Re: Failure to check FCrDNS with long DNS replies?

2022-10-20 Thread Joerg Jung
> On 18. Oct 2022, at 16:41, Tassilo Philipp > wrote: > >>> On 21. Nov 2020, at 10:44, Tassilo Philipp >>> wrote: >>> FYI, I run into the same issue with a different provider: relay.yourmailgateway.de which also has a large number of A records. Trying to reproduce and

Re: Failure to check FCrDNS with long DNS replies?

2022-10-18 Thread Joerg Jung
> On 21. Nov 2020, at 10:44, Tassilo Philipp > wrote: > >> FYI, I run into the same issue with a different provider: >> relay.yourmailgateway.de which also has a large number of A records. >> >> Trying to reproduce and digging deeper now, by adding debug logs etc. > > Interesting... thanks

Re: Failure to check FCrDNS with long DNS replies?

2020-11-20 Thread Joerg Jung
On Mon, Aug 03, 2020 at 02:05:20PM +0200, Tassilo Philipp wrote: > > Mhmm… but they returned different results, for dig vs OpenSMTPd filter > > lookup? > > Not sure, as I don't log the replies, but I don't think so. > > > > May cache TTL have expired and record re-fetched with your local test?

Re: Single PR or many smaller PRs?

2020-10-15 Thread Joerg Jung
> On 15. Oct 2020, at 16:32, Demi M. Obenour wrote: > > On 10/15/20 12:48 AM, Demi M. Obenour wrote: >> On 10/14/20 7:31 PM, gil...@poolp.org wrote: >>> October 14, 2020 11:31 PM, "Demi M. Obenour" wrote: That makes sense. I will make a separate PR that just has some automake fixes.

Re: Failure to check FCrDNS with long DNS replies?

2020-08-03 Thread Joerg Jung
> On 3. Aug 2020, at 12:23, Tassilo Philipp wrote: > > Thanks for the reply and your thoughts. > >> There should be nothing limit FCrDNS here, despite that >> these are a lot of records. >> >> But have you tried the dig lookup below from the actual mail >> server at the time (or shortly

Re: Failure to check FCrDNS with long DNS replies?

2020-08-02 Thread Joerg Jung
> On 21. Jul 2020, at 12:46, Tassilo Philipp > wrote: > > Hello, > > I have a strange problem, emails coming from a specific SMTP from SFR, namely > smtp26.services.sfr.fr get incorrectly filtered by a fcrdns check. The filter > line in question is: > > filter check_fcrdns phase connect

Re: [patch] add a timeout to filter registration

2020-05-04 Thread Joerg Jung
On 2. May 2020, at 17:41, Edgar Pettijohn wrote:When playing with filters its easy to forget to registerstdout, etc...Here is a patch to add a timeout and give a little helpful info asopposed to just hanging in an unusable state.Index: lka_filter.c

Re: builtin filter regex question

2019-11-20 Thread Joerg Jung
On Mon, Nov 04, 2019 at 10:18:07PM +0100, Joerg Jung wrote: > On Thu, Oct 31, 2019 at 08:28:23AM +, gil...@poolp.org wrote: > > October 24, 2019 8:35 PM, "Joerg Jung" wrote: > > > > > I used some regex filters in the past which I'm trying to convert t

Re: builtin filter regex question

2019-11-04 Thread Joerg Jung
On Thu, Oct 31, 2019 at 08:28:23AM +, gil...@poolp.org wrote: > October 24, 2019 8:35 PM, "Joerg Jung" wrote: > > > Hi, > > > > I used some regex filters in the past which I'm trying to convert to the > > latest builtin filters. In particular,

builtin filter regex question

2019-10-24 Thread Joerg Jung
Hi, I used some regex filters in the past which I'm trying to convert to the latest builtin filters. In particular, I stumbled over a HELO filter, which rejects non-FQDN HELO forcing SMTP protocol, aka: Sendmail FEATURE(block_bad_helo) or Postfix reject_non_fqdn_helo_hostname I had significant

Re: table-passwd

2019-09-24 Thread Joerg Jung
> On 18. Sep 2019, at 09:38, gil...@poolp.org wrote: > > September 17, 2019 11:41 PM, "Edgar Pettijohn" > wrote: > >> On Sep 17, 2019 9:05 AM, Gilles Chehade wrote: >> >>> Hello, >>> >>> Is there anyone using table-passwd for _any_ other purposes than sharing >>> with Dovecot ? >>> >>>

Re: table-passwd

2019-09-23 Thread Joerg Jung
> On 23. Sep 2019, at 19:09, Edgar Pettijohn wrote: > > > On Sep 23, 2019 11:58 AM, Joerg Jung wrote: >> >> >> >>> On 18. Sep 2019, at 09:38, gil...@poolp.org wrote: >>> >>> September 17, 2019 11:41 PM, "Edgar Pettijohn&q

Re: table-passwd

2019-09-23 Thread Joerg Jung
> On 23. Sep 2019, at 18:58, Joerg Jung wrote: > > > >> On 18. Sep 2019, at 09:38, gil...@poolp.org wrote: >> >> September 17, 2019 11:41 PM, "Edgar Pettijohn" >> wrote: >> >>> On Sep 17, 2019 9:05 AM, Gilles Chehade wrote: &

Re: RBLs?

