Bypass REDIRECT rule in header_checks for specific sender ?

2023-01-10 Thread George Papas
Happy new year everybody, I have a filter in my header_checks file that redirects messages send to undisclosed recipients to a mailbox to monitor and fw to intended users if of any value like this : /(^To:\ undisclosed-recipients\:\;)|(To:\ undisclosed-recipients\:\ ;)/ REDIRECT

Re: Cannot resolve support@ alias

2022-10-26 Thread Dominik George
Hi, eh… OK, that's getting stranger. At least it works now – but I don't know why. Postfix started accepting the mail and correctly resolving the alias some time in the night between 24th and 25th of October. I had a script sitting here sending test mails every hour (because all of this was

Re: Cannot resolve support@ alias

2022-10-25 Thread Dominik George
Hi, > I suspect a subtle typo is at work. Try: > postmap -q supp...@example.com hash:/path/to/your/virtual_alias_map I of course tested such things before asking... The alias resolves using postmap. Also, the support2 alias was deliberately created using copy to avoid typos. Adding the

Cannot resolve support@ alias

2022-10-25 Thread Dominik George
Hi, I am facing a strange issue here, where I cannot resolve a virtual alias with the local part support@. I have a domain example.com in $virtual_mailbox_domains. The virtual transport sends mail on to Dovecot. For virtual aliases, I use a basic hash table, containing: i...@example.com

Re: Alias expansion in a milter service?

2022-08-11 Thread Dominik George
Hi, [ please excuse me if this kind of progress reports for learning ] [ and feedback are discouraged on this list ] On Thu, Aug 11, 2022 at 10:31:00AM +, Claus Assmann wrote: > On Thu, Aug 11, 2022, Dominik George wrote: > > > only that these have a very

Re: Restrict Senders for some recipient addresses

2021-04-26 Thread George Papas
Yeap  thanks a lot , seems to be configurable cause I also want some external users also but thats it  I guess. Thanks again On 4/26/21 2:46 PM, Tobi wrote: something like this? http://www.postfix.org/RESTRICTION_CLASS_README.html#internal On 4/26/21 10:11 AM, George Papas wrote: Hi

Restrict Senders for some recipient addresses

2021-04-26 Thread George Papas
for in the documentation ? Sender/Recipient Restrictions or something different? Thanks in advance George Papas

Re: Postfix backscatter HELP !!!

2021-02-02 Thread George Papas
Thanks guys in the mean time I found the way to do it by trial and error and works OK now On 2/2/21 8:12 PM, Viktor Dukhovni wrote: On Tue, Feb 02, 2021 at 12:27:40PM +0200, George Papas wrote: # Do not indent the patterns between "if" and "endif". if /^[> ]*Received:/

Postfix backscatter HELP !!!

2021-02-02 Thread George Papas
Hi I have a small  SMTP server for around 35 users in the company I work . The last 3 -4 days I'm being bombed with backstatter  mails from all over the world . I have found out the abusing IP who sends the messages as one of my accounts but I cant find out how to stop bombing my server

Re: Postfix gateway with per relayed host outgoing IP

2020-05-29 Thread George
Hi, Wow! Your solution worked like a charm from first attempt. This is genius. Thanks a lot for the help everyone. It is possible to use the 'filter' command for this. > > /etc/postfix/main.cf > smtpd_client_restrictions = > check_client_access hash:/etc/postfix/client_access > >

Re: Postfix gateway with per relayed host outgoing IP

2020-05-29 Thread George
> how? > > if you define different smtp transports with different smtp_bind_address > defined in master.cf, the sender_dependent_default_transport_maps should > do > what you want. > > > Hi, Thanks for your response. My problem is that I do not know what to use in the file where

Postfix gateway with per relayed host outgoing IP

2020-05-29 Thread George
Hi, I have an anti spam postfix gateway running on an Ubuntu server. Currently I use relayhost on multiple web servers for sending mail through the gateway. On the postfix gateway I have multiple secondary IPs. What I want to do is to configure the gateway so mail sent from a particular web

Reject bounces

2017-09-15 Thread George
Hi, I have a mail server running postfix that sends a lot of emails and gets back a lot of bounces. These bounces a filling up my server and causing additional load. Is there any way on a postfix level to reject/not accept any type of bounce that gets sent to the mail server? Please let me

RE: OpenDKIM

2015-11-09 Thread George Kasica
Steve & others: I see references to RPM installs in Fedora and CentOS. Anything out there for the Ubuntu 14.x product? George From: owner-postfix-us...@postfix.org [mailto:owner-postfix-us...@postfix.org] On Behalf Of Steve Jenkins Sent: Friday, November 06, 2015 13:16 To: John Alle

Re: How to allow each user on an Ubuntu server use his/her google email and password to send the email via google smtp?

