Re: [exim] Antivirus for Linux and Exim

2018-03-09 Thread Heiko Schlittermann via Exim-users
Victor Ustugov via Exim-users <exim-users@exim.org> (Fr 09 Mär 2018 12:45:42 CET): > Heiko Schlittermann via Exim-users wrote on 09.03.2018 12:06: > > Heiko Schlittermann <h...@schlittermann.de> (Fr 09 Mär 2018 11:02:01 CET): > > … > >> Good, then the error

Re: [exim] Antivirus for Linux and Exim

2018-03-09 Thread Heiko Schlittermann via Exim-users
Luca Bertoncello via Exim-users (Fr 09 Mär 2018 09:32:32 CET): > Zitat von Mueller via Exim-users : > > Hi Daniel > > > Avast: > > av_scanner = avast:/var/run/avast/scan.sock:FLAGS -fullfiles:SENSITIVITY > > -pup > > av_scanner = avast:your.ip.nr 5036

Re: [exim] Antivirus for Linux and Exim

2018-03-09 Thread Heiko Schlittermann via Exim-users
Heiko Schlittermann <h...@schlittermann.de> (Fr 09 Mär 2018 11:02:01 CET): … > Good, then the error message could improved :) Thank you. I'll check if > we can fix it. Filed a wishlist item (bug#2252) -- Heiko signature.asc Description: PGP signature -- ## List deta

Re: [exim] Antivirus for Linux and Exim

2018-03-09 Thread Heiko Schlittermann via Exim-users
Luca Bertoncello via Exim-users <exim-users@exim.org> (Fr 09 Mär 2018 10:25:39 CET): > Zitat von Heiko Schlittermann via Exim-users <exim-users@exim.org>: > > Hello Heiko > > > Luca Bertoncello via Exim-users <exim-users@exim.org> (Fr 09 Mär 2018 > >

Re: [exim] Antivirus for Linux and Exim

2018-03-09 Thread Heiko Schlittermann via Exim-users
Luca Bertoncello via Exim-users (Fr 09 Mär 2018 09:32:32 CET): > Zitat von Mueller via Exim-users : > > Hi Daniel > > > Avast: > > av_scanner = avast:/var/run/avast/scan.sock:FLAGS -fullfiles:SENSITIVITY > > -pup > > av_scanner = avast:your.ip.nr 5036

Re: [exim] Integrating ESET Antivirus in Exim

2018-03-08 Thread Heiko Schlittermann via Exim-users
Luca Bertoncello via Exim-users <exim-users@exim.org> (Do 08 Mär 2018 15:34:56 CET): > Zitat von Heiko Schlittermann via Exim-users <exim-users@exim.org>: > > Hello Heiko, > > > If not supported yet, you can easily sponsor the integration, Lucabert. &g

Re: [exim] Integrating ESET Antivirus in Exim

2018-03-08 Thread Heiko Schlittermann via Exim-users
Hi Lucabert, Luca Bertoncello via Exim-users (Do 08 Mär 2018 12:55:38 CET): > integration with Exim. > We __NEED__ to be able to refuse the E-Mail if infected, so I'd like to scan > the E-Mail in the data_acl. > Unfortunately I didn't found any useful documentation how to

Re: [exim] Exim process stack 100% CPU?

2018-03-06 Thread Heiko Schlittermann via Exim-users
on is probably due to ACL verify recipient. Do you set a message there? Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de internet & unix support - Heiko Schlittermann, Dipl.-Ing. (TU) - {fon,fax}: +49.351.80

Re: [exim] Before update exim to 4.90, TLS/SSL connection not work

2018-02-22 Thread Heiko Schlittermann via Exim-users
; (SSL_accept): error::lib(0):func(0):reason(0) What is the port, TB connects to? How is Exim configured for hat port? Can you send exim -bP config output? Did you change anything in your runtime configuration during the update? Best regards from Dresden/Germa

Re: [exim] exim_dbmbuild in 4.90(.1) requires path to 2nd argument

2018-02-20 Thread Heiko Schlittermann via Exim-users
le.dbmbuild_temp: No such file or > directory … > > Is this an intentional change? What version did you use before? Without checking, I think(!), there where changes with respect to the dbm code, butas said… I didn't check yet. Best regards from Dresden/Germany Viele Gr

Re: [exim] HostEurope anybody

2018-02-17 Thread Heiko Schlittermann via Exim-users
tech-lists via Exim-users <exim-users@exim.org> (Sa 17 Feb 2018 16:15:41 CET): > On 16/02/2018 12:34, Heiko Schlittermann via Exim-users wrote: > > Hi > > > > some you (j*.e@t*.de) responded, but I can't answer: > > > > j*.e*@t*.de > > > >