2019-07-03 Thread Joerg Jung
> Am 03.07.2019 um 10:26 schrieb Gilles Chehade : >> On Wed, Jul 03, 2019 at 08:22:59AM +, mabi wrote: >>> On Wednesday, July 3, 2019 9:39 AM, Giovanni Bechis >>> wrote: >>> >>> I think it could be possible to write a filter-spamassassin, that way smtpd >>> could reject based on

Re: RBLs?

2019-06-21 Thread Joerg Jung
> On 20. Jun 2019, at 00:40, Thomas Smith wrote: > > Hi, > > I’ve been using a combination of OpenSMTPd and spamd on OpenBSD (currently at > 6.5) for some time and with success. However, there are still some > false-negatives and I’m looking at ways of reducing those. One way is by >

Re: tool-stats: strptime failed

2018-04-09 Thread Joerg Jung
> On 2. Apr 2018, at 21:57, Denis wrote: > > One minor problem with "Bonus: tool-stats script" from the tutorial. > > # cat /scripts/log-stat.sh > > #!/bin/sh > > /usr/bin/zcat /var/log/maillog.*.gz \ >| /usr/local/bin/tool-stats \ >| /usr/bin/mail -s "smtpd log

Re: opensmtpd cannot read passwd-file

2017-11-05 Thread Joerg Jung
> On 5. Nov 2017, at 09:03, Markus Cisler wrote: > > Hey there, > > I decided to redo my personal mail setup to use a passwd-file instead of > system users. I started with a simple config based on [1]. Dovecot works fine > with the passwd-file provided, opensmtpd crashes

Re: Relay for authenticated users

2017-05-04 Thread Joerg Jung
> On 3. May 2017, at 15:05, Frank Timmers wrote: > > Hi, > > I’m trying to allow relay for authenticated users, however “smtpd -n” gives a > syntax error on the last line (with the authenticated) keyword. As far as I > understand the documentation [1], this should

Re: Greylisting

2016-09-12 Thread Joerg Jung
On Mon, Sep 12, 2016 at 08:49:04PM +0200, Silvio Siefke wrote: > On Sat, 10 Sep 2016 23:06:54 +0200 > Mischa Peters wrote: > > > Have a look at spamd. > > https://www.openbsd.org/spamd/index.html > > > > Also runs on non-OpenBSD. > > Yes spamassassin is running with

Re: mlmmj with opensmtpd

2016-08-17 Thread Joerg Jung
> On 17 Aug 2016, at 12:47, Silvio Siefke wrote: > > On Tue, 16 Aug 2016 23:17:18 -0500 > Edgar Pettijohn wrote: > > >> # smtpd -dv > > # smtpd -dv > debug: init ssl-tree > info: loading pki information for fr-sb.silviosiefke.com > debug:

Re: table ownership/permissions issues

2016-08-16 Thread Joerg Jung
Am 17.08.2016 um 07:25 schrieb Jeremy Volkening : >>> >>> As an update to this - it works if I set "mail_auth" as the group >>> of the opensmtpd user (rather than a secondary group). Not sure if this is >>> a feature or a bug but I'll file something over on the github

Re: Filter-API Error

2016-07-14 Thread Joerg Jung
There was an API bump. I’ve updated the port in -current, so next snapshot will contain a working package. However, most filters were removed as they are not considered ready and the API will be subject to further changes. For now, it is recommended to look for alternatives, e.g.

Re: [OpenSMTPD] opensmtpd-extra master snapshot opensmtpd-extras-201607061807 available

2016-07-12 Thread Joerg Jung
On Thu, Jul 07, 2016 at 01:51:35PM +1000, Dima Panov wrote: > 07.07.16 2:08, gilles chehade пишет: > > A new opensmtpd-extras snapshot is available at: > > > > > > http://www.opensmtpd.org/archives/opensmtpd-extras-201607061807.tar.gz > > > > Checksum: > > > > SHA256

Re: filter-spamassassin crashes smtpd on boot

2016-06-30 Thread Joerg Jung
restarted. > > On 30 June 2016 at 14:42, Joerg Jung <m...@umaxx.net <mailto:m...@umaxx.net>> > wrote: > > > > Am 30.06.2016 um 00:41 schrieb Simon McFarlane <s...@desu.ne.jp > > <mailto:s...@desu.ne.jp>>: > > > > Hi, > >

Re: filter-spamassassin crashes smtpd on boot

2016-06-29 Thread Joerg Jung
> Am 30.06.2016 um 00:41 schrieb Simon McFarlane : > > Hi, > > I have a rather uninteresting setup consisting of Dovecot and OpenSMTPD with > few configuration tweaks on an OpenBSD system. The only filter I have is > filter-spamassassin. I'm running the latest -current

Re: more detailed logging from filter-spamassassin

2016-06-16 Thread Joerg Jung
> Am 15.06.2016 um 19:55 schrieb Andrew Ruscica : > > This behaviour has been the same since I started using filter-spamassassin > which was before the May 23 snapshot. Currently on the June 6 snapshot of > opensmtpd & opensmtpd-extras. > > Using filter-spamassassin

