Re: Does regenerating dh params require a postfix reload?

2021-07-22 Thread Viktor Dukhovni
On Fri, Jul 23, 2021 at 11:21:14AM +1000, raf wrote: > > > The FORWARD_SECRECY_README suggests regenerating the > > > Postfix SMTP server EDH parameters periodically. > > > Would doing so necessitate a postfix reload? > > > > No. The new parameters get picked up by new smtpd(8) > > processes as

Re: Does regenerating dh params require a postfix reload?

2021-07-22 Thread raf
On Thu, Jul 22, 2021 at 08:45:36AM -0400, Viktor Dukhovni wrote: > > On 22 Jul 2021, at 7:57 am, raf wrote: > > > > The FORWARD_SECRECY_README suggests regenerating the > > Postfix SMTP server EDH parameters periodically. > > Would doing so necessitate a postfix reload? > > No. The new

Re: Policy Server Feature Request

2021-07-22 Thread Benny Pedersen
On 2021-07-22 23:47, Wietse Venema wrote: Is there a problem with using DOVECOT sieve? implement this in postfix prequeue smtp proxy mode ?, why did exim add sieve to mta stage ?, hmm i still search for why libmilter on gentoo is currently disabled, hope its not a hidded secureity issue

Re: Policy Server Feature Request

2021-07-22 Thread Wietse Venema
Benny Pedersen: > On 2021-07-22 20:29, Viktor Dukhovni wrote: > > > Perhaps you're looking for an SMTP proxy with Sieve support, so that > > you > > can express simple rules on the message envelope, header and body. I > > haven't looked, but I expect that such a beast can be found on GitHub, >

Re: Policy Server Feature Request

2021-07-22 Thread Benny Pedersen
On 2021-07-22 20:29, Viktor Dukhovni wrote: Perhaps you're looking for an SMTP proxy with Sieve support, so that you can express simple rules on the message envelope, header and body. I haven't looked, but I expect that such a beast can be found on GitHub, or similar. exim have sieve, so

Re: [EXTERNAL] Re: How do I tell a relay to relay ?

2021-07-22 Thread Wietse Venema
White, Daniel E. (GSFC-770.0)[NICS]: > OK > local_recipient_maps = > local_transport = error:local mail delivery is disabled > > then > > virtual_transport = lmtp:MDA:port ? Sorry, there is not enough context to make a meaningful recommendation. To deliver via virtual_transport,

Re: Policy Server Feature Request

2021-07-22 Thread Bill Cole
On 2021-07-22 at 14:46:07 UTC-0400 (Thu, 22 Jul 2021 14:46:07 -0400) is rumored to have said: >> The SMTP policy delegation service has access only to SMTP commands >> and SMTP connection state, just like smtpd_mumble_restrictions, and >> that will not change. > > Understood. > > >> If you need

Re: [EXTERNAL] Re: How do I tell a relay to relay ?

2021-07-22 Thread White, Daniel E. (GSFC-770.0)[NICS]
OK local_recipient_maps = local_transport = error:local mail delivery is disabled then virtual_transport = lmtp:MDA:port ?  -Original Message- From: on behalf of Noel Jones Reply-To: "njo...@megan.vbhcs.org" Date: Thursday, July 22, 2021 at 14:48 To:

Re: [EXTERNAL] Re: How do I tell a relay to relay ?

2021-07-22 Thread Wietse Venema
White, Daniel E. (GSFC-770.0)[NICS]: > Mail sent to the MTA wants to deliver to a local user on MTA rather > than relaying to MDA. We get the ??User unknown in local recipient > table? error, which makes sense. What are the configuration > settings that we have obviously missed that will send

Re: Policy Server Feature Request

2021-07-22 Thread Noel Jones
On 7/22/2021 1:46 PM, post...@ptld.com wrote: If you need to see both SMTP commands/connections and message content, use one of the approaches listed above. If there is no ready-to-use implementation that meets your needs, Milters can be implemented in python, perl, rust, java, php, C, and

Re: [EXTERNAL] Re: How do I tell a relay to relay ?

2021-07-22 Thread White, Daniel E. (GSFC-770.0)[NICS]
OK. Blank the "mydestination" Anything else ? -Original Message- From: on behalf of Wietse Venema Reply-To: Postfix users Date: Thursday, July 22, 2021 at 14:45 To: Postfix users Subject: [EXTERNAL] Re: How do I tell a relay to relay ? White, Daniel E. (GSFC-770.0)[NICS]:

Re: How do I tell a relay to relay ?

