Re: submission_add_received_header option?

2024-02-02 Thread Ellie McNeill

Hi!

Unfortunately you are looking at Dovecot 3.0 (2.4 CE) settings.

Please see https://doc.dovecot.org/settings/core/ for 2.3 settings.

Aki


Sorry, I seem to have missed that. I hope this isn't a silly question, 
but I'm wondering what the difference between 'regular' Dovecot and the 
'CE'/3.0 edition is? I can't seem to find much information on this. Why 
are there different versions?


PS: I'm aware of the arguments regarding privacy/RFCs with regards to 
mail headers. This is just a small mail server for personal use though.


Ellie
___
dovecot mailing list -- dovecot@dovecot.org
To unsubscribe send an email to dovecot-le...@dovecot.org


Re: submission_add_received_header option?

2024-02-02 Thread Michael Peddemors
For the record, you should never 'hide' the connecting IP, that 
information is very valuable for all abuse handling, and so you can 
quickly see when someone reports spam from your network, who is abusing 
it..


the whole privacy vs security debates aside please..

And it also allows other spam protections to better act on it, eg if the 
IP is on a DROP rbl, or an auth RBL like RATS-AUTH, etc..


A lot of information can be gathered on the actor behind BEC if the 
authenticating IP is part of that data..


And given that much of the world uses a NAT connection, it's not like 
the IP is really PPI.. There is a lot more PPI being gathered from other 
parts of the email.


On 2024-02-02 10:25, Ellie McNeill wrote:
Hi, I've recently upgraded my mail server from Debian 11 to Debian 12. 
It now runs dovecot 2.3.19.1 (verified with dovecot --version).


According to the "Dovecot Core Settings" page, a new setting 
'submission_add_received_header' was added in dovecot 2.3.19 to give 
admins the option of hiding the IP of the sending client when using 
dovecot's submissiond:


https://doc.dovecot.org/3.0/settings/core/

However, when I place this option in my config, dovecot refuses to start 
and says that the option is not recognised:


doveconf: Fatal: Error in configuration file 
/etc/dovecot/conf.d/20-submission.conf line 92: Unknown setting: 
submission_add_received_header


Can anyone help me with this?

Ellie
___
dovecot mailing list -- dovecot@dovecot.org
To unsubscribe send an email to dovecot-le...@dovecot.org



--
"Catch the Magic of Linux..."

Michael Peddemors, President/CEO LinuxMagic Inc.
Visit us at http://www.linuxmagic.com @linuxmagic
A Wizard IT Company - For More Info http://www.wizard.ca
"LinuxMagic" a Reg. TradeMark of Wizard Tower TechnoServices Ltd.

604-682-0300 Beautiful British Columbia, Canada

___
dovecot mailing list -- dovecot@dovecot.org
To unsubscribe send an email to dovecot-le...@dovecot.org


Re: submission_add_received_header option?

2024-02-02 Thread Aki Tuomi via dovecot


> On 02/02/2024 20:25 EET Ellie McNeill  wrote:
> 
>  
> Hi, I've recently upgraded my mail server from Debian 11 to Debian 12. 
> It now runs dovecot 2.3.19.1 (verified with dovecot --version).
> 
> According to the "Dovecot Core Settings" page, a new setting 
> 'submission_add_received_header' was added in dovecot 2.3.19 to give 
> admins the option of hiding the IP of the sending client when using 
> dovecot's submissiond:
> 
> https://doc.dovecot.org/3.0/settings/core/
> 
> However, when I place this option in my config, dovecot refuses to start 
> and says that the option is not recognised:
> 
> doveconf: Fatal: Error in configuration file 
> /etc/dovecot/conf.d/20-submission.conf line 92: Unknown setting: 
> submission_add_received_header
> 
> Can anyone help me with this?
> 
> Ellie

Hi!

Unfortunately you are looking at Dovecot 3.0 (2.4 CE) settings.

Please see https://doc.dovecot.org/settings/core/ for 2.3 settings.

Aki
___
dovecot mailing list -- dovecot@dovecot.org
To unsubscribe send an email to dovecot-le...@dovecot.org


submission_add_received_header option?

2024-02-02 Thread Ellie McNeill
Hi, I've recently upgraded my mail server from Debian 11 to Debian 12. 
It now runs dovecot 2.3.19.1 (verified with dovecot --version).


According to the "Dovecot Core Settings" page, a new setting 
'submission_add_received_header' was added in dovecot 2.3.19 to give 
admins the option of hiding the IP of the sending client when using 
dovecot's submissiond:


https://doc.dovecot.org/3.0/settings/core/

However, when I place this option in my config, dovecot refuses to start 
and says that the option is not recognised:


doveconf: Fatal: Error in configuration file 
/etc/dovecot/conf.d/20-submission.conf line 92: Unknown setting: 
submission_add_received_header


Can anyone help me with this?