2015-03-18 Thread Dominik George
Hi, But the problem is that all users on the same ubuntu server will be able to use the same google account to send emails. Is there a way to configure postfix so that each Ubuntu user will use his/her own google account to send emails? Thanks. You could always build transport maps dependent

Re: Postfix not trying to authenticate to SMTP relay.

2015-03-05 Thread Dominik George
Hi, I am having an issue where Postfix does not attempt to authenticate to the relay I am using, even though the settings appear to be correct. When I look in the maillog, I see *530 Authentication is required before sending*, and when I run a packet trace, I don't see Postfix ever using

Primary vs Backup MX?

2015-01-16 Thread George Ficzeri
Hello. I hope these aren't silly questions: How does Postfix (2.9.6) determine whether the local mail system is backup or primary MX when permit_mx_backup is specified in main.cf? Is it just MX record priorities in DNS? http://www.postfix.org/postconf.5.html#permit_mx_backup * permit_mx_backup

Re: sasl problem on osx server

2015-01-08 Thread George Johnson
, 2015, at 6:39 PM, Edgar Pettijohn ed...@pettijohn-web.com wrote: On 01/08/15 19:29, George Johnson wrote: I'm hoping someone here may have encountered this problem and can suggest a solution. I'm running postfix 2.5.14 on Snow Leopard for use as a personal mail server. My server

sasl problem on osx server

2015-01-08 Thread George Johnson
I'm hoping someone here may have encountered this problem and can suggest a solution. I'm running postfix 2.5.14 on Snow Leopard for use as a personal mail server. My server is configured for SMTP relaying (using the MailServe gui) and to use the Mac user accounts (plaintext passwords) for

Re: How to use only flat-file for passwords when using non-system users for a hosted, virtual domain?

2014-07-10 Thread Dominik George
Hi Arun, How do I add a password for the a...@mx.testdomain.loc that I would use in my mail client program, like Thunderbird, to access the account?  Both for sending and receiving? receiving is clearly out oft scope here, but implies you will be using an IMAP server. In that case, Dovecot can

Re: What does this mean timeout after RSET?

2014-07-02 Thread Dominik George
Hi, I'm not entirely sure what these RSETs are but they could be that the customer was hammering our mail server and we ran out of smtpd connections/processes to handle it. RSET is an SMTP command sent by the client. Form what I see, your Postfix duely tried to reply to it but the reply dropped

Assistance needed getting Postfix, Mailman and MySQL to work with Virtual Domains

2014-02-09 Thread George Kasica
which was referenced from the PostFix set up I had posted earlier in this message Mailman-users list say it's a postfix problem but.. If there's a better way, I'm all ears: Thanks in advance, I'm sure it's something simple I'm missing. George smime.p7s Description: S

Re: Address Rewriting vs Aliasing - I need all recipients to see each other

2014-02-02 Thread Dominik George
Hi Charles, Currently, if I set up the alias, each recipient only sees themselves as the recipient, but I need all recipients to see each other, so each knows the other received it. I do not quite understand that. Normally, when you use a simple alias, no adresses are rewritten, so the

Tracing mail sending progress

2013-12-22 Thread Dominik George
Hi, I am running Postfix on my local machine and it passes on mail to a smarthost to which it is connected through a very non-optimal connection. Sending a mail with a PDF attachment of 3 MiB regularly takes up to 30 minutes. Is there a way to trace how much of a message body has been

Re: E-mail sending prevention

2013-12-20 Thread Dominik George
Hi, [...] The user you are trying to contact is receiving mail at a rate that prevents additional messages from being delivered. [...] I do not see what's so unclear about that? Google thinks that the recipient receives an unusual amount of mail. It's either the recipient's or Google's fault