Re: dkim simple canonicalization

2016-06-07 Thread Joerg Jung
> On 07 Jun 2016, at 09:43, Jason A. Donenfeld wrote: > > Hi Joerg, > > Reading from the RFC http://dkim.org/specs/rfc4871-dkimbase.html I saw this: > > > "Signers SHOULD choose canonicalization algorithms based on the types > of messages they process and their aversion to

Re: dnsbl and ipv6

2016-06-06 Thread Joerg Jung
> Am 06.06.2016 um 20:39 schrieb Jason A. Donenfeld : > > Hi folks, > > Thanks for all the hard work and recent releases. dnsbl filter works > like a charm! > > One thing I encountered while playing with it is that emails from > gmail aren't filtered. So, do you really expect

Re: Tool stats

2016-06-02 Thread Joerg Jung
> On 02 Jun 2016, at 15:24, Edgar Pettijohn wrote: > > I saw this in my daily report. > > Running daily.local: > tool-stats: session failed line 10341 That means: it found a Session ID in the log which has been "Accepted” but not created with “New” before. This can

Re: OpenSMTPD not start, only in debug mode

2016-05-29 Thread Joerg Jung
> Am 30.05.2016 um 04:40 schrieb Ultramedia Libertad : > > ehlo > > I have a problem opensmtpd was working properly, It was working before? So what have you changed? > but the restart to detect new tables and now I can not start it. > > My versions; > opensmtpd-extras:

Re: filter-spamassassin fails under heavy load (may 23 extras snapshot)

2016-05-27 Thread Joerg Jung
On Thu, May 26, 2016 at 08:14:12PM +0200, Joerg Jung wrote: > On Thu, May 26, 2016 at 01:51:20PM -0400, Andrew Ruscica wrote: > > On Thu, May 26, 2016 at 10:50 AM, Joerg Jung <m...@umaxx.net> wrote: > > > Am 26.05.2016 um 14:11 schrieb Andrew Ruscica <andrew.li...@rusc

Re: filter-spamassassin fails under heavy load (may 23 extras snapshot)

2016-05-26 Thread Joerg Jung
On Thu, May 26, 2016 at 01:51:20PM -0400, Andrew Ruscica wrote: > On Thu, May 26, 2016 at 10:50 AM, Joerg Jung <m...@umaxx.net> wrote: > > > > > > > Am 26.05.2016 um 14:11 schrieb Andrew Ruscica <andrew.li...@ruscica.com>: > > > > On Wed, May 25, 20

Re: smptd stops listing to external interfaces.

2016-05-26 Thread Joerg Jung
Have you guys both applied the 5.9 smtpd errata? There is a known FD leak bug with filters, which leads to dying smtpd once FD limit is reached, see #698. That is why I asked for fstat/stats output to verify if your current smtp.session have increased and hit the openfiles limit. Would be

Re: filter-spamassassin fails under heavy load (may 23 extras snapshot)

2016-05-26 Thread Joerg Jung
> Am 26.05.2016 um 14:11 schrieb Andrew Ruscica <andrew.li...@ruscica.com>: > >> On Wed, May 25, 2016 at 4:39 PM, Joerg Jung <m...@umaxx.net> wrote: >> Can you provide smtpctl show stats and fstat -u _smtpd output? > > If the event happens again, I w

Re: filter-spamassassin fails under heavy load (may 23 extras snapshot)

2016-05-25 Thread Joerg Jung
On Wed, May 25, 2016 at 04:28:59PM -0400, Andrew Ruscica wrote: > Not sure if the issue lies with the spamassassin daemon or the > opensmtp-filter. > > During a surge of incoming email, the following errors were logged. > OpenSMTP stopped relaying mail during this time: > > May 25 15:57:50 mxgw3

Re: FW: smptd stops listing to external interfaces.

2016-05-25 Thread Joerg Jung
On Wed, May 25, 2016 at 06:21:40PM +, Peter Fraser wrote: > whoops I mistyped OpenBSD 5.9 which -extras version? > -Original Message- > From: Peter Fraser [mailto:p...@thinkage.ca] > Sent: Wednesday, May 25, 2016 2:16 PM > To: misc@opensmtpd.org > Subject: smptd stops listing to

Re: [OpenSMTPD] opensmtpd-extra master snapshot opensmtpd-extras-201605212201 available

2016-05-21 Thread Joerg Jung
> Am 22.05.2016 um 02:12 schrieb Richard : > >> On Sat, 21 May 2016, j...@poolp.org wrote: >> >> A new opensmtpd-extras snapshot is available at: >> >>http://www.opensmtpd.org/archives/opensmtpd-extras-201605212201.tar.gz >> >> Checksum: >> >> SHA256

Re: [OpenSMTPD] opensmtpd-extra master snapshot opensmtpd-extras-201605182041 available

2016-05-21 Thread Joerg Jung
On Sat, May 21, 2016 at 05:46:50PM +0200, Joerg Jung wrote: > > > > Am 21.05.2016 um 17:42 schrieb parchd <parchd+gm...@archlinux.info>: > > > > As Richard helped me realise in another thread, some options have changed > > between 5.7 and 5.9 release

