Re: [exim] Routing failed deliveries through an ESP

2023-04-17 Thread Graeme Fowler via Exim-users
On 17 April 2023 03:08:29 Lance Lovette via Exim-users wrote: How might I configure my routers to ignore an initial 5xx response from the first router and attempt another (and maybe future) deliveries through an alternate router? I'm going to make the very obvious and morally correct answer:

Re: [exim] Configuring exim to use an non-TLS connection to port 587.

2023-04-11 Thread Graeme Fowler via Exim-users
On 11 Apr 2023, at 17:43, Peter via Exim-users wrote: > In absence of progress to have exim apply TLS-on-connect to server port > 465 I'm trying non-TLS to port 587 as a simpler first objective. =8~/ Your error has nothing to do with TLS at all: 20:33:41 1656 LOG: MAIN PANIC 20:33:41 1656

Re: [exim] exim rewrites the "From:" address

2023-02-27 Thread Graeme Fowler via Exim-users
Hi all Worth noting - as we have many, many times on this list - that if you're using Debian or a derivative such as Ubuntu, then this list may not be able to help you. The split config, the macros etc - they're all Debian specific. Additionally, if the OP would be kind enough to subscribe

Re: [exim] A study of failing tls certs, with valid certificate files

2023-01-09 Thread Graeme Fowler via Exim-users
On 9 Jan 2023, at 12:05, Jeremy Harris via Exim-users wrote: > It wouldn't be an OpenSSL change. Exim (since 4.95) on both Linux > and FreeBSD platforms[*] sets a watch on the relevant directories and files, > and (supposedly) reloads certs when they change. Best guess is that > this mechanism

Re: [exim] Connection dying

2022-12-16 Thread Graeme Fowler via Exim-users
Small admin note: 1. Be polite to each other; policing people's posting style is very 1993. 2. To everyone who comes along and asks questions, but (and singling an individual out is a rare thing for me) *especially* The Doctor: Never, ever post a question to a mailing list that is essentially

Re: [exim] Stumped on router conditions

2022-11-29 Thread Graeme Fowler via Exim-users
Even simpler - router1: condition = ${if ... router1: !condition = ${if ... It's the exact same condition test, but in the first it'll run if the condition returns true, and in the second if it's false. Graeme -- ## List details at https://lists.exim.org/mailman/listinfo/exim-users ##

Re: [exim] [mailop] T-Online is now really blocking messages from non-commercial and simliar senders

2022-10-20 Thread Graeme Fowler via Exim-users
On 20 October 2022 20:54:23 Jeremy Harris via Exim-users wrote: I don't think it should be the Exim project doing that, Agreed. If it was commercial software doing that then there would be legal challenges galore. Wearing my mailop moderator hat I think two things need to happen - first

Re: [exim] MacOS development was Re: After upgrade to Exim 4.95 or 4.96: "setgroups: Invalid argument"

2022-09-28 Thread Graeme Fowler via Exim-users
On 28 Sep 2022, at 15:19, Andrew C Aitchison via Exim-users wrote: > > Does anyone know that Snow Leopard is too old to be useful ? Yes, it was EOL 11 years ago. Graeme -- ## List details at https://lists.exim.org/mailman/listinfo/exim-users ## Exim details at http://www.exim.org/ ## Please

Re: [exim] multiple cc: headers

2022-05-09 Thread Graeme Fowler via Exim-users
On 9 May 2022, at 09:53, Julian Bradfield via Exim-users wrote: > Coming to the point: is the bounce message coming from some (hopefully > experimental) part of Exim, or must it have been maliciously > hand-crafted in a config file by the solardns administrators? > > I can't find anything

Re: [exim] 2 hours delay (gnutls_handshake): timed out: delivering unencrypted to

2022-03-30 Thread Graeme Fowler via Exim-users
Thinking a little tangentially... Could this be an entropy problem? Do you have the 'rng-tools' (might be 'rng-utils', I'm not a debian/ubuntu expert) package installed? I have a vague recollection of blocked reads to /dev/random, which isn't filling quickly enough and stalls processes.

[exim] [admin note] greylisting and spf

2022-03-14 Thread Graeme Fowler via Exim-users
On 14 Mar 2022, at 12:24, Zakaria via Exim-users wrote: [ a rant ] Sorry to everyone for that one. Zak has been unsubscribed. Just a note: if you ever start typing “Sorry guys a rant” (or something like that) - Step away from the keyboard and don’t post it here. Regards Graeme -- ## List

Re: [exim] Inappropriate File Type or Format

2022-01-20 Thread Graeme Fowler via Exim-users
On 20 Jan 2022, at 18:45, Pete Long via Exim-users wrote: > I wonder if anyone can help me with this error I'm seeing in my Exim log > files: > > 2022-01-20 14:55:58 1nAYqz-0002ae-M1 failed to open DB file > /var/spool/exim/db/wait-remote_smtp: Inappropriate file type or format > > I think