Re: postsuper -r ALL ignores virtual_alias_maps entries

2013-12-15 Thread Dominik George
But for some crazy reason postfix keeps trying to deliver all mail to mailinator.com instrad of mail.ru. What am I doing wrong? Also, I tried to send new mail to t...@comain.tld and it went to my-spam-acco...@mail.ru as expected. Why does requeue ignores virtual_alias_maps entry and keeps

Re: postsuper -r ALL ignores virtual_alias_maps entries

2013-12-15 Thread Dominik George
Because oif [0]. The queue you are requeueing to simply is situated after the rewrite (cleanup) process. I jsut realized that in fact, -r throws the mail into maildrop, so rewriting SHOULD take place. Check (post) your config! -nik -- * concerning Mozilla code leaking assertion failures

Re: OT: Large corporate email systems - Exchange vs open source *nix based

2013-12-11 Thread Dominik George
You could even tell people it's exchange and they wouldn't know from the front-end, and best of all it's all FOSS. I'm not sure if a big corporation would go for it, but it is an option. Rumor has it that this has been working well even on governmental level. The government of an unnamed

Re: Permission

2013-12-07 Thread Dominik George
Merve Temizer mervet2...@gmail.com schrieb: When i run perl script alone with another input, i can see some output in output.txt. I think the issue is not that permission is denied on the file you intend to use, the issue is that you expect the script to run with CWD=/home/merve. Did you write

Re: Permission

2013-12-06 Thread Dominik George
M.Atıf CEYLAN meh...@atifceylan.com schrieb: On 06-12-2013 18:14, Dominik George wrote: chmod 777 /home/merve/output.txt try with chmod 777 -R /home/merve Don't. I think she asked only for testing. If not, don't permit everything :) That doesn't matter. Please do never encourage anybody

Re: Does piping to a script require injection of mail after process

2013-12-04 Thread Dominik George
Hi, On Wed, Dec 04, 2013 at 10:56:50AM +0200, Merve Temizer wrote: I followed the steps on the page http://serverfault.com/questions/258469/how-to-configure-postfix-to-pipe-all-incoming-email-to-a-script I wrote something on console by a script but could not see my mails in directory

Re: Does piping to a script require injection of mail after process

2013-12-04 Thread Dominik George
Hi, Do i have to use sendmail to inject mail back, does not it become an infinite loop, how can i manage this, is not there a cleaner way? there is still some confusion about what you are trying to achieve. I understand that you need to save all incoming mail, but: a) is your script the

Re: blocked by gmail

2013-12-04 Thread Dominik George
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Grant emailgr...@gmail.com schrieb: For the first time ever, 7 of my (very much legitimate) automated messages sent to gmail users have bounced with this message: Our system has detected that this message is likely unsolicited mail. To reduce the

Re: virtual_alias_maps no longer working

2013-11-22 Thread Dominik George
Juerg Reimann j...@jworld.ch schrieb: Does anybody have an idea what could be wrong? Just a wild guess... Is your Postfix chroot'ed, and if so, have the listed files been copied there? Enabling debugging, what do the logs tell you about the mapping process? Cheers, Nik

RE: Changing the outgoing hostname in message headers

2013-11-16 Thread George Adams
Thank you, men. I confess that my Postfix skills weren't up to handling multiple instances or master.cf hacking, but we did have another domain sitting idle which now serves as the bland mailserver hostname. Its presence in the mail headers won't cause problems for any of the three companies.

Mail sent FROM me TO me is disappearing

2013-11-04 Thread George Adams
We're using Postfix 2.1.5 on an old Debian 5 Linux system as an incoming, but not outgoing mail server. (We host several domains on our server and don't want the mail headers for outgoing mail from (say) CompanyA.com to say that they originated from a hostname that might be CompanyB.com,

Re: Disallow starttls from certain IPs

2013-10-30 Thread Dominik George
Hi, On Wed, Oct 30, 2013 at 10:16:41AM +, Ed W wrote: Hi, I would like to experiment with disallowing smtp connections from setting up tls from certain IP addresses, whilst allowing all other connections to do as they please. Any thoughts on how I could configure this please?

Re: disable ipv6 when sending to gmail ?