Re: [OpenSMTPD] opensmtpd-extra master snapshot opensmtpd-extras-201605182041 available

2016-05-21 Thread Joerg Jung
On Sat, May 21, 2016 at 02:48:56PM +0200, Joerg Jung wrote: > > Am 21.05.2016 um 12:21 schrieb parchd <parchd+gm...@archlinux.info>: > > >> > >> A new opensmtpd-extras snapshot is available at: > >> > >> > >> http://www

Re: [OpenSMTPD] opensmtpd-extra master snapshot opensmtpd-extras-201605182041 available

2016-05-21 Thread Joerg Jung
> Am 21.05.2016 um 17:42 schrieb parchd : > > As Richard helped me realise in another thread, some options have changed > between 5.7 and 5.9 releases. > > The changes are not yet reflected in the configure options for > opensmtpd-extras. They probably should be,

Re: [OpenSMTPD] opensmtpd-extra master snapshot opensmtpd-extras-201605182041 available

2016-05-21 Thread Joerg Jung
> Am 21.05.2016 um 12:27 schrieb parchd : > > parchd writes: > >> >>> >>> A new opensmtpd-extras snapshot is available at: > http://www.opensmtpd.org/archives/opensmtpd-extras-201605182041.tar.gz >> >> Should the SIZE_T_MAX in

Re: [OpenSMTPD] opensmtpd-extra master snapshot opensmtpd-extras-201605182041 available

2016-05-21 Thread Joerg Jung
Am 21.05.2016 um 12:21 schrieb parchd : >> >> A new opensmtpd-extras snapshot is available at: >> >>http://www.opensmtpd.org/archives/opensmtpd-extras-201605182041.tar.gz > > Should the SIZE_T_MAX in filter_spamassassin.c be SIZE_MAX instead? Yes, it

Re: OpenSMTPD + Archiveopteryx + Virtual user addresses == Baby Jesus crying

2016-05-19 Thread Joerg Jung
btw your SPF setup seems to be broken, as mail bounces: ch...@open-systems.net: 554 5.7.1 Service unavailable; Client host [85.214.232.249] blocked using b.barracuda.org; v=spf1 a -all > Am 19.05.2016 um 08:45 schrieb Joerg Jung <m...@umaxx.net>: > > > >> Am 18.

Re: warn: Disabling incoming SMTP connections: Client limit reached

2016-05-19 Thread Joerg Jung
> Am 18.05.2016 um 22:57 schrieb Peter Fraser : > > I put a new smtpd live, and everything was going fine until there was the > message: > > warn: Disabling incoming SMTP connections: Client limit reached > > After that there were no more message in /var/log/maillog, and no

Re: OpenSMTPD + Archiveopteryx + Virtual user addresses == Baby Jesus crying

2016-05-19 Thread Joerg Jung
> Am 18.05.2016 um 23:01 schrieb Chris Watson <ch...@open-systems.net>: > > > Chris Watson, Open Systems > ch...@open-systems.net > CEO, Owner > 316-558-0440 > > PGP Fingerprint: BE67 ED60 6BB0 6B1E 2EB8 95D0 4A35 6B4D F529 1D0D > PGP Key ID: F5291D0D >

Re: OpenSMTPD + Archiveopteryx + Virtual user addresses == Baby Jesus crying

2016-05-18 Thread Joerg Jung
On Wed, May 18, 2016 at 01:48:11PM -0500, Chris Watson wrote: > So I’ve been brought up on Sendmail, then later Postfix. Yesterday I decided > to try moving from Postfix to OpenSMTPD. The main reason was because with > Postfix for a remote user you have to install and configure a bunch of other

Re: virtual user and forwarding

2016-05-08 Thread Joerg Jung
> Am 08.05.2016 um 20:59 schrieb Peter Fraser : > > My confusions are several, > > I believe I misunderstood how "virtual" worked, and I don't think the man > pages helped. > I started out with the believe that "virtual" would map the sender email > address in the

Re: Message is not RFC 2822 compliant

2016-05-08 Thread Joerg Jung
On Sun, May 08, 2016 at 06:44:40PM +, Peter Fraser wrote: > Testing out OpenSMTP on a test system appropriately call test > I am have a problem testing a message submitting from external system > (the sys is on the same lan) > > The tested smtpd.conf > > > listen on all > table aliases

Re: Some DNSBL questions and other spam filtering options in OpenSMTPD

2016-05-01 Thread Joerg Jung
On Fri, Apr 08, 2016 at 03:44:16PM +0200, Joerg Jung wrote: > > On 07 Apr 2016, at 23:24, Michiel van Es <m...@pragmasec.nl> wrote: > >> On 07 Apr 2016, at 21:28, Joerg Jung <m...@umaxx.net> wrote: > >> On Thu, Apr 07, 2016 at 04:41:57PM +0200, Michiel van Es wr

Re: filter-api socketpair leak?

2016-04-19 Thread Joerg Jung
> On 18 Apr 2016, at 14:08, Boudewijn Dijkstra > wrote: > >>> didn't change. How should I turn on said tracing? >> >> Add the flags to the smtpd startup, either manually or via rc.conf(8), >> e.g. smtpd -dv -Tall > > smtpd -v -Tall > doesn't seem to make it

Re: filter-api socketpair leak?

