my mailserver has been blacklisted

2009-03-26 Thread Ivan Ricotti
Hi all, as I said before I'm a newbie in mail server administration, so any help will be *greatly* appreciated! My mail server is continuosly listed in some blacklists and it's a whole week I'm trying to tighten up the security. Few seconds ago I've been listed (again!) in the CBL:

Re: my mailserver has been blacklisted

2009-03-26 Thread Ivan Ricotti
Hello again, Ivan Ricotti wrote: Hi all, as I said before I'm a newbie in mail server administration, so any help will be *greatly* appreciated! My mail server is continuosly listed in some blacklists and it's a whole week I'm trying to tighten up the security. also spamcop

Re: my mailserver has been blacklisted

2009-03-26 Thread Charles Marcus
On 3/26/2009, Ivan Ricotti (i.rico...@elabor.homelinux.org) wrote: Here it is my main.cf: No. Please follow the instructions provided in the welcome message. At a minimum, we need output of postconf -n (NOT copy/paste from main.cf), and complete logs showing the spam going out... the less

Re: my mailserver has been blacklisted

2009-03-26 Thread Jim Wright
On Mar 26, 2009, at 5:59 AM, Ivan Ricotti wrote: I suspect that some windows users in my network is sending spam... and the question is: how can I prevent this acting on postfix? Two options. 1, Eliminate windows users from your network. 2, scan outgoing mail for spam before accepting it

Re: my mailserver has been blacklisted

2009-03-26 Thread Ivan Ricotti
Hello, Charles Marcus wrote: On 3/26/2009, Ivan Ricotti (i.rico...@elabor.homelinux.org) wrote: Here it is my main.cf: No. Please follow the instructions provided in the welcome message. you're right. I beg you pardon. At a minimum, we need output of postconf -n (NOT copy/paste from

Re: my mailserver has been blacklisted

2009-03-26 Thread Ivan Ricotti
Hi Jim, Jim Wright wrote: On Mar 26, 2009, at 5:59 AM, Ivan Ricotti wrote: I suspect that some windows users in my network is sending spam... and the question is: how can I prevent this acting on postfix? Two options. 1, Eliminate windows users from your network. Yeah! I really would

Re: my mailserver has been blacklisted

2009-03-26 Thread Jorey Bump
Ivan Ricotti wrote, at 03/26/2009 06:59 AM: I suspect that some windows users in my network is sending spam... and the question is: how can I prevent this acting on postfix? Don't speculate. Read your logs.

Re: my mailserver has been blacklisted

2009-03-26 Thread Ralf Hildebrandt
* Ivan Ricotti i.rico...@elabor.homelinux.org: check_sender_access hash:/etc/postfix/backscatter, What's in here? -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de Real programmers never work 9 to 5. If any

Re: my mailserver has been blacklisted

2009-03-26 Thread Wietse Venema
Ivan Ricotti: Regarding my log, here some suspicious snippets: Mar 26 13:14:08 athene postfix/smtpd[690]: connect from spike.porcupine.org[168.100.189.2] Mar 26 13:14:09 athene postfix/smtpd[690]: 528B8E72ED: client=spike.porcupine.org[168.100.189.2] Mar 26 13:14:09 athene

Re: my mailserver has been blacklisted

2009-03-26 Thread Ivan Ricotti
Hello, Ralf Hildebrandt wrote: * Ivan Ricotti i.rico...@elabor.homelinux.org: check_sender_access hash:/etc/postfix/backscatter, What's in here? athene:~# cat /etc/postfix/backscatter reject_rbl_client ips.backscatterer.org postmaster reject_rbl_client ips.backscatterer.org as

Automatic add of CC?

2009-03-26 Thread Michael Maciag
Is it possible to automatically add a CC to an incoming message based on recipient using rewriting, similar to what recipient_bcc_maps can do? We'd like to have the added address be visible to the original recipient. - Mike

Re: Automatic add of CC?