Re: [exim] sendind email to an intermittently connected host

2022-01-18 Thread Graeme Fowler via Exim-users
On 18 Jan 2022, at 11:56, Leonardo Boselli via Exim-users wrote: > No, my situation is different: the p machine normally is connected, but for > some reason, can be unconnected for extended (days to weeks) periods of time, > or ever, more likely, to have the smtp service unactive, or even just

Re: [exim] MS 365 "X-Matching-Connectors" header bounce error

2021-12-13 Thread Graeme Fowler via Exim-users
On 13 Dec 2021, at 15:13, Evgeniy Berdnikov via Exim-users wrote: > Finally outlook.com reports 32799 bytes in a single header, while > the original mail has size 1216. So your Exim has modified message, > probably filling it with some garbage... > > As you run some customized configuration,

Re: [exim] 'Could not complete sender verify'

2021-11-25 Thread Graeme Fowler via Exim-users
On 25 Nov 2021, at 14:26, Ben Franklin via Exim-users wrote: >Quoth Eugene Berdnikov: 'Did you read a statement on which you > wrote reply? Try again.' You have a very unusual quoting method which some people may find difficult to follow. > I don't understand your question. I

Re: [exim] Exim4 delay at boot

2021-11-13 Thread Graeme Fowler via Exim-users
On 13 Nov 2021, at 13:14, JHM via Exim-users wrote: > What I think would be a good idea is that at installation time ie: when > dpkg-reconfigure-exim4-config runs, the installer looks to check if IPv6 > is configured or maybe just ask if IPv6 is to be configured. That’s a downstream (Debian and

Re: [exim] Differences exim 4.93 and 4.94

2021-08-22 Thread Graeme Fowler via Exim-users
On 22 Aug 2021, at 19:49, Evgeniy Berdnikov via Exim-users wrote: > No. These SQL queries are different: first has NO quotes around value in > domain=.. predicate, but the second have ones. Debug output confirms it. > > Shell expands string like 'xxx'a.b.c'yyy' to 'xxxabcyyy'. > You should do

Re: [exim] Help with dual-key DKIM

2021-07-26 Thread Graeme Fowler via Exim-users
On 26 Jul 2021, at 13:51, Perry Naseck via Exim-users wrote: > Thanks for your response. Would you mind elaborating? Which tool should I be > using? I'm not very experienced with configuring Exim, but I would like to > learn.

Re: [exim] Strange problem with the communication to ClamAV

2021-07-12 Thread Graeme Fowler via Exim-users
On 12 July 2021 08:00:36 Luca Bertoncello via Exim-users wrote: Any idea how to change the configuration in order to avoid the problem? Which version of ClamAV are you running? Recent versions load the definitions into RAM alongside the current set, and then do an atomic switch. This

Re: [exim] Mail boincing back to bounces@servername instead of sender

2021-06-15 Thread Graeme Fowler via Exim-users
On 15 Jun 2021, at 12:59, Jeremy Harris via Exim-users wrote: > > On 14/06/2021 18:02, Rowney, Dion via Exim-users wrote: >> Jun 7 17:28:52 test exim[32706]: 2021-06-07 17:28:52.630 [32706] >> 1lqOfs-0008VV-Jb **boun...@test.domain.com >> F=<>: Unrouteable

Re: [exim] Number of header lines in reject log

2021-03-29 Thread Graeme Fowler via Exim-users
On 29 Mar 2021, at 12:45, iforbes-exim--- via Exim-users wrote: > However exim has a limit on the number of header lines that are written into > the reject log exim has a limit on the log *buffer* size, not the number of lines - which is why the truncation occurs at different points for

Re: [exim] Virus/Malware errors

2021-01-19 Thread Graeme Fowler via Exim-users
Hi On 19 Jan 2021, at 08:03, Dan Egli via Exim-users wrote: > My bad. I pasted the wrong line. Sorry, > > av_scanner = clamd:/var/run/clamav/clamd.ctl > > And it's enabled. I'm using the exim4u config patches, and in > exim4u_global_spam_virus: > > # ClamAV Global Setting > # When enabled,

Re: [exim] Queue ID format

2020-12-24 Thread Graeme Fowler via Exim-users
On 24 Dec 2020, at 22:17, Yves Goergen via Exim-users wrote: > What assumptions can I make about the format of a queue message ID? For now, > I use this regex: https://www.exim.org/exim-html-current/doc/html/spec_html/ch-how_exim_receives_and_delivers_mail.html#SECTmessiden You may

Re: [exim] 421 lost input connection, not logged?