2021-07-22 Thread Noel Jones
On 7/22/2021 1:35 PM, White, Daniel E. (GSFC-770.0)[NICS] wrote: Server 1 - MTA - Relay only - Postfix, Amavis, Spamassassin, Clam AV - No local or virtual mail users on this server. Server 2 - MDA - Where the Mailboxes Live - Postfix, Dovecot, RoundCube, PostfixAdmin - All mail users are

Re: Policy Server Feature Request

2021-07-22 Thread postfix
The SMTP policy delegation service has access only to SMTP commands and SMTP connection state, just like smtpd_mumble_restrictions, and that will not change. Understood. If you need to see both SMTP commands/connections and message content, use one of the approaches listed above. If there is

Re: [EXTERNAL] RE: How do I tell a relay to relay ?

2021-07-22 Thread White, Daniel E. (GSFC-770.0)[NICS]
More detail, please, about transport rules. From: jeroen Date: Thursday, July 22, 2021 at 14:44 To: Daniel White Subject: [EXTERNAL] RE: How do I tell a relay to relay ? Make sure mydestination is set to empty, and configure transport rules to deliver to your mda. Oorspronkelijk

Re: How do I tell a relay to relay ?

2021-07-22 Thread Wietse Venema
White, Daniel E. (GSFC-770.0)[NICS]: > Server 1 - MTA - Relay only - Postfix, Amavis, Spamassassin, Clam AV - No > local or virtual mail users on this server. > Server 2 - MDA - Where the Mailboxes Live - Postfix, Dovecot, RoundCube, > PostfixAdmin - All mail users are virtual. > > Mail sent to

Re: Policy Server Feature Request

2021-07-22 Thread postfix
On 07-22-2021 2:29 pm, Viktor Dukhovni wrote: Perhaps you're lookin for an SMTP proxy with Sieve support, so that you can express simple rules on the message envelope, header and body. I haven't looked, but I expect that such a beast can be found on github, or similar. Thanks for the tidbit

Re: Policy Server Feature Request

2021-07-22 Thread Wietse Venema
Viktor Dukhovni: > > On 22 Jul 2021, at 12:33 pm, post...@ptld.com wrote: > > > > Is there any chance of the policy server in the future adding a feature to > > include the mail body in the attributes? > > No. If you want to inspect the body prior to accepting the message into > the queue, use

How do I tell a relay to relay ?

2021-07-22 Thread White, Daniel E. (GSFC-770.0)[NICS]
Server 1 - MTA - Relay only - Postfix, Amavis, Spamassassin, Clam AV - No local or virtual mail users on this server. Server 2 - MDA - Where the Mailboxes Live - Postfix, Dovecot, RoundCube, PostfixAdmin - All mail users are virtual. Mail sent to the MTA wants to deliver to a local user on MTA

Re: Policy Server Feature Request

2021-07-22 Thread Viktor Dukhovni
On Thu, Jul 22, 2021 at 02:19:23PM -0400, post...@ptld.com wrote: > And im not a fan of proxy filter, it feels like an expensive and > cumbersome work around solution. The SMTP engine is easy to implement, and only has to be written once. You can probably find existing ones to which you can add

Re: Policy Server Feature Request

2021-07-22 Thread postfix
Is there any chance of the policy server in the future adding a feature to include the mail body in the attributes? No. If you want to inspect the body prior to accepting the message into the queue, use the existing smtpd_proxy_filter and/or milter features. That is unfortunate. I was

Re: Policy Server Feature Request

2021-07-22 Thread Viktor Dukhovni
> On 22 Jul 2021, at 12:33 pm, post...@ptld.com wrote: > > Is there any chance of the policy server in the future adding a feature to > include the mail body in the attributes? No. If you want to inspect the body prior to accepting the message into the queue, use the existing

Policy Server Feature Request

2021-07-22 Thread postfix
Is there any chance of the policy server in the future adding a feature to include the mail body in the attributes? A setting in main.cf:enable_policy_body=yes to include or not include the body for those who don't need/want the extra data sent. Maybe also separate out body vs attachment

Re: Does regenerating dh params require a postfix reload?

2021-07-22 Thread Viktor Dukhovni
> On 22 Jul 2021, at 7:57 am, raf wrote: > > The FORWARD_SECRECY_README suggests regenerating the > Postfix SMTP server EDH parameters periodically. > Would doing so necessitate a postfix reload? No. The new parameters get picked up by new smtpd(8) processes as old ones exit after handling

Does regenerating dh params require a postfix reload?

2021-07-22 Thread raf
Hi, The FORWARD_SECRECY_README suggests regenerating the Postfix SMTP server EDH parameters periodically. Would doing so necessitate a postfix reload? cheers, raf