Certificate permission check and symlinks

2016-02-15 Thread Hugo Osvaldo Barrera
the target files have permissions of 0700. Is it possible that smtpd isn't following symlinks when doing this check? It would seem it's not. Pointing to the target files served as a workaround, for now. Thanks, -- Hugo Osvaldo Barrera -- You received this mail because you are subscrib

Re: Shared authentication across OpenSMTPD and Dovecot

2015-06-19 Thread Hugo Osvaldo Barrera
responses, I *am* using lmtp, which means dovecot's filtering (eg: sieve) works. There's some minor issues with that setup and wildcard addresses, but it works find for normal setups. -- Hugo Osvaldo Barrera A: Because we read from top to bottom, left to right. Q: Why should I start my reply

Re: request for comments: enhance deliver to LMTP

2015-06-11 Thread Hugo Osvaldo Barrera
before delivery or relaying. -- Hugo Osvaldo Barrera A: Because we read from top to bottom, left to right. Q: Why should I start my reply below the quoted text? signature.asc Description: PGP signature

Re: THE SAD STATE OF SMTP ENCRYPTION - is OpenSMTPD also vulnerable?

2015-05-12 Thread Hugo Osvaldo Barrera
@opensmtpd.org To unsubscribe, send a mail to: misc+unsubscr...@opensmtpd.org -- Hugo Osvaldo Barrera A: Because we read from top to bottom, left to right. Q: Why should I start my reply below the quoted text? signature.asc Description: PGP signature

Latest portable snapshot not sending emails.

2015-05-12 Thread Hugo Osvaldo Barrera
apologize in that I'm really with very little time right now and could now debug this further. And yes, the TLS certificate for the server is okay (it's a public one, so you can actually check this ;) ). Cheers! -- Hugo Osvaldo Barrera A: Because we read from top to bottom, left to right. Q: Why

Re: userbase table and catchall

2015-04-16 Thread Hugo Osvaldo Barrera
. With some variations I created a second rule and placed it after the one above: [...] Cheers, -- Hugo Osvaldo Barrera A: Because we read from top to bottom, left to right. Q: Why should I start my reply below the quoted text? signature.asc Description: PGP signature

Re: SSL: fatal access denied with opensmtpd on freebsd

2015-02-16 Thread Hugo Osvaldo Barrera
mail.asteq.com.ar Thanks. On 2015-02-16 09:52, Seth wrote: Try switching out OpenSSL with LibreSSL and see if you can reproduce the I'll give that a try in a bit. Thanks, -- Hugo Osvaldo Barrera A: Because we read from top to bottom, left to right. Q: Why should I start my reply below

Re: SSL: fatal access denied with opensmtpd on freebsd

2015-02-16 Thread Hugo Osvaldo Barrera
On 2015-02-16 09:52, Seth wrote: On Sun, 15 Feb 2015 23:37:55 -0800, Hugo Osvaldo Barrera h...@barrera.io wrote: Any hints? My guess is that SSL is failing somewhere, but I don't know how to continue to track this down. Someone on the FreeBSD list suggested making sure that the CAs were

Re: SSL: fatal access denied with opensmtpd on freebsd

2015-02-16 Thread Hugo Osvaldo Barrera
On 2015-02-16 14:09, Seth wrote: On Mon, 16 Feb 2015 13:11:27 -0800, Hugo Osvaldo Barrera h...@barrera.io wrote: libressl.c:72:1: error: conflicting types for 'SSL_CTX_use_certificate_chain' SSL_CTX_use_certificate_chain(SSL_CTX *ctx, char *buf, off_t len) ^ /usr/local/include/openssl/ssl.h

Re: SSL: fatal access denied with opensmtpd on freebsd

2015-02-16 Thread Hugo Osvaldo Barrera
On 2015-02-16 14:09, Seth wrote: On Mon, 16 Feb 2015 13:11:27 -0800, Hugo Osvaldo Barrera h...@barrera.io wrote: libressl.c:72:1: error: conflicting types for 'SSL_CTX_use_certificate_chain' SSL_CTX_use_certificate_chain(SSL_CTX *ctx, char *buf, off_t len) ^ /usr/local/include/openssl/ssl.h

Re: SSL: fatal access denied with opensmtpd on freebsd

2015-02-16 Thread Hugo Osvaldo Barrera
On 2015-02-16 15:41, Seth wrote: On Mon, 16 Feb 2015 14:42:12 -0800, Hugo Osvaldo Barrera h...@barrera.io wrote: Oh, this works with mail/opensmtpd, but *not* mail/opensmtpd-devel. Funny. Build worked, but the same initial issue still happens: Feb 16 22:40:00 hydrogen smtpd[43826]: smtp

