Hello Michael, hello *,
for the forthcoming patch, which introduces a firewall rule for rejecting TCP connections to destination port 25 on RED from all internal networks on new installations only, I'd like to clarify upfront what resource the rules' comment should link to, if any.
This could be a blog post by us, which would only go live shortly before the release of the Core Update this patch is merged into, so it will be a dead link at the time of patch submission.
Otherwise, linking to our wiki would work as well, or we can refer to the M3AAWG recommendation on this topic (https://www.m3aawg.org/Port25_IPNetworks) straight away.
Do you have any preferences?
Thanks, and best regards, Peter Müller (crawls back into the sewers)