2016-04-17 Thread Joerg Jung
On Fri, Apr 15, 2016 at 11:35:27AM +0200, Boudewijn Dijkstra wrote: > > >5. Can you turn on tracing the filters and smtp session to see, where it > > stuck exactly? > > # smtpctl trace filter > smtpctl: invalid trace keyword: filter > # smtpctl trace filters > command succeeded > > Not sure

Re: filter dkim signer

2016-04-17 Thread Joerg Jung
On Sun, Apr 17, 2016 at 10:57:56AM -0500, Edgar Pettijohn wrote: > > > On 04/17/16 10:20, Ryan Kavanagh wrote: > >Edgar Pettijohn wrote: > >>Is anyone using this filter? > >Yes, I got it running yesterday using OpenBSD 5.9's opensmtpd-extras package. > > > >>smtpd.conf

Re: filter dkim signer

2016-04-17 Thread Joerg Jung
On Sun, Apr 17, 2016 at 11:20:05AM -0400, Ryan Kavanagh wrote: > > smtpd.conf > > > > filter filter-dkim-signer dkim-signer "-D mydomain -p > > /etc/mail/private.key -s selector1" > > Part of the problem is the spaces here. At least, when I tried with a space > before the argument for "-p", I

Re: Some DNSBL questions and other spam filtering options in OpenSMTPD

2016-04-08 Thread Joerg Jung
> Am 08.04.2016 um 16:56 schrieb Michiel van Es <m...@pragmasec.nl>: > >> On Fri, Apr 08, 2016 at 04:29:55PM +0200, Michiel van Es wrote: >> On Fri, Apr 08, 2016 at 03:44:16PM +0200, Joerg Jung wrote: >> >>>> >>>> but got the same

Re: Some DNSBL questions and other spam filtering options in OpenSMTPD

2016-04-08 Thread Joerg Jung
> On 07 Apr 2016, at 23:24, Michiel van Es <m...@pragmasec.nl> wrote: >> On 07 Apr 2016, at 21:28, Joerg Jung <m...@umaxx.net> wrote: >> On Thu, Apr 07, 2016 at 04:41:57PM +0200, Michiel van Es wrote: >>>> On 07 Apr 2016, at 16:37, Michiel van Es <m...

Re: Some DNSBL questions and other spam filtering options in OpenSMTPD

2016-04-07 Thread Joerg Jung
On Thu, Apr 07, 2016 at 04:41:57PM +0200, Michiel van Es wrote: > > On 07 Apr 2016, at 16:37, Michiel van Es <m...@pragmasec.nl> wrote: > >> On 07 Apr 2016, at 16:05, Joerg Jung <m...@umaxx.net> wrote: > >>> On 07 Apr 2016, at 14:47, Michiel van Es <m...@

Re: Some DNSBL questions and other spam filtering options in OpenSMTPD

2016-04-07 Thread Joerg Jung
> On 07 Apr 2016, at 14:47, Michiel van Es <m...@pragmasec.nl> wrote: > > >> On 07 Apr 2016, at 14:40, Joerg Jung <m...@umaxx.net> wrote: >> >> >>> On 07 Apr 2016, at 13:13, Michiel van Es <m...@pragmasec.nl> wrote: >>&g

Re: Some DNSBL questions and other spam filtering options in OpenSMTPD

2016-04-07 Thread Joerg Jung
> On 07 Apr 2016, at 13:13, Michiel van Es <m...@pragmasec.nl> wrote: >> On 07 Apr 2016, at 12:59, Joerg Jung <m...@umaxx.net> wrote: >> >> Ok... that makes sense now. >> -2 seems to be EAI_NONAME which seems to be the error code specific on >&

Re: Some DNSBL questions and other spam filtering options in OpenSMTPD

2016-04-07 Thread Joerg Jung
> On 07 Apr 2016, at 10:17, Michiel van Es <m...@pragmasec.nl> wrote: > >> >> On 07 Apr 2016, at 10:02, Joerg Jung <m...@umaxx.net> wrote: >> >> >>> On 07 Apr 2016, at 08:47, Michiel van Es <m...@pragmasec.nl> wrote: >>

Re: Some DNSBL questions and other spam filtering options in OpenSMTPD

2016-04-07 Thread Joerg Jung
> On 07 Apr 2016, at 08:47, Michiel van Es <m...@pragmasec.nl> wrote: >> On 07 Apr 2016, at 08:41, Joerg Jung <m...@umaxx.net> wrote: >> >>>> What asr version have you installed? Recent one? >>>> >>>> You can also do a tcpdump p

Re: Some DNSBL questions and other spam filtering options in OpenSMTPD

2016-04-07 Thread Joerg Jung
> On 07 Apr 2016, at 07:54, Michiel van Es <m...@pragmasec.nl> wrote: >> On 07 Apr 2016, at 01:19, Joerg Jung <m...@umaxx.net> wrote: >> >> Nope, but you can try adding some more debug >> logs in the filter source. I fear we need to take this route no