Re: SSL: fatal access denied with opensmtpd on freebsd

2015-02-16 Thread Hugo Osvaldo Barrera
On 2015-02-16 15:32, Seth wrote: On Mon, 16 Feb 2015 14:32:29 -0800, Hugo Osvaldo Barrera h...@barrera.io wrote: I hadn't been using portmaster (rather cd /usr/ports/mail/opensmtpd-devel make), but I got the same error using it too: Sorry, I should have clarified that it works on FreeBSD

Re: Article/howto: Opensmtpd and dovecot with a shared SQL database

2015-02-15 Thread Hugo Osvaldo Barrera
On 2015-02-15 19:45, Hugo Osvaldo Barrera wrote: I've written a brief article on how I configured opensmtpd with dovecot, using virtual user from a shared SQL DB. I have to handle multiple user in multiple domains and a few catch-all domains, so it's a non-trivial example. Hopefully

Re: Virtual users with valid email addresses for usernames?

2015-02-13 Thread Hugo Osvaldo Barrera
those yet, but they're quite trivial. -- Hugo Osvaldo Barrera A: Because we read from top to bottom, left to right. Q: Why should I start my reply below the quoted text? pgpgnHJWay6xm.pgp Description: PGP signature

Re: Lavabit like encryption with OpenSMTPD

2015-02-08 Thread Hugo Osvaldo Barrera
. -- Gilles Chehade https://www.poolp.org @poolpOrg -- You received this mail because you are subscribed to misc@opensmtpd.org To unsubscribe, send a mail to: misc+unsubscr...@opensmtpd.org -- Hugo Osvaldo Barrera A: Because we read from top

Passing full emails to lmtp

2015-02-07 Thread Hugo Osvaldo Barrera
to the lmtp service is the whole email of the recipient? Thanks, -- Hugo Osvaldo Barrera A: Because we read from top to bottom, left to right. Q: Why should I start my reply below the quoted text? pgpirvrPo3kCL.pgp Description: PGP signature

Re: Catch-all with no system user

2015-02-04 Thread Hugo Osvaldo Barrera
On 2015-02-04 10:22, Gilles Chehade wrote: On Wed, Feb 04, 2015 at 06:19:05AM -0300, Hugo Osvaldo Barrera wrote: On 2015-02-04 09:31, Gilles Chehade wrote: On Wed, Feb 04, 2015 at 03:51:23AM -0300, Hugo Osvaldo Barrera wrote: I'm trying to clean up my setup and not have it refer

Re: Catch-all with no system user

2015-02-04 Thread Hugo Osvaldo Barrera
On 2015-02-04 09:31, Gilles Chehade wrote: On Wed, Feb 04, 2015 at 03:51:23AM -0300, Hugo Osvaldo Barrera wrote: I'm trying to clean up my setup and not have it refer to a system user at all. I also want to get rid of aliases and simply use a catch all. I currently have

Re: Catch-all with no system user

2015-02-04 Thread Hugo Osvaldo Barrera
On 2015-02-04 11:54, Gilles Chehade wrote: On Wed, Feb 04, 2015 at 06:56:09AM -0300, Hugo Osvaldo Barrera wrote: I do get some issues regarding dovecot and it's lda now, though I won't go into details since it's off topic. I am wondering though: as what user

Specifying a RCPT TO with lmtp

2015-02-04 Thread Hugo Osvaldo Barrera
tried: table catchall { @ = h...@barrera.io } But this resulted in more errors, and I suspect it was not the correct approach. Thanks, -- Hugo Osvaldo Barrera A: Because we read from top to bottom, left to right. Q: Why should I start my reply below the quoted text? pgpdfOQDOJxmZ.pgp

Catch-all with no system user

2015-02-03 Thread Hugo Osvaldo Barrera
...@barrera.io, smtpd returns 451. I got this with `smtpd -dv`: debug: aliases_virtual_get: 'h...@barrera.io' resolved to 1 nodes smtp-in: Failed command on session 58068d7cbc47df70: RCPT TO:h...@barrera.io = 451 Temporary failure What am I doing wrong? Any hints? Thanks! -- Hugo Osvaldo Barrera

Re: [OpenSMTPD] portable snapshot opensmtpd-201501060207p1 available

2015-01-06 Thread Hugo Osvaldo Barrera
-- Hugo Osvaldo Barrera A: Because we read from top to bottom, left to right. Q: Why should I start my reply below the quoted text? pgpF7DFVyzYGj.pgp Description: PGP signature

libasr: LICENSE, LICENCE

2014-12-27 Thread Hugo Osvaldo Barrera
The snapshot tarball contains LICENSE. The 1.0.0 release contains LICENCE. It looks like only the release is misspelt, and that former snapshots were right as well. Cheers, -- Hugo Osvaldo Barrera A: Because we read from top to bottom, left to right. Q: Why should I start my reply below

Re: Incomplete error messages from bounced emails?

