make DANE for email avaible
In Plesk 18.0.54, published July 18th, 2023, Plesk has added the ability to add Transport Layer Security Authentication (TLSA) DNS records to domains’ DNS zones in Plesk. Such records are most commonly used to implement DNS-based Authentication of Named Entities (DANE). With this update the most popular DANE scenario is covered in Plesk for Linux.
Now, with Plesk 18.0.56, published October 10th, 2023, the SSL It! extension supports DANE that ensures reliable encryption for email transport. When a Let’s Encrypt certificate is being issued, TLSA DNS records of email services will now automatically contain information about the certificate.
Please let us know your thoughts on this feature or whether you require additional functions.
-- PD
-
Maik Venancio commented
You need to implement this urgently, I lost a national security seal because there is no DANE in the plesk, this is a BASIC thing necessary for security and you just haven't done an update since 2016 by adding this, just think about increasing the license value! This is a lack of respect for the customer.
-
Anonymous commented
Why has this not been implemented/made available yet? Even as an extension?? - Cyber Intrusions and Cyber Security keep advancing and yet, Plesk doesn't seem to appreciate the importance of defences against DNS Cache Poisoning and preventing Man in the middle attacks.
If it's not too late already, this system will soon become unfit for purpose, due to limited security options.
-
Jed O'Donnell commented
Re-posting as the original request is many years old to no avail. This is a security hole if DANE isn't supported...
-
Jed O'Donnell commented
Any update here? I need DANE for security
-
Anonymous commented
I would really like to see Plesk support for DANE and TSLA
-
Weare Borg commented
If you can't make your system to pass https://en.internet.nl/ then its a failure to begin with. This site make sure you have the bare minium done in security.
-
Anonymous commented
5 Years and still no progress.....
-
Anonymous commented
+1
-
Weare Borg commented
This request is now 5 years old and i wonder if Plesk developers even read this request. Even free controle panels are offering this feature for some time. The whole email setup should be adjusted to set it up the right way, if they take an example of mail in the box system.
-
florent dewas commented
TLSA records and DANE are important for mail security and well documented major standards. There is no sensible reason to not support them in Plesk!
-
MT2323 commented
+1
-
Anonymous commented
TLSA records and DANE are important for mail security and well documented major standards. There is no sensible reason to not support them in Plesk!
-
7GSoft 7GSoft commented
As long as you pay for plesk, you won't get anything regarding security / deliverability / efficiency. Free tools are already implementing this, so they won't bother working for something that could be of any money back. What a shame....
-
Martijn Koek commented
Hi
- Thank you for your input! We will consider this functionality in upcoming releases, if it will be popular.
How popular does it need to be?
-
dufresne commented
little up for interinsting function
-
Paul Hermans commented
We need this functionality
-
Weare Borg commented
What is funny @Peter is the email i got how they can improve themselves. If you need to ask that info from your customers while you have plenty of open requests its time to fire managers.
-
Anonymous commented
Please help me
-
Peter commented
Such a pitty, users are asking sine 2016 for this feature but Plesk does not seem to hear us :(
-
Eugene commented
I did a test of my websites and notice this vulnerability. I now understand why my virus scanner on my desktop won't accept the webpage. That is very scary, if clients come to my website and there virus scanner does the same, I am having a big problem. I love Plesk but Plesk I am very disappointed at the moment.