Re: [exim] HostEurope anybody

2018-02-16 Thread Heiko Schlittermann via Exim-users
Hi some you (j*.e@t*.de) responded, but I can't answer: j*.e*@t*.de host mail.t*.de [*.*.230] SMTP error from remote mail server after RCPT TO:: 550 Client host rejected: reverse DNS failure-1 I'm quite sure that my IP 84.19.194.3 resolves. Yes, it resolves to a CNAME,

[exim] HostEurope anybody

2018-02-16 Thread Heiko Schlittermann via Exim-users
regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de internet & unix support - Heiko Schlittermann, Dipl.-Ing. (TU) - {fon,fax}: +49.351.802998{1,3} - gnupg encrypted messages are welcome --- key ID: F693

Re: [exim] HostEurope/GoDaddy anybody

2018-02-16 Thread Heiko Schlittermann via Exim-users
Heiko Schlittermann <h...@schlittermann.de> (Fr 16 Feb 2018 12:21:30 CET): > Hi, > > sorry for abusing this list. We see massive (?) problems when sending > messages to HostEurope and customers of HostEurope are not able to send > mails to some of the domains I'm invol

Re: [exim] Filter behavior when run from shell vs systemd

2018-02-13 Thread Heiko Schlittermann via Exim-users
Gabe da Silveira via Exim-users (Di 13 Feb 2018 08:23:17 CET): > Hi all, > > I'm setting up exim to process emails based on the existence of a set of > centrally managed forward files. So I have an accept router configured as > follows: How did you test and what was the

Re: [exim] Wildcards in aliases

2018-02-13 Thread Heiko Schlittermann via Exim-users
Mike Brudenell via Exim-users (Di 13 Feb 2018 12:07:56 CET): > Please forgive me veering off topic a little for a moment, but in case it > helps you Hardy I find these two web sites really useful for testing > various flavours of regular expressions. (I think Exim uses PCRE

Re: [exim] Wildcards in aliases

2018-02-13 Thread Heiko Schlittermann via Exim-users
e As far as I know, DBM lookups do not work with wildcards, it is a limitation imposed by DBM. http://www.schlittermann.de/doc/exim-lookup-benchmark.txt … it's not fresh anymore, but maybe it gives you some idea. Best regards from Dresden/Germany Viele Grüße aus Dresden

Re: [exim] Wildcards in aliases

2018-02-13 Thread Heiko Schlittermann via Exim-users
from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de ---- internet & unix support - Heiko Schlittermann, Dipl.-Ing. (TU) - {fon,fax}: +49.351.802998{1,3} - gnupg encrypted messages are welcome --- key ID: F69376CE

[exim] Security update: Exim 4.90.1 released (CVE-2018-6789)

2018-02-10 Thread Heiko Schlittermann via Exim-users
the public keyservers. Thank you for using Exim. Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de internet & unix support - Heiko Schlittermann, Dipl.-Ing. (TU) - {fon,fax}: +49.351.802998{1,3} - gnupg encr

Re: [exim] CVE-2018-6789 Exim 4.90 and earlier: buffer overflow

2018-02-10 Thread Heiko Schlittermann via Exim-users
Heiko Schlittermann <h...@schlittermann.de> (Mi 07 Feb 2018 11:39:43 CET): > CVE-2018-6789 Exim 4.90 and earlier > === …. > Next steps: > > * t0: Distros will get access to our "security" non-public git repo >

Re: [exim] CVE-2018-6789 Exim 4.90 and earlier: buffer overflow

2018-02-08 Thread Heiko Schlittermann via Exim-users
Heiko Schlittermann <h...@schlittermann.de> (Mi 07 Feb 2018 11:39:43 CET): > CVE-2018-6789 Exim 4.90 and earlier > === > > There is a buffer overflow in an utility function, if some pre-conditions > are met. Using a handcrafted message, remote

[exim] CVE-2018-6789 Exim 4.90 and earlier: buffer overflow

2018-02-07 Thread Heiko Schlittermann via Exim-users
exim-maintainers mailing lists and on oss-security mailing list Updates will follow. Here and on https://exim.org/security/CVE-2018-6789.txt (Link will start to exist around 11.00 UTC). Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann --

Re: [exim] Bounce for recipient domain

2018-01-31 Thread Heiko Schlittermann via Exim-users
Jasen Betts (Di 30 Jan 2018 07:46:57 CET): > On 2018-01-28, Tomasz Piotrowski via Exim-users wrote: > > Thanks. This is what I was looking for. > > > >    warn    domains   = primary-domain.com.pl > >    logwrite    =

Re: [exim] Experience using cutthrough delivery

2018-01-26 Thread Heiko Schlittermann via Exim-users
Todd Lubin (Fr 26 Jan 2018 14:38:57 CET): > I was wondering if anybody has experience using cutthrough delivery for > large-scale exim deployments. > > I did some initial testing of the feature before flipping the switch, which > uncovered a number of bugs. One of these