2020-10-08 Thread Graeme Fowler via Exim-users
On 8 Oct 2020, at 15:34, Cyborg via Exim-users wrote: > @Devs: Maybe a nice FR to put a "421 client aborted connection from ip > x.x.x.x." in the logs. ...but if the client never managed to actually connect to Exim, there is nothing to log. You can already add the log selector

Re: [exim] Help to logical OR two conditions

2020-10-07 Thread Graeme Fowler via Exim-users
On 7 Oct 2020, at 04:33, Victor Sudakov via Exim-users wrote: > Well, maybe after Sendmail has become irrelevant, we still need > something to be very tricky? Wearing my admin and occasional contributor hat, this is the point at which I can hear both Jeremy and Phil quietly saying "code

Re: [exim] Remove & Replace Message Body Content

2020-10-02 Thread Graeme Fowler via Exim-users
On 2 Oct 2020, at 17:57, Patrick Porteous via Exim-users wrote: > Maybe Exim isn't the right tool to accomplish this? Is the right answer :) Your question falls squarely into Exim's "just because you can, doesn't mean you should" category. Exim is designed to lift and shift, it isn't built to

Re: [exim] Change PAM service name

2020-09-16 Thread Graeme Fowler via Exim-users
On 16 Sep 2020, at 22:40, Yves Goergen via Exim-users wrote: > Can I change this? Is there a config option or something or should I give up > my search and change my PAM configuration? I'd like to share the service with > Dovecot (IMAP, POP3) to simplify the backend and prefer not to use the

[exim] [ADMIN] Couple of points

2020-06-04 Thread Graeme Fowler via Exim-users
Hi all Hope you're all well. 1. Please ensure that you post messages to the list from your subscribed address. Recently there's been a number of occasions where messages have been held for moderation un-necessarily because the sender address is not the list member's subscribed address - if

Re: [exim] Getting Exim 4.94

2020-06-01 Thread Graeme Fowler via Exim-users
On 1 Jun 2020, at 21:46, Mike Brown via Exim-users wrote: > Anyone know where I can find a F27 RPM for exim? That would be https://apps.fedoraproject.org/packages/exim Graeme -- ## List details at https://lists.exim.org/mailman/listinfo/exim-users ## Exim details at http://www.exim.org/ ##

Re: [exim] Replace From with To for forwarded mails and also encapsulate email.

2020-04-20 Thread Graeme Fowler via Exim-users
On 20 Apr 2020, at 16:27, Sebastian Nielsen via Exim-users wrote: > > Just like how my emails appear in this list server, as a attached email. > I want to basically do whatever EXACTLY as this list are doing. Jeremy's point stands: it's not Exim doing the munging on list emails here, it's

Re: [exim] Problem with iPhone and Exim

2020-02-25 Thread Graeme Fowler via Exim-users
A quick search (using a popular search engine) for: exim debian stretch "error in the pull function" ...returned a significant number of results, not least of which was: https://lists.exim.org/lurker/message/20180207.150204.600285a6.en.html The fix was to recompile with OpenSSL as the

Re: [exim] Exim4 Spamassassin Timeout

2020-02-18 Thread Graeme Fowler via Exim-users
Hi On 18 Feb 2020, at 15:37, Luciano InfoCultura via Exim-users wrote: > I have an Exim facility with spamassassin enabled.The problem occurs when > receiving e-mail from the server does not disconnect from the client at the > appropriate time. Question: why is it taking SpamAssassin 130

Re: [exim] Smarthost + queue worker keep alive the connection

2020-01-26 Thread Graeme Fowler via Exim-users
On 25 Jan 2020, at 17:46, Jeremy Harris via Exim-users wrote: > Of interest in that debug output - there's a consistent 6 or 7ms pause > just after "Renaming spool header file". This is where exim has just > written a spool file under a temporary name; it renames it to the final > name and then

Re: [exim] Evaluation logic in 'warn' statements?

2020-01-22 Thread Graeme Fowler via Exim-users
On 22 Jan 2020, at 15:02, Sander Smeenk via Exim-users wrote: > Is that behaviour ... expected? ;) Yes: https://www.exim.org/exim-html-current/doc/html/spec_html/ch-access_control_lists.html Sec 24: "The add_header modifier acts immediately as it is encountered during the processing of an

Re: [exim] Smarthost + queue worker keep alive the connection

2020-01-22 Thread Graeme Fowler via Exim-users
On 22 Jan 2020, at 09:51, Jeremy Harris via Exim-users wrote: > That part in also interesting to me, as I get too little feedback > from production users. I'd really like to get a debug-output sample > from that startup phase. I’ll send you a link to one separately. In short: generated a

Re: [exim] Smarthost + queue worker keep alive the connection

2020-01-20 Thread Graeme Fowler via Exim-users
On 18 Jan 2020, at 21:39, Maeldron T. via Exim-users wrote: > Now the only problem left is that I believe the worker processes connect to > the smarthost for every message one by one. > > I didn’t find anything in the documentation (current 4.x version) that > seemed to allow me to tell the

Re: [exim] very large messages

2019-12-21 Thread Graeme Fowler via Exim-users
On 20 Dec 2019, at 18:08, Jack Bailey via Exim-users wrote: > header_maxsize was not in my exim.conf. It is now. Something is definitely wrong here - if that is unset in your config, it should be 1M by default (set in Local/Makefile at build time). From the docs:

Re: [exim] Advice: NFS, hardware, SATA vs SAS etc

2019-12-06 Thread Graeme Fowler via Exim-users
Admin note follows: On 4 Dec 2019, at 19:34, venbian via Exim-users wrote: > As 2020 nears I wanted to ask opinions about the current state of hardware > requirements for a small business email platform. $dayjob asked me to enhance > our existing platform to improve performance and add

