Knowledge Base
Referansekunnskap for administratorer, én side om gangen: hva en protokoll eller et produkt er, hvordan det fungerer og hvor det dukker opp i den daglige driften, med hurtigfakta, alle artikler om temaet og plasseringen i protokollstakken. Samlingen vokser; 55 temaer er planlagt.
Sider merket EN eller DE er under oversettelse og åpnes inntil videre på engelsk eller tysk.
Microsoft
Microsoft Exchange Microsoft Exchange: produktfamilie og driftsmodeller Microsoft Exchange som produktfamilie: felles begreper og protokoller, forskjeller mellom Exchange Online og Exchange Server samt oppgavene til hybriddrift og hybrid e-postflyt. Exchange Online Exchange Online: arkitektur, e-postflyt og drift Exchange Online for meldingsadministratorer: tenant- og mottakermodell, EOP-transport, koblinger, klienttilgang, PowerShell og Graph, Message Trace, oppbevaring, sikkerhet og gjenoppretting. Exchange On-Premises Exchange On-Premises: Serverarkitektur og drift Exchange Server i eget datasenter: postboks- og Edge-roller, transportpipeline, Active Directory, ESE-databaser, DAG, klienttilgang, sikkerhet, overvåking, sikkerhetskopiering og gjenoppretting. Exchange Hybrid Exchange Hybrid: identitet, sameksistens og drift Exchange Hybrid forklart på en forståelig måte: forutsetninger, katalogsynkronisering, mottakerautoritet, Hybrid Configuration Wizard, OAuth, organisasjonsrelasjoner, Autodiscover, postkasseflyttinger og drift. Hybrid mail flowDE Hybrid-Mailfluss: Routing zwischen Exchange Online und On-Premises Hybrid-Mailfluss Schritt für Schritt: direkte und zentrale Zustellung, Connectoren, TLS-Zertifikate, Remote-Domains, gemeinsame SMTP-Domains, Mail-Gateways, Message Trace und Message Tracking. Active Directory / EntraEN Active Directory and Microsoft Entra: the identity foundation Why running mail means running a directory: Active Directory and Entra ID in combination, synchronization with Entra Connect, Kerberos and LDAP on the local network, Entra Domain Services for cloud-only environments, and app registrations for system access.
E-postgatewayer
SEPPmailEN SEPPmail: The Secure Mail Gateway with GINA Delivery How the SEPPmail Secure E-Mail Gateway works: S/MIME and domain encryption at the gateway, GINA for recipients without keys, its position in the mail flow, LDAP integration and the operational topics from firmware to cluster. Kiteworks / TotemomailEN Totemomail: Email Encryption on the Kiteworks Platform The Totemomail encryption gateway in operation: origins and the takeover by Kiteworks, gateway encryption with S/MIME and PGP, WebMail delivery, LDAP integration, the licensing model based on licensed users, and the M365 integration. Apache James Apache James: modulær e-postserver og Mailet-plattform Apache James i teknisk kontekst: protokoller og e-postroller, komponentbasert arkitektur, kø og Mailet-pipeline, postboks- og lagringsmodell, driftsvarianter fra PostgreSQL til Cassandra samt utviklingen fra Java Apache-prosjektet til JVM-e-postplattformen. HIN-gatewayEN HIN: secure email in the Swiss healthcare sector The HIN platform from an operator's perspective: HIN identities and protected mail between healthcare professionals, the HIN Mail Gateway inside an organization's own infrastructure, Access Gateway and client, platform upgrades and their deadlines. Cisco ESA / SMA Cisco Secure Email: Gateway, AsyncOS og SMA Cisco Secure Email for meldingsadministratorer: SEG-/ESA-e-postpipeline, lyttere, HAT og RAT, arbeidskø og levering, e-postpolicyer, AsyncOS, SMA-tjenester, klyngegrenser, teknologistakk, overvåking, gjenoppretting og diagnose.
KI og automatisering
Claude Claude og Claude Code: arkitektur, API og sikker agentdrift Claude og Claude Code for plattform-, sikkerhets- og automatiseringsadministratorer: modell- og API-grenser, tilstandsløse Messages, Content Blocks, strømming, Tool Use og MCP, lokal agentkjøretid, workspaces og nøkler, rate limits, caching, batches, observability, personvern, prompt injection og recovery. Cloudflare Cloudflare Workers: Isolates, bindings og Edge-drift Cloudflare Workers for infrastruktur-, meldings- og plattformadministratorer: forespørselsbane, workerd og V8-isolater, handlere og web-API-er, capability-bindings, KV, D1, R2 og Durable Objects, ruting, Compatibility Dates, grenser, observerbarhet, utrullinger, gjenoppretting og teknisk historie.
Åpen kildekode og egen drift
Home AssistantEN Home Assistant: smart home hub with a local focus An overview of the open source smart home platform: local control instead of mandatory cloud, integrations and device connectivity, automations, installation variants, and the role of APIs, tokens, and MQTT. RcloneEN Rclone: The Universal Tool for Cloud Storage An overview of the command-line tool for cloud storage: remotes and backends, the core commands sync, copy and mount, client-side encryption with crypt, and integrity checking by checksum. Proton DriveEN Proton Drive: End-to-End Encrypted Cloud Storage An overview of Proton's cloud storage: end-to-end encryption as its basic principle, origin and ecosystem, clients and platforms, and what a zero-knowledge architecture means for third-party tools and automation. Paperless-ngxEN Paperless-ngx: self-hosted document management An overview of the open source DMS: the consume pipeline from scan to archive, OCR and full-text search, organization through tags, correspondents, and document types, storage architecture, and operation in containers.