Re: [exim] Bounce for recipient domain

2018-01-25 Thread Heiko Schlittermann via Exim-users
Tomasz Piotrowski via Exim-users (Do 25 Jan 2018 22:44:00 CET): > > I need to set bounce for external senders sending emails to one of my > domains, which will soon be deleted. The bounce will be information about > the new domain of the recipients. At the same time, I

Re: [exim] Exim not obeying "delay = " in acl_smtp_connect

2017-12-27 Thread Heiko Schlittermann via Exim-users
ify = reverse_host_lookup/defer_ok delay = 600s … would change it, but probably it is not your intention. I think, we do not have a /defer_fail option, do we? And I'm not sure if this wouldn't induce another source of trouble… Just my guesswork. Best regards from Dresden/Germany Vi

Re: [exim] Exim not obeying "delay = " in acl_smtp_connect

2017-12-27 Thread Heiko Schlittermann via Exim-users
Sebastian Arcus via Exim-users (Mi 27 Dez 2017 11:19:11 CET): > Apologies for posting for the third time in three days. I have the following > acl in acl_smtp_connect, which appears to be ignoring completely the "delay > =" setting: You're welcome :) > drop message =

Re: [exim] Best/correct way to disable AUTH on port 25?

2017-12-26 Thread Heiko Schlittermann via Exim-users
ort}{587} {*}{}} Yes, that clearly disables TLS for opportonistic TLS on inter-MTA connections. Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de internet & unix support - Heiko Schlittermann, Dipl.-Ing. (TU) - {fon

Re: [exim] Best/correct way to disable AUTH on port 25?

2017-12-26 Thread Heiko Schlittermann via Exim-users
ference system just now) Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de ---- internet & unix support - Heiko Schlittermann, Dipl.-Ing. (TU) - {fon,fax}: +49.351.802998{1,3} - gnupg encrypted m

Re: [exim] DKIM pubkey_dns_syntax

2017-12-04 Thread Heiko Schlittermann via Exim-users
Mike Brudenell via Exim-users (Mo 04 Dez 2017 16:11:15 CET): > Strictly speaking the RFC says that the tag name ("v") MUST be compared > case-insensitively, and its value compared case-sensitively unless the > specific description for the tag says otherwise. > > The

Re: [exim] DKIM pubkey_dns_syntax

2017-12-04 Thread Heiko Schlittermann via Exim-users
Wolfgang Breyha (Mo 04 Dez 2017 15:15:45 CET): … > 6.1.2. Get the Public Key > [...] > > ... The Verifier MUST validate the key record and MUST >ignore any public-key records that are malformed. … > > > I think your patch does exactly that;-) As we do not *validate* the

Re: [exim] DKIM pubkey_dns_syntax

2017-12-04 Thread Heiko Schlittermann via Exim-users
Jeremy Harris (Mo 04 Dez 2017 13:09:51 CET): … > > So any record that doesn't start with "v=DKIM1" should Always be skipped! > > Which is not what the DKIM RFC says. Therefore, you have set up > a non-useful DKIM installation. The RFC talkes about multiple DKIM records, but

Re: [exim] DKIM pubkey_dns_syntax

2017-12-03 Thread Heiko Schlittermann via Exim-users
Heiko Schlittermann via Exim-users <exim-users@exim.org> (So 03 Dez 2017 18:23:35 CET): … > If you'd like to check out and test in real life: > > git://git.exim.org/~heiko/exim.git > > The branch hs-fix-2207 contains an additional testsuite test > and a smal

Re: [exim] DKIM pubkey_dns_syntax

2017-12-03 Thread Heiko Schlittermann via Exim-users
git://git.exim.org/~heiko/exim.git The branch hs-fix-2207 contains an additional testsuite test and a small one-liner fix Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de ---- internet & unix support - Heiko

Re: [exim] rejecting transport if insecure

2017-12-01 Thread Heiko Schlittermann via Exim-users
mmediatly (best with a delivery message to the sender ) ? Check the retry rules. You can set up error specific retry rules. I never did this. There is an 'tls_required' item, so I suppose, you can set up a rule with zero retry time to force a bounce. Best regards from Dresden/Germany Viele Gr

Re: [exim] Exim 4.90 RC3 uploaded

2017-12-01 Thread Heiko Schlittermann via Exim-users
Heiko Schlittermann via Exim-users <exim-users@exim.org> (Do 30 Nov 2017 20:25:55 CET): …. > Can you give access to your build machine to Jeremy and or me? > As long as we do not need to install anything, no root access is > necessary. Alternativly, can you provide a (clea