Re: [exim] protecting privileged users from SMTP-AUTH attacks

2019-12-02 Thread Graeme Fowler via Exim-users
On 2 Dec 2019, at 13:40, Cyborg via Exim-users wrote: > So, the answere is "no, there is no way to intercept here." Is ok, take > it as a FeatureRequest ;) Jeremy’s answer was quite clear: use a DB backend such as a ratelimit DB. I’ve been doing that for years - more than N failed auths in X

Re: [exim] sending e-mail through a directnic server

2019-11-27 Thread Graeme Fowler via Exim-users
On 27 Nov 2019, at 20:44, Gary Dale via Exim-users wrote: > The test message sent by swaks (in the testing section of the howto) again > simply sits in the mailq. I know this should be a *really* obvious question, but… What do the logs say for each attempt to deliver the message? Are there any

Re: [exim] ACL error "for linear search: No such file or directory"

2019-11-19 Thread Graeme Fowler via Exim-users
On 19 Nov 2019, at 11:35, Emanuel Gonzalez via Exim-users wrote: > [@~] # /opt/exim/bin/exim -be 'condition = ${if > exists{${lookup{$sender_address}lsearch*@{${perl{getmaildir2}{$local_part@$domain}}/.spamassas > sin/whitelist{no}{yes}}' > Failed: failed to open

Re: [exim] Bounce messages are missing headers and message body for non local users

2019-10-22 Thread Graeme Fowler via Exim-users
On 21 Oct 2019, at 10:55, Ben Sanders via Exim-users wrote: > 2019-10-18 17:26:11 1iLV4t-0001kM-7V <= <> R=1iLV4D-0001jX-T2 U=exim P=local > S=2113 > 2019-10-18 17:36:49 1iLVFB-0001vY-Du <= <> R=1iLVEX-0001ur-1U U=exim P=local > S=2104 The bounces are ostensibly the same size, +/- a few

Re: [exim] named hostlists limit

2019-10-16 Thread Graeme Fowler via Exim-users
On 16 Oct 2019, at 11:36, Odhiambo Washington via Exim-users wrote: > I am getting this error and wondered why the limit is imposed. > I have 21 hostlist definitions. From https://www.exim.org/exim-html-current/doc/html/spec_html/ch-domain_host_address_and_local_part_lists.html "By default,

Re: [exim] String Search - What am I doing wrong?

2019-10-10 Thread Graeme Fowler via Exim-users
On 10 Oct 2019, at 03:40, Rob Gunther via Exim-users wrote: > I am trying to conduct a search (condition) in an ACL. > > condition = ${if match {$spam_report:}{VIRUS}} > But I actually need to search for the string VIRUS( You need the \N…\N construct, and (possibly, probably) a character

Re: [exim] Edge case - space separated list objects

2019-10-01 Thread Graeme Fowler via Exim-users
On 30 Sep 2019, at 17:21, Jeremy Harris via Exim-users wrote: > No; whitespace is special around list elements (Ch 6, section 20) so > there would be Issues in handling space as a separator. Yes, I expected as much; I was pitching for something I may have missed but I hadn't. So... > If

[exim] Edge case - space separated list objects

2019-09-30 Thread Graeme Fowler via Exim-users
Afternoon all I'm trying to do some manipulation of the From: field display name section in order to do matching against a remote data source. To do this, I want to take the name "Fred Bloggs" and turn that into "fredbloggs" and "bloggsfred". That bit is easy, using the sg operator with a

Re: [exim] SMTP error from remote mail server after pipelined MAIL

2019-09-28 Thread Graeme Fowler via Exim-users
On 28 Sep 2019, at 07:48, necktwi via Exim-users wrote: > you made me to compramise my identity? does strace.log and exim.log even > contain my private key? No, he’s not “made” you do anything, he suggested some diagnostics be provided for the issue you’ve reported. Luckily for you the

Re: [exim] SMTP error from remote mail server after pipelined MAIL

2019-09-26 Thread Graeme Fowler via Exim-users
On 26 Sep 2019, at 15:57, necktwi via Exim-users wrote: > but i don't think i've seen any improvement. Below is the log after the > change That's a small snippet which is not showing the submission of messages. I suggested lines to look for in my previous message to the list. Graeme -- ##

Re: [exim] SMTP error from remote mail server after pipelined MAIL

2019-09-25 Thread Graeme Fowler via Exim-users
On 25 Sep 2019, at 15:43, necktwi via Exim-users wrote: > How to run recovery? I tried rm -rf /var/spool/exim/db/* and started the exim That’s one perfectly valid way, although there are others specific to the Berkeley DB tools you have installed (or can install). However: > These messages

[exim] [admin] Re: OT/2: TLS on gnu.org, better named: the insecured gnu.org mailserver

2019-09-18 Thread Graeme Fowler via Exim-users
On 18 Sep 2019, at 14:47, Cyborg via Exim-users wrote: > this message is not about exim problems, it's about problems involving > exim. In light of that, this is not the place to be discussing it. Please refrain from posting directly OT material. If you have to tag it as OT, don’t post it.

