Re: Newbie: virtual alias problem

2010-04-26 Thread Jeroen Geilman
On Monday 26 April 2010 08:39:50 M.S. Lucas wrote: Hello, I have in my virtual_alias_domains file two entries u...@domain.nl us...@domain.nl @domain.nl us...@domain.nl No. No no no no, that is not what virtual_alias_domains is for. What I want is

Re: Tracing down a spammer

2010-04-26 Thread Jeroen Geilman
On Monday 26 April 2010 18:49:42 The Doctor wrote: Tracing and tracking. Question is: If you suspect your web (whether www,http,httpd user ) ...of what ? If you mean you suspect a local user of your web server of sending out spam, implement proper local sender restrictions by measures

Re: .forward files

2010-05-05 Thread Jeroen Geilman
On 05/05/2010 04:19 PM, Alexander Erameh wrote: * Alexander Eramehalexander_era...@hotmail.com: Is there any reason why Postfix doesn't read .forward files set up in users Mail folders, even after modifying main.cf to include the forward_path option. Yes. If postfix/local is not

Re: Modifying body content before delivering

2010-05-19 Thread Jeroen Geilman
On 05/19/2010 10:30 PM, Alex wrote: Hi, You can use smtp_header_checks and smtp_body_checks with the REPLACE action to make minor changes to mail content during delivery. These are rather simple tools by design, best suited for easily defined transformations. Thanks for the notes.

Re: smtpd_recipient_restrictions has no effect

2010-05-30 Thread Jeroen Geilman
On 05/30/2010 01:29 PM, Jarrod Neven wrote: I am trying to setup restriction to prevent selected users from sending email externally. I have followed the Restricting what users can send mail to off-site destinations guide at http://www.postfix.net/RESTRICTION_CLASS_README.html but it is not

Re: smtpd_recipient_restrictions has no effect

2010-05-30 Thread Jeroen Geilman
On 05/30/2010 09:29 PM, Noel Jones wrote: On 5/30/2010 6:58 AM, Jeroen Geilman wrote: On 05/30/2010 01:29 PM, Jarrod Neven wrote: I am trying to setup restriction to prevent selected users from sending email externally. I have followed the Restricting what users can send mail to off-site

Postscreen DNSBL checks preferable over reject_client_rbl ?

2010-05-30 Thread Jeroen Geilman
Hi all, I upgraded recently to 2.7.0 and thought I'd take advantage of the nice separation of duties that postscreen provides. It looks as if moving my RBLs to postscreen means they're no longer needed in my *_restrictions - is there a scenario where this would not be the case ? Does

Re: Postscreen DNSBL checks preferable over reject_client_rbl ?

2010-05-30 Thread Jeroen Geilman
On 05/30/2010 11:34 PM, Ralf Hildebrandt wrote: * Jeroen Geilmanjer...@adaptr.nl: Hi all, I upgraded recently to 2.7.0 and thought I'd take advantage of the nice separation of duties that postscreen provides. It looks as if moving my RBLs to postscreen means they're no longer needed in my

postscreen faux-pas

2010-05-31 Thread Jeroen Geilman
Hi all, I was just alerted by standon about the fact that, while the postfix manual claims all postscreen_* options are AVAILABLE as of 2.7, this is not in fact true. There is a teeny tiny notice on the announce that you need to dump the 2.8 devel executables for postscreen into your 2.7

Re: postscreen faux-pas

2010-05-31 Thread Jeroen Geilman
On 05/31/2010 08:50 PM, Wietse Venema wrote: Jeroen Geilman: Hi all, I was just alerted by standon about the fact that, while the postfix manual claims all postscreen_* options are AVAILABLE as of 2.7, this is not in fact true. There is a teeny tiny notice on the announce that you need

Re: Postfix performance issue

2010-05-31 Thread Jeroen Geilman
On 05/31/2010 08:50 PM, Teh Kim Chooi wrote: Hi guys, i recently just setup a high volume postfix server, still in testing mode before the server go for live, OS rhel 5.5 and postfix version 2.3.3 server with 1 quad core, 8gb ram OS on mirror disk, /var/spool/postfix in 1+0 6 disks, all is

