
tech.create-mailbox·versija 1.0.0·melnraksts
Personai ir darba pastkaste uzņēmuma domēnā, SPF/DKIM/DMARC pārbaudes ir sekmīgas, un nav pāradresācijas uz personīgajām adresēm.
A person joining the company needs a company mailbox. Not for a person leaving — that is tech.remove-mailbox. Not for setting up the mail program on their laptop or phone — that is tech.setup-mail-client, which runs after this one. If the company does not yet hold the domain the mailbox should be on, run tech.register-domain first.
Jebkurš solis var gaidīt līdz datumam un atveras pats; katrs noslēgts solis atstāj pierādījumu (piezīmi, saiti, skaitli).
Read the trigger: who, which domain, which aliases and groups. If anything is ambiguous (two spellings of the name, a role address instead of a personal one), ask the owner before creating.
Izdarīts, kad address, aliases and groups are written down in one line.
bc mail search <proposed address> — the address must not already exist as a mailbox or alias.
Izdarīts, kad the search shows no existing mailbox and no alias pointing at one.
⛔ An alias of a departed employee is not free space — flag it; the old mailbox is handled by tech.remove-mailbox, not silently reused.
Apstiprinājums · S3 · īpašnieks — izpilde apstājas, līdz nosaukts cilvēks ieraksta lēmumu
Present the proposed address, aliases and groups.
Izdarīts, kad the owner has confirmed the exact address in writing (chat message or task comment is enough).
Create it in the mail module with the agreed address, a generated password, and no forwarding rules. Add aliases and group memberships as approved.
Izdarīts, kad the mailbox appears in the mail module with the agreed address and zero forwarding rules.
⛔ Never send credentials to a manager, a colleague or a chat channel — hand them to the person only, through the onboarding channel the company uses.
bc dns <domain> (read) — MX, SPF, DKIM and DMARC records must match the expected values.
Izdarīts, kad all four record types are present and match on every Brain Club nameserver.
Send a test message from an existing company mailbox to the new address, and one from the new mailbox to an external address. Ask the person to check both arrived — and that the outbound one did not land in the recipient's spam.
Izdarīts, kad one inbound and one outbound test message are confirmed delivered, with timestamps.
The person logs in (webmail or via tech.setup-mail-client, which runs next) and changes the generated password to their own.
Izdarīts, kad the person has confirmed a successful login.
Link the mailbox to the person record; add a renewal/review note with bc tasks add only if the company tracks mailbox reviews; send the owner a two-line summary: address, aliases, test results.
Izdarīts, kad the mailbox is linked to the person and the summary is sent.
gn. vs| Pazīme | Rīcība |
|---|---|
| Address already exists | Do not reuse a departed person's mailbox; run tech.remove-mailbox on the old one, then create fresh. |
| Test mail lands in spam | DKIM or SPF mismatch on the sending domain — re-check S5 records, resend after fix. |
| Inbound test never arrives | MX records missing or pointing elsewhere — fix the zone before anything else; the mailbox is fine. |
| Person cannot log in | Confirm the address spelling and that the password was handed to the person, not retyped by someone else; reset once, hand over again. |
| Owner unreachable for S3 | Do not create the mailbox with a guessed address; park the request as a task and wait. |
Approved address from S3 (who, when) · bc mail search output from S2 · mailbox creation date · test message timestamps both directions · the person's login confirmation.
After every 10 runs ask: how long from person-joined to confirmed first mail, and which step waited longest? Did any test message land in spam, and was the cause on our side? Did any mailbox end up with forwarding rules or a reused departed person's address? A new version changes the step that caused the wait or the failure, and says so in its change note.
Nosaukums un kopsavilkums ir latviski. Detalizētā izpildes kārtība pagaidām ir kanoniskajā angļu valodas versijā; juridiskos un finanšu soļus publicēsim latviski tikai pēc cilvēka pārbaudes.
Obligātās sīkdatnes tur sarunu kopā. Analītika ir izslēgta, līdz tu atļauj — tā neliek nevienu sīkdatni un neglabā ierīces identifikatoru.Necessary storage keeps your conversation together. Analytics is off until you allow it — it sets no cookie and stores no device identifier. Ko mēs glabājamWhat we store