Re: [exim] Exim usage numbers?

2019-09-07 Thread Graeme Fowler via Exim-users
On 7 Sep 2019, at 11:13, Cyborg via Exim-users wrote: > The question is, what is the reality? Nobody really knows. The fact that Exim is/was the default MTA in a couple of distros means there’s an awful lot of systems running it out there. But… nobody really knows for sure. Graeme -- ##

Re: [exim] Outgoing mail

2019-08-30 Thread Graeme Fowler via Exim-users
On 29 Aug 2019, at 12:21, MaDhAt2r via Exim-users wrote: > That is what I originally thought. But when I send from an address like > u...@example.com and that is a user of the system it goes out. But when I > send from nou...@example.com that is not a user the system, then it gets > rejected

Re: [exim] detecting overly frequent smtp from real user

2019-08-09 Thread Graeme Fowler via Exim-users
On 9 Aug 2019, at 00:31, Randy Bush via Exim-users wrote: > a legit user, U, has an account with password P. password ssh is > disabled, of course. but smtp relay is not. so the spammer S uses > U's password P to relay mail through that server. > > so i am looking to detect excessive, from

Re: [exim] CVE-2019-10149: 4.87 to 4.91 are vulnerable

2019-06-06 Thread Graeme Fowler via Exim-users
On 6 Jun 2019, at 13:25, Spencer Marshall via Exim-users wrote: > why is this only being applied to +local_domains? why not everything? > denymessage = Restricted characters in address > local_parts = ^[.] : ^.*[\$@%!/|] Primarily because you’re not in control of what

Re: [exim] SSL forcing

2019-05-21 Thread Graeme Fowler via Exim-users
On 20 May 2019, at 19:22, Phil Pennock via Exim-users wrote: > For me, the only pre-1.2 senders over the past few days are > lists.gnu.org, an anti-spam mailing-list, and the IPv6-Ops mailing-list. Looking at the logs at work, in the last 7 days we have more than 700 hosts sending messages

Re: [exim] Message rejected due to long Reference: header

2019-04-16 Thread Graeme Fowler via Exim-users
On 16 Apr 2019, at 04:27, Konstantin Boyandin (lists) via Exim-users wrote: > Is there any Exim setting capable of re-formatting long headers (i.e., split > them into several lines, each below 998 character limit) etc such headers, > but allowing the incoming mail nonetheless? I feel your

Re: [exim] Server Upgrade

2019-04-13 Thread Graeme Fowler via Exim-users
On 13 Apr 2019, at 17:15, Rainer Dorsch via Exim-users wrote: > Can anybody recommend one of the approaches or even propose something > better...? Stop exim. Disable exim from running at startup. Backup your config. Update Use diff to check the config; reinstate the original one if necessary

Re: [exim] anti-spam pointers please

2019-04-02 Thread Graeme Fowler via Exim-users
On 2 Apr 2019, at 10:18, Niels Dettenbach via Exim-users wrote: > > Typcial values in multi-user environments are around 5.0-7.0, while every 0.1 > is important. If you go under 5.0 you (very) propably will loose some ham. On > a machine with around 200.000 SMTP sessions per day i tweaked the

Re: [exim] local_scan_path change ?

2019-03-29 Thread Graeme Fowler via Exim-users
Morning all On 29 Mar 2019, at 09:54, Niels Dettenbach via Exim-users wrote: > > It seems local_scan.c ist not longer called / used in sa-exim setups since > =exim 4.92 builds - tried that yesterday (own EXIM build on NetBSD). Until > now i didn't find any time to investigate the changes in

Re: [exim] Strange coredump

2019-03-26 Thread Graeme Fowler via Exim-users
On 26 Mar 2019, at 08:18, Odhiambo Washington via Exim-users wrote: > > I have found the following coredump, whose cause I would like to know... It would help everyone if you could look at/provide the creation date of that file and correlate against main & panic logs. Graeme -- ## List

Re: [exim] exim Daemon not flush queue

2019-03-13 Thread Graeme Fowler via Exim-users
On 12 Mar 2019, at 17:32, Emanuel Gonzalez via Exim-users wrote: > Here one more example: https://pastebin.com/krpttp7D That one worked. > When you refer to the end of the connection, do you mean the server that > receives the message? Yes. Graeme -- ## List details at

Re: [exim] bypassing exim string expansion with invalid addresses

2019-03-13 Thread Graeme Fowler via Exim-users
On 13 Mar 2019, at 09:55, Cyborg via Exim-users wrote: > I forgot to add the "attack" pattern: > > From: "ONLINE PHARMACY" Valid per RFC5322. > R="CANADA-DRUGSTORE" gucl...@yopmail.com>" Invalid per RFC5322. If it’s invalid, addresses cannot be extracted. We can only code against the

Re: [exim] exim Daemon not flush queue

2019-03-12 Thread Graeme Fowler via Exim-users
On 12 Mar 2019, at 15:59, Emanuel Gonzalez via Exim-users wrote: > HERE > > https://pastebin.com/eZWdVmVL 13276 H=172.17.80.0 [172.17.80.0]: SMTP timeout after sending data block (155591 bytes written): Connection timed out Problem is at the far end of the connection. You've sent 150KB of