2009-03-26 Thread Wietse Venema
Michael Maciag: Is it possible to automatically add a CC to an incoming message based on recipient using rewriting, similar to what recipient_bcc_maps can do? We'd like to have the added address be visible to the original recipient. Yes. For complex transformations, use a Milter or external

Re: my mailserver has been blacklisted

2009-03-26 Thread ghe
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Ivan Ricotti wrote: 1, Eliminate windows users from your network. Yeah! I really would like to! :D Sadly, I can't... :'( There's a rule in my (Cisco) border router that allows only the DMZ mailserver to connect to port 25 outside my net. That

Re: my mailserver has been blacklisted

2009-03-26 Thread Charles Marcus
On 3/26/2009, Jim Wright (j...@wrightthisway.com) wrote: Two options. 1, Eliminate windows users from your network. Please... such comments are worse than useless... -- Best regards, Charles

Re: Limiting maildir sizes with Postfix?

2009-03-26 Thread Xn Nooby
I am using Dovecot, but have been unable to get either it's maildir or dirsize quotas to be enforced. It does not seem to prevent the user from receiving emails. I set the limit to 10MB, and was able to receive more than 12MB in emails. I restarted dovecot after making the changes below. Is there

Re: Am I a backscattered email source?

2009-03-26 Thread Terry Carmen
Ivan Ricotti wrote: This is an automatically generated Delivery Status Notification Delivery to the following recipient failed permanently: ab...@elabor.homelinux.org Technical details of permanent failure: Google tried to deliver your message, but it was rejected by the recipient

Re: Automatic add of CC?

2009-03-26 Thread Victor Duchovni
On Thu, Mar 26, 2009 at 09:31:59AM -0400, Wietse Venema wrote: Michael Maciag: Is it possible to automatically add a CC to an incoming message based on recipient using rewriting, similar to what recipient_bcc_maps can do? We'd like to have the added address be visible to the original

Re: Limiting maildir sizes with Postfix?

2009-03-26 Thread Brian Evans - Postfix List
Xn Nooby wrote: I am using Dovecot, but have been unable to get either it's maildir or dirsize quotas to be enforced. It does not seem to prevent the user from receiving emails. I set the limit to 10MB, and was able to receive more than 12MB in emails. I restarted dovecot after making the

postmaster@ and spam

2009-03-26 Thread LuKreme
I have in my postffix helo checks, perhaps a bad idea, [some checks up here that reject] /^postmaster\@/ OK /^abuse\@/ OK At the time I set this up it was pretty important that postmaster mail got through, but looking over the last 12 months of mail, I've received exactly two

Re: postmaster@ and spam

2009-03-26 Thread Peter Blair
On Thu, Mar 26, 2009 at 12:55 PM, LuKreme krem...@kreme.com wrote: Obviously I can't disable the account as it is required, but is there something that I can do to stop the connections for messages like this: Return-Path: postmas...@covisp.net X-Original-To: postmas...@covisp.net

Re: my mailserver has been blacklisted

2009-03-26 Thread J Sloan
Charles Marcus wrote: On 3/26/2009, Jim Wright (j...@wrightthisway.com) wrote: Two options. 1, Eliminate windows users from your network. Please... such comments are worse than useless... It may not be what you want to hear, especially if you're heavily invested in microsoft

what am i missing smtpd_helo_restrictions

2009-03-26 Thread Aaron Martinez
HI All, I'm running postfix 2.3.7 and getting Helo command rejected: Host not found; which i would completely expect if I had some smtpd_helo_restrictions set but I don't.. at least that i can see.. can someone possibly tell me what's right in front of my face that i'm not seeing? Postconf

Re: what am i missing smtpd_helo_restrictions

2009-03-26 Thread Brian Evans - Postfix List
Aaron Martinez wrote: I'm running postfix 2.3.7 and getting Helo command rejected: Host not found; which i would completely expect if I had some smtpd_helo_restrictions set but I don't.. at least that i can see.. can someone possibly tell me what's right in front of my face that i'm not

Re: what am i missing smtpd_helo_restrictions

2009-03-26 Thread Brian Evans - Postfix List
Brian Evans - Postfix List wrote: Aaron Martinez wrote: I'm running postfix 2.3.7 and getting Helo command rejected: Host not found; which i would completely expect if I had some smtpd_helo_restrictions set but I don't.. at least that i can see.. can someone possibly tell me what's