Re: RFE: add an import mechanism to the mysql_table

2010-06-03 Thread Jeroen Geilman
On 06/03/2010 05:35 PM, gmx wrote: Dear list, In our postfix configs, we use multiple queries based on the mysql_table from the same DB . So as per http://www.postfix.org/mysql_table.5.html each of the mysql config files contains a hosts = mydbhost.domain.tld user = mydbUser password =

Re: ip range other than mynetworks

2010-06-03 Thread Jeroen Geilman
On 06/03/2010 08:51 PM, Josh Cason wrote: I decided to impliment some new security and remove pop-before-smtp. But I have some dialup users and some of them use email. The company I'm going through is global pops. I would like to add there iprange to postfix as allowed users. I looked at

Re: Debian argument.. postfix hostname

2010-06-04 Thread Jeroen Geilman
On 06/04/2010 03:25 AM, Wietse Venema wrote: Moe: The docs for 'myhostname' even explicitly state The default is to use the fully-qualified domain name from gethostname(), which makes no sense as gethostname() does not normally return a FQDN. Only a brain-damaged person would claim

Re: Understanding Client Restrictions

2010-06-04 Thread Jeroen Geilman
On 06/05/2010 01:29 AM, Drew Tomlinson wrote: I'm finding the following in my mail log: Jun 4 08:55:11 blacklamb postfix/smtpd[95132]: NOQUEUE: reject: RCPT from outmail008.snc1.tfbnw.net[69.63.178.167]: That is where it comes from; this is what check_client_access checks. 554 5.7.1

Re: Understanding Client Restrictions

2010-06-04 Thread Jeroen Geilman
On 6/4/2010 6:59 PM, Jeroen Geilman wrote: 554 5.7.1 Service unavailable; Client host [69.63.178.167] blocked using bl.spamcop.net; Blocked - see http://www.spamcop.net/bl.shtml?69.63.178.167; from=notification+o=6pg...@facebookmail.com to=d...@mykitchentable.net proto=ESMTP helo=mx

Re: Understanding Client Restrictions

2010-06-04 Thread Jeroen Geilman
On 6/4/2010 7:12 PM, Jeroen Geilman wrote: On 6/4/2010 6:59 PM, Jeroen Geilman wrote: 554 5.7.1 Service unavailable; Client host [69.63.178.167] blocked using bl.spamcop.net; Blocked - see http://www.spamcop.net/bl.shtml?69.63.178.167; from=notification+o=6pg...@facebookmail.com to=d

Re: unknow user 450 to 550 reject code

2010-06-05 Thread Jeroen Geilman
Ciao Somebody have any idea how can i change User unknown in virtual mailbox table reject code from 450 to 550 (don't send again) The unknown_virtual_mailbox_reject_code response defaults to 550. If it is not 550 on your system, somebody altered it from the default. (I don't see how an

Re: unknow user 450 to 550 reject code

2010-06-05 Thread Jeroen Geilman
On Sat, 05 Jun 2010 23:26:46 +0200 Jeroen Geilmanjer...@adaptr.nl wrote: Ciao Somebody have any idea how can i change User unknown in virtual mailbox table reject code from 450 to 550 (don't send again) The unknown_virtual_mailbox_reject_code response defaults to 550. If it is

Re: unknow user 450 to 550 reject code

2010-06-05 Thread Jeroen Geilman
On Sat, 05 Jun 2010 23:33:04 +0200 Jeroen Geilmanjer...@adaptr.nl wrote: On Sat, 05 Jun 2010 23:26:46 +0200 Jeroen Geilmanjer...@adaptr.nl wrote: Ciao Somebody have any idea how can i change User unknown in virtual mailbox table reject code from 450 to 550 (don't send again)

Re: Postfix not processing .forward files

2010-06-07 Thread Jeroen Geilman
Hi, We migrated a mail server from qmail + vpopmail to postfix+vpopmail and the mail server is working properly with virtual domains. The only problem is that if the user has a .forward file in the home or in the Maildir doesn't read them and doesn't forward the emails but delivers them

Re: (grep followed msg) Installing smtp auth did not help my spam issue Below is example

2010-06-07 Thread Jeroen Geilman
Now this has always been puzzling. This looks like a spam from a customers machine. They swear up an down there machine is clean. The are also a good friend of the boss. Well he knowns them. What I did was grep the 2E3F10D8005 and then did another grep when 7F92C10D8193 via mailscanner.