Re: [exim] EXIM Timeout on tcp required ports

2019-03-05 Thread Graeme Fowler via Exim-users
On 4 Mar 2019, at 18:49, Ryan McClung via Exim-users wrote: > daemon_smtp_ports = 25 : 465 : 587 > tls_on_connect_ports = 465 : 587 Port 587 is the submission port; it uses SMTP and STARTTLS rather than tls-on-connect. tls_on_connect_ports should *only* be 465. For testing, use this:

Re: [exim] Exim-users Digest, Vol 177, Issue 19

2019-02-26 Thread Graeme Fowler via Exim-users
On 26 Feb 2019, at 12:51, Neil Youngman via Exim-users wrote: > > I hope that is sufficient to answer whether that is expected behaviour. I > couldn't see anything in the manual that suggested to me that the second test > should have a different result to the first.

Re: [exim] nwildlsearch failure

2019-02-25 Thread Graeme Fowler via Exim-users
On 25 Feb 2019, at 18:43, Neil Youngman via Exim-users wrote: > Is this expected behaviour from nwildlsearch? You need to provide both the ACL statement(s) and the data you’re passing to be able to decide what’s going on here. It’s not clear from the output what’s being asked to be checked.

[exim] [admin] Re: The Google Lie

2019-02-13 Thread Graeme Fowler via Exim-users
On 13 Feb 2019, at 14:36, Kai Bojens via Exim-users wrote: > I disagree. Admin note (and yes, I know I commented yesterday): if this can be kept Exim-related, we’d appreciate it. General email operations have other lists elsewhere. Thanks Graeme -- ## List details at

Re: [exim] exim spfquery config

2019-02-12 Thread Graeme Fowler via Exim-users
On 12 Feb 2019, at 21:56, Sebastian Nielsen via Exim-users wrote: > I disagree with this. So many organizations that have had softfail for > several tens of years for no apparent reason. Gmail is no exception. There’s no way in the SPF definition to indicate “apparent reason”. You either have

Re: [exim] Debian-Bug not stopping exim

2019-02-06 Thread Graeme Fowler via Exim-users
On 6 Feb 2019, at 22:03, Klaus Ethgen via Exim-users wrote: > So there was a bug introduced in the last few weeks in start-stop-daemon > that I have to find a way around. The current situation is not > acceptable. At this point I’m going to be the person who says “this is not an Exim problem”.

Re: [exim] How to block using exim re:[doc...@nk.ca: Your account has been hacked! You need to unlock.]

2019-02-04 Thread Graeme Fowler via Exim-users
As Dennis said: On 2 Feb 2019, at 18:10, Dennis Davis via Exim-users wrote: > Haven't used ClamAV for a few years, so can't help with the "how to", > but the links: > > https://sanesecurity.org/ > > https://sanesecurity.org/usage/signatures/ > > work for me and the second link lists the

Re: [exim] NFSv4: failed to set ownership on spool file

2019-01-29 Thread Graeme Fowler via Exim-users
On 29 Jan 2019, at 09:30, Heiko Schlittermann via Exim-users wrote: > - How did you solve it? Have you got ‘superuser’ mapping switched on so root maps to UID 0 on the NFS server? This is referred to as no_root_squash in the client mount options; I suspect you need to permit the NFS client

Re: [exim] How to block using exim re:[doc...@nk.ca: Your account has been hacked! You need to unlock.]

2019-01-28 Thread Graeme Fowler via Exim-users
On 28 Jan 2019, at 10:41, Odhiambo Washington wrote: > Are you using spamassassin+rspamd together in the same server? How? Or you > run your mails through several servers? At the top of the config (global setting): spamd_address = $acl_m_spamengine And in the appropriate ACL (pruned

Re: [exim] How to block using exim re:[doc...@nk.ca: Your account has been hacked! You need to unlock.]

2019-01-27 Thread Graeme Fowler via Exim-users
On 27 Jan 2019, at 17:30, Cyborg via Exim-users wrote: > I guess, you are not using spamhaus or a similar dns ip blocking service, > as the sheer amount of "got hacked" fraud messages is insane itselft. You guess incorrectly. Part of my day job is running the email infrastructure for a fairly

Re: [exim] How to block using exim re:[doc...@nk.ca: Your account has been hacked! You need to unlock.]