Re: [exim] rejecting transport if insecure

2017-12-01 Thread Heiko Schlittermann via Exim-users
> A DB depended condition, when to check it, would be awesome. hosts_require_tls = ${ whatever lookup you want } Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de internet & unix support - Heiko

Re: [exim] Exim 4.90 RC3 uploaded

2017-11-30 Thread Heiko Schlittermann via Exim-users
Frank Elsner (Do 30 Nov 2017 15:42:02 CET): … > exim-4.90_RC3/src/tlscert-openssl.c:#include > exim-4.90_RC3/build-Linux-i386/tlscert-openssl.c:#include > > At this point I'm at the end of my abilities :-( Can you give access to your build machine to Jeremy and

[exim] Exim 4.89.1 released

2017-11-29 Thread Heiko Schlittermann via Exim-users
are in the usual places (mirrors and http://ftp.exim.org/pub/exim/exim4/), signed with my (Heiko Schlittermann) signature. Alternatively you can use Git from git://git.exim.org/, signed tag exim-4_89_1. As an alternative to installing this release you may prefer to disable the SMTP chunking option

Re: [exim] [exim-announce] CVE-2017-16943, CVE-2017-16944

2017-11-28 Thread Heiko Schlittermann via Exim-users
Dresden Heiko Schlittermann -- SCHLITTERMANN.de internet & unix support - Heiko Schlittermann, Dipl.-Ing. (TU) - {fon,fax}: +49.351.802998{1,3} - gnupg encrypted messages are welcome --- key ID: F69376CE - ! key id 7CBF764A and 972EAC9F are

[exim] CVE-2017-16943, CVE-2017-16944

2017-11-28 Thread Heiko Schlittermann via Exim-users
the chunking extension. chunking_advertise_hosts = Distros are advised to include these commits. Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de internet & unix support - Heiko Schlittermann, Dipl.

Re: [exim] Sending mail through "proxy based" content filter

2017-11-19 Thread Heiko Schlittermann via Exim-users
($received_port expansion) Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de internet & unix support - Heiko Schlittermann, Dipl.-Ing. (TU) - {fon,fax}: +49.351.802998{1,3} - gnupg encr

Re: [exim] modify return_path for outgoing emails which got forwarded

2017-11-16 Thread Heiko Schlittermann via Exim-users
eric transport option, called `return_path`. Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de internet & unix support - Heiko Schlittermann, Dipl.-Ing. (TU) - {fon,fax}: +49.351.802998{1,3} - gnupg encry

Re: [exim] Poll: Exim Users Meeting in Germany?

2017-11-15 Thread Heiko Schlittermann via Exim-users
Heiko Schlittermann <h...@schlittermann.de> (Mi 15 Nov 2017 22:30:21 CET): > Bjørnar Ness via Exim-users <exim-users@exim.org> (Mi 15 Nov 2017 13:30:21 > CET): > > We would like to attend from Norway, as long as this is an english-speaking > > event? > >

Re: [exim] Poll: Exim Users Meeting in Germany?

2017-11-15 Thread Heiko Schlittermann via Exim-users
Bjørnar Ness via Exim-users (Mi 15 Nov 2017 13:30:21 CET): > We would like to attend from Norway, as long as this is an english-speaking > event? "We" is how much? -- Heiko signature.asc Description: PGP signature -- ## List details at

Re: [exim] restricting sending domain

2017-11-08 Thread Heiko Schlittermann via Exim-users
d messages you need to use $sender_address_domain there. And, to re-iterate me from #exim: Do not forget to have a final 'accept' in your acl_check_rcpt, as there is an invisible implicit deny at the very and, which applies, except you do an accept explicitly. Best regards

Re: [exim] Exim 4.90 RC1 uploaded

2017-10-28 Thread Heiko Schlittermann via Exim-users
ry > > > > > > > Install problem, lacking setuid on the exim binary? > > > > 4755 euid=26? So, what's the owner of the binary? And - does your OS provide some means to disallow set-uid binaries from setting the (e)uid (Linux has, but ha

Re: [exim] dkim signature is including empty headers, seems like it shouldn't be

2017-10-26 Thread Heiko Schlittermann via Exim-users
Heiko Schlittermann via Exim-users <exim-users@exim.org> (Do 26 Okt 2017 10:49:18 CEST): > Richard Clayton via Exim-users <exim-users@exim.org> (Do 26 Okt 2017 10:23:20 > CEST): > … > > note that some people sign > > > > Subject:Subject > >

Re: [exim] dkim signature is including empty headers, seems like it shouldn't be

2017-10-26 Thread Heiko Schlittermann via Exim-users
display a second subject > in preference to the first one [and vice versa]) and so they wish to > guard against this How does signing subject:subject scale if there is a 2+Nth subject? Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schli

Re: [exim] sender-address and gmail

2017-10-23 Thread Heiko Schlittermann via Exim-users
sume, mail invokes sendmail, which in turn is just an Exim.) You can add your local "user1" to the list of trusted users. Or use the ${address:$h_from:} expansion. (And hope that the From: header doesn't contain multiple addresses.) Best regards from Dresden/Germany Viele Grüße

Re: [exim] Rate-limit queue-processing per domain

2017-10-18 Thread Heiko Schlittermann via Exim-users
Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de internet & unix support - Heiko Schlittermann, Dipl.-Ing. (TU) - {fon,fax}: +49.351.802998{1,3} - gnupg encrypted messages are welcome --- key ID

Re: [exim] Spambox cfg for remote delivery?

