Hadrons.Org Network

Public Services

Private Services

Users

Security

The Hadrons.Org network now uses Let's Encrypt certificates, so there should be no need to register any custom certificate authority into your browser any longer.

The SSH server fingerprint (OpenPGP signed by Guillem Jover, OpenPGP key available via WKD, public key servers, or from the Debian keyring) is:

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

256 41:0b:f6:3b:a1:2a:b2:02:b5:d7:a8:65:9b:e9:9c:42 ssh_host_ed25519_key.pub (ED25519)
4096 b1:c5:e1:61:61:27:1e:30:58:b5:f8:4d:10:64:aa:45 ssh_host_rsa_key.pub (RSA)
-----BEGIN PGP SIGNATURE-----
Comment: Signed by Guillem Jover
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=PVSk
-----END PGP SIGNATURE-----

News

2023-10-02 Harden SMTP server TLS settings
Update the TLS settings to harden them, now the SMTP server requires TLSv1.2 (in opportunistic mode), and high-security ciphers.
2019-08-21 Add MTA-STS support
The mta-sts.hadrons.org domain is now available with a policy file, alongside the DNS records signaling MTA Strict Transport Security.
2019-08-20 Add strict SPF, DKIM and DMARC support
Switch the SPF record to be strict, and add DKIM support and a new DMARC record.
2019-03-23 Harden IMAP/POP3 server TLS settings
Update the TLS settings to harden them, now the IMAP/POP3 server requires TLSv1.2, and high-security ciphers.
2018-12-23 Enable HTTP2 support
The WWW server now supports the HTTP2 protocol.
2018-10-30 Enable DNSSEC support
The domain name is now protected by DNSSEC.
2018-06-07 Add OpenPGP WKD support
The domain now provides WKD for some users.
2017-05-05 Harden WWW server TLS settings
Update the TLS settings to harden them, now the WWW server requires TLSv1.2, and high-security ciphers.