Re: OT: Risks & mitigations of allowing an external sender to send to us (with sender 'same domain' as us)

2018-05-15 Thread John Stoffel
> "Roger" == Roger Goh writes: Roger> There is an external app server (that is our service provider) Roger> that we want them to blast emails to a team/department in our Roger> organization (email domain @xyz.com ) but these emails will Roger> have the sender to be in same

Re: transport_maps and lookups reason

2018-05-15 Thread Wietse Venema
Bokhan Artem: > Hello. > > I have 'transport_maps = mysql:/etc/postfix/transport.cf' in > configuration and want to understand the reason of every db lookup as I > have some actions in mysql server based on queries count. Please explain > them. > > When sending single email these lookups are

Re: transport_maps and lookups reason

2018-05-15 Thread Bokhan Artem
Thank you. 2. "source@emal" Can source email (mail from) lookup be disabled when using transport_maps? Any ideas? As I understand transport_maps should rely on destination address when sender depended transport maps are not used. 15.05.2018 20:48, Viktor Dukhovni пишет: 2. "source@emal"

Re: transport_maps and lookups reason

2018-05-15 Thread Viktor Dukhovni
> On May 15, 2018, at 10:00 AM, Bokhan Artem wrote: > > Can source email (mail from) lookup be disabled when using transport_maps? > Any ideas? As I understand transport_maps should rely on destination address > when sender depended transport maps are not used. As Wietse

Re: transport_maps and lookups reason

2018-05-15 Thread Viktor Dukhovni
> On May 15, 2018, at 8:01 AM, Bokhan Artem wrote: > > When sending single email these lookups are made: > > 1. "*" This is typically cached, and not queried for each and every message. > 2. "source@emal" > 3. "destination@email" > 4. "destination@email" > > Especially what

transport_maps and lookups reason

2018-05-15 Thread Bokhan Artem
Hello. I have 'transport_maps = mysql:/etc/postfix/transport.cf' in configuration and want to understand the reason of every db lookup as I have some actions in mysql server based on queries count. Please explain them. When sending single email these lookups are made: 1. "*" 2.

Re: check rcpt to, from and destination in one session - nested smtpd_restriction_classes?

2018-05-15 Thread Viktor Dukhovni
> On May 15, 2018, at 11:38 AM, Stefan Bauer wrote: > > I can not think of a way to achieve this. It is unclear what combination of criteria you want to use. What naïvely makes sense to me is that the client hosts in question are to be restricted to a particular

Re: Question regarding OpenDKIM milter with Postfix 3.1.0

2018-05-15 Thread A. Schulze
Am 15.05.2018 um 02:40 schrieb J Doe: > I apologize for asking a question that is only tangentially related to > Postfix, however the OpenDKIM mailing lists do not appear to be accessible. yes, the OpenDKIM lists are unfortunately broken since a long time. I hope I could push the list admin

RE: check rcpt to, from and destination in one session - nested smtpd_restriction_classes?

2018-05-15 Thread Fazzina, Angelo
Hi, sounds like you want If from ( benachrichtig...@cubewerk.de) and from (10.8.1.1-3) Then allow Else REJECT Sounds like you would need a regex expression to catch two conditions and then act on it. Not sure postfix can store result of first check and

Re: OT: Risks & mitigations of allowing an external sender to send to us (with sender 'same domain' as us)

2018-05-15 Thread Noel Jones
On 5/14/2018 11:23 PM, Roger Goh wrote: > > There is an external app server (that is our service provider) that > we want them > to blast emails to a team/department in our organization (email > domain @xyz.com ) > but these emails will have the sender to be in same domain as us

Re: Problem when I send a mail

2018-05-15 Thread Danny Horne
On 15/05/18 19:34, for...@mehl-family.fr wrote: > > Hi, > > When I send a mail with roundcube from my computer I find this message > on my maillog : > > /*May 15 20:16:51 MYSERVER postfix/smtpd[29843]: connect from > unknown[192.168.1.1]*/ > > I think all that means is Postfix can't resolve the IP

Re: Problem when I send a mail

2018-05-15 Thread Matus UHLAR - fantomas
On 15.05.18 20:53, for...@mehl-family.fr wrote: I have tried with add this entry on /etc/hosts : 192.168.1.1 my.domain.fr But no change... postfix does not use /etc/hosts. postfix uses DNS, you should configure DNS server on your machine. On May 15, 2018 11:34:30 AM PDT,