2017-10-18 Thread Heiko Schlittermann via Exim-users
Jaap Winius (Mi 18 Okt 2017 18:36:36 CEST): > > Quoting Jeremy Harris : > > Presumably you didn't put one in then > How so? "must not be defined" seems clear enough to me. > > No, you need to give it a transport that does the required job. > Really? None of

Re: [exim] Spambox cfg for remote delivery?

2017-10-18 Thread Heiko Schlittermann via Exim-users
Jaap Winius <jwin...@umrk.nl> (Mi 18 Okt 2017 17:14:53 CEST): > > Quoting Heiko Schlittermann via Exim-users <exim-users@exim.org>: > > > spambox: > > driver = redirect > > domains = +local_domains > > check_local_user > >

Re: [exim] Spambox cfg for remote delivery?

2017-10-18 Thread Heiko Schlittermann via Exim-users
Jaap Winius <jwin...@umrk.nl> (Mi 18 Okt 2017 11:52:41 CEST): … > Quoting Heiko Schlittermann via Exim-users <exim-users@exim.org>: > > > > > > spambox: > > > debug_print = "T: appendfile for $local_part@$domain" > > > driver = ap

Re: [exim] Spambox cfg for remote delivery?

2017-10-18 Thread Heiko Schlittermann via Exim-users
ts the flagged messages to the spambox transport. Can you show us the router configuration? Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de internet & unix support - Heiko Schlittermann, Dipl.-In

Re: [exim] Poll: Exim Users Meeting in Germany?

2017-10-12 Thread Heiko Schlittermann via Exim-users
Hardy (Do 12 Okt 2017 23:59:29 CEST): .. > > . Where? > > . Dresden (East Germany, Capital of Saxony, great nature around, > > Saxon/Bohemian Switzerland) > > . Berlin (…) > > · ??? > Someone suggested Heidelberg, which definitely has a great charm both to >

[exim] Poll: Exim Users Meeting in Germany?

2017-10-12 Thread Heiko Schlittermann via Exim-users
configuration ;), present solutions, successful integrations, talk about problems, bugs, features, future development. I'm open for suggestions :) Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de internet

Re: [exim] Allow syntax errors from some hosts

2017-10-10 Thread Heiko Schlittermann via Exim-users
Heiko Schlittermann via Exim-users <exim-users@exim.org> (Di 10 Okt 2017 23:09:34 CEST): … > > It seems, in src/smtp_in.c, that an *empty* HELO argument is > not permitted, even with helo_accept_junk_hosts set. An empty string > can't even be junk. *It seems*. Probably I

Re: [exim] Allow syntax errors from some hosts

2017-10-10 Thread Heiko Schlittermann via Exim-users
est regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de ---- internet & unix support - Heiko Schlittermann, Dipl.-Ing. (TU) - {fon,fax}: +49.351.802998{1,3} - gnupg encrypted messages are welcome --- key

Re: [exim] Implementation of SPF - flaw?

2017-09-26 Thread Heiko Schlittermann via Exim-users
ive localhost a free ride */ if (SPF_request_is_loopback(spf_request)) return SPF_i_done(*spf_responsep, SPF_RESULT_PASS, SPF_REASON_LOCALHOST, SPF_E_SUCCESS); Best regards from Dresden/Germany Viele Grüße aus Dresde

Re: [exim] Experimental SPF

2017-09-25 Thread Heiko Schlittermann via Exim-users
can be found in libspf2.a Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de internet & unix support - Heiko Schlittermann, Dipl.-Ing. (TU) - {fon,fax}: +49.351.802998{1,3} - gnupg encrypted messages

Re: [exim] Experimental SPF

2017-09-22 Thread Heiko Schlittermann via Exim-users
rom localhost might be a feature of SPF in general or of the implementation in Exim. Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de internet & unix support - Heiko Schlittermann, Dipl.-Ing. (TU)

Re: [exim] I: "Introduce a delay into the SMTP transaction" - connection timeout

2017-09-21 Thread Heiko Schlittermann via Exim-users
Hi, Jeremy Harris (Mi 20 Sep 2017 19:15:18 CEST): … > sysctl net.ipv4.tcp_syn_retries ? Yes, on my system it is set to 6 (retries), so I see 7 SYN packets in a row, with a doubling time between them. tdt (s) action ---+ 00 SYN 1