Re: Some DNSBL questions and other spam filtering options in OpenSMTPD

2016-04-06 Thread Joerg Jung
> Am 06.04.2016 um 16:58 schrieb Michiel van Es <m...@pragmasec.nl>: > > >> On 06 Apr 2016, at 13:52, Michiel van Es <m...@pragmasec.nl> wrote: >> >> >>> On 06 Apr 2016, at 13:38, Joerg Jung <m...@umaxx.net> wrote: >>>

Re: Some DNSBL questions and other spam filtering options in OpenSMTPD

2016-04-06 Thread Joerg Jung
> Am 06.04.2016 um 20:42 schrieb Michiel van Es <m...@pragmasec.nl>: > > >> On 06 Apr 2016, at 16:58, Michiel van Es <m...@pragmasec.nl> wrote: >> >> >>> On 06 Apr 2016, at 13:52, Michiel van Es <m...@pragmasec.nl> wrote: >>>

Re: Some DNSBL questions and other spam filtering options in OpenSMTPD

2016-04-06 Thread Joerg Jung
> Am 06.04.2016 um 13:08 schrieb Michiel van Es : > > Hello, > > I also posted this as an issue to the OpenSMTPD github repo but somebody told > me that the mailinglist would be more accurate to post this question to (I > will remove the github issue if preferred). > > it

Re: filter-spamassassin fails to deliver with large messages

2016-04-05 Thread Joerg Jung
> On 04 Apr 2016, at 23:27, LÉVAI Dániel wrote: > >>> filter-spamassassin doesn't have a parameter to specify a maximum >>> message size like spamc(1), and when it encounters a message weighing in at >>> a >>> few MBs, it fails, and drops back the message with a 4xx. >>> >>>

Re: filter-dnsbl and 5.7.3p2

2016-03-30 Thread Joerg Jung
On Wed, Mar 30, 2016 at 03:36:17PM +0200, Jason A. Donenfeld wrote: > When I use filter-dnsbl with 5.7.3p2, message are not delivered, and this > shows up in my log: > > Mar 30 15:29:34 krantz smtpd[8058]: smtp-in: session 6e0ea64eaed040b0: > connection from host frisell.zx2c4.com [192.95.5.64]

Re: SPF checking

2016-03-29 Thread Joerg Jung
> Am 29.03.2016 um 12:05 schrieb Boudewijn Dijkstra > : > > Hi, > > It was a bit of a struggle, but I managed to set up a simple build > environment in OpenBSD 5.9 for creating OpenSMTPD filters. I currently have > a filter in beta quality that performs an

Re: [Filters] share data between callbacks

2016-03-22 Thread Joerg Jung
On Tue, Mar 22, 2016 at 10:57:00PM +0100, frit...@alokat.org wrote: > Hi, > > is it possible to share data between callback functions in a python-based > filter? > I'm looking for something like this one (from the clamav filter): > - filter_api_set_udata > - filter_api_get_udata I think you

Re: Configuration erros

2016-03-12 Thread Joerg Jung
On Wed, Mar 09, 2016 at 08:55:11PM -0600, Edgar Pettijohn wrote: > Since filters are stable I've been slowly switching over. Filters are still considered experimental and wip. -- You received this mail because you are subscribed to misc@opensmtpd.org To unsubscribe, send a mail to:

Re: FAQ Suggestions

2016-02-17 Thread Joerg Jung
> Am 17.02.2016 um 05:12 schrieb Steve Conrad : > > > Here's the config I used that broke local delivery. > Most likely I've overlooked something simple, > > but it's not jumping out at me. There is a subtle difference between a hostname and a domain name. So you set

Re: FAQ Suggestions

2016-02-16 Thread Joerg Jung
> On 15 Feb 2016, at 23:44, Steve Conrad wrote: > > I noticed a couple of minor changes that might help improve the FAQ. > > Setting up a virtual domain identical to the hostname will break local > delivery even though external messages will work fine. This means you'll no

Re: Invalid recipient

2016-02-05 Thread Joerg Jung
> On 05 Feb 2016, at 13:38, Luis Mendes wrote: > > Hi list, > > This is the first time I try to set up an in-house email solution, so there > are many concepts that are not clear to me, at least yet. I need some help > with this configuration. DKIM and anti-spam measures

Re: Spot of bother with send to lmtp

2016-02-04 Thread Joerg Jung
On Wed, Feb 03, 2016 at 06:52:31PM -0800, Steve Conrad wrote: > Got it sorted now. > Thanks for the help. > > Upgrade to latest opensmtpd-extras > Change 'listen on all' to 'listen on egress' > Otherwise 'listen on lo0' is in the way Yes, I fixed that in the guide examples, thanks for noticing!

Re: Spot of bother with send to lmtp

2016-02-03 Thread Joerg Jung
D? Which package of opensmtpd-extras? You need the latest snapshot tarball or latest -current opensmtpd-extras package for it as well. Otherwise filters will not work, because path for loading them has changed recently. If you need hints what is going wrong start with debug/verbose mode, e.