Postfix does not authenticate to relayhost

2018-05-15 Thread Florian Lindner
Hello, I run two postfix servers. One on my server, which just runs fine and is used to sent mail directly. The other one on my local machine which should relay mail to other one. Problem is that the desktop MTA does not seem to authenticate to its relayhost: The server says: May 15 22:10:04

Testing new server

2018-05-15 Thread Steve Huston
I have an old machine I'm in the process of retiring, and want to test its replacement. To do so, I'd like to send a copy of all locally-delivered mail from the old machine to the new one to have it processed there. I've set "default_transport = discard:Outgoing email disabled for testing" on

Problem when I send a mail

2018-05-15 Thread forums
Hi, When I send a mail with roundcube from my computer I find this message on my maillog : _MAY 15 20:16:51 MYSERVER POSTFIX/SMTPD[29843]: CONNECT FROM UNKNOWN[192.168.1.1]_ 192.168.1.1 is my box IP My computer is in the same lan than my mailserver (home network). I think I have a bad

Re: Problem when I send a mail

2018-05-15 Thread forums
I have tried with add this entry on /etc/hosts : 192.168.1.1 my.domain.fr But no change... --- ## Philippe - Forums Le 2018-05-15 20:51, Dennis Carr a écrit : > This is fairly normal. It just means that postfix can't figure out the name > of the connecting box by resolution or

Re: Problem when I send a mail

2018-05-15 Thread forums
I don't want to configure DNS server on my machine. I use 2 DNS (/etc/resolv.conf) : - 1.1.1.1 - 192.168.1.1 --- ## Philippe - Forums Le 2018-05-15 20:57, Matus UHLAR - fantomas a écrit : > On 15.05.18 20:53, for...@mehl-family.fr wrote: > >> I have tried with add this entry

Re: Postfix does not authenticate to relayhost

2018-05-15 Thread Benny Pedersen
Florian Lindner skrev den 2018-05-15 22:17: May 15 22:10:04 venus postfix/smtpd[20438]: connect from host[x.x.x] May 15 22:10:04 venus postfix/smtpd[20438]: NOQUEUE: reject: RCPT from host[x.x.x]: 450 4.1.8 : Sender address rejected: Domain not found;

Re: Problem when I send a mail

2018-05-15 Thread Dennis Carr
This is fairly normal. It just means that postfix can't figure out the name of the connecting box by resolution or host look-up. -Dennis Carr On May 15, 2018 11:34:30 AM PDT, for...@mehl-family.fr wrote: >Hi, > >When I send a mail with roundcube from my computer I find this message >on my

Re: Postfix does not authenticate to relayhost

2018-05-15 Thread Bastian Blank
On Tue, May 15, 2018 at 10:17:40PM +0200, Florian Lindner wrote: > relayhost = [venus.centershock.net] > venus.centershock.net relayu...@xgm.de:passwd '[venus.centershock.net]' != 'venus.centershock.net'. The name needs to match in full. Bastian -- A Vulcan can no sooner be disloyal than he

check rcpt to, from and destination in one session - nested smtpd_restriction_classes?

2018-05-15 Thread Stefan Bauer
Hi, postfix is configured as relay server. Other systems relay with postfix. Here i want to allow for a specific group of hosts, when they use a specific mail from address only a few specific destination domains. Other hosts should not be bothered. This is only a need to limit a group of hosts to

Re: Postfix does not authenticate to relayhost

2018-05-15 Thread Viktor Dukhovni
> On May 15, 2018, at 4:17 PM, Florian Lindner wrote: > > % postconf -n > [...] > mynetworks_style = host > relayhost = [venus.centershock.net] > smtp_sasl_password_maps = hash:/etc/postfix/relay > smtp_sasl_security_options = noanonymous > smtpd_tls_security_level =

Re: check rcpt to, from and destination in one session - nested smtpd_restriction_classes?

2018-05-15 Thread Jan P. Kessler
postfix is configured as relay server. Other systems relay with postfix. Here i want to allow for a specific group of hosts, when they use a specific mail from address only a few specific destination domains. Other hosts should not be bothered. This is only a need to limit a group of hosts

Re: Postfix does not authenticate to relayhost

2018-05-15 Thread Florian Lindner
Am 15.05.2018 um 22:26 schrieb Bastian Blank: > On Tue, May 15, 2018 at 10:17:40PM +0200, Florian Lindner wrote: >> relayhost = [venus.centershock.net] >> venus.centershock.net relayu...@xgm.de:passwd > > '[venus.centershock.net]' != 'venus.centershock.net'. The name needs to > match in full.

