Post 9osjNeMcFcFyyZOTjs by Gina@fosstodon.org
(DIR) More posts by Gina@fosstodon.org
(DIR) Post #9ooKPiJWnqYNyA9UjA by Gina@fosstodon.org
2019-11-10T06:41:43Z
0 likes, 0 repeats
#Foss update. Sigh.It's Sunday morning 07:00. I get a notification from my Androids email app (Gmail, I know, only app that works well with an Exchange protocol that isn't Outlook) saying our email server isn't secure enough for their mobile app. Removed the account, added it again, same issue.“Contact your IT admin for help.”I am the IT admin...:(
(DIR) Post #9ooKkPIqgFLX5ahZIG by Gina@fosstodon.org
2019-11-10T06:45:27Z
0 likes, 0 repeats
Before anyone asks; we can't use the Outlook mobile app because there are a few issues between our mailserver and Outlook, such as images and attachments not being visible. It seems that staying #selfhosted is increasingly becoming impossible.
(DIR) Post #9ooKwVlUTrtUbbs240 by KeyWeeUsr@fosstodon.org
2019-11-10T06:47:28Z
0 likes, 0 repeats
@Gina Know the feeling :/ why not change to something non-Exchange instead if you are the IT admin? Outlook can handle IMAP/POP3 protocols and it's less headaches + not proprietary.
(DIR) Post #9ooLD7flJDJso7708O by mike@fosstodon.org
2019-11-10T06:50:24Z
0 likes, 0 repeats
@Gina Oh, I want to drop my phone on the floor and crush it with my foot every time I see a message about contacting IT on it.
(DIR) Post #9ooLL5e4jJUqpw7d5c by Gina@fosstodon.org
2019-11-10T06:52:06Z
0 likes, 0 repeats
@KeyWeeUsr @KeyWeeUsr Yeah I'm thinking that as well, but that will probably mean a whole reconfiguration of the email server (Zimbra btw). We worked with an engineer setting up the mail server at the time, and he argued that the Exchange protocol was necessary for Apache Ipsilon's SSO integration. If that's actually and still the case I'd have to check, but otherwise it's worth the reconfiguration.
(DIR) Post #9ooLQ1XbPw8fYTRmU4 by Gina@fosstodon.org
2019-11-10T06:52:45Z
0 likes, 0 repeats
@mike Same, this is going to be such a headache Monday morning.Go FOSS they said, it'll be fun they said 😅
(DIR) Post #9ooMMeO39BLopTvyl6 by KeyWeeUsr@fosstodon.org
2019-11-10T07:03:35Z
0 likes, 0 repeats
@Gina I haven't heard of Zimbra, but I heard multiple people having issues with Exchange itself whatever is the platform. I had issues even with the default email client on MacOS under proxy, not to mention Thunderbird uses some really old addon to even communicate with that proprietary proto.Also, I heard https://git.kolab.org/diffusion/ is nice too, feel free to check.
(DIR) Post #9opXpBFkCXXVjTrKvQ by lasombra@fosstodon.org
2019-11-10T20:43:38Z
0 likes, 0 repeats
@Gina Good luck on Monday.
(DIR) Post #9opYjIS6cZaYHHOphQ by gwenn@mstdn.io
2019-11-10T07:42:19Z
0 likes, 0 repeats
@Gina Please no creepy outlook. What about k9?
(DIR) Post #9opYjJFje3HslCcT3Y by Gina@fosstodon.org
2019-11-10T07:49:55Z
0 likes, 0 repeats
@gwenn From what I remember, K9 only does email and not calendar or contacts. This leads to issues when users send meeting invites to each other. Same with Blue Mail unfortunately. If course it's been a year since I checked, possibly things have changed.
(DIR) Post #9opYjK0ArOQz5ELYRM by gwenn@mstdn.io
2019-11-10T08:07:22Z
0 likes, 0 repeats
@Gina What about CalDAV and CardDAV? There you can handle these things self-sufficient.
(DIR) Post #9opYjKmNy8zzUku3aS by Gina@fosstodon.org
2019-11-10T08:11:31Z
0 likes, 0 repeats
@gwenn yeah then we'd have to get rid of the exchange protocol and offer a less integrated solution, which is going to be challenging for users.
(DIR) Post #9opYjLfgeXEcGGmDmi by gwenn@mstdn.io
2019-11-10T09:20:42Z
0 likes, 0 repeats
@Gina Uhh, what about the issue with your mail server? Did you checked it with remote tools?
(DIR) Post #9opYp5MADx9BOoNemO by paulgatling@bsd.network
2019-11-10T13:37:32Z
0 likes, 0 repeats
@GinaDo your users have an integrated email app from the oem still on their phone? I know LG ships an in built email client that does exchange.There is also Touchdown that does (or did) exchange with calendar and contacts.Or does Zimbra also do DAV? That could open up some options..F*ck google right in the ear.
