[pfx] Re: SASL reject force disconnect

2024-05-28 Thread John Hill via Postfix-users
On 5/28/24 5:39 AM, Christophe Kalt via Postfix-users wrote: smtpd_delay_reject to no I had it at yes. Changed it. --john ___ Postfix-users mailing list -- postfix-users@postfix.org To unsubscribe send an email to postfix-users-le...@postfix.org

[pfx] Re: SASL reject force disconnect

2024-05-28 Thread John Fawcett via Postfix-users
On 28/05/2024 11:39, Christophe Kalt via Postfix-users wrote: On Sun, May 26, 2024 at 5:57 AM John Fawcett via Postfix-users wrote: For submission I only use xbl (return code 127.0.0.4) excluding other other data contained in zen like pbl that lists isp dynamic ip ranges from whic

[pfx] Re: SASL reject force disconnect

2024-05-28 Thread Matus UHLAR - fantomas via Postfix-users
On Sun, May 26, 2024 at 5:57 AM John Fawcett via Postfix-users < postfix-users@postfix.org> wrote: For submission I only use xbl (return code 127.0.0.4) excluding other other data contained in zen like pbl that lists isp dynamic ip ranges from which you would normally expect to get connections t

[pfx] Re: SASL reject force disconnect

2024-05-28 Thread Christophe Kalt via Postfix-users
On Sun, May 26, 2024 at 5:57 AM John Fawcett via Postfix-users < postfix-users@postfix.org> wrote: > For submission I only use xbl (return code 127.0.0.4) excluding other > other data contained in zen like pbl that lists isp dynamic ip ranges from > which you would normally expect to get connectio

[pfx] Re: SASL reject force disconnect

2024-05-28 Thread Matus UHLAR - fantomas via Postfix-users
postscreen_dnsbl_sites = zen.spamhaus.org=127.0.0.[2..11] John Hill via Postfix-users: Is this the same thing? On 25.05.24 15:54, Wietse Venema via Postfix-users wrote: See https://www.spamhaus.org/faqs/dnsbl-usage/#200 for a table with the purpose of different lookup results. To block xbl

[pfx] Re: SASL reject force disconnect

2024-05-27 Thread John Fawcett via Postfix-users
On 27/05/2024 13:31, John Hill via Postfix-users wrote: On 5/27/24 4:13 AM, Matus UHLAR - fantomas via Postfix-users wrote: > postscreen_dnsbl_sites = zen.spamhaus.org=127.0.0.[2..11] John Hill via Postfix-users: Is this the same thing? On 25.05.24 15:54, Wietse Venema via Postfix-users

[pfx] Re: SASL reject force disconnect

2024-05-27 Thread John Hill via Postfix-users
On 5/27/24 4:13 AM, Matus UHLAR - fantomas via Postfix-users wrote: > postscreen_dnsbl_sites = zen.spamhaus.org=127.0.0.[2..11] John Hill via Postfix-users: Is this the same thing? On 25.05.24 15:54, Wietse Venema via Postfix-users wrote: See https://www.spamhaus.org/faqs/dnsbl-usage/#200

[pfx] Re: SASL reject force disconnect

2024-05-27 Thread Matus UHLAR - fantomas via Postfix-users
> postscreen_dnsbl_sites = zen.spamhaus.org=127.0.0.[2..11] John Hill via Postfix-users: Is this the same thing? On 25.05.24 15:54, Wietse Venema via Postfix-users wrote: See https://www.spamhaus.org/faqs/dnsbl-usage/#200 for a table with the purpose of different lookup results. To block x

[pfx] Re: SASL reject force disconnect

2024-05-26 Thread John Fawcett via Postfix-users
On 25/05/2024 20:50, John Hill via Postfix-users wrote: On 5/25/24 11:22 AM, John Fawcett via Postfix-users wrote: On 24/05/2024 03:03, John Hill via Postfix-users wrote: I learn something every time I read this group, when I can keep up with the conversation! I had auth on ports I did no