2014-09-29 Thread Hugo Osvaldo Barrera
On 2014-09-05 19:22, Giovanni Bechis wrote: On 09/01/14 18:53, Hugo Osvaldo Barrera wrote: On 2014-09-01 11:46, Gilles Chehade wrote: On Sat, Aug 23, 2014 at 12:28:00PM -0300, Hugo Osvaldo Barrera wrote: On 2014-08-22 18:32, Giovanni Bechis wrote: On 08/22/14 14:30, Hugo Osvaldo Barrera

Postgres?

2014-09-05 Thread Hugo Osvaldo Barrera
building? Am I using the wrong syntax? I'm using OpenBSD-current (updated like 2 weeks ago?). Thanks, -- Hugo Osvaldo Barrera A: Because we read from top to bottom, left to right. Q: Why should I start my reply below the quoted text? pgpjp9KKBuMOY.pgp Description: PGP signature

Re: Postgres?

2014-09-05 Thread Hugo Osvaldo Barrera
On 2014-09-05 19:19, Giovanni Bechis wrote: On 09/05/14 15:19, Hugo Osvaldo Barrera wrote: Hi, For a while now I've been wanting to try the postgres support properly. I've finally sat down to do it, but haven't had much luck: # grep postgres smtpd.conf table postgres postgres

Re: Incomplete error messages from bounced emails?

2014-08-23 Thread Hugo Osvaldo Barrera
On 2014-08-22 18:32, Giovanni Bechis wrote: On 08/22/14 14:30, Hugo Osvaldo Barrera wrote: I recently had some messages bounce from gmail.com. I went up to their forums to ask what's up, and on the replies, it was pointed out to my that gsmtpd actually sends a rather verbose explanation

Incomplete error messages from bounced emails?

2014-08-22 Thread Hugo Osvaldo Barrera
by smtpd, if they're non-standard, or what's going on? Cheers, thanks, -- Hugo Osvaldo Barrera A: Because we read from top to bottom, left to right. Q: Why should I start my reply below the quoted text? pgpF9A0zhdlJF.pgp Description: PGP signature

Re: libasr on linux

2014-07-15 Thread Hugo Osvaldo Barrera
On 2014-07-15 09:55, Gilles Chehade wrote: On Mon, Jul 14, 2014 at 01:30:55AM -0300, Hugo Osvaldo Barrera wrote: I'm now using the latest smtpd from git with libasr on ArchLinux, and it works find (I maintain unstable packages for both). I'm not using this on my server though, just my

libasr on linux

2014-07-13 Thread Hugo Osvaldo Barrera
on this very bleeding edge distro. Cheers -- Hugo Osvaldo Barrera A: Because we read from top to bottom, left to right. Q: Why should I start my reply below the quoted text? pgp_xFsSzJhkb.pgp Description: PGP signature

Re: What's wrong with this config?

2014-06-22 Thread Hugo Osvaldo Barrera
On 2014-06-22 14:19, Gilles Chehade wrote: On Sat, Jun 21, 2014 at 11:58:32PM -0300, Hugo Osvaldo Barrera wrote: Hi, I'm getting a syntax error on this line: accept from any for domain barrera.io relay backup mx2.barrera.io verify But, according to the man page, it looks fine

Re: What's wrong with this config?

2014-06-21 Thread Hugo Osvaldo Barrera
On 2014-06-21 22:18, Edgar Pettijohn wrote: On 06/21/2014 09:58 PM, Hugo Osvaldo Barrera wrote: Hi, I'm getting a syntax error on this line: accept from any for domain barrera.io relay backup mx2.barrera.io verify But, according to the man page, it looks fine. What am I doing

Re: attention, attention, changes !

2014-06-21 Thread Hugo Osvaldo Barrera
. Slightly more work but for a good cause :-) -- Gilles Chehade That's pretty neat, thank! Dunno if you care (or not) about this sort of feedback, but it's building fine on ArchLinux. -- Hugo Osvaldo Barrera A: No, it doesn't make sense. Q: Should I include quotations *after* my reply

All messages on localhost bein rejected!

2014-05-13 Thread Hugo Osvaldo Barrera
on all # listen on lo table secrets db:/etc/mail/secrets.db accept for any relay via tls+auth://elys...@smtp.barrera.io:587 auth secrets verify # Ideas? -- Hugo Osvaldo Barrera A: No, it doesn't make sense. Q: Should I include quotations *after* my reply? pgpIJdqbo2RgD.pgp Description: PGP

Re: What's the idea behind not enough disk space temporarily rejecting messages

2014-05-12 Thread Hugo Osvaldo Barrera
command (that's what cron uses, right?), can have a *slightly* lower limit, so as not to reject it's messages as quickly. I'll never notice I'm under 5% if I don't get cron's daily output. -- Hugo Osvaldo Barrera A: No, it doesn't make sense. Q: Should I include quotations *after* my reply

Re: Should we use DKIM and SPF?