2019-01-27 Thread Graeme Fowler via Exim-users
On 27 Jan 2019, at 12:33, The Doctor via Exim-users wrote: > am certain many of you have seen this, but how do you block / bounce said > below e-mail via exim using spamassassin / clamd ? Install at least the ‘phish’ database from SaneSecurity into ClamAV and let it do the heavy lifting with

Re: [exim] Disclaimer and DKIM

2018-11-07 Thread Graeme Fowler via Exim-users
On 7 Nov 2018, at 19:12, Jasen Betts via Exim-users wrote: > DKIM signing is done after the transport filter. (and headers_add etc) > this is not the problem. I concur; I just tested this with a simple transport filter and sent a message to a Google Mail account, in which the DKIM headers pass

Re: [exim] exim4 only queues mails sent by systemd service

2018-10-17 Thread Graeme Fowler via Exim-users
On 17 Oct 2018, at 12:38, Kamil Jońca via Exim-users wrote: > Well. I was alway teach to deliver "simplest" not working example. So I > did. And this example can be seen as unimportant. > > The real use case are "oneshot" services started by timers[1]. So far > people still use cron. But when

Re: [exim] exim4 only queues mails sent by systemd service

2018-10-17 Thread Graeme Fowler via Exim-users
On 16 Oct 2018, at 18:03, Ian Zimmerman via Exim-users wrote: > I think this is a misunderstanding both on the part of Lennart and on > the part of Graeme. I’m not so sure that it is; I was addressing the very specific example given. > The example systemd unit shown by the OP was just _a

Re: [exim] exim4 only queues mails sent by systemd service

2018-10-16 Thread Graeme Fowler via Exim-users
On 16 Oct 2018, at 14:56, Kamil Jońca via Exim-users wrote: > I do not know if it is clear: this is not my words, neither I agreed > with them (please note, that I opened this issue on github.) ...and you have a workaround in systemd via the KillMode switch, or the various timeout options. Or

Re: [exim] exim4 only queues mails sent by systemd service

2018-10-07 Thread Graeme Fowler via Exim-users
Howdy Firstly - please subscribe to the list (or post from your subscribed address) so we don’t have to keep allowing your emails out of the mod queue. On 5 Oct 2018, at 19:11, Kamil Jońca via Exim-users wrote: > After discussion on systemd list we have conclusions: >

Re: [exim] Expand message_body, how to?

2018-10-05 Thread Graeme Fowler via Exim-users
On 5 Oct 2018, at 13:39, pencho kuncho via Exim-users wrote: > I'm try to filter some text in the body of message with system filter. There > is a default limit of 500 characters. How to expand it? This is detailed in the filter docs (vaguely) and in the Main Configuration section of the

[exim] Administrivia: delayed emails

2018-10-05 Thread Graeme Fowler via Exim-users
Afternoon all Just to let you know we’ve recently had a bit of a block in list moderation - it’s been the start of University terms here in the UK and Nigel’s been away at the same time. As a result, some messages have been held in the mod queue for much longer than usual. Some were from new

Re: [exim] error code on redirect router for exceeding max msg size

2018-10-05 Thread Graeme Fowler via Exim-users
On 4 Oct 2018, at 22:50, Nicola Tiling via Exim-users wrote: > Yes. It’s the only item that proofs the message size and I’ve testet with a > restriction of 1KB thats rejected the mail correct. And I proof it with exim > in non daemon debugging mode. > > I’ve seen my error code in my own exim

Re: [exim] DKIM signing options - specially list of headers

2018-07-31 Thread Graeme Fowler via Exim-users
On 31 Jul 2018, at 11:51, Jeremy Harris via Exim-users wrote: > Starting with "DKIM breaks mailing-lists". Indeed. However, I'm puzzled: a post to a mailing list shouldn't have the List-*: headers until it's traversed the MLM server, as they're added by the MLM. At that point it's the MLM's

Re: [exim] drop emails by subject - should be simple

2018-07-30 Thread Graeme Fowler via Exim-users
On 30 Jul 2018, at 12:54, Gary Stainburn via Exim-users wrote: > This is in acl_check_data along with my other anti-SPAM/Virus code In that case, it's time to run in debug mode and see *why* it isn't matching. If you can do it for real, start exim with '-d' and watch the log while it listens

Re: [exim] callout to Exchange2013

2018-06-21 Thread Graeme Fowler via Exim-users
On 21 Jun 2018, at 15:42, Fraenzl, Martin via Exim-users wrote: > Could you provide me with an config example? At this point, Google is your friend (other search engines are available, limited time offer, terms and conditions apply etc etc) - look for "exchange 2013 recipient verification":

Re: [exim] disable tls_verify_cert_hostnames?

2018-05-31 Thread Graeme Fowler via Exim-users
On 31 May 2018, at 18:01, Emanuel Gonzalez via Exim-users wrote: > any ideas? You appear to have obfuscated the original error (the MX for blabla.com doesn’t offer STARTTLS, for example), and you’ve not given details of the server you’re connecting to or your configuration, so I’d guess that

Re: [exim] Sophie - was Re: exim with rspamd connection with clamav

2018-05-10 Thread Graeme Fowler via Exim-users
On 10 May 2018, at 14:03, Andrew C Aitchison via Exim-users wrote: > Is it reasonable to keep Sophie as the malware program > in the default exim config, when it appears to be inactive ? I was pondering the same thing, but in https://bugs.exim.org/show_bug.cgi?id=1594 it