2013-10-19 Thread Dominik George
He made the same claim, however, but never backed it up. How are you reaching your conclusion? Because this only mentions A records and IPv4 prefixes? http://www.openspf.org/SPF_Record_Syntax#mx Quick testing: m...@staticsafe.ca - @gmail.com account Received-SPF: pass (google.com:

Re: smtpd does not use the content_filter

2013-10-18 Thread Dominik George
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Hi, Rainer Stransky rainer.stran...@so-fa.de schrieb: Although I have a content_filter configration (master.cf): smtp inet n - n - - smtpd -o content_filter = filter:dummy vs. - maillog --

Re: Fwd: Question on postfix set up: stopping new connections from outside on smtp server

2013-10-18 Thread Dominik George
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Viktor Dukhovni postfix-us...@dukhovni.org schrieb: On Fri, Oct 18, 2013 at 04:32:54PM +0200, Benny Pedersen wrote: francis picabia skrev den 2013-10-18 16:04: # smtpinet n - n -60 smtpd If I turn off smtp

Re: disable ipv6 when sending to gmail ?

2013-10-18 Thread Dominik George
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Mark Martinec mark.martinec+post...@ijs.si schrieb: IMO, instead of working on workarounds, people's efforts would be better spent on setting up their DKIM and/or SPF, reverse DNS mapping, and making sure that postfix only binds to an intentionally

Re: mxbackup quote

2013-10-18 Thread Dominik George
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Patrick Ben Koetter p...@sys4.de schrieb: * Pol Hallen postfi...@fuckaround.org: Am 18.10.2013 21:27, schrieb Pol Hallen: I configurated postfix ad mxbackup. show set a quote forma each domain? *what* are you talking about? that

Re: disable ipv6 when sending to gmail ?

2013-10-18 Thread Dominik George
Hi, what about giving the real IP and output of ifconfig to give others the chance to verify this for you instead say i took care ok, here we go: * sender address Dominik George n...@naturalnet.de * configuration alias_database = hash:/etc/aliases alias_maps = ldap:/etc/postfix/ldap

Re: disable ipv6 when sending to gmail ?

2013-10-18 Thread Dominik George
Hi, if i would be you i would *not* use v=spf1 mx ~all If I were [...] ... here you go for ipv6 http://www.openspf.org/SPF_Record_Syntax#ip6 Jeez, I don't believe it. The problem is that the mx mechanism simply only enumerates A records of MXs. That's broken ... Thanks for the pointer to

Re: disable ipv6 when sending to gmail ?

2013-10-17 Thread Dominik George
Hi, that all sounds cool, but ... Anyways, my users are happy. Their mail gets delivered. See my blog post http://blog.hqcodeshop.fi/archives/122-Fixing-Googles-new-IPv6-mail-policy-with-Postfix.html about my fix. could you please fix that to point to something more helpful than an empty,

Re: Restriction classes and ldap groups

2013-10-17 Thread Dominik George
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Viktor Dukhovni postfix-us...@dukhovni.org schrieb: On Thu, Oct 17, 2013 at 10:16:27AM -0400, Carlos R Laguna wrote: LDAP is not SQL, and inverse relations (groups of user, rather than users of group) are very difficult to express. Whereas, if the

Re: Restriction classes and ldap groups

2013-10-17 Thread Dominik George
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Carlos R Laguna carl...@jovenclub.cu schrieb: Dominik George you mind to explain yourseld a little more further. If your LDAP users are regular system users, i.e., have the posixAccount class, and your mail servers uses them for local

Re: Restriction classes and ldap groups

2013-10-17 Thread Dominik George
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Viktor Dukhovni postfix-us...@dukhovni.org schrieb: On Thu, Oct 17, 2013 at 10:16:27AM -0400, Carlos R Laguna wrote: LDAP is not SQL, and inverse relations (groups of user, rather than users of group) are very difficult to express. On second

Re: Restriction classes and ldap groups

2013-10-17 Thread Dominik George
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Dominik George n...@naturalnet.de schrieb: Viktor Dukhovni postfix-us...@dukhovni.org schrieb: On Thu, Oct 17, 2013 at 10:16:27AM -0400, Carlos R Laguna wrote: LDAP is not SQL, and inverse relations (groups of user, rather than users of group

Re: Google rejecting IPv6 mails

2013-10-13 Thread Dominik George
Just read pine.bsm.4.64l.1310010843490.20...@herc.mirbsd.org. My mate got it sumemd up quite well. Thanks, but I don't have access to you ~/.pine directory! I'll dig through the thread, though, I'm sure that I'll find the post. Thanks! It was posted to the list, so you will have