Re: my mailserver has been blacklisted

2009-03-26 Thread Ivan Ricotti
Hi, Charles Marcus wrote: At a minimum, we need output of postconf -n (NOT copy/paste from main.cf), and complete logs showing the spam going out... the less obfuscation you perform, the easier it will be to help you... sorry to bother you all again... my fight against the spam is still on

Re: postmaster@ and spam

2009-03-26 Thread LuKreme
On 26-Mar-2009, at 11:53, Peter Blair wrote: On Thu, Mar 26, 2009 at 12:55 PM, LuKreme krem...@kreme.com wrote: Obviously I can't disable the account as it is required, but is there something that I can do to stop the connections for messages like this: Return-Path: postmas...@covisp.net

Postfix denies relays when sending from Eudora

2009-03-26 Thread Asai
Although I dislike Eudora for various reasons, my users want it. So now I'm trying to figure out why one user can send to our local domains, but cannot relay to Gmail. This is not a problem on a client like Thunderbird. Any insights? Thanks. -- asai

Re: my mailserver has been blacklisted

2009-03-26 Thread Brian Evans - Postfix List
Ivan Ricotti wrote: Hi, sorry to bother you all again... my fight against the spam is still on the go (and I think I'm losing...). I was searching through my mail.info log... what do you think about these lines? Mar 26 09:27:11 athene postfix/cleanup[29784]: 19F65E72ED:

Re: Postfix denies relays when sending from Eudora

2009-03-26 Thread Brian Evans - Postfix List
Asai wrote: Although I dislike Eudora for various reasons, my users want it. So now I'm trying to figure out why one user can send to our local domains, but cannot relay to Gmail. This is not a problem on a client like Thunderbird. Any insights? Thanks. Logs? postconf -n? There is no

Re: my mailserver has been blacklisted

2009-03-26 Thread LuKreme
On 26-Mar-2009, at 04:59, Ivan Ricotti wrote: I suspect that some windows users in my network is sending spam... and the question is: how can I prevent this acting on postfix? Block access from your LAN to port 25 outbound. -- Si Hoc Legere Scis Nimium Eruditionis Habes

Re: postmaster@ and spam

2009-03-26 Thread Brian Evans - Postfix List
LuKreme wrote: On 26-Mar-2009, at 11:53, Peter Blair wrote: On Thu, Mar 26, 2009 at 12:55 PM, LuKreme krem...@kreme.com wrote: Obviously I can't disable the account as it is required, but is there something that I can do to stop the connections for messages like this: Return-Path:

Re: Postfix denies relays when sending from Eudora

2009-03-26 Thread Wietse Venema
Asai: Although I dislike Eudora for various reasons, my users want it. So now I'm trying to figure out why one user can send to our local domains, but cannot relay to Gmail. This is not a problem on a client like Thunderbird. Any insights? Thanks. See the mailing list welcome message.

Re: Postfix denies relays when sending from Eudora

2009-03-26 Thread Asai
My apologies, I hope this is of assistance. postconf -n: alias_database = hash:/etc/aliases alias_maps = hash:/etc/aliases broken_sasl_auth_clients = yes command_directory = /usr/sbin config_directory = /etc/postfix content_filter = smtp-amavis:[127.0.0.1]:10024 daemon_directory =

Re: postmaster@ and spam

2009-03-26 Thread LuKreme
On 26-Mar-2009, at 13:36, Brian Evans - Postfix List wrote: LuKreme wrote: On 26-Mar-2009, at 11:53, Peter Blair wrote: On Thu, Mar 26, 2009 at 12:55 PM, LuKreme krem...@kreme.com wrote: Obviously I can't disable the account as it is required, but is there something that I can do to stop

Re: Postfix denies relays when sending from Eudora

2009-03-26 Thread LuKreme
On 26-Mar-2009, at 13:57, Asai wrote: My apologies, I hope this is of assistance. LOGS of the eudora user tring to send to gmail. And don't top-post. -- Would you say you worship Satan, or do you simply respect his no-nonsense approach to discipline?