Re: Duplicate emails received

2010-06-08 Thread Jeroen Geilman
Hello, I have set up a postfix(2.6.6) mail receiving server (customized with three milters (dkim,sid, custom java milter) and two content filters (amavisd, custom java based)). Is it possible that if someone sends a mail for my postfix and it gets received in a manner that duplicate mails

Re: unable to telnet localhost 25

2010-06-08 Thread Jeroen Geilman
Hi, I am using postfix + MailScanner + Mailwatch, Everything is working fine... postfix is relaying emails for all of my clients/domain, but I am unable to telnet localhost 25. Although I have allowed 127.0.0.0/8 range, listening on all interfaces, and is sending emails for all customer

Re: [OT] Detecting telnet?

2010-06-10 Thread Jeroen Geilman
On 06/10/2010 11:31 PM, Ralf Hildebrandt wrote: I heard that there are firewalls/security appliances that supposedly can distinguish somebody using telnet from a machine speaking SMTP. I must admit, it sounds feasible (timing between keystrokes etc.), but little useful. Anyway. Is there such a

Re: how to stop backscatter without check headers

2010-06-10 Thread Jeroen Geilman
On 06/11/2010 12:44 AM, motty.cruz wrote: Is there a best way to stop backscatter spam without using check headers? Traffic is too heavy to user check headers + we received email for three different domains. Using postfix 2.6. Thanks, motty To stop backscatter spam, don't accept mail

Re: recipient_bcc_maps override

2010-06-10 Thread Jeroen Geilman
On 06/11/2010 12:59 AM, Emmanuel Bailleul wrote: Hello, I'm currently working on a test box to verify the behavior of some features I'd like to implement on a production mail relay server. Among those are recipient_bcc_maps/sender_bcc_maps (to keep copies of certain emails) and after-queue

Re: how to stop backscatter without check headers

2010-06-11 Thread Jeroen Geilman
On 06/11/2010 04:40 PM, motty.cruz wrote: *From:* owner-postfix-us...@postfix.org [mailto:owner-postfix-us...@postfix.org] *On Behalf Of *Jeroen Geilman *Sent:* Thursday, June 10, 2010 4:02 PM *To:* postfix-users@postfix.org *Subject:* Re: how to stop backscatter without check headers On 06

Re: reject_non_fqdn_helo_hostname

2010-06-11 Thread Jeroen Geilman
On 06/11/2010 05:48 PM, Stan Hoeppner wrote: Wietse Venema put forth on 6/11/2010 9:21 AM: Stan Hoeppner: Does Postfix consider architettobellucci.com an FQDN? I've always understood an FQDN as requiring all 3 of host.domain.tld. If my understanding of FQDN is correct, then a spam

Re: forward single user to smtp-relay

2010-06-11 Thread Jeroen Geilman
On 06/11/2010 11:00 AM, Joern Merkel wrote: Hi, I need to forward a single user to another smtp-relay. The rest of the users of this domain is delivered local. So I put her into /etc/postfix/transport: u...@testdomain.de smtp:[212.6.xxx.xxx] Where are the logs of attempting this after

Re: how to stop backscatter without check headers

2010-06-11 Thread Jeroen Geilman
On 06/11/2010 08:00 PM, motty.cruz wrote: *From:* owner-postfix-us...@postfix.org [mailto:owner-postfix-us...@postfix.org] *On Behalf Of *Jeroen Geilman *Sent:* Friday, June 11, 2010 10:32 AM *To:* postfix-users@postfix.org *Subject:* Re: how to stop backscatter without check headers On 06

Re: Sender Authentication

2010-06-11 Thread Jeroen Geilman
On 06/12/2010 02:08 AM, Walter Pinto wrote: I'm looking for information on restricting users who send mail through our MX servers to authenticated users only, we currently use SASL2/MySQL to store valid user info, I'll try to include as much info as possible. The reason I ask is because it

