[pfx] Re: The SMTP HELP command

2023-12-29 Thread Wietse Venema via Postfix-users
John R. Levine via Postfix-users: > On Fri, 29 Dec 2023, Wietse Venema wrote: > > The real reason is that it's easier to convince a few delinquent > > MTA implementors, than an IETF working group. > > The WG isn't opposed but we have a very long list of nits to clean up so > I'd rather make the

[pfx] Re: The SMTP HELP command

2023-12-29 Thread John R. Levine via Postfix-users
On Fri, 29 Dec 2023, Wietse Venema wrote: The real reason is that it's easier to convince a few delinquent MTA implementors, than an IETF working group. The WG isn't opposed but we have a very long list of nits to clean up so I'd rather make the list shorter if as in this case it doesn't

[pfx] Re: The SMTP HELP command

2023-12-29 Thread Wietse Venema via Postfix-users
John R. Levine via Postfix-users: > On Fri, 29 Dec 2023, Theodore Ts'o wrote: > > Of course, implementing a HELP command is also not much work, so why > > not? > > That's the conclusion we came to in emailcore. It's so easy to implement > that even though it's been a long time (if ever) since

[pfx] Re: The SMTP HELP command

2023-12-29 Thread John R. Levine via Postfix-users
On Fri, 29 Dec 2023, Theodore Ts'o wrote: Of course, implementing a HELP command is also not much work, so why not? That's the conclusion we came to in emailcore. It's so easy to implement that even though it's been a long time (if ever) since it did anything useful, it's not worth the

[pfx] Re: The SMTP HELP command

2023-12-29 Thread Theodore Ts'o via Postfix-users
On Fri, Dec 29, 2023 at 01:46:47PM -0500, John Levine via Postfix-users wrote: > It appears that Phil Biggs via Postfix-users said: > >Where do see the "mandatory" requirement? > > > >Section 4.1.1.8 says: > > > > SMTP servers SHOULD support HELP without arguments and MAY support it > >

[pfx] Re: Behaviour in case of multiple relay hosts with multiple DNS records

2023-12-29 Thread Viktor Dukhovni via Postfix-users
On Fri, Dec 29, 2023 at 07:45:45PM +0100, Peter Wienemann via Postfix-users wrote: > > And then shows some examples that deminstarte that the using > > MX records is mutually exclusive with using address (A or ) records. > > I think what bears the potential for confusion is what you mean by

[pfx] Re: The SMTP HELP command

2023-12-29 Thread John Levine via Postfix-users
It appears that Joachim Lindenberg via Postfix-users said: >Hello John, >are you willing to share what direction you/IETF are working towards? It's the EMAILCORE working group. You can see the documents here: https://datatracker.ietf.org/wg/emailcore/documents/ >What I am really missing is

[pfx] Re: The SMTP HELP command

2023-12-29 Thread John Levine via Postfix-users
It appears that Phil Biggs via Postfix-users said: >Where do see the "mandatory" requirement? > >Section 4.1.1.8 says: > > SMTP servers SHOULD support HELP without arguments and MAY support it > with arguments. SHOULD is IETF-ese for you have to, except that there might be reasons not to

[pfx] Re: Behaviour in case of multiple relay hosts with multiple DNS records

2023-12-29 Thread Peter Wienemann via Postfix-users
Hi Wietse, On 2023-12-29 18:36:59 +0100, Wietse Venema via Postfix-users wrote: Peter Wienemann via Postfix-users: On 2023-12-15 22:17:08 +0100, Wietse Venema via Postfix-users wrote: There is no such thing as falling back to A or records after trying MX records. The two are mutually

[pfx] Re: Behaviour in case of multiple relay hosts with multiple DNS records

2023-12-29 Thread Wietse Venema via Postfix-users
Peter Wienemann via Postfix-users: > Dear Wietse, > > On 2023-12-15 22:17:08 +0100, Wietse Venema via Postfix-users wrote: > > Peter Wienemann via Postfix-users: > >> Thanks Wietse! Your pseudo-code clarifies the approach chosen by > >> Postfix. What still remains unclear to me is the order in

[pfx] Re: The SMTP HELP command

2023-12-29 Thread Wietse Venema via Postfix-users
Wietse Venema via Postfix-users: > John Levine via Postfix-users: > > Over in the IETF we're slowly working on updating RFC 5321. > > > > Today's topic is the HELP command. The current spec says that it is > > mandatory to implment it. Most MTAs implement it by returning a fixed > > string, or

[pfx] Re: Behaviour in case of multiple relay hosts with multiple DNS records

2023-12-29 Thread Peter Wienemann via Postfix-users
Dear Wietse, On 2023-12-15 22:17:08 +0100, Wietse Venema via Postfix-users wrote: Peter Wienemann via Postfix-users: Thanks Wietse! Your pseudo-code clarifies the approach chosen by Postfix. What still remains unclear to me is the order in which destinations are tried. Let us again consider

[pfx] Re: [pfx-ann] SMTP Smuggling, workarounds and fix

2023-12-29 Thread natan via Postfix-users
Hi A good idea in my opinion,  additionally add reject_sender_login_mismatch with maps (u...@domain.ltd user@domainltd) smtpd_sender_restrictions =     ...     reject_sender_login_mismatch,     ...     reject_unauth_pipelining, Than only reject_unauth_pipelining smtpd_data_restrictions =

[pfx] Re: SMTP Smuggling, workarounds and fix // Clarification on BDAT

2023-12-29 Thread Herbert J. Skuhra via Postfix-users
On Fri, Dec 29, 2023 at 10:16:20AM +0100, natan via Postfix-users wrote: > Hi > In postfix-3.4.23 (debian) I set > > (I use always) > smtpd_data_restrictions = reject_unauth_pipelining > > And today I put > smtpd_discard_ehlo_keywords = chunking > > > And I get many many logs like: > ... > Dec

[pfx] Re: emailcore (was: The SMTP HELP command)

2023-12-29 Thread Claus Assmann via Postfix-users
On Fri, Dec 29, 2023, Joachim Lindenberg via Postfix-users wrote: > What I am really missing is clear statements like SMTP-DANE, SPF, > DKIM, DMARC are mandatory unless you don't use SMTP at all. Wow... you really want that? Then subscribe to emailcore and suggest it over there... To:

[pfx] Re: SMTP Smuggling, workarounds and fix // Clarification on BDAT

2023-12-29 Thread natan via Postfix-users
Hi In postfix-3.4.23 (debian) I set (I use always) smtpd_data_restrictions = reject_unauth_pipelining And today I put smtpd_discard_ehlo_keywords = chunking And I get many many logs like: ... Dec 29 10:10:13 msmtp postfix/submission/smtpd[11064]: discarding EHLO keywords: CHUNKING Dec 29

[pfx] Re: The SMTP HELP command

2023-12-29 Thread Joachim Lindenberg via Postfix-users
Hello John, are you willing to share what direction you/IETF are working towards? What I am really missing is clear statements like SMTP-DANE, SPF, DKIM, DMARC are mandatory unless you don´t use SMTP at all. While some public providers support these, many German organizations do not. Just