Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    email hosting

    Scheduled Pinned Locked Moved Off-Topic & Non-Support Discussion
    31 Posts 6 Posters 3.7k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • ?
      A Former User
      last edited by

      Thanks @bingo600 .

      It's annoying that email is still so central. I don't use it to talk to anyone important (that's what signal is for), but it's needed for almost everything. Banking - Yes, Utilities - Yes, Buy things online - Yes. Communicate with doctors - Yes. Hunt for a job - Yes.

      It's required as an identity and it's the worst thing I can think of to use as identity. I'm beginning to think I should just drop the vanity domain names, use icloud or whatnot and get over it...

      bingo600B 1 Reply Last reply Reply Quote 0
      • bingo600B
        bingo600 @A Former User
        last edited by

        @jwj said in email hosting:

        I'm beginning to think I should just drop the vanity domain names, use icloud or whatnot and get over it...

        Naah ...
        If you're a Signal user šŸ‘ , you know better than to put anything sensitive on a Cloud.

        TLDR - Brainstorming

        I have been thinking of a mailhack i once saw used.
        Making a "remote mail buffer server" that delivers to your local server. I just cant figure out if it really is neat , or just more complicated.

        Use a hosted mail server for your domains with a MX record of 20 , then make your local mail server , hosting the same domains with a MX record of 10.

        The hack is : On your local mailserver you will only allow smtp from the remote mail server.

        That way everyone will try your local mailserver and fail.
        Then they will deliver it to your remote mailserver, but your remote mailserver knows that it's MX 20 , and there is a MX 10.
        Now the remote mailserver will deliver to your local mailserver , and you get mail at local wire speed.

        If your local mailserver dies , the mails will just be buffering up at the remote, nothing lost.

        But then why not just let your local mailserver be open too , and let that be first try.

        This hack was made for having a central mailserver where Virus Scanning was made before the mail got released to the final servers.

        Now that i have explained it in words.
        It doesn't seem that smart , not to let it try your local MX10 as first , and just keep the MX20 as backup / buffer server.

        Well thanx for "clearing that up for me" 😊

        If you find my answer useful - Please give the post a šŸ‘ - "thumbs up"

        pfSense+ 23.05.1 (ZFS)

        QOTOM-Q355G4 Quad Lan.
        CPUĀ  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
        LANĀ  : 4 x Intel 211, DiskĀ  : 240G SAMSUNG MZ7L3240HCHQ SSD

        1 Reply Last reply Reply Quote 0
        • ?
          A Former User
          last edited by

          For sure self hosting is enormously appealing. Problem is even if your on no ones blacklist your also not on the whitelist that major email providers appear to use. Result is, you end up in the spam mailbox. For those times you do need to send someone you don't have an existing relationship with an email, they just don't see it, and you have no way to nudge them to look in the spam folder for your message.

          Yeah, I have a general reluctance to dumping a bunch of stuff in the cloud. I'm also reluctant to open up a bunch of ports on my network and then defend them to self-host shared calendars, contact lists, smtp, etc. The Helm was/is a great idea to get around these issues. You get a AWS instance that does nothing but forward traffic from your public AWS IP to a host in your network via a vpn. You can do all that yourself but it was worth it, $99/year, to let them set it all up. Again, the issue is that public AWS IP isn't on anyone's white list. You're spam every time...

          I would love to be able to send a document to my lawyer via signal. Same for my investment advisor. That's not going to happen anytime soon. :(

          kiokomanK bingo600B 2 Replies Last reply Reply Quote 0
          • kiokomanK
            kiokoman LAYER 8 @A Former User
            last edited by kiokoman

            @jwj
            bind9 for dns+postfix+dovecot+owncloud+collabora i can't ask for more for personal use for my domains
            if you want something easy to manage there is webgui like ispconfig

            Ģæ' Ģæ'\̵͇̿̿\Š·=(ā—•_ā—•)=ε/̵͇̿̿/'Ģæ'Ģæ Ģæ
            Please do not use chat/PM to ask for help
            we must focus on silencing this @guest character. we must make up lies and alter the copyrights !
            Don't forget to Upvote with the šŸ‘ button for any post you find to be helpful.

            ? 1 Reply Last reply Reply Quote 0
            • ?
              A Former User @kiokoman
              last edited by

              @kiokoman I do like that idea. I've had a look at, more or less, exactly the pieces you mention. Problem is my dynamic ip from Spectrum is sh*t by definition...

              bingo600B 1 Reply Last reply Reply Quote 0
              • bingo600B
                bingo600 @A Former User
                last edited by

                @jwj said in email hosting:

                Again, the issue is that public AWS IP isn't on anyone's white list. You're spam every time...