Re: Postfix does not authenticate to relayhost

2018-05-15 Thread Viktor Dukhovni
> On May 15, 2018, at 4:17 PM, Florian Lindner wrote: > > relayhost = [venus.centershock.net] > smtp_sasl_password_maps = hash:/etc/postfix/relay > smtp_sasl_security_options = noanonymous > smtpd_tls_security_level = encrypt > > # cat relay > venus.centershock.net

Re: Problem when I send a mail

2018-05-15 Thread Viktor Dukhovni
> On May 15, 2018, at 2:57 PM, Matus UHLAR - fantomas wrote: > >> I have tried with add this entry on /etc/hosts : >> >> 192.168.1.1 my.domain.fr >> >> But no change... > > postfix does not use /etc/hosts. > postfix uses DNS, you should configure DNS server on your

Re: Postfix does not authenticate to relayhost

2018-05-15 Thread Benny Pedersen
Viktor Dukhovni skrev den 2018-05-15 23:15: On May 15, 2018, at 4:17 PM, Florian Lindner wrote: relayhost = [venus.centershock.net] smtp_sasl_password_maps = hash:/etc/postfix/relay smtp_sasl_security_options = noanonymous smtpd_tls_security_level = encrypt # cat relay

Re: Problem when I send a mail

2018-05-15 Thread Viktor Dukhovni
> On May 15, 2018, at 5:31 PM, for...@mehl-family.fr wrote: > > My /etc/nsswitch.conf contain that : > > hosts: files mdns4_minimal [NOTFOUND=return] dns > networks: files Your SMTP server may be running in a chroot jail. -- Viktor.

Re: Postfix does not authenticate to relayhost

2018-05-15 Thread Florian Lindner
Am 15.05.2018 um 22:29 schrieb Benny Pedersen: > Florian Lindner skrev den 2018-05-15 22:17: > >> May 15 22:10:04 venus postfix/smtpd[20438]: connect from host[x.x.x] >> May 15 22:10:04 venus postfix/smtpd[20438]: NOQUEUE: reject: RCPT from >> host[x.x.x]: 450 4.1.8 :

Re: Problem when I send a mail

2018-05-15 Thread forums
My /etc/nsswitch.conf contain that : hosts: files mdns4_minimal [NOTFOUND=return] dns networks: files --- ## Philippe - Forums Le 2018-05-15 23:21, Viktor Dukhovni a écrit : > On May 15, 2018, at 2:57 PM, Matus UHLAR - fantomas wrote: > > I have

Re: Postfix does not authenticate to relayhost

2018-05-15 Thread Viktor Dukhovni
> On May 15, 2018, at 5:30 PM, Benny Pedersen wrote: > > ort 25 should not provide auth senders > > add a transportmap to relay host and do not use port 25 in the transport map There's no need for transport entries. Just setting "relayhost' is enough. The relayhost setting can

Re: Problem when I send a mail

2018-05-15 Thread Bill Cole
On 15 May 2018, at 16:58, for...@mehl-family.fr wrote: I don't want to configure DNS server on my machine. That's perfectly fine but it is not relevant. What you *want* has no effect on what *works*. If you want Postfix to recognize an IP in RFC1918 private space as having a valid name, you

Re: check rcpt to, from and destination in one session - nested smtpd_restriction_classes?

2018-05-15 Thread Stefan Bauer
Sorry for beeing unclear: my criterias are if (from 10.8.1.1-3 and mail from: benachrichtigung@) then only allow rcpt to: example.org, example.net, example.edu) If from 10.8.1.1-3 and mail from anything else, no limitation should take place. 2018-05-16 0:14 GMT+02:00 Jan P. Kessler <

Re: check rcpt to, from and destination in one session - nested smtpd_restriction_classes?

2018-05-15 Thread Stefan Bauer
That works. thank you very much guys for your help! 2018-05-15 18:10 GMT+02:00 Viktor Dukhovni : > > > > On May 15, 2018, at 11:38 AM, Stefan Bauer > wrote: > > > > I can not think of a way to achieve this. > > It is unclear what combination