Re: Sender Authentication

2010-06-12 Thread Jeroen Geilman
On 06/12/2010 07:06 AM, Walter Pinto wrote: Recipient map is also SQL based, here's the config. [r...@mx sql]# cat relay_recipient_map.conf user = xxx password = xxx dbname = xxx query = SELECT y FROM relay_recipient_map WHERE x='%s' I'm pretty sure I

Re: local delivery fails ((unknown mail transport error) when combined with mailbox_transport_maps

2010-06-13 Thread Jeroen Geilman
Hi Wietse, main.cf: + mailbox_transport=smtp:[weitan.org] # forward everything ... + mailbox_transport_maps=hash:/etc/postfix/mailbox_transport_maps # ... except some mails With mailbox_transport_maps: + jan local You have set up an infinite loop, asking the local delivery agent

Re: Sender Authentication

2010-06-13 Thread Jeroen Geilman
There's no need to be rude sir. You have strange conceptions of rudeness. Also, please do not top-post. I'm just trying to become more familiar with the Postfix system as an alternative to Qmail which I've had more real world experience dealing with, Yeah. Qmail breaks so many standards

Re: Does postfix smtp always log every receipient?

2010-06-15 Thread Jeroen Geilman
Hi, Postfix smtp logs outgoing emails like this: postfix/smtp[13950]: E6DA025473: to=u...@domain.tld, relay=none, delay=4537, delays=4536/0.06/0.53/0, dsn=4.4.1, status=etc... I noticed that when an email has more than one receipient, smtp will log separate messages, one for every receipient.

Re: Does postfix smtp always log every receipient?

2010-06-15 Thread Jeroen Geilman
On 6/15/2010 4:30 PM, Jeroen Geilman wrote: Hi, Postfix smtp logs outgoing emails like this: postfix/smtp[13950]: E6DA025473: to=u...@domain.tld, relay=none, delay=4537, delays=4536/0.06/0.53/0, dsn=4.4.1, status=etc... I noticed that when an email has more than one receipient, smtp

Re: Smtpd_sender_maps and sender / recipient restrictions

2010-06-15 Thread Jeroen Geilman
I just got smtpd_sender_maps to work with smtpd_sender_restrictions using reject_authenticated_sender_login_mismatch. While researching how that worked, I saw information indicating that you could apply the reject_sender_login_mismatch to the smtpd_recipient_restrictions. Can someone explain

Re: timeout after DATA + lost connection after DATA

2010-06-17 Thread Jeroen Geilman
I have a problem with receiving mail from yandex (large mail service). May 21 13:30:09 mx postfix/smtpd[77115]: timeout after DATA (47440 bytes) from forward11.mail.yandex.net[95.108.130.93] May 21 13:31:56 mx postfix/smtpd[76924]: lost connection after DATA (33439 bytes) from

Re: postfix forgot my password feature

2010-06-25 Thread Jeroen Geilman
On 06/25/2010 11:44 PM, ms...@ciu.edu.tr wrote: Hi, I have a mail server with the postfix/Squirrelmail/Dovecot combination which I have user data on MySQL as virtual users. I have configured SM so that users can now change their own password. Is there any opensource solution to provide self

Re: customizing received: headers

2010-06-25 Thread Jeroen Geilman
On 06/26/2010 01:01 AM, Keld Simonsen wrote: On Fri, Jun 25, 2010 at 04:20:56PM -0400, Wietse Venema wrote: Keld Simonsen: On Fri, Jun 25, 2010 at 08:56:49AM -0400, Wietse Venema wrote: Keld Simonsen: [ Charset ISO-8859-1 unsupported, converting... ] On Thu, Jun

Re: Replace Private IP by Server Hostname in mail header

2010-06-27 Thread Jeroen Geilman
On 06/27/2010 01:20 PM, Rachid Abdelkhalak wrote: Hello List, I have a mail relay and an internal mail server both under Postfix and behind a firewall (DMZ and LAN), on both segment i'm using a private IP address with NAT. On all outgoing emails headers sent by our users, i can see my

Re: Subdomain

2010-06-29 Thread Jeroen Geilman
On 29-6-2010 16:28, Noel Jones wrote: On 6/29/2010 2:47 AM, ramesh wrote: Hi, I would like to have suggestion, presently we have internet service subdomain from ISP. Ex: Domain: @providerdomain.com Subdomain: @mydomain.providerdomain.com Email Id:

Re: Postfix.org SPF

2010-07-03 Thread Jeroen Geilman
On 07/03/2010 08:45 PM, junkyardma...@verizon.net wrote: How about publishing an SPF record for postfix.org. This would work well: v=spf1 mx include:cloud9.net ~all http://openspf.org/ http://old.openspf.org/wizard.html?mydomain=Postfix.org Um.. and then what ?