2014-04-30 Thread Hugo Osvaldo Barrera
to: misc+unsubscr...@opensmtpd.org -- Hugo Osvaldo Barrera A: No, it doesn't make sense. Q: Should I include quotations *after* my reply? pgpoQ4TFin_o4.pgp Description: PGP signature

OpenSMTPD dies after a while!

2014-04-10 Thread Hugo Osvaldo Barrera
: pipe closed warn: control - pony: pipe closed warn: scheduler - queue: pipe closed -- Hugo Osvaldo Barrera pgp4tM4NxbO06.pgp Description: PGP signature

OpenSMTPD dies and won't relay!

2014-04-10 Thread Hugo Osvaldo Barrera
be reproduced 100% of the time. But it does exit, eventually though, so that issue still exists. -- Hugo Osvaldo Barrera pgpA8s_FFXTx7.pgp Description: PGP signature

Re: OpenSMTPD dies after a while!

2014-04-10 Thread Hugo Osvaldo Barrera
On 2014-04-10 09:12, Hugo Osvaldo Barrera wrote: I updated OpenBSD to 5.5-current (using snapshots) yesterday, and THEN installed opensmtpd-latest. snip Oops, this mail failed to deliver and I though I had removed it from the queue when I sent it from another host. Please ignore it and read

Re: OpenSMTPD dies after a while!

2014-04-10 Thread Hugo Osvaldo Barrera
compeltely impossible for me to have built with sources older that than (aside from -lastest, or course). -- Hugo Osvaldo Barrera pgp5qJRsTRxQG.pgp Description: PGP signature

Re: OpenSMTPD dies after a while!

2014-04-10 Thread Hugo Osvaldo Barrera
On 2014-04-10 14:58, Gilles Chehade wrote: On Thu, Apr 10, 2014 at 09:39:37AM -0300, Hugo Osvaldo Barrera wrote: On 2014-04-10 14:32, Gilles Chehade wrote: On Thu, Apr 10, 2014 at 09:12:03AM -0300, Hugo Osvaldo Barrera wrote: I updated OpenBSD to 5.5-current (using snapshots) yesterday

Re: OpenSMTPD dies after a while!

2014-04-10 Thread Hugo Osvaldo Barrera
On 2014-04-10 19:14, Gilles Chehade wrote: On Thu, Apr 10, 2014 at 02:01:46PM -0300, Hugo Osvaldo Barrera wrote: On 2014-04-10 14:58, Gilles Chehade wrote: somehow you're not running the code you think you're running :-) Ok, something's wrong here: [...] smtpd

Re: certificates

2014-04-01 Thread Hugo Osvaldo Barrera
for those attempting to visit https:// instead of http://. -- Hugo Osvaldo Barrera A: No, it doesn't make sense. Q: Should I include quotations *after* my reply? pgp_8kT8fnGqz.pgp Description: PGP signature

Re: [OpenSMTPD] portable snapshot opensmtpd-201312131550p1 available

2013-12-16 Thread Hugo Osvaldo Barrera
not disable routes on smtp errors anymore - KILL the failed-queue mechanism - KILL the envelopes penalty mechanism -- You received this mail because you are subscribed to misc@opensmtpd.org To unsubscribe, send a mail to: misc+unsubscr...@opensmtpd.org -- Hugo Osvaldo Barrera

Fwd: Messages from misc@opensmtpd.org to you have been bouncing

2013-11-30 Thread Hugo Osvaldo Barrera
. Here is the list of the bounced messages: 253 - End forwarded message - -- Hugo Osvaldo Barrera pgp9lExwFNJtD.pgp Description: PGP signature

Re: RFC: package maintainers

2013-10-26 Thread Hugo Osvaldo Barrera
, they face the same issue. If you have kind of legacy to handle, maybe a symlink can help you. I would be a little patch that fixes substitution there where it isn't needed. --- wbr, Denis. -- Hugo Osvaldo Barrera pgp6GlQEJv07f.pgp Description: PGP signature

553 Sender address syntax error

2013-06-27 Thread Hugo Osvaldo Barrera
think smtpd is doing something wrong - I'm just curious as to what's wrong with those addresses. Please note that I'm not complaining about this issue; I'm just asking what's wrong with this address and what RFC I should read (so yes, it *is* slighlty OT). Thanks, -- Hugo Osvaldo Barrera