Re: Google rejecting IPv6 mails

2013-10-13 Thread Dominik George
It was posted to the list, so you will have received it, and any reasonable MUA can search for it. Giving publlicm essage IDs is a perfectly valid way of pointing to a message on a list. The string 'Pine.BSM.4.64L.1310010843490.20824' does not appear in my postfix-users@postfix.org

Re: Google rejecting IPv6 mails

2013-10-13 Thread Dominik George
On Sun, Oct 13, 2013 at 01:09:52PM -0500, Stan Hoeppner wrote: On 10/13/2013 8:35 AM, Dominik George wrote: It was posted to the list, so you will have received it, and any reasonable MUA can search for it. Giving publlicm essage IDs is a perfectly valid way of pointing to a message

Re: Google rejecting IPv6 mails

2013-10-13 Thread Dominik George
http://blog.gmane.org/gmane.os.miros.general/month=20131001 WRT the first point in the blog post, Thorsten is incorrect. Google does publish lists of their outbound IPs via their SPF records. ~$ dig txt _netblocks.google.com _netblocks2.google.com Sure, but how would you reliably

Re: Google rejecting IPv6 mails

2013-10-13 Thread Dominik George
There is, in fact, no reliable lsit of *all* mail hosts that will ever (as in, for a long time in the future) be the sending MTAs of Google-hosted domains. Apart from that, I am tired of implementing exceptions for each and every big proprietary mail provider out there. If a company desires to

Postfix DNS resolver blindly relying on cached Additional section?

2013-10-09 Thread Dominik George
Hi, while debugging the Google/IPv6 issue, we discovered something strange. Our uplink provider operates caching DNS servers, and they reply with a rather detailed Additional section when asked for MX records, but only with cached results. For example, if example.com has an MX record pointing to

Re: Postfix DNS resolver blindly relying on cached Additional section?

2013-10-09 Thread Dominik George
Confirmed, Postfix looks at the answer section only. Claims to the contrary are based on false speculation. Hmm, that leads us to the original question: Why does postfix sometimes not find the record for any given MX? -nik -- # apt-assassinate --help Usage: apt-assassinate

Re: Postfix DNS resolver blindly relying on cached Additional section?

2013-10-09 Thread Dominik George
The correct description is: When both IPv4 and IPv6 support are enabled, the Postfix SMTP client, for Postfix versions prior to 2.8, will attempt to connect via IPv6 before attempting to use IPv4. Starting with 2.8 protocol preference is controlled via the new

Re: restricting few users from sending mails outside domain (mymailsystem.com)

2013-10-08 Thread Dominik George
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Hi, smtpd_recipient_restrictions = check_sender_access Are you using Postfix =2.10? If so, have you tried smtpd_relay_access? Cheers, Nik -BEGIN PGP SIGNATURE- Version: APG v1.0.8-fdroid

Re: restricting few users from sending mails outside domain (mymailsystem.com)

2013-10-08 Thread Dominik George
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Dominik George n...@naturalnet.de schrieb: -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Hi, smtpd_recipient_restrictions = check_sender_access Are you using Postfix =2.10? If so, have you tried smtpd_relay_access? smtpd_relay_restrictions

Re: Clarification on smtp_client config settings

2013-10-08 Thread Dominik George
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 wie...@porcupine.org schrieb: Thomas Moretto: Can someone add some clarification to this setting: smtpd_client_message_rate_limitThe number of messages and advisor would be able to send in a 5 minute period Does the counter count each unique

RE: Clarification on smtp_client config settings

2013-10-08 Thread Dominik George
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On a side note: Stop the threadjacking. Thanks! -BEGIN PGP SIGNATURE- Version: APG v1.0.8-fdroid iQFNBAEBCgA3BQJSVFIPMBxEb21pbmlrIEdlb3JnZSAobW9iaWxlIGtleSkgPG5p a0BuYXR1cmFsbmV0LmRlPgAKCRAvLbGk0zMOJaolB/9PgX5yhulip3+5JQFBqAHP

Re: Google rejecting IPv6 mails

2013-10-07 Thread Dominik George
Hi, I somehow consider Google not fit for anything a mail server should do, for a ton of reasons, and am thinking about blocking them in both directions (along with Yahoo!), if it weren't for quite some important users switching to Google Apps. I would love to know the rest of your