Protokoller og standarder
SMTPEN Understanding SMTP: How Email Is Actually Delivered What SMTP is and how mail flow works: envelope and headers, MX delivery, relays and smarthosts, the ports 25, 465 and 587, StartTLS, and the reply codes with which servers justify acceptance and rejection. LDAPEN Understanding LDAP: the directory protocol behind AD, Entra, and mail gateways What LDAP is and how it works: a directory rather than a database, DIT and distinguished names, bind and search, LDAPS vs. StartTLS, and what of that really counts in Active Directory, Entra, and secure mail gateways. DNS DNS: oppløsning, delegering og drift Domain Name System sett fra en administrators perspektiv: navnerom, soner og delegering, rekursiv oppløsning, RRset, cache og TTL, negative svar, UDP og TCP, EDNS, DNSSEC, sonereplikering samt diagnostikk for meldingsinfrastrukturer. TCP / nettverkEN TCP and Networking Basics: What Mail Admins Really Need TCP as the foundation of SMTP, LDAP, and HTTPS: connection setup with the three-way handshake, ports and firewalls, typical failure patterns from timeout to connection refused, and the steps for a quick diagnosis. TLS / sertifikaterEN TLS and Certificates: Trust in Mail and Directory Operations How TLS secures connections and why certificates are the most common cause of outages: handshake, certificate chains and truststores, SAN instead of CN, LDAPS and StartTLS, renewal without downtime. SSHEN SSH: Remote Access, Keys, and Hardening Secure Shell in day-to-day administration: keys instead of passwords, agent and known_hosts, the essential hardening steps for exposed servers, and SFTP as a file transport. KerberosEN Kerberos: tickets, KDC, and authentication in Active Directory How Kerberos works and why Active Directory is built on it: tickets instead of passwords, KDC and TGT, service principal names and keytabs, the time synchronization requirement, and the typical failure patterns.
E-postsikkerhet
E-postkrypteringEN Email Encryption: Transport Protection, S/MIME, PGP, and the Gateway Model The layers of email encryption cleanly separated: opportunistic and enforced TLS on the transport, S/MIME and PGP for content, central gateways instead of client-side chaos, and when each level is sufficient. SPF · DKIM · DMARCEN SPF, DKIM, and DMARC: sender authentication in combination The three sender authentication mechanisms and how they work together: what SPF checks, what DKIM signs, how DMARC ties both to the visible sender, and the rollout path from reports to p=reject. Herding og tilgangEN Hardening and access protection: reducing attack surface in operations The principles behind every hardening checklist: minimize the attack surface, use central instead of local accounts, grant minimal privileges, apply updates consistently, and keep access traceable, from the appliance GUI to the VPS.
Automatisering og APIs
PowerShell / GraphEN PowerShell and Microsoft Graph: Automation for Mail Admins The automation layer above Exchange, Entra and Microsoft 365: Exchange Online PowerShell, Microsoft Graph as an API, app registrations with certificate authentication, and where the classic modules are being retired. APIs og integrasjoner API-er: kontrakter, identiteter og distribuerte feilgrenser API-er for infrastruktur- og meldingsadministratorer: REST, HTTP og JSON, RPC, GraphQL, gRPC og event-API-er, OpenAPI og skjemaer, OAuth og arbeidsbelastningsidentiteter, gatewayer, tidsavbrudd, nye forsøk, idempotens, paginering, rategrenser, webhooks, observerbarhet, versjonering og teknisk historie.
Drift
Releaser og oppdateringerEN Releases and Updates: Patch Operations for Mail Infrastructure How update operations for Exchange, appliances and gateways become plannable: release types from security update to firmware, maintenance windows and rollback paths, reading release notes, and the question of how quickly patching has to happen. Backup og gjenoppretting Sikkerhetskopiering og disaster recovery: Tilstander, mål og gjenoppretting Sikkerhetskopiering og disaster recovery for meldingsadministratorer: avgrensning mot snapshot, replikering og høy tilgjengelighet, RPO, RTO og MTD, konsistent sikring av postbokser, køer, konfigurasjon, nøkler og indekser, isolert gjenoppretting, oppstartsrekkefølge, gjenopprettingstester og diagnostikk. Migrering og fristerEN Migration and deadlines: keeping mail infrastructure life cycles under control Why migrations in the mail environment are almost always driven by deadlines: end-of-support dates, vendor platform renewals, migration patterns from big bang to coexistence, and the checklist for cutover day. Containere og Docker Containere: bilder, kjøretid og robust drift Containere for infrastruktur- og meldingsadministratorer: OCI-artefakter, runtime- og kjerneisolasjon, namespaces og cgroups, nettverk og lagring, orkestrering, identitet og forsyningskjede, ressurser, helse, logging, gjenoppretting, Windows-containere og teknisk historie. Lagring og synkroniseringEN Storage and Sync: Cloud Storage in Technical Terms How cloud storage works technically: object storage versus file system, access through sync, copy, and mount, client-side encryption, storage classes from hot to cold, and integrity checking of transferred data. Lisenser og grenserEN Licenses and limits: licensing models for infrastructure software How infrastructure software is licensed: named users, devices, and capacity limits, how license counters are fed technically, what happens when a limit is reached, and the role the directory plays in it. Feilsøking og diagnostikkEN Troubleshooting and Diagnosis: Systematic Fault Finding in Infrastructure The methodology behind successful fault finding: a layered model from the connection to the application, taking error messages literally, reproducing minimally, correlating changes, and documenting findings. Testing og lasttesterEN Testing and Load Tests: Probing Infrastructure Under Controlled Conditions Methodology for functional and load testing in messaging and infrastructure environments: what to measure, the baseline-burst-soak sequence, load generators and sinks, marking test runs, and evaluating results with percentiles instead of averages.