03-30 | Testsuite: avoid ipv6 use in dane_require_tls_ciphers testcases | Jeremy Harris | |
2018-03-30 | Testcases for dane_require_tls_ciphers | Jeremy Harris | |
2018-03-28 | Implement dane_require_tls_ciphers (theoretically) | Phil Pennock | |
It compiles with OpenSSL, on Darwin (if restore Darwin OS). It doesn't crash immediately, but more testing is needed from a place where port 25 is not just blocked. | |||
2018-03-28 | Document new dane_require_tls_ciphers | Phil Pennock | |
Haven't written the code yet, but writing the docs first helped me affirm that this makes sense and feels clean. Code in next commit. | |||
2018-03-28 | ARC: log signing-spec errors in mainlog only, not paniclog | Jeremy Harris | |
2018-03-27 | ARC: enhance debug for signing; explicitly init signing context | Jeremy Harris | |
2018-03-26 | Fix non-ARC build | Jeremy Harris | |
2018-03-26 | ARC: add guard in verify against lack of the dkim-verify context | Jeremy Harris | |
needed for body-hashing | |||
2018-03-26 | Cutthrough: for an onward finaldot timeout, generate an initator 450 in ↵ | Jeremy Harris | |
defer=pass mode | |||
2018-03-26 | ARC: cutthrough delivery may not be used with ARC signing | Jeremy Harris | |
2018-03-26 | Cutthrough: enforce non-use in combination with DKIM signing or transport filter | Jeremy Harris | |
Broken-by: 02b41d7106 | |||
2018-03-26 | Add ARC signing caveats | Phil Pennock | |
2018-03-26 | SPF: remove the deprecated "err_temp" and "err_perm" result names | Jeremy Harris | |
2018-03-26 | DKIM: document proper Ed25519 key-generation methods; remove helper program | Jeremy Harris | |
2018-03-26 | Expand directory opetion for queuefile transport | Jeremy Harris | |
2018-03-26 | Remove extraneus line - benign but pointless. | Jeremy Harris | |
Broken-by: 9e70917d0a | |||
2018-03-25 | Testsuite: for SPF tests, avoid using the ipv4 address | Jeremy Harris | |
2018-03-25 | Add non-mtp source info to ${authres } | Jeremy Harris | |
2018-03-25 | DKIM: document generation of RSA keys | Jeremy Harris | |
2018-03-25 | DKIM: document Ed25519 private key generation under OpenSSL (1.1.1+) | Jeremy Harris | |
2018-03-25 | DKIM: move ed25519_privkey_pem_to_pubkey_raw_b64 to src/util/ and add usage ↵ | Jeremy Harris | |
notes to docs | |||
2018-03-25 | Docs: more on ${authresults } | Jeremy Harris | |
2018-03-24 | ARC: give more detail with "bad signing-spec" message | Jeremy Harris | |
2018-03-24 | Mark variables that are unused before release of store in the queue-list loop | Jeremy Harris | |
2018-03-23 | Address jgh notes re OpenSSL | Phil Pennock | |
* `/usr/local` is fair, on Linux, but I deliberately picked something specific to OpenSSL to make the context clear and limit bad interactions with other locally-installed software. * `RPATH` and `RUNPATH` are not the same and are deeply twisty in their interactions. <https://blog.qt.io/blog/2011/10/28/rpath-and-runpath/> is a decent summary. | |||
2018-03-23 | ARC: For signing, accept A-R header lacking ARC info as equivalent to "none" | Jeremy Harris | |
2018-03-23 | Docs: typo | Jeremy Harris | |
2018-03-23 | Fix spool_wireformat final-dot on LMTP transport. Bug 2258 | Jeremy Harris | |
Broken-by: 328c5688db | |||
2018-03-23 | ARC: add independent-source testcase. Fix signatures by not line-terminating | Jeremy Harris | |
last header line being hashed. | |||
2018-03-23 | exiqsumm fix: Check @ARGV exists before testing it | Graeme Fowler | |
2018-03-22 | Set a TERM handler to terminate properly if running as PID 1 | Heiko Schlittermann (HS12-RIPE) | |
2018-03-22 | SPF: additional variable $spf_result_guessed; tweak authresults string ↵ | Jeremy Harris | |
indicating guess | |||
2018-03-21 | Pipe transport, part two. Bug 2257exim-4_91_RC2 | Jeremy Harris | |
2018-03-21 | ARC: AS header should have no c= tag | Jeremy Harris | |
2018-03-21 | ARC: on the smtp transport option take empty or forced-fail to disable signing | Jeremy Harris | |
2018-03-20 | Not all the world is binutils ld | Phil Pennock | |