Re: [exim] I: "Introduce a delay into the SMTP transaction" - connection timeout

2017-09-20 Thread Heiko Schlittermann via Exim-users
Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de -------- internet & unix support - Heiko Schlittermann, Dipl.-Ing. (TU) - {fon,fax}: +49.351.802998{1,3} - gnupg encrypted messages are welcome --- key ID

Re: [exim] I: "Introduce a delay into the SMTP transaction" - connection timeout

2017-09-20 Thread Heiko Schlittermann via Exim-users
Heiko Schlittermann <h...@schlittermann.de> (Mi 20 Sep 2017 11:50:36 CEST): … > Your log does not contain any information about the time. > (Unfortunenatly Exim's debug output does not carry timestamps (RFE??)) I just checked how to implement timestamps in debug output, but they're t

Re: [exim] I: "Introduce a delay into the SMTP transaction" - connection timeout

2017-09-20 Thread Heiko Schlittermann via Exim-users
Heiko Schlittermann <h...@schlittermann.de> (Mi 20 Sep 2017 11:50:36 CEST): … > > Your log does not contain any information about the time. > (Unfortunenatly Exim's debug output does not carry timestamps (RFE??)) … and, should not be there some relevant information in the mai

Re: [exim] I: "Introduce a delay into the SMTP transaction" - connection timeout

2017-09-20 Thread Heiko Schlittermann via Exim-users
SW & Work SaS (Mi 20 Sep 2017 00:46:55 CEST): > > I've tried now to send with debug one message still in queue, > below is the relevant part … > > The timeout happens at connection > Connecting to smtp.thistledesign.it [46.252.149.139]:25 from 207.58.179.71 > ... failed:

Re: [exim] "Introduce a delay into the SMTP transaction" - connection timeout

2017-09-19 Thread Heiko Schlittermann via Exim-users
email.org does. Maybe theyre known to the particular servers meanwhile. Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de internet & unix support - Heiko Schlittermann, Dipl.-Ing. (TU) - {fon,fax}: +49.35

Re: [exim] Space being converted to equals in email address

2017-09-12 Thread Heiko Schlittermann via Exim-users
Hi Neil, Neil Youngman <neil.young...@wirefast.com> (Di 12 Sep 2017 09:22:14 CEST): > I have now identified bug 2025, fixed in Exim 4.89 as the probable cause of > this issue. Great job. Thank you. Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko S

Re: [exim] Space being converted to equals in email address

2017-09-07 Thread Heiko Schlittermann via Exim-users
Neil Youngman (Do 07 Sep 2017 15:46:53 CEST): > I seem to have quoted the wrong log entry. > > I should have quoted this log entry, which might make it a little clearer: > > 2017-09-07 12:37:02 1dpw3K-0006S6-D9 <= neil.young...@wirefast.com > H=hr-ops-1.wirefast.com

Re: [exim] Round robin for outgoing connections

2017-08-28 Thread Heiko Schlittermann via Exim-users
; 0: 10.0.46.12 > 1: 10.0.46.13 You should consider greylisting on the other side. Some simple and stupid greylisters to that based on the senders IP. So if you've bad luck, it will take you more time to get through. Best regards from Dresden/Germany Viele Grüße aus Dresden

Re: [exim] Using Kaspersky 8.0.1 with Exim 4.89

2017-08-26 Thread Heiko Schlittermann via Exim-users
; > > check malware = * > > No error in the Log of Kaspersky... > > Has someone an idea what I'm doing wrong? Who owns /run/klms/rds_av? What are the permissions? Is there some process listed if you use `fuser -v /run/klms/rds_av` What happens if you stop the Ka

Re: [exim] Routers - Headers

2017-08-11 Thread Heiko Schlittermann via Exim-users
routers, as the first one was a redirect router…) Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de ---- internet & unix support - Heiko Schlittermann, Dipl.-Ing. (TU) - {fon,fax}: +49.351.802998{1,3} - gnupg e

Re: [exim] Routers - Headers

2017-08-11 Thread Heiko Schlittermann via Exim-users
Rob Gunther via Exim-users (Fr 11 Aug 2017 04:20:59 CEST): > I have a router that I use for catch-all purposes. If the conditions are > all valid, it adds a header and redirects the message to the catch-all > account defined for the domain. > > headers_add = "X-Catch-All:

Re: [exim] conditional break if dnsdb reveals a NXDOMAIN ?

2017-08-02 Thread Heiko Schlittermann via Exim-users
just checking the "existence" of a domain. If the domain does not exist (is not registred), sender verification fails, as it does if there is no MX/A record for the domain. Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de --

Re: [exim] conditional break if dnsdb reveals a NXDOMAIN ?