                That is somewhat true ...

                I have that issue with TrendMicro's mailprotection system.
                Even though i have a static ip , it's "carved out of" a Dynamic range that my ISP is announcing.

                And I have contacted them several times to explain that i'm not on any RBL's besides theirs (All clear w. spamhous etc..)

                They always answer - Get your ISP to announce your ip as non dynamic. Like that's ever going to happen šŸ‘Ž

                The wife has to use Gmail to send work related mails.
                So i can relate to that issue.

                That is my only "dark hole" atm.

                I even think i can e-mail gmx.de addresses now , used to be a challenge too.

                /Bingo

                If you find my answer useful - Please give the post a šŸ‘ - "thumbs up"

                pfSense+ 23.05.1 (ZFS)

                QOTOM-Q355G4 Quad Lan.
                CPUĀ  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
                LANĀ  : 4 x Intel 211, DiskĀ  : 240G SAMSUNG MZ7L3240HCHQ SSD

                1 Reply Last reply Reply Quote 0
                • ?
                  A Former User
                  last edited by

                  It's been a minute since I went down this road but a year or so ago just not being on spamhaus or proofpoint wasn't enough. So many professional offices (doctors/schools/etc) use packaged solutions that have, as best I can tell, whitelists for spam filtering. If you're not coming from a well known block of IP's you're toast.

                  1 Reply Last reply Reply Quote 0
                  • bingo600B
                    bingo600 @A Former User
                    last edited by bingo600

                    @jwj said in email hosting:

                    Problem is my dynamic ip from Spectrum is sh*t by definition...

                    You do know you can request your ip to be removed from the Spamhaus PBL , even if it's "announced by isp as dynamic ?

                    That solved like 95% of my issues

                    Ahh . too late , you answered that

                    If you find my answer useful - Please give the post a šŸ‘ - "thumbs up"

                    pfSense+ 23.05.1 (ZFS)

                    QOTOM-Q355G4 Quad Lan.
                    CPUĀ  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
                    LANĀ  : 4 x Intel 211, DiskĀ  : 240G SAMSUNG MZ7L3240HCHQ SSD

                    ? 1 Reply Last reply Reply Quote 0
                    • ?
                      A Former User @bingo600
                      last edited by

                      @bingo600 Thanks brother :)

                      I do think in the end I will go back to some form of self-hosting. All on my own or some service like the Helm that will deal with all of setup for a fee...

                      1 Reply Last reply Reply Quote 1
                      • bingo600B
                        bingo600
                        last edited by bingo600

                        So what is needed is a "Legal" smarthost mail forwarder , to route/relay your outbound mail through.

                        And setup TLS šŸ‘®

                        If you find my answer useful - Please give the post a šŸ‘ - "thumbs up"

                        pfSense+ 23.05.1 (ZFS)

                        QOTOM-Q355G4 Quad Lan.
                        CPUĀ  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
                        LANĀ  : 4 x Intel 211, DiskĀ  : 240G SAMSUNG MZ7L3240HCHQ SSD

                        ? 1 Reply Last reply Reply Quote 0
                        • ?
                          A Former User @bingo600
                          last edited by A Former User

                          @bingo600 That's what these guy s do:

                          https://www.thehelm.com/

                          They just need to get a block of IP's that are seen as blessed like google or micro$oft's servers.

                          Better yet all these other services (bank!) could stop using email as a way to identify me. Then I wouldn't need email at all except for some edge cases.

                          bingo600B 1 Reply Last reply Reply Quote 0
                          • bingo600B
                            bingo600 @A Former User
                            last edited by

                            @jwj

                            So they sell you a HW box and a $99 subscription ?
                            And you'll get a VPN w. an exit ip via their system ?

                            If you find my answer useful - Please give the post a šŸ‘ - "thumbs up"

                            pfSense+ 23.05.1 (ZFS)

                            QOTOM-Q355G4 Quad Lan.
                            CPUĀ  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
                            LANĀ  : 4 x Intel 211, DiskĀ  : 240G SAMSUNG MZ7L3240HCHQ SSD

                            ? 1 Reply Last reply Reply Quote 0
                            • ?
                              A Former User @bingo600
                              last edited by A Former User

                              @bingo600 Yeah. Although I think the VPN is vaporware atm. You get email, carddav, caldav and nextcloud. I nice app (connects to your box via bluetooth) to admin the whole thing...