Re: Connection Refused on Port 25

2010-07-03 Thread Jeroen Geilman
On 07/03/2010 09:14 PM, Charles Marcus wrote: On 2010-07-02 7:20 PM, Asai wrote: OK. Has anyone successfully been able to work around this issue? The only way is to have the admin for the CISCO PIX disable the stupid smtp fixup garbage on the CISCO box. As far as I know, there is

Re: Connection Refused on Port 25

2010-07-03 Thread Jeroen Geilman
On 07/03/2010 11:20 PM, Asai wrote: Jeroen Geilman wrote: On 07/03/2010 09:14 PM, Charles Marcus wrote: On 2010-07-02 7:20 PM, Asai wrote: OK. Has anyone successfully been able to work around this issue? The only way is to have the admin for the CISCO PIX disable the stupid smtp fixup

Re: Connection Refused on Port 25

2010-07-03 Thread Jeroen Geilman
On 07/03/2010 11:24 PM, Asai wrote: Jeroen Geilman wrote: On 07/03/2010 11:20 PM, Asai wrote: Jeroen Geilman wrote: On 07/03/2010 09:14 PM, Charles Marcus wrote: On 2010-07-02 7:20 PM, Asai wrote: OK. Has anyone successfully been able to work around this issue? The only way is to have

Re: Connection Refused on Port 25

2010-07-03 Thread Jeroen Geilman
On 07/03/2010 11:38 PM, /dev/rob0 wrote: On Sat, Jul 03, 2010 at 02:24:20PM -0700, Asai wrote: Jeroen Geilman wrote: On 07/03/2010 11:20 PM, Asai wrote: Jeroen Geilman wrote: On 07/03/2010 09:14 PM, Charles Marcus wrote: On 2010-07-02 7:20 PM, Asai

Re: migrate from qmail to postfix

2010-07-04 Thread Jeroen Geilman
On 07/04/2010 01:38 AM, Asif Iqbal wrote: Hi All I am planning to migrate from qmail to postfix. Currently our qmail uses QMAILQUEUE, qmail-scanner, clamd, spamassassin, rbldnsd, greylite, qmail-pop, qmail-ldap, virtuals and ezmlm. (I hope I did not miss anything) I found few suggestions from

Re: distribution issues with Postfix

2010-07-07 Thread Jeroen Geilman
On 07/07/2010 05:25 PM, Phil Howard wrote: I am finally putting together a test mail server (something I wish I had when putting together the first mail server, but lack of hardware due to lack of funding flow limited that). But now I have another machine. But I am still seeing all the issues

Re: distribution issues with Postfix

2010-07-08 Thread Jeroen Geilman
On 07/07/2010 08:02 PM, Phil Howard wrote: On Wed, Jul 7, 2010 at 12:48, Jeroen Geilmanjer...@adaptr.nl wrote: I would suggest using a distribution or OS that allows you to configure postfix properly. Name it. Okay, I may have been baiting a bit there. The obvious inference

Re: distribution issues with Postfix

2010-07-08 Thread Jeroen Geilman
On 07/08/2010 06:10 PM, Phil Howard wrote: On Thu, Jul 8, 2010 at 10:40, markus reicheltm...@mareichelt.com wrote: ALso, I can only stress what has been said already: get your distro shit together; go along with your hunch about slackware, ask slackware specific questions on a slackware

Re: Local delivery not working properly

2010-07-08 Thread Jeroen Geilman
On 07/08/2010 05:42 PM, Teh Kim Chooi wrote: Hi, i have disable local delivery follow the document instruction, then i enable 2 user in the virtual file but not able to send to these users. Jul 8 22:57:07 smtp2 postfix/error[9618]: 3E7C82BE8004: to=postmas...@xxx.xxx.com