Re: Google rejecting IPv6 mails

2013-10-07 Thread Dominik George
SMTP from an address with no reverse DNS is a fairly good indicator of a spam source. YMMV. Agreed. As a matter of fact, I *do* have working PTR, SPF, and all that stuff, for both IPv4 and IPv6, and it doesn't help. I should note that I did have that all the time, not just after Google

Re: Google rejecting IPv6 mails

2013-09-30 Thread Dominik George
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Needless to say, that if I use IPv4 Google accepts every mail. Dis this happened to anyone else? Yes, I also face that issue and have forced IPv4 on known Google domains. Google have been ignoring my support tickets about that for several weeks

Re: ldap-attribute-based routing question

2013-08-14 Thread Dominik George
Hi, there is no mailHost attribute in ldap (or *any* attribute that is the next hop dns name). I need to map an attribute in ldap to something that *isn't* in ldap. You could define transports with the names from LDAP as SMTP transports in master.cf and then use these names from within your

Re: How to send more than 1 email per sec per domain?

2013-08-13 Thread Dominik George
Hi, postfwd allows for fine tuning of such limitation. -nik Philippe Bloix pbl...@gmail.com schrieb: Hi! I would like to set a limit rate per domain. I know i can use « destination_rate_delay » and it works ! The problem is that the minimum period is 1s. It permits to send 1 email per

Re: SMTP auth without mailbox

2013-08-12 Thread Dominik George
Hi, you can run saslauthd as a standalone auth process. -nik massi m.sp...@bullnetsecurity.it schrieb: Hi there, I need to activate SMTP authentication on a Postfix server that has no mailbox on board (it relays email for Google Apps service and certified emails). All the mailbox are stored

Re: Sending a lot of emails

2013-07-19 Thread Dominik George
Hi, the key is that by sendmail, we mean the sendmail command. Postfix has a sendmail-compatible frontend. You can just use the mail command like so: $ mail -a From: Your Name yourm...@example.com -s Your Subject recpm...@example.com EOT Your Text EOT -nik Krzysztof Szarlej

Re: Sending a lot of emails

2013-07-19 Thread Dominik George
Hi, what is wrong with the sendmail program and a simple shell script? What is wrong with sending all mails in a batch? Last but not least, what aspect of your plan dos NOT match plain spamming? Cheers, Nik Krzysztof Szarlej kszarle...@gmail.com schrieb: Hey guys i have finally set my mail

Re: 250-AUTH LOGIN PLAIN 250-AUTH=LOGIN PLAIN

2013-06-20 Thread Dominik George
Hi, But i don't see two following lines in above: 250-AUTH LOGIN PLAIN 250-AUTH=LOGIN PLAIN have you upgraded Postfix to 2.10 recently? In this case, you might have missed the smtpd_relay_restrictions change pointed out in the release notes [1]: Feature 20121007] This version introduces

Re: Secure alternative to smtp_sasl_password_maps?

2013-03-18 Thread Dominik George
Hi, imho, the best approach to getting a road-warrior (laptop) authenticated as a sattelite sytem using your central MTA as a relayhost is have it in mynetworks. As in, connect it to the MTA through a VPN tunnel. Then, there is nothing that that limits you to use PAM for authenticaiton. You can

Re: Restrict some users to local recipients only?

2013-02-12 Thread Dominik George
Hi Patrick, I have a customer who would like to configure the Postfix server he uses such that certain users can only send to local users. I'm wondering if there are any built-in facilities for restricting which delivery agents can be used by particular users? (Or some other clever way of

Re: block email on number of recipients and on message size

2013-01-23 Thread Dominik George
Hi, as always, postfwd might be the answer. -nik Antonio Tommasi antonio.tomm...@unile.it schrieb: Hi to all i need to block email if the number of recipients is greater than a specific number and message size exceeds fixed limit. In main.cf i can configure message_size_limit and

Re: abusive language by Reindl (was: generally use of mailing-lists)

2013-01-13 Thread Dominik George
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Yeah, shitstorm! Now *that's* real distributed Postfix load-testing :)! SCNR. - -nik - -- * mirabilos is handling my post-1990 smartphone * mirabilos Aaah, it vibrates! Wherefor art thou, daemonic device?? PGP fingerprint: 2086 9A4B E67D 1DCD

Re: Block ip address on ratelimit

2012-12-12 Thread Dominik George
Hi, look at postfwd. Cheers, Nik Ram r...@netcore.co.in schrieb: Our client's postfix servers are being frequently getting attacks using compromised accounts In most cases it seems the spammer simply uses a phished username/password , sends a whole lot of 419ers until we manually change

Re: local_header_rewrite_clients behaving weird

2012-10-22 Thread Dominik George
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 But as a matter of fact, both test clients are covered by permit_inet_interfaces, the default for local_header_rewrite_cients. Plus, rewrites stopped working without changing Postfix version or config. OK, can it. I got it.

postfix mailling list test .