Clustering

2009-03-26 Thread carconni
Hi, I've been digging around and I haven't been able to find what I'm really looking for so I thought I'd go straight to the ones who know. Can Postfix be run in a clustered environment (ie: multiple servers running postfix utilizing one data store) under any OS? I know NFS is not really

Re: postmaster@ and spam

2009-03-26 Thread LuKreme
On 26-Mar-2009, at 14:10, LuKreme wrote: Once the message gets OKed by helo_checks.pcre it does not get checked by the reject_rbl_client. Ah.. OK, this is not right. It is just that the IP was not in the RBL when that message came through. So, the original question still stands: is

Postfix reject HELO from sub-doman, as if it is main domain?

2009-03-26 Thread Lev Serebryakov
Hello, postfix. I have many virtual domains, stored in MySQL database. To reject some spam I check all HELOs not to be any of my domain (because it is fake HELOs for sure). I have such check written like this: smtpd_helo_restrictions = permit_mynetworks,

Re: Postfix denies relays when sending from Eudora

2009-03-26 Thread Asai
LuKreme wrote: On 26-Mar-2009, at 13:57, Asai wrote: My apologies, I hope this is of assistance. LOGS of the eudora user tring to send to gmail. And don't top-post. From /var/log/maillog, one example of the problem: Mar 26 11:58:18 triata postfix/smtpd[25357]: NOQUEUE: reject: RCPT from

Re: Postfix denies relays when sending from Eudora

2009-03-26 Thread Scott Kitterman
On Thu, 26 Mar 2009 13:48:01 -0700 Asai a...@globalchangemusic.org wrote: LuKreme wrote: On 26-Mar-2009, at 13:57, Asai wrote: My apologies, I hope this is of assistance. LOGS of the eudora user tring to send to gmail. And don't top-post. From /var/log/maillog, one example of the

Re: my mailserver has been blacklisted

2009-03-26 Thread Terry Carmen
Ivan Ricotti wrote: Hi, thanks for your reply. Brian Evans - Postfix List wrote: Look a few lines above this. Why did you accept mail for a non-existent user? But I do *not* accept mail for non-existent users: Mar 26 09:27:11 athene postfix/smtpd[29704]: NOQUEUE: reject: RCPT from

Re: my mailserver has been blacklisted

2009-03-26 Thread Charles Marcus
On 3/26/2009, Ivan Ricotti (i.rico...@elabor.homelinux.org) wrote: Mar 26 09:27:11 athene postfix/smtpd[29704]: NOQUEUE: reject: RCPT from mail02.mail.esat.net[193.120.142.82]: 450 4.1.1 3f6f17ca.813b5...@elabor.homelinux.org: Recipient address rejected: undeliverable address: unknown user:

Re: [maybe OT] postfix HA

2009-03-26 Thread mouss
Noel Jones a écrit : mouss wrote: I am trying to collect methods to setup postfix in an HA configuration, for outbound relay (no MUA involved). a use case is using multiple postfix boxes to relay mail out for one or more exchange servers. there are many possibilities. which one is

postfix with mysqldovecot delivery - user unknown in virtual mailbox table

2009-03-26 Thread Steffen Schaumburg
Hi everyone, Sorry if this has been asked before I searched all over the place but I just can't figure it out. I'm trying to setup postfix, using dovecot for delivery (and IMAPPOP3). Dovecot in turn uses a MySQL backend. I used this guide:

Re: postmaster@ and spam

2009-03-26 Thread mouss
LuKreme a écrit : I have in my postffix helo checks, perhaps a bad idea, [some checks up here that reject] /^postmaster\@/ OK /^abuse\@/ OK At the time I set this up it was pretty important that postmaster mail got through, but looking over the last 12 months of mail, I've received

Issue with spam being sent by webmail

2009-03-26 Thread Ross Tsolakidis
Hi all, I'm sure many of you are battling this issue. Our mailserver is being blacklisted so often it's getting painful. I don't believe this is a postfix issue, but most of the brilliant mail server admins are here :) I'm pretty sure the following is happening, here's the news from the