Re: daemon keeps dieing

2016-01-24 Thread Joerg Jung
See: https://www.mail-archive.com/misc@opensmtpd.org/maillist.html especially Gilles reply on 22.1. and my on 20.1. On Sun, Jan 24, 2016 at 11:32:53AM -0600, Edgar Pettijohn wrote: > Bump > > Sent from my iPhone > > > On Jan 22, 2016, at 1:05 PM, Edgar Pettijohn > >

Re: [LOG] Warning table

2016-01-11 Thread Joerg Jung
On Mon, Jan 11, 2016 at 10:25:47AM +0100, Alexis VACHETTE wrote: > Hi, > > It was stated last week that OpenSMTPD daemon doesn't throw any warning if a > specific table isn't readable by OpenSMTPD user. > > I made a patch for the portable version on github : > > *** a/table_static.c

Re: [Extras] Explicitly check for Python2

2016-01-09 Thread Joerg Jung
On Tue, Oct 27, 2015 at 07:28:08PM +0100, Wilhelm Schuster wrote: > On 2015-10-27 14:53, Joerg Jung wrote: > >Hi, > > > >On Tue, Oct 27, 2015 at 01:50:31PM +0100, Wilhelm Schuster wrote: > >> > >>I'm currently working on packaging opensmtpd-extras

Re: [OpenSMTPD] opensmtpd-extra master snapshot opensmtpd-extras-201601061159 available

2016-01-07 Thread Joerg Jung
Which openbsd version have you running/tested this? > On 07 Jan 2016, at 02:46, Edgar Pettijohn wrote: > > Is there a snapshot for openbsd? Following README directions of bootstrap, > configure, etc. I get the following error: > > config.status: error: cannot find

Re: Pledge issue with opensmtpd-extras

2016-01-04 Thread Joerg Jung
On Mon, Dec 28, 2015 at 06:11:31PM +0100, Tim van der Molen wrote: > Joerg Jung (2015-12-28 07:47 +0100): > > > > > Am 24.12.2015 um 04:46 schrieb Tim van der Molen <t...@kariliq.nl>: > > > > > > Simon McFarlane (2015-12-24 00:49 +0100): > > >&g

Re: filter-spamassassin

2016-01-03 Thread Joerg Jung
On Sun, Jan 03, 2016 at 08:56:00AM -0600, Edgar Pettijohn wrote: > I finally got around to trying out filter-spamassassin. It appears to work > correctly. However, I was trying to change the default action from accept > to reject. I've tried everything I can think of but continue to get syntax >

Re: Filters

2016-01-02 Thread Joerg Jung
On Sat, Jan 02, 2016 at 04:44:09PM +1100, Damian McGuckin wrote: > > I would like to read something before 'playing' is done. Old, but still mostly valid: https://poolp.org/0xa871/The-state-of-filters Also, all you need can be found in man pages and the most recent opensmtpd-extras comes with

Re: Login query with full email address

2015-12-23 Thread Joerg Jung
> On 23 Dec 2015, at 07:01, Simon McFarlane wrote: > > I'm attempting to set up a mail server that can serve addresses on several > domains. OpenSMTPD works great for a single domain, but I'm having some > trouble with mail on multiple domains. > … > Let me know what you

Re: [Extras] Explicitly check for Python2

2015-10-27 Thread Joerg Jung
Hi, On Tue, Oct 27, 2015 at 01:50:31PM +0100, Wilhelm Schuster wrote: > > I'm currently working on packaging opensmtpd-extras for Archlinux (AUR). My > problem is that on Arch /usr/bin/python points to python3 rather than > python2. Can you show what exactly fails, maybe it is easy to

Re: Remotely triggerable buffer overflow in OpenSMTPD

2015-10-05 Thread Joerg Jung
> On 05 Oct 2015, at 00:38, Jason A. Donenfeld wrote: > > At some point we might want a CVE for this. > Please, next time you publish such a security issue -- give developers a chance to provide patches, *before* going public. Think of the production servers which run

Re: Log file on Linux?

2015-09-26 Thread Joerg Jung
On Fri, Sep 25, 2015 at 12:38:40PM +1200, Holger Jahn wrote: > > First of all, let me say how pleased I am to see that there is another good > SMTP server available these days. > > On Linux, I used to use another popular MTA in the past - which shall remain > incognito here - but frankly its

Re: DNSBL?

2015-08-19 Thread Joerg Jung
On 19 Aug 2015, at 02:16, Paul Bryan pbr...@anode.ca wrote: Is there a straightforward way to have OpenSMTPD query DNSBL service(s) to reject messages from known servers? There is filter-dnsbl in opensmtpd-extras. -- You received this mail because you are subscribed to misc@opensmtpd.org

Re: [Extras] Problems with sqlite tables

2015-07-26 Thread Joerg Jung
. Forget that, the path is not hardcoded and not your problem. I misread an #ifdef in the portable code. Sorry for the noise!! On 07/25/2015 12:08 PM, Joerg Jung wrote: On Sat, Jul 25, 2015 at 10:52:36AM -0700, James Lott wrote: Hey folks, I'm running OpenSMTPD 5.7.1 + table-sqlite from

Re: Virtual users need to exist in /etc/passwd ?