2012-05-08 Thread Agnello George
I am not able to post in the group. please help .. neither am i receiving mails from the group . -- Regards Agnello D'souza

how to use specific version of tls/ssl in postfix

2012-05-07 Thread Agnello George
Hi I have heard of the vulnerability that exists in SSL 3.0 and TLS 1.0 that could allow information disclosure if an attacker intercepts encrypted traffic served from an affected system. TLS 1.1, TLS 1.2, and all cipher suites that do not use CBC mode are not affected. How do i use

RE: Invalid response code: 503 5.7.0 Error: access denied

2010-11-19 Thread George Forman
Date: Thu, 18 Nov 2010 00:55:44 -0500 From: victor.ducho...@morganstanley.com To: postfix-users@postfix.org Subject: Re: Invalid response code: 503 5.7.0 Error: access denied On Wed, Nov 17, 2010 at 03:27:20PM -0500, Wietse Venema wrote: I had a similar patch that I was going to post

RE: Invalid response code: 503 5.7.0 Error: access denied

2010-11-19 Thread George Forman
was going to post 30 mins ago when someone walked into my room: Victor: OK, we are on the same page then. George Forman: I've made the change to my local code base. Will this change make it into a 2.7.x release or 2.8? It is in Postfix 2.8. I haven't decided

Invalid response code: 503 5.7.0 Error: access denied

2010-11-17 Thread George Forman
remote.mta.client[xxx.xx.xxx.xxx]: Client host rejected: Access denied Old code: Any commands would return: 503 5.7.0 Error: access denied for remote.mta.clent[xxx.xx.xxx.xxx] I don't know if my solution breaks RFC2821 Sec 3.1. Any help is greatly appreciated. George Log snipet: Nov 11 14:03:24 mtain

RE: Invalid response code: 503 5.7.0 Error: access denied

2010-11-17 Thread George Forman
Date: Wed, 17 Nov 2010 13:01:05 -0500 From: victor.ducho...@morganstanley.com To: postfix-users@postfix.org Subject: Re: Invalid response code: 503 5.7.0 Error: access denied On Wed, Nov 17, 2010 at 05:24:12PM +, George Forman wrote: The scenario is as follows (see log snipet

header information error while relaying mail via gmail server from localserver using cert

2010-11-13 Thread Agnello George
Hi Since my server does not relay  directly to the internet , i have tried to relay mails via gmail using tls and was quite successful , my main.cf details is as follows : myhostname = mail.server.com relayhost = smtp.gmail.com:587 # auth smtp_sasl_auth_enable = yes smtp_sasl_password_maps =

Rewrite header - Postfix and mailman

2010-08-02 Thread George
Hi, I'm trying to set Mailman 2.1.9 to handle multiple domains. 9? I have apply the patch from http://nxsy.org/139.html and this way I have a list called mydomain.com-list. The issue is that if I'm posting to mydomain.com-l...@mydomain.com everything seems to work fine. However, when posting

Re: email/postfix guru help needed, will compensate

2010-06-05 Thread George
Thank you to all who replied with offers to help. postfix does indeed work great out of the box with minimal configuration. Our dns related issue was fixed after a 45 minute investigation with one of you, thanks again - george --- On Fri, 6/4/10, George joss...@yahoo.com wrote: From: George

email/postfix guru help needed, will compensate

2010-06-04 Thread George
wiki instructions. Sounds like we are missing something obvious but we have ran out of time. Is anyone available to help us out get this server going?, we will be more than happy to compensate for time spent. - george

customised smtpd_sasl_authenticated_header

2010-04-30 Thread Agnello George
we use smtp login maps to autheticate our clients and the parameter smtpd_sasl_authenticated_header = yes to add the a authenticated user to the header ... Received: from somedom.domain,com ([124.254.23.13]) by f38.Bay0.hotmail.comwith