Re: [exim] exim with rspamd connection with clamav

2018-05-10 Thread Graeme Fowler via Exim-users
On 9 May 2018, at 19:51, Emanuel Gonzalez via Exim-users wrote: > Thanks for the reply, in the exim configure i not add the parameter "scanner > = sophie". Correct; the default value (when av_scaner is unset) is: av_scanner = sophie:/var/run/sophie > i only add

Re: [exim] GROK/regex-Patterns for mainlog

2018-04-16 Thread Graeme Fowler via Exim-users
On 13 Apr 2018, at 19:52, Christian K via Exim-users wrote: > I was wondering if somebody has any experience with extracting Patterns > from the mainlog for example for graylog or elastic. Logstash has a set of basic patterns created by yours truly:

Re: [exim] NDN, Mailer-Daemon, DSN - EXIM

2018-04-11 Thread Graeme Fowler via Exim-users
On 10 Apr 2018, at 16:51, Nazarevych Ol via Exim-users wrote: > Why "Internal server" use primary_hostname instead qualify_domain ? You most likely need to look at your configuration to find that. You don’t say on what operating system you’re running, nor whether you’ve

Re: [exim] How to rewrite From: header of offsite forwards only to prevent Amazon SES 554 error

2018-03-23 Thread Graeme Fowler via Exim-users
On 22 Mar 2018, at 22:06, Pete Schaefers via Exim-users wrote: > send_via_ses: > driver = manualroute > domains = ! +local_domains > transport = ses_smtp > route_list = * email-smtp.us-west-2.amazonaws.com; > > It sends all non-local mail to SES. I need to have it not send

Re: [exim] Try to write an acl /acl_smtp_data to read header content spam

2018-03-23 Thread Graeme Fowler via Exim-users
On 23 Mar 2018, at 07:15, Mueller via Exim-users wrote: > > warn condition = ${if match{h_x-spam-status:}{"UNPARSEABLE_RELAY"}} That should be (untested): warn condition = ${if match{$h_x-spam-status:}{\NUNPARSEABLE_RELAY\N}} You need a leading $ on the header name, and

Re: [exim] Exim 4.90.1: when sending mail, tries using A record instead of MX

2018-03-20 Thread Graeme Fowler via Exim-users
On 20 Mar 2018, at 12:03, Konstantin Boyandin via Exim-users wrote: > However, the cases I mention do not print anything like above to > main.log (and MX records are normally resolved at that moment, both > manually and via output of 'exim -bt u...@example.com'). Just a

Re: [exim] Exim 4.90.1: when sending mail, tries using A record instead of MX

2018-03-19 Thread Graeme Fowler via Exim-users
On 19 Mar 2018, at 14:39, Konstantin Boyandin via Exim-users wrote: > I would appreciate pieces of advice on how to handle this. Thank you. It would appear that you can reproduce the problem, so running in debug mode would be an immense help, then posting the output. In

Re: [exim] NULL characters in SMTP command - random errors

2018-03-15 Thread Graeme Fowler via Exim-users
On 15 Mar 2018, at 15:54, Jeremy Harris via Exim-users wrote: > Fix currently being live-tested; tell me if you want a copy of the > patchset. It's not pushed to public git yet. > > Workaround: disable pipelining. Have said as much in answer to the Stack Exchange

Re: [exim] Exim version

2018-03-05 Thread Graeme Fowler via Exim-users
On 26 Feb 2018, at 15:56, Martín via Exim-users wrote: > Hi, I have centos 5 and the exim version is 4.87_1. > Centos 5 supports an updated version of EXIM? CentOS 5 went EOL (end of life) on March 31st 2017. There have been no updates to packages since then, excepting a

Re: [exim] exim dovecot sieve integration

2018-02-21 Thread Graeme Fowler via Exim-users
On 21 Feb 2018, at 13:18, himbeere--- via Exim-users wrote: > It seems dovecot-lda runs as the user the mail gets delivered to. I can > dovecot-lda configure like that: > > protocol lda { > # Space separated list of plugins to load (default is global mail_plugins). >

Re: [exim] Wheres is this site?

2018-01-25 Thread Graeme Fowler via Exim-users
On 25 Jan 2018, at 09:49, Reinier Carmona Lizana via Exim-users wrote: > Where is the info that was on the site http://www.exim-new-users.co.uk? The domain has expired and is therefore no longer available. It was not related to the 'official' exim site directly. Graeme --

Re: [exim] question of string expansion and condition=

2017-12-08 Thread Graeme Fowler via Exim-users
On 8 Dec 2017, at 15:15, Robert Bannocks wrote: > FILENAME=/abc/def > Condition = ${lookup{$primary_hostname}lsearch{FILENAME}} First observation is that your second entry in FILENAME has two colon separators, not a dot in the hostname - that'll fail! Anyhow, you may

Re: [exim] Sender verify for inbound emails when using smart relay for sending

2017-12-06 Thread Graeme Fowler via Exim-users
On 6 Dec 2017, at 11:56, Sebastian Arcus via Exim-users wrote: >domains = +local_domains Are you sure? I would have thought you were verifying non-local domains at this point… Try ‘domains = !+local_domains’ (or '!domains = +local_domains') Graeme -- ## List details

  1   2   >