(DIR) Post #9opmmVGB9t5hQ0BuYy by luricaun@chaos.social
2019-11-10T12:06:20Z
0 likes, 0 repeats
@Gina Hey Gina, I am sorry to read that you're having trouble with your mail system. I'm no email expert myself but those two links might give you some insight?!The first one has even more sections for testing mail / dns issues.https://mxtoolbox.com/diagnostic.aspxhttps://www.mail-tester.com/spf-dkim-check
(DIR) Post #9opsBjLoPD5O8Afssy by Gina@fosstodon.org
2019-11-10T07:11:40Z
0 likes, 0 repeats
@KeyWeeUsr Tnx for the link. I think my options currently are:- Fix this issue. No idea how, I think it's Gmail.- Reconfigure Zimbra to use IMAP instead of Exchange protocol. Giant PITA.- move to #Kopano- move to @Tutanota - move to @protonmail
(DIR) Post #9opts2wy1gNv28nN8y by neildarlow@fosstodon.org
2019-11-10T07:39:11Z
0 likes, 0 repeats
@Gina Is that because your server doesn't offer a TLS certificate or perhaps you're not implementing DKIM and SPF?I'm an individual who self-hosts email services and DKIM and SPF are becoming essential to establish your reputation with big organisations.There are even caveats for DKIM that don't seem related like ensuring the hostname that your SMTP server resolves to (in reverse DNS lookups) is what is presented in its EHLO.
(DIR) Post #9opvP2uTIS7iQ2vXzU by jamie@sen.jamiesnotes.com
2019-11-10T07:56:02Z
0 likes, 0 repeats
@Gina What a nightmare. Strange error message. Doesn't make a lot of sense. Assume it must be due to GMail enforcing some TLS settings that your server doesn't support.I don't know of any other Active Sync clients for Android. It might be a bit flakey, but a lot more convenient than setting up Caldav / Cardav / IMAP on each device.
(DIR) Post #9opvgJ2yYIhXOH8Rnc by Gina@fosstodon.org
2019-11-10T07:56:13Z
0 likes, 0 repeats
@neildarlow Could be, we have DKIM/SPF/DMARC set up, but as far as I know nothing changed there.
(DIR) Post #9opxIzU5JtGzxvpEf2 by ob@fosstodon.org
2019-11-10T14:03:38Z
0 likes, 0 repeats
@Gina @KeyWeeUsr @Tutanota @protonmail I am a big fan of slef-hosting if possible. If there is no other better option, then Tutanota is definetely great! You might be interested in this https://tutanota.com/blog/posts/secure-email-for-non-profit
(DIR) Post #9opxvld4lYscHyWMQy by ericbuijs@fosstodon.org
2019-11-10T08:19:16Z
0 likes, 0 repeats
@Gina And I thought that I was up early on Sunday. ;-)
(DIR) Post #9oq0G7YFAawpyl5sTQ by kev@fosstodon.org
2019-11-10T08:35:47Z
0 likes, 0 repeats
@Gina I’m sure you’ve already considered all these options, but what about plain old IMAP for mail, then DAV for cal and contact sync?
(DIR) Post #9oq1JUPsiLTriVLvdZ by null0x0@fosstodon.org
2019-11-10T09:05:09Z
0 likes, 0 repeats
@Gina server be like no! Just no lol
(DIR) Post #9oq5LrrauS8wpehkSu by tagomago@mastodon.social
2019-11-10T09:53:01Z
0 likes, 0 repeats
@Gina I'd dump Outlook, Exchange, Android and Gmail simultaneously.
(DIR) Post #9oq6hn27eH62B0e7jU by neildarlow@fosstodon.org
2019-11-10T10:02:12Z
0 likes, 0 repeats
@Gina That's entirely possible but small players are at the mercy of whatever policy the big players introduce.I had problems getting mail delivered to yahoo addresses until I sent some mail to a yahoo account I created for myself and moved the mails from the Spam folder to give my domain some reputation.That was despite me providing DMARC/DKIM and SPF as you have done. How they can ignore reputation supplied by those mechanisms and rely on users to tag mail as not-Spam I don't understand.