Re: Local delivery not working properly

2010-07-10 Thread Jeroen Geilman
On 07/10/2010 09:20 PM, Teh Kim Chooi wrote: Here's postconf -n [r...@smtp2 postfix]# postconf -n mynetworks = 127.0.0.0/8, 0.0.0.0/0 Open relay, here we come. relay_domains = example.net, example.com.my One or both of these domains loops back to your postfix (via an MX

Re: Relaying mail from the same domain to another server

2010-07-12 Thread Jeroen Geilman
On 07/12/2010 04:41 PM, John A. wrote: Hi. I'm trying to setup a multi-server mail architecture with a mail gateway and 2 final dest. servers hosting mailboxes, all on the same domain. I'm using virtual mailboxes wih MySQL backend (same for the 3 servers). I set up the gateway which forwards

Re: where to put domain name that's only it virtual map

2010-07-12 Thread Jeroen Geilman
On 07/12/2010 09:53 PM, Phil Howard wrote: I've added a domain name which has email addresses that are only in the virtual map. There are no real mailboxes over on Dovecot (via transport) for this one. Attempts to send mail to postmas...@newdomain.example.com gets Relay access denied, so it

Re: PATCH: defer when pipe command dies

2010-07-14 Thread Jeroen Geilman
On 07/14/2010 01:27 AM, Thomas Arnett wrote: On Jul 13, 2010, at 7:03 PM, Wietse Venema wrote: What are the symptoms of the problem? postfix/pipe[22169]: 5991748: to=u...@example.com, relay=dovecot, delay=1.9, delays=1.8/0.05/0/0.03, dsn=5.3.0, status=bounced (Command died with

Re: TLS not being advertised or not running?

2010-07-14 Thread Jeroen Geilman
On 07/14/2010 08:09 PM, markus reichelt wrote: * Theodore Dursttdu...@durstmedia.com wrote: Any hints? When I started I found this quite useful: http://souptonuts.sourceforge.net/postfix_tutorial.html Please stick to the actual documentation, to avoid misunderstandings :

Re: PATCH: defer when pipe command dies

2010-07-14 Thread Jeroen Geilman
On 07/14/2010 10:29 PM, Victor Duchovni wrote: On Wed, Jul 14, 2010 at 07:56:36PM +0200, Jeroen Geilman wrote: postfix/pipe[15018]: A481A3B: to=u...@example.com, relay=dovecot, delay=0.32, delays=0.26/0.02/0/0.04, dsn=4.3.0, status=deferred (Command died with signal 7: /usr/libexec/dovecot

Re: PATCH: defer when pipe command dies

2010-07-14 Thread Jeroen Geilman
On 07/14/2010 10:29 PM, Victor Duchovni wrote: On Wed, Jul 14, 2010 at 07:56:36PM +0200, Jeroen Geilman wrote: postfix/pipe[15018]: A481A3B: to=u...@example.com, relay=dovecot, delay=0.32, delays=0.26/0.02/0/0.04, dsn=4.3.0, status=deferred (Command died with signal 7: /usr/libexec/dovecot

Re: what is the quickest way to bounce all message in the defer queue?

2010-07-23 Thread Jeroen Geilman
On 07/23/2010 08:42 AM, Joe Wong wrote: Hello, For some good reason, I want to have a way to bounce all message in deferred queue. Is there a command(s) to do so? That is a very bad idea. The only valid reason to do this would be if you /knew/ these messages can never be delivered, which

Re: Sender restrictions

2010-07-23 Thread Jeroen Geilman
On 07/24/2010 12:44 AM, Andrés Gattinoni wrote: Hi guys, I have the following question: Is it possible to restrict some virtual accounts from sending emails through my Postfix? What does through mean ? If you mean FROM an address that is in your virtual_*_maps, then no, not trivially.