                              bingo600B kiokomanK 2 Replies Last reply Reply Quote 0
                              • bingo600B
                                bingo600 @A Former User
                                last edited by

                                @jwj

                                Hmmm ... Not happy users
                                https://community.thehelm.com/t/email-security-in-individual-email-accounts/246

                                Are they just using Gmail ?
                                https://community.thehelm.com/t/gmail-outage-ongoing/279

                                If you find my answer useful - Please give the post a šŸ‘ - "thumbs up"

                                pfSense+ 23.05.1 (ZFS)

                                QOTOM-Q355G4 Quad Lan.
                                CPUĀ  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
                                LANĀ  : 4 x Intel 211, DiskĀ  : 240G SAMSUNG MZ7L3240HCHQ SSD

                                ? 1 Reply Last reply Reply Quote 0
                                • ?
                                  A Former User @bingo600
                                  last edited by A Former User

                                  @bingo600 The company has become something of a dumpster fire. People paid for devices over a year ago and have yet to receive anything.

                                  Their community is a dumpster fire on top of a train wreck driven by idiots. Typical Helm users have brain damage from tin foil hats that are way too tight.

                                  That thread is really about how people thought the bounced emails because of gmails meltdown were Helms problem not googles.

                                  My opinion is the Helm is a good idea executed poorly. Too bad really...

                                  On the other hand there is nothing they do you couldn't do yourself with the some persistence and the right skills.

                                  1 Reply Last reply Reply Quote 0
                                  • kiokomanK
                                    kiokoman LAYER 8 @A Former User
                                    last edited by

                                    @jwj
                                    without a static ip you are screwed
                                    i myself have searched all available isp on my country that could give me what i want, static ip was a must, do you have no alternative?

                                    Ģæ' Ģæ'\̵͇̿̿\Š·=(ā—•_ā—•)=ε/̵͇̿̿/'Ģæ'Ģæ Ģæ
                                    Please do not use chat/PM to ask for help
                                    we must focus on silencing this @guest character. we must make up lies and alter the copyrights !
                                    Don't forget to Upvote with the šŸ‘ button for any post you find to be helpful.

                                    ? 1 Reply Last reply Reply Quote 0
                                    • ?
                                      A Former User @kiokoman
                                      last edited by

                                      @kiokoman Not at the moment. Spectrum or AT&T. I'm moving later this year. I'll have a number of choices in the new place (NYC) including a community service that gives 1G symmetric service with static ipv4 and a static /48 prefix. I'm on the edge of my seat waiting for that :)

                                      1 Reply Last reply Reply Quote 0
                                      • ?
                                        A Former User
                                        last edited by A Former User

                                        As a follow on to this line of thinking.

                                        If you self host things not email. Calendars, Contacts, File Sync/Sharing and the like do you open ports or keep it local and only accessible via VPN when not at home?

                                        bingo600B 1 Reply Last reply Reply Quote 0
                                        • M
                                          mhab12
                                          last edited by

                                          I just migrated my gmail box to Proton Mail. So far so good. Good security. App works fine, web interface is better. Using a custom domain so don't expect to run into issues with sites not accepting protonmail.com or pm.me addresses. Not sure if you can get by with their free offering but PM might be an easy fix. Tutanota seems to be the other option in the same high security/privacy focused category.

                                          1 Reply Last reply Reply Quote 0
                                          • bingo600B
                                            bingo600 @A Former User
                                            last edited by bingo600

                                            @jwj said in email hosting:

                                            As a follow on to this line of thinking.

                                            If you self host things not email. Calendars, Contacts, File Sync/Sharing and the like do you open ports or keep it local and only accessible via VPN when not at home?

                                            I'm not exposing to public.
                                            All has to be done via OpenVPN

                                            It can't be hard to connect , the wifey can do it wo. nagging. 😊

                                            Btw: I have a friend that is happy w. proton mail too.

                                            If you find my answer useful - Please give the post a šŸ‘ - "thumbs up"

                                            pfSense+ 23.05.1 (ZFS)

                                            QOTOM-Q355G4 Quad Lan.
                                            CPUĀ  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
                                            LANĀ  : 4 x Intel 211, DiskĀ  : 240G SAMSUNG MZ7L3240HCHQ SSD

                                            ? 1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.