[pfx] Re: SASL reject force disconnect

2024-05-25 Thread John Hill via Postfix-users
On 5/25/24 3:54 PM, Wietse Venema via Postfix-users wrote: John Hill via Postfix-users: postscreen_dnsbl_sites = zen.spamhaus.org=127.0.0.[2..11] Is this the same thing? See https://www.spamhaus.org/faqs/dnsbl-usage/#200 for a table with the purpose of different lookup results. To block xbl

[pfx] Re: SASL reject force disconnect

2024-05-25 Thread Wietse Venema via Postfix-users
John Hill via Postfix-users: > > postscreen_dnsbl_sites = zen.spamhaus.org=127.0.0.[2..11] > Is this the same thing? See https://www.spamhaus.org/faqs/dnsbl-usage/#200 for a table with the purpose of different lookup results. To block xbl listed clients with postscreen, one would configure xbl.sp

[pfx] Re: SASL reject force disconnect

2024-05-25 Thread John Hill via Postfix-users
On 5/25/24 11:22 AM, John Fawcett via Postfix-users wrote: On 24/05/2024 03:03, John Hill via Postfix-users wrote: I learn something every time I read this group, when I can keep up with the conversation! I had auth on ports I did not need. I use auth on submission port 587, for users acces

[pfx] Re: SASL reject force disconnect

2024-05-25 Thread John Fawcett via Postfix-users
On 24/05/2024 03:03, John Hill via Postfix-users wrote: I learn something every time I read this group, when I can keep up with the conversation! I had auth on ports I did not need. I use auth on submission port 587, for users access. I do get a boat load of failed login attempts on 587. F

[pfx] Re: SASL reject force disconnect

2024-05-24 Thread John Hill via Postfix-users
On 5/24/24 9:33 AM, Matus UHLAR - fantomas via Postfix-users wrote: On 24.05.24 07:36, John Hill via Postfix-users wrote: What command do you use to reset the connection? no command, just rule in OUTPUT chain:  1710  649K REJECT 6    --  *  * 0.0.0.0/0    0.0.0.0/0  

[pfx] Re: SASL reject force disconnect

2024-05-24 Thread Matus UHLAR - fantomas via Postfix-users
On 24.05.24 07:36, John Hill via Postfix-users wrote: What command do you use to reset the connection? no command, just rule in OUTPUT chain: 1710 649K REJECT 6-- * * 0.0.0.0/00.0.0.0/0 tcp spt:25 match-set block-smtp dst reject-with icmp-port-unre

[pfx] Re: SASL reject force disconnect

2024-05-24 Thread John Hill via Postfix-users
What command do you use to reset the connection? On 5/24/24 6:18 AM, Matus UHLAR - fantomas via Postfix-users wrote: On 23.05.24 21:03, John Hill via Postfix-users wrote: I use Fail2Ban to block the failed IP. The script writes it into the nftables table immediately. I think this keeps Postfi

[pfx] Re: SASL reject force disconnect

2024-05-24 Thread Matus UHLAR - fantomas via Postfix-users
On 23.05.24 21:03, John Hill via Postfix-users wrote: I use Fail2Ban to block the failed IP. The script writes it into the nftables table immediately. I think this keeps Postfix waiting and times out, not a big deal. Is there a cli that my bash script could force disconnect the ip from Postfi

[pfx] Re: SASL reject force disconnect

2024-05-23 Thread John Hill via Postfix-users
Will do it. Tonight. Thanks On May 23, 2024 9:11 PM, Wietse Venema via Postfix-users wrote: John Hill via Postfix-users: > I learn something every time I read this group, when I can keep up with > the conversation! > > I had auth on ports I did not need. I use auth on submission port 5

[pfx] Re: SASL reject force disconnect

2024-05-23 Thread Wietse Venema via Postfix-users
John Hill via Postfix-users: > I learn something every time I read this group, when I can keep up with > the conversation! > > I had auth on ports I did not need. I use auth on submission port 587, > for users access. > > I do get a boat load of failed login attempts on 587. Funny how a China,