Re: Sender restrictions

2010-07-23 Thread Jeroen Geilman
On 07/24/2010 01:42 AM, Andrés Gattinoni wrote: On Fri, Jul 23, 2010 at 8:31 PM, Jeroen Geilmanjer...@adaptr.nl wrote: On 07/24/2010 12:44 AM, Andrés Gattinoni wrote: Hi guys, I have the following question: Is it possible to restrict some virtual accounts from sending emails

Re: Don't see why I have Client host rejected: cannot find your hostname problem

2010-07-26 Thread Jeroen Geilman
On 07/26/2010 10:48 AM, Bernard T. Higonnet wrote: I'm having a terrible problem with Client host rejected: cannot find your hostname That means the connecting IP has no PTR record and you have included reject_unknown_client_hostname in your restrictions. A simple dig - x 125.207.64.38

Re: too much config version 2.5.5,

2010-07-29 Thread Jeroen Geilman
On 07/29/2010 05:07 PM, donovan jeffrey j wrote: Jul 29 10:20:08 mx2 postfix/smtpd[63722]: connect from mail2.beth.k12.pa.us[192.227.0.10] Jul 29 10:20:08 mx2 postfix/smtpd[63722]: 15B7551C06DA: client=mail2.beth.k12.pa.us[192.227.0.10] Jul 29 10:20:08 mx2 postfix/cleanup[63726]:

Re: problem sending outside of local machine

2010-07-30 Thread Jeroen Geilman
On 07/30/2010 07:53 PM, Christopher Adams wrote: Hello, I have a new Postfix install running under Centos 5.3. I am able to send mail from the command line, but anything sent from another machine is not sent, nor is it logged. Then it did not reach postfix. J.

Re: Log file checking

2010-07-31 Thread Jeroen Geilman
On 07/31/2010 02:15 PM, Mark Scholten wrote: Hello, I am looking for a solution to get the following information from postfix: - Ignore connections from 127.0.0.1 or process only connections from 127.0.0.1 (with another flag/option set) - What is done with the connection (mail accepted/mail

Re: Separate Submission Instance on Same IP as MX

2010-08-01 Thread Jeroen Geilman
On 08/01/2010 04:11 AM, Mike Morris wrote: Hi, I'm working on a mail server deployment that will only have one server for MX and SASL submission purposes. Generally I like to have separate Postfix instances to handle a specific task. Why ? It's totally useless in this case. SMTP runs on port

Re: reject unknown hosts

2010-08-05 Thread Jeroen Geilman
On 08/03/2010 02:05 AM, Edward avanti wrote: Halo Noel, On Tue, Aug 3, 2010 at 12:37 AM, Noel Jones njo...@megan.vbhcs.org mailto:njo...@megan.vbhcs.org wrote: It appear from more investigation this cause is SERVFAIL always send 4xx, can postifx override to 5xx with

Re: Separate Submission Instance on Same IP as MX

2010-08-05 Thread Jeroen Geilman
On 08/01/2010 08:42 PM, Mike Morris wrote: On 08/01/2010 02:37 AM, Jeroen Geilman wrote: On 08/01/2010 04:11 AM, Mike Morris wrote: Hi, I'm working on a mail server deployment that will only have one server for MX and SASL submission purposes. Generally I like to have separate

Re: Separate Submission Instance on Same IP as MX

2010-08-05 Thread Jeroen Geilman
On 08/05/2010 10:15 PM, Mike Morris wrote: On 08/05/2010 11:57 AM, Jeroen Geilman wrote: On 08/01/2010 08:42 PM, Mike Morris wrote: On 08/01/2010 02:37 AM, Jeroen Geilman wrote: On 08/01/2010 04:11 AM, Mike Morris wrote: Hi, I'm working on a mail server

Re: Thanks to wietse and the distribution list a new web console is born

2010-08-07 Thread Jeroen Geilman
On 08/07/2010 02:05 PM, David Touzeau wrote: Dear all I would like to thanks to the postfix users that answers me better than a professional support (who said that Open Source products have support problems ?). I would like to thanks to wietse that accomplish the best SMTP server used in the

Re: Thanks to wietse and the distribution list a new web console is born

2010-08-07 Thread Jeroen Geilman
On 08/07/2010 05:24 PM, David Touzeau wrote: Hi four anyone what sources it is here http://github.com/dtouzeau/artica Thanks! Perhaps you would consider linking to them on your web site ? I may have been overly harsh, but I hardly ever see open source projects that have all the exterior