RE: queue manager delaying delivery of message

2009-12-16 Thread George Forman
Subject: Re: queue manager delaying delivery of message To: postfix-users@postfix.org Date: Mon, 14 Dec 2009 20:08:41 -0500 From: wie...@porcupine.org George Forman: Subject: Re: queue manager delaying delivery of message To: georgeforma...@hotmail.com; postfix-users@postfix.org

queue manager delaying delivery of message

2009-12-14 Thread George Forman
(see below). I could not find any clues as to why there would be a delay. Any help is greatly appreciated. - George Dec 14 16:26:39 mtain-da12 postfix/cleanup[28236]: open incoming/883D938000CBB Dec 14 16:26:39 mtain-da12 postfix/cleanup[28236]: cleanup_open: open incoming/883D938000CBB Dec 14 16

Invalid recipients for a known domain

2009-11-19 Thread George Forman
to solve my problem? - George alias_maps = bounce_queue_lifetime = 1d bounce_size_limit = 1 bounce_template_file = $config_directory/bounce.cf command_directory = /opt/zimbra/pf.out/sbin config_directory = /opt/zimbra/pf.out/conf daemon_directory = /opt/zimbra/pf.out/libexec data_directory

Invitation to connect on LinkedIn

2009-10-26 Thread Siju George
LinkedIn I'd like to add you to my professional network on LinkedIn. - Siju Confirm that you know Siju George https://www.linkedin.com/e/isd/822151906/TaU6iNvw/ Every day, millions of professionals like Siju George use LinkedIn to connect with colleagues, find experts

enable selective features based on IP

2009-09-12 Thread George Forman
to enforce smtpd_sender_restrictions andallow the users to send to the internet. I have been reading http://www.postfix.org/SMTPD_ACCESS_README.htmltrying to figure out if it is possible to support this without running twoseparate postfix servers. Any help is greatly appreciated, George

RE: customize bounce behavior

2009-07-15 Thread George Forman
bounce behavior George Forman a écrit : Hi, I apologize if this has already been covered but I can't seem to find any information. I need to customize the bounce behavior for the following: 1. If a bounce message is created because it can't deliver to a specified list

customize bounce behavior

2009-06-25 Thread George Forman
. If a bounce message is created, we need to use the recipient's domain for the mailer-daemon domain instead of myorigin parameter. Is the some type of check policy feature I can add to support this behavior? George _ Lauren found her

RE: customize bounce behavior

2009-06-25 Thread George Forman
Date: Thu, 25 Jun 2009 23:56:34 +0200 From: mo...@ml.netoyen.net To: postfix-users@postfix.org Subject: Re: customize bounce behavior George Forman a écrit : Hi, I apologize if this has already been covered but I can't seem to find any information. I need to customize

Slowly drain the active queue

2009-06-24 Thread George Forman
/maximal_backoff_times but it seems thisapplies to the defer queue, correct? George _ Microsoft brings you a new way to search the web. Try Bing™ now http://www.bing.com?form=MFEHPGpubl=WLHMTAGcrea=TEXT_MFEHPG_Core_tagline_try_bing_1x1

Oldest message in the queue

2009-06-24 Thread George Forman
Hi, It appears we would need to write a script to parse all the messages. What is an efficient way to get the age of the oldest message in the queue? George _ Microsoft brings you a new way to search the web. Try Bing™ now http

account migration

2009-05-04 Thread George Forman
transport information to distinguishing between the two systems.I would like to create a new ldap attribute (ie inMigration) that causes postfix to return 4XX on the rcpt tountil the account is migrated. Does anyone have a suggestion on how this can be accomplished? Thanks in advance, George

RE: Rerouting bounce messages

2009-03-13 Thread George Forman
Date: Fri, 13 Mar 2009 00:37:08 +0100 From: mo...@ml.netoyen.net To: postfix-users@postfix.org Subject: Re: Rerouting bounce messages George Forman a écrit : All, If I am a secondary server hosting part of a domain. I must route all bounce messages back to the primary service

Rerouting bounce messages

2009-03-12 Thread George Forman
All, If I am a secondary server hosting part of a domain. I must route all bounce messages back to the primary service for delivery. Does Postfix have this capability? George _ Hotmail® is up to 70% faster. Now good news travels

  1   2   >