2015-07-16 Thread Joerg Jung
On Thu, Jul 16, 2015 at 08:09:41PM +0200, Joel Carnat wrote: Hi, I have configured OpenSMTPD 5.4.4 (from OpenBSD 5.7) with virtual LDAP users and LMTP to Dovecot. table vusers ldap:/etc/mail/ldap.conf table vdomains ldap:/etc/mail/ldap.conf accept from any for domain vdomains virtual

request for comments: enhance deliver to LMTP

2015-06-11 Thread Joerg Jung
Hi, please find below a diff which enhances deliver to LMTP. Gilles suggested to bring this diff to misc@ to gain a wider audience and hopefully receive some comments from actual LMTP users. tl;dr deliver to lmtp delivers to (system) users only, making it hard to be used in common virtual

Re: request for comments: enhance deliver to LMTP

2015-06-11 Thread Joerg Jung
, Joerg Jung m...@umaxx.net wrote: Hi, please find below a diff which enhances deliver to LMTP. Gilles suggested to bring this diff to misc@ to gain a wider audience and hopefully receive some comments from actual LMTP users. tl;dr deliver to lmtp delivers to (system) users only, making

Re: [PATCH 4/4] Support selecting the right lua version

2015-05-31 Thread Joerg Jung
Am 31.05.2015 um 18:27 schrieb Gilles Chehade gil...@poolp.org: On Sun, May 31, 2015 at 06:28:02PM +0200, Jason A. Donenfeld wrote: On May 31, 2015 6:10 PM, Gilles Chehade gil...@poolp.org wrote: What's the final decision on this ? Roll with what I've put, and if there are any serious

Re: [PATCH 4/4] Support selecting the right lua version

2015-05-30 Thread Joerg Jung
Am 29.05.2015 um 15:17 schrieb Jason A. Donenfeld ja...@zx2c4.com: I took some of your ideas into consideration with this pull request: https://github.com/OpenSMTPD/OpenSMTPD-extras/pull/20 This succeeds this earlier patch. I still think that luajit should not be the first in the row (as

Re: util.h needed by filter-regex

2015-05-29 Thread Joerg Jung
Am 28.05.2015 um 13:12 schrieb Jason A. Donenfeld ja...@zx2c4.com: Looks like another openbsd-compat issue: x86_64-pc-linux-gnu-gcc -DHAVE_CONFIG_H -I. -I../../../.. -I../../../../api -I../../../../openbsd-compat -I../../../../contrib/lib/libc/asr -I/usr/include -DNO_IO -DBUILD_FILTER

Re: Lua tied to 5.2

2015-05-28 Thread Joerg Jung
On 28 May 2015, at 13:10, Jason A. Donenfeld ja...@zx2c4.com wrote: Furthermore, the use of /usr/local obviously doesn't cut it, for the same reason it didn't work with Python. Check out that cgit example for the correct way to find the locations. As suggested in my other mail, the cgit

Re: [PATCH 4/4] Support selecting the right lua version

2015-05-28 Thread Joerg Jung
Hi, I think depending on the OS (Linux vs BSD vs OS X vs ...) you really want to check for different variations of the Lua installation with pkg-config, e.g.: “lua5.2 vs lua-5.2 vs just “lua” or even “luajit Also, I do not think that checking luajit first makes sense, as it might have the

Re: Invalid domain name in EHLO/HELO

2015-05-23 Thread Joerg Jung
On Sat, May 23, 2015 at 06:51:59PM +0200, Herbert J. Skuhra wrote: On Sat, May 23, 2015 at 06:22:45PM +0200, Joerg Jung wrote: Am 23.05.2015 um 18:15 schrieb Herbert J. Skuhra herb...@oslo.ath.cx: how can I receive mails from a server that is sending an invalid domain name in EHLO

Re: Invalid domain name in EHLO/HELO

2015-05-23 Thread Joerg Jung
Am 23.05.2015 um 18:15 schrieb Herbert J. Skuhra herb...@oslo.ath.cx: Hi, how can I receive mails from a server that is sending an invalid domain name in EHLO/HELO command? smtpd[16165]: smtp-in: Failed command on session 6a0f577547bb0d7c: EHLO spce. = 501 5.5.4 Invalid command

Re: deliver to maildir added a anti-slash to username ?

2015-04-21 Thread Joerg Jung
Am 21.04.2015 um 08:26 schrieb Joerg Jung m...@umaxx.net: Am 21.04.2015 um 08:05 schrieb Nicolas Steinmetz public+opensm...@steinmetz.fr: /srv/mail/cerenit.fr/ |-- contact | `-- Maildir | |-- cur | |-- dovecot-uidlist | |-- dovecot-uidvalidity

Re: pre-queue spam check

2015-04-11 Thread Joerg Jung
On Sat, Apr 11, 2015 at 12:12:05PM +0200, Peter N. M. Hansteen wrote: Joerg Jung m...@umaxx.net writes: I also know about spamd, but that is not really an option for now as the server speaks v6 and STARTTLS, moreover I have legacy users which AUTH on port 25 as well. This does not play

Re: pre-queue spam check

2015-04-11 Thread Joerg Jung
On Sat, Apr 11, 2015 at 04:06:49PM +0100, Craig Skinner wrote: On 2015-04-11 Sat 16:04 PM |, Joerg Jung wrote: From my understanding, the user connects on port 25 (using STARTTLS and SMTP AUTH), is blocked by spamd (451 temporarily greylisted for 25 min), but usually MUAs try again some

  1   2   >