Re: Issue with spam being sent by webmail

2009-03-26 Thread brian moore
On Fri, 27 Mar 2009 09:44:21 +1100 Ross Tsolakidis ross.tsolaki...@day3.com.au wrote: Just change the users password and slap them for clicking on the link. Easy. Easy but tedious. I had to resort to installing postfix-policyd to rate limit them. (Make sure you have Squirrel use auth so

Re: Issue with spam being sent by webmail

2009-03-26 Thread Bernhard Schmidt
Ross Tsolakidis ross.tsolaki...@day3.com.au wrote: Hello Ross, However, my question (finally) is :) Received: from 217.21.80.109 (SquirrelMail authenticated user redac...@fearmail.com.au by webmail.fearmail.com.au with HTTP; I have no user called 'redacted' in our

Re: Clustering

2009-03-26 Thread Wietse Venema
carconni: Hi, I've been digging around and I haven't been able to find what I'm really looking for so I thought I'd go straight to the ones who know. Can Postfix be run in a clustered environment (ie: multiple servers running postfix utilizing one data store) under any OS? Each

Re: postmaster@ and spam

2009-03-26 Thread Sahil Tandon
On Thu, 26 Mar 2009, LuKreme wrote: I have in my postffix helo checks, perhaps a bad idea, [some checks up here that reject] /^postmaster\@/ OK /^abuse\@/ OK Why do these email address patterns appear in a HELO access(5) map? At the time I set this up it was pretty important that

Re: postfix with mysqldovecot delivery - user unknown in virtual mailbox table

2009-03-26 Thread Sahil Tandon
On Thu, 26 Mar 2009, Steffen Schaumburg wrote: Hi everyone, Sorry if this has been asked before I searched all over the place but I just can't figure it out. I'm trying to setup postfix, using dovecot for delivery (and IMAPPOP3). Dovecot in turn uses a MySQL backend. I used this guide:

Re: Piping /etc/aliases to newaliases

2009-03-26 Thread Bryce Nesbitt
Noel Jones wrote: You can't pipe to newaliases. You can use a proto file with comments and some script to create the input file that newaliases requires. This seems a natural for a Makefile. -- Noel Jones I was aiming for something that was no mistakes proof for other system

RE: Issue with spam being sent by webmail

2009-03-26 Thread Ross Tsolakidis
I had to resort to installing postfix-policyd to rate limit them. (Make sure you have Squirrel use auth so regardless of forged-from lines, you still rate limit accounts). I've just been playing with postfix-policyd (debian package 1.80). The only way I could get it working was by using the

Re: my mailserver has been blacklisted

2009-03-26 Thread Noel Jones
Ivan Ricotti wrote: Hi, thanks for your reply. Brian Evans - Postfix List wrote: Look a few lines above this. Why did you accept mail for a non-existent user? But I do *not* accept mail for non-existent users: Mar 26 09:27:11 athene postfix/smtpd[29704]: NOQUEUE: reject: RCPT from

How to stop mails with Recipient and Sender Address equal.

2009-03-26 Thread Janaka Angulugaha
Hi, I'm receiving SPAM mails with Sender and recipient has same address. I like to know how to stop this using Postfix configuration. Rgds Janaka

Re: How to stop mails with Recipient and Sender Address equal.

2009-03-26 Thread Sahil Tandon
On Fri, 27 Mar 2009, Janaka Angulugaha wrote: I'm receiving SPAM mails with Sender and recipient has same address. I like to know how to stop this using Postfix configuration. This has been discussed several times before; please search the archives and understand the consequences of such an

RE: Issue with spam being sent by webmail

2009-03-26 Thread Ross Tsolakidis
While trying to get this to work, I installed the squirrelmail plugin called Restrict Senders. http://www.squirrelmail.org/plugin_view.php?id=213 This is stopping the spammers using webmail. Regards, Ross From: owner-postfix-us...@postfix.org [mailto:owner-postfix-us...@postfix.org] On Behalf