2017-08-02 Thread Heiko Schlittermann via Exim-users
rmany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de ---- internet & unix support - Heiko Schlittermann, Dipl.-Ing. (TU) - {fon,fax}: +49.351.802998{1,3} - gnupg encrypted messages are welcome --- key ID: F69376CE - ! key id 7CBF764A a

Re: [exim] Transport filter process failed

2017-07-31 Thread Heiko Schlittermann via Exim-users
im -bd -d+all > exim -d -M 1dcEwb-0002CQ-JC > > Can someone help me understand why transport filter works only with '-d' > argument? I'd like to. :) Viele Grüße Heiko Schlittermann -- SCHLITTERMANN.de ---- internet & unix support - Heiko Schlit

Re: [exim] Cipher suites identifier

2017-07-30 Thread Heiko Schlittermann via Exim-users
many Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de internet & unix support - Heiko Schlittermann, Dipl.-Ing. (TU) - {fon,fax}: +49.351.802998{1,3} - gnupg encrypted messages are welcome --- key ID: F69376CE - ! key id 7CBF7

Re: [exim] Retiring old build targets

2017-07-27 Thread Heiko Schlittermann via Exim-users
Jeremy Harris (Do 27 Jul 2017 16:04:30 CEST): > On 26/07/17 12:38, Lena--- via Exim-users wrote: > >> Given the resounding silence from volunteers, I'm tempted to retire > >> in the next release _everything_ apart from the current set of > >> representatives in the buildfarm. >

Re: [exim] Exim + Yahoo Groups = Malware?

2017-07-25 Thread Heiko Schlittermann via Exim-users
nk you everyone for your suggestions - months ago. Even I did not respond month ago. But a big thank you for providing your analysis (and solution). Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de internet

Re: [exim] Reject bounce Message

2017-07-18 Thread Heiko Schlittermann via Exim-users
in per line) > >Best regards >basti Which of the Domains is blacklisted in your configuration? As Jeremy wrote, there is no bounce in your log. -- Heiko Schlittermann (unterwegs) -- ## List details at https://lists.exim.org/mailman/listinfo/exim-users ## Exim details at http://www.exim.org/ ## Please use the Wiki with this list - http://wiki.exim.org/

Re: [exim] Rewriting envelope from to header From

2017-07-12 Thread Heiko Schlittermann via Exim-users
lope sender. [The usual disclaimer: I may be wrong, I didn'nt cross check with the documentation.] Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de internet & unix support - Heiko Schlittermann, Dipl.-Ing.

Re: [exim] Exim 4.88(9): failed to read pipe from transport

2017-07-08 Thread Heiko Schlittermann via Exim-users
d delivery process or the parent of the delivery process dies because it gets insufficient data from the delivery child. I've fixed it and as soon as I'm convinced that it is really fixed, I'll push my fixes to the repo. Best regards from Dresden/Germany Viele Grüße aus Dresden Heik

Re: [exim] SOLVED: recepient verification callout with defer_ok fails on graylisted server with error code 450

2017-07-07 Thread Heiko Schlittermann via Exim-users
Hi Volker, Dr. Volker Jaenisch via Exim-users (Fr 07 Jul 2017 08:54:02 CEST): > There were two problems. First the defer_ok Flag should be used twice as > Lena mentioned. > > verify = recipient/defer_ok/callout=10s,defer_ok,use_sender > > Second the callout timeout was 2m

Re: [exim] recepient verification callout with defer_ok fails on graylisted server with error code 450

2017-07-06 Thread Heiko Schlittermann via Exim-users
verify = … accept Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de ---- internet & unix support - Heiko Schlittermann, Dipl.-Ing. (TU) - {fon,fax}: +49.351.802998{1,3} - gnupg encrypted mes

Re: [exim] recepient verification callout with defer_ok fails on graylisted server with error code 450

2017-07-06 Thread Heiko Schlittermann via Exim-users
, but it should not send any message at all. Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de internet & unix support - Heiko Schlittermann, Dipl.-Ing. (TU) - {fon,fax}: +49.351.802998{1,3} - gnupg encrypted

Re: [exim] Bug in string expansion of exim configuration?

