learning_curve
Golden Pleskian
MTA-STS (reference link) is not (yet!) a current function within Plesk. It's been sat in the Plesk User Voice area for years, but has not been progressed.
It should be relatively straightforward to apply (certainly on a non-Plesk controlled server), but has anybody actually worked this right through, to a sucessfully operational stage, on a domains that are hosted on a server that's controlled by Plesk? If you have, did you need to add anything (to make this function within the Plesk rules and policies) other than...: The MTA-STS DNS records (A, CNAME, TXT) and a new associated sub-domain, plus the MTA-STS policy file?
A related, small, self-mod is disabling plain text authorisation within here: /etc/dovecot/conf.d/10-plesk-security.conf but that's nowhere near as effective, as the above.
It should be relatively straightforward to apply (certainly on a non-Plesk controlled server), but has anybody actually worked this right through, to a sucessfully operational stage, on a domains that are hosted on a server that's controlled by Plesk? If you have, did you need to add anything (to make this function within the Plesk rules and policies) other than...: The MTA-STS DNS records (A, CNAME, TXT) and a new associated sub-domain, plus the MTA-STS policy file?
A related, small, self-mod is disabling plain text authorisation within here: /etc/dovecot/conf.d/10-plesk-security.conf but that's nowhere near as effective, as the above.