(DIR) Post #9oq78XN1zSyZPzBEVk by Gina@fosstodon.org
2019-11-10T10:12:42Z
0 likes, 0 repeats
@kev https://fosstodon.org/@Gina/103112292860912707
(DIR) Post #9oq78ZUY6UB5zsiGVU by kev@fosstodon.org
2019-11-10T15:55:24Z
0 likes, 0 repeats
@Gina urgh. That sounds like a real pain! 😞
(DIR) Post #9oqVpWlUVzwGtNeZTU by Gina@fosstodon.org
2019-11-11T07:59:05Z
0 likes, 0 repeats
@lasombra Tnx ❤️
(DIR) Post #9osgJYZXXfYlzcnNZo by Gina@fosstodon.org
2019-11-12T09:05:59Z
0 likes, 0 repeats
Update on this issue! Turns out Google broke something 🙌
(DIR) Post #9oshyYjFxpmWJ2SJJw by GigaByte4711@whitespashe.uk
2019-11-12T09:24:20Z
0 likes, 0 repeats
@Gina @KeyWeeUsr @Tutanota @protonmail Do you still need your mail client to be FOSS?If not, 9Folders has been touted as having great exchange compatibility.It is licensed though.https://play.google.com/store/apps/details?id=com.ninefolders.hd3I had the same issue as you with our exchange implementation. We were using zentyal Linux for our mail server, and K9 just broke for me. I then realised I hadn't enabled IMAP on the server and was able to downgrade.
(DIR) Post #9osiEYexzNmMj04tMG by Gina@fosstodon.org
2019-11-12T09:27:31Z
0 likes, 0 repeats
@GigaByte4711 @KeyWeeUsr @Tutanota @protonmail "Nine is not a free app.After enough time using the free trial for 2 weeks and you are satisfied, please purchase Nine licenses.The price for a license is US $14.99."Looks good, but besides our preference for FOSS, this seems way too expensive for us.
(DIR) Post #9osijUdB1BzPCrzXqy by GigaByte4711@whitespashe.uk
2019-11-12T09:32:58Z
0 likes, 0 repeats
@Gina @KeyWeeUsr @Tutanota @protonmail I thought it might be. Apologies. Does K9 actually work for you?
(DIR) Post #9osjNeMcFcFyyZOTjs by Gina@fosstodon.org
2019-11-12T09:40:19Z
0 likes, 0 repeats
@GigaByte4711 @KeyWeeUsr @Tutanota @protonmail Tried it again just now, unfortunately it doesn't work. I suspect that it has to do with K9 accepting older Exchange protocols (2003/2007), but not new ones.
(DIR) Post #9osjg0ETgLvW0sL332 by GigaByte4711@whitespashe.uk
2019-11-12T09:43:35Z
0 likes, 0 repeats
@Gina @KeyWeeUsr @Tutanota @protonmail What protocol are you currently matching, if you know?
(DIR) Post #9oskIrMaainhndf2e0 by Gina@fosstodon.org
2019-11-12T09:50:39Z
0 likes, 0 repeats
@GigaByte4711 @KeyWeeUsr @Tutanota @protonmail No idea which one specifically.
(DIR) Post #9oslUHl6tT8Mns8tqC by GigaByte4711@whitespashe.uk
2019-11-12T10:03:51Z
0 likes, 0 repeats
@Gina @KeyWeeUsr @Tutanota @protonmail Hmm, it looks like every app that boasts O365 Activesync are paid apps. Can Zimbra run in both IMAP and ActiveSync modes?
(DIR) Post #9osn6QJ7et1eH5nik4 by Gina@fosstodon.org
2019-11-12T10:21:47Z
0 likes, 0 repeats
@GigaByte4711 @KeyWeeUsr @Tutanota @protonmail Nope.
(DIR) Post #9osoW4gkl8iQhyeK0G by GigaByte4711@whitespashe.uk
2019-11-12T10:37:41Z
0 likes, 0 repeats
@Gina @KeyWeeUsr @Tutanota @protonmail Oh. Oh god.I'll have a Gin and Tonic on your behalf.If migration to another service is in the cards, check out Zentyal. I know for a fact that it can run both IMAP and ActiveSync. Compatibility with existing Exchange-aware services would have to be tested, but it may be worth a look.
(DIR) Post #9osrSsOCKaKzYZ8XdQ by lasombra@fosstodon.org
2019-11-12T11:10:50Z
0 likes, 0 repeats
@Gina Dang it! I hope they acknowledge and fix it.Good luck.
(DIR) Post #9ostDuEhNlPeqggPLs by Tayo@fosstodon.org
2019-11-12T11:30:30Z
0 likes, 0 repeats
@Gina Shocker!
(DIR) Post #9ot4rTr9yn7Y73kJqy by paulgatling@bsd.network
2019-11-12T13:40:56Z
0 likes, 0 repeats
@GinaI am, for some reason, not at all surprised.
(DIR) Post #9oyyx6NOkzQAFfskeO by edgren@fosstodon.org
2019-11-15T10:02:55Z
0 likes, 0 repeats
@Gina Oh snap! Luckily I don't use that app anymore. FairMail are so much better.