2017-07-04 Thread Heiko Schlittermann via Exim-users
#SECTexpcond > There are a number of symbolic operators for doing numeric comparisons. They > are: > > |= | equal > |== | equal > ---- What's wrong with that? Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLIT

Re: [exim] Exim 4.88(9): failed to read pipe from transport

2017-07-04 Thread Heiko Schlittermann via Exim-users
Heiko Schlittermann <h...@schlittermann.de> (So 02 Jul 2017 23:55:15 CEST): > Kurt Jaeger <exim-us...@opsec.eu> (Mi 21 Jun 2017 10:54:25 CEST): > … > > I have something similar now, too, sending from a FreeBSD exim site > > to some external site, over TLS, with

Re: [exim] Exim 4.88(9): failed to read pipe from transport

2017-07-02 Thread Heiko Schlittermann via Exim-users
Kurt Jaeger (Mi 21 Jun 2017 10:54:25 CEST): … > I have something similar now, too, sending from a FreeBSD exim site > to some external site, over TLS, with many recipients. But the error is: > > Failed writing transport result to pipe: Broken pipe > > So my question: is

Re: [exim] Exim 4.88(9): failed to read pipe from transport

2017-07-02 Thread Heiko Schlittermann via Exim-users
Kurt Jaeger (So 02 Jul 2017 22:04:26 CEST): .. > > > I prepared a patch and this seems to be working for me. > > > Would you be willing apply some patch(es) to your Exim und run it? > > I'm interested to test it on my test case. Where can I find it ? > I tested the version

Re: [exim] Exim 4.88(9): failed to read pipe from transport

2017-07-02 Thread Heiko Schlittermann via Exim-users
as it bites you, I'm not sure, if this patch is really a fix, or if it breaks more than it fixes. Would you be willing apply some patch(es) to your Exim und run it? Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de --

Re: [exim] user filter file

2017-07-02 Thread Heiko Schlittermann via Exim-users
me conditions … transport = log begin transports log: driver = appendfile file = /tmp/log-${substr_4:$tod_logfile} Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de ---

Re: [exim] cant send to gmail after adding ipv6 address.

2017-06-29 Thread Heiko Schlittermann via Exim-users
e.g.)? Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de ---- internet & unix support - Heiko Schlittermann, Dipl.-Ing. (TU) - {fon,fax}: +49.351.802998{1,3} - gnupg encrypted messages are welcome --

[exim] [SOLVED] Logfile format corruption

2017-06-27 Thread Heiko Schlittermann via Exim-users
Heiko Schlittermann <h...@schlittermann.de> (Fr 09 Jun 2017 01:25:33 CEST): > Heiko Schlittermann via Exim-users <exim-users@exim.org> (Mi 07 Jun 2017 > 21:47:28 CEST): > > Hi Klaus, > > I found it and will prepare a patch later. Solved with commit 31323b3044

Re: [exim] DKIM refuses to be turned off

2017-06-26 Thread Heiko Schlittermann via Exim-users
lid, the EHLO data doesn't match the IP, and whatever checks you do to reject a message. Best regards from Dresden/Germany Viele Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de internet & unix support - Heiko Schlittermann, Dipl

[exim] ChrissKO

2017-06-26 Thread Heiko Schlittermann via Exim-users
Hi, in case the #exim channel user ChrissKO is reading here: Please check your client, you're flooding the IRC channel with your connects/disconnects. Thank you. -- Heiko signature.asc Description: PGP signature -- ## List details at https://lists.exim.org/mailman/listinfo/exim-users ## Exim

Re: [exim] DKIM refuses to be turned off

2017-06-26 Thread Heiko Schlittermann via Exim-users
Grüße aus Dresden Heiko Schlittermann -- SCHLITTERMANN.de internet & unix support - Heiko Schlittermann, Dipl.-Ing. (TU) - {fon,fax}: +49.351.802998{1,3} - gnupg encrypted messages are welcome --- key ID: F69376CE - ! key id 7CBF764A and 972

Re: [exim] [h...@schlittermann.de: Re: CVE-2017-1000369 | Exim 4.89+fixes]

2017-06-22 Thread Heiko Schlittermann via Exim-users
Hi, Cyborg <cybo...@benderirc.de> (Mi 21 Jun 2017 09:17:57 CEST): > Am 21.06.2017 um 08:07 schrieb Heiko Schlittermann via Exim-users: > > IF your distribution updated the packaged version of Exim > >OR the underlying system > > > > THEN you're

[exim] [h...@schlittermann.de: Re: CVE-2017-1000369 | Exim 4.89+fixes]

2017-06-21 Thread Heiko Schlittermann via Exim-users
to the distro packagers some days ago: - Forwarded message from Heiko Schlittermann <h...@schlittermann.de> - Date: Sun, 18 Jun 2017 10:54:04 +0200 From: Heiko Schlittermann <h...@schlittermann.de> To: Operating system distro security contacts <dist...@vs.openwall.org>

Re: [exim] SRS forwarding problem

2017-06-17 Thread Heiko Schlittermann via Exim-users
Hi, av (Fr 16 Jun 2017 18:48:51 CEST): > We have configured Exim with ISPsystem ISPmanager so it forwards messages > from multiple domains to one. For example recipient.su forwards to > recipient.ru > > All is fine and well until message from SRS comes along. Exim bounces such >

<    1   2   3   4   5   6   7   8   9   10   >