Ellie
___
dovecot mailing list -- dovecot@dovecot.org
To unsubscribe send an email to dovecot-le...@dovecot.org


Re: Recommended changes for delivery from Exim

2024-02-02 Thread Odhiambo Washington


On Fri, Feb 2, 2024 at 6:24 PM Benoît PELISSIER via dovecot
 wrote:
 Hi,

 it's not working do this.

 i tried ans doesnt work.

 i use workaround from Kirill Miazine 

 ---
 $ cat /local/bin/dovecot-lda-wrapper
 #!/bin/sh
 exec /usr/local/libexec/dovecot/dovecot-lda \
    -d "${LOCAL_PART}@${DOMAIN}" \
    -a "${LOCAL_PART}${LOCAL_PART_SUFFIX}@${DOMAIN}" \
    -r "${LOCAL_PART}${LOCAL_PART_SUFFIX}@${DOMAIN}" \
    -f "${SENDER}"

 Here's how it is called from Exim:

 dovecot_pipe:
      driver = pipe
      command = /local/bin/dovecot-lda-wrapper
 #    command = /usr/local/libexec/dovecot/dovecot-lda \
 #                -d $local_part@$domain \
 #                -a $local_part$local_part_suffix@$domain \
 #                -r $local_part$local_part_suffix@$domain \
 #                -r $local_part$local_part_suffix@$domain \
 #                -f $return_path
 ---


 Benoît

It's 2024! You've awakened a thread from 2022 without explanations :)

What is it that you're trying to achieve?

--
Best regards,
Odhiambo WASHINGTON,
Nairobi,KE
+254 7 3200 0004/+254 7 2274 3223
 In an Internet failure case, the #1 suspect is a constant: DNS.
"Oh, the cruft.", egrep -v '^$|^.*#' ¯\_(ツ)_/¯ :-)
[How to ask smart questions: http://www.catb.org/~esr/faqs/smart-
questions.html]
___
dovecot mailing list -- dovecot@dovecot.org
To unsubscribe send an email to dovecot-le...@dovecot.org


Re: Recommended changes for delivery from Exim

2024-02-02 Thread Benoît PELISSIER via dovecot

Hi,

it's not working do this.

i tried ans doesnt work.

i use workaround from Kirill Miazine 

---
$ cat /local/bin/dovecot-lda-wrapper
#!/bin/sh
exec /usr/local/libexec/dovecot/dovecot-lda \
  -d "${LOCAL_PART}@${DOMAIN}" \
  -a "${LOCAL_PART}${LOCAL_PART_SUFFIX}@${DOMAIN}" \
  -r "${LOCAL_PART}${LOCAL_PART_SUFFIX}@${DOMAIN}" \
  -f "${SENDER}"

Here's how it is called from Exim:

dovecot_pipe:
driver = pipe
command = /local/bin/dovecot-lda-wrapper
#command = /usr/local/libexec/dovecot/dovecot-lda \
#-d $local_part@$domain \
#-a $local_part$local_part_suffix@$domain \
#-r $local_part$local_part_suffix@$domain \
#-r $local_part$local_part_suffix@$domain \
#-f $return_path
---


Benoît

Le 01/05/2022 à 12:06, j...@exim.org a écrit :

Hi,

Security changes to Exim have invalidated certain suggested configurations
in the Dovecot wiki.

As I do not have a Dovecot installation to test, I am not going to write
any updates there.  It would be good if someone would test these 
suggestions

and then make updates as needed.

1) The use of $local_part and $domain in commands run by the "pipe"
    transport will be disallowed in the upcoming Exim release.
    These are currently noted as optional, with the "-m" flag to
    dovecot-lda.  They should be replaced with validated (untainted)
    versions, commonly $local_part_data and $domain_data, developed via
    one of the several de-taint methods documented for Exim.

    The same applies to $original_local_part and $original_domain.

2) The use of $sender_address will likewise be disallowed.  This
    and the "-f" flag can be dropped from the dovecot-lda command line,
    and the specification of a null "message_prefix" option removed.

    The defaults for a pipe transport will then prefix the message
    with a suitable Mbox "From " header line, which dovecot-lda is
    documented to extract the sender from.

Both of these suggestions are back-compatible to the current 4.95
release of Exim, and will be required with the 4.96 release.BEGIN:VCARD
VERSION:4.0
N:PELISSIER;Benoît;;;
FN:PELISSIER Benoît
EMAIL;PREF=1;TYPE=work:bpeliss...@lan2net.fr
URL;TYPE=work:https://www.lan2net.fr
ADR;TYPE=work:;;12 avenue Jules Verne - bâtiment A;Saint-Sébastien-Sur-Lo
 ire;;44230;FRANCE
TITLE:Administrateur Systèmes et Réseaux
ORG:Lan2Net - L'informatique fiable sous Linux + logiciels libres\, membre 
 du réseau "Alliance-Libre"
TEL;TYPE=work;VALUE=TEXT:02 85 52 65 37
END:VCARD
___
dovecot mailing list -- dovecot@dovecot.org
To unsubscribe send an email to dovecot-le...@dovecot.org