Re: postfix load handling

2010-08-10 Thread Jeroen Geilman
On 08/10/2010 10:05 AM, Bjorn Mork wrote: Hi, can POSTFIX handle load of 120k mailboxes Since postfix has relatively little to do with mailboxes, and a mailbox is most definitely not a unit of load, I'd say... VERMILION. These mailboxes/accounts presumably have users associated with

Re: Send Message when reject_unknown_hostname is invoked

2010-08-13 Thread Jeroen Geilman
On 08/13/2010 07:05 PM, jason hirsh wrote: I am apparently having an issue with some servers whose mail is being rejected because of reject_unknown_hostname the reject was shown here Aug 11 00:21:36 xxx batfish ? postfix/smtpd[96422]: NOQUEUE: reject: RCPT from

Re: Active Directory and virtual delivery agent

2010-08-16 Thread Jeroen Geilman
On 08/16/2010 11:24 AM, Aaron Roberts wrote: -Original Message- From: owner-postfix-us...@postfix.org [mailto:owner-postfix- us...@postfix.org] On Behalf Of Jeroen Geilman Sent: 15 August 2010 20:54 To: postfix-users@postfix.org Subject: Re: Active Directory and virtual delivery agent

Re: Active Directory and virtual delivery agent

2010-08-16 Thread Jeroen Geilman
On 08/16/2010 01:52 PM, Aaron Roberts wrote: -Original Message- From: owner-postfix-us...@postfix.org [mailto:owner-postfix- us...@postfix.org] On Behalf Of zhong ming wu Sent: 16 August 2010 12:02 To: Postfix users Subject: Re: Active Directory and virtual delivery agent On Fri, Aug

Re: TLS for dummies

2010-08-25 Thread Jeroen Geilman
On 08/25/2010 02:59 PM, Security Admin (NetSec) wrote: This is more of an annoyance than anything else. When my Postfix (v 2.6.7) attempts to send a message via TLS the following warning is received: postfix/smtp[28338]: certificate verification failed for

Re: submission port annoyance

2010-08-25 Thread Jeroen Geilman
On 08/24/2010 02:48 PM, Noel Jones wrote: On 8/24/2010 7:24 AM, Edward avanti wrote: Halo, We are have odd occasional problem where, some customer that have made up name in hostname on pc and try send mail get rejected by us submission is told use - submission inet n - n -

Re: Blocking e-mail from all IPs except allow hosts

2010-09-01 Thread Jeroen Geilman
On 09/01/2010 04:25 PM, Mike A. Leonetti wrote: How can I have postfix stil accept e-mail for certain domains but only allow e-mails from a specific IP and the range of allowed internal IPs? To accept mail for your domains OR from specific IPs, just order the relevant restrictions

Re: Postfix integration: Oracle or LDAP?

2010-09-01 Thread Jeroen Geilman
On 08/25/2010 03:17 PM, Zhou, Yan wrote: Hi there, We want to implement SMTP authentication in Postfix and support multiple virtual domains. Rather than having user/domain/endpoint in different files, we prefer them either in database (Oracle) or LDAP. I am trying to weigh the pros and cons of

Re: Postfix integration: Oracle or LDAP?

2010-09-01 Thread Jeroen Geilman
On 09/01/2010 08:21 PM, Adam Tauno Williams wrote: On Wed, 2010-09-01 at 20:13 +0200, Jeroen Geilman wrote: On 08/25/2010 03:17 PM, Zhou, Yan wrote: Hi there, We want to implement SMTP authentication in Postfix and support multiple virtual domains. Rather than having user/domain

Re: timeout trouble with postfix and amavisd in BQCF

2010-09-02 Thread Jeroen Geilman
On 09/02/2010 02:19 PM, Patrick Proniewski wrote: Hi all, intro: I won't ask for amavis fix, I just need to make sure my postfix config is ok before getting support elsewhere with amavis ;) I've a bit of trouble with my production mail gateway: FreeBSD 7.x in VMWare Virtual Machine,

Re: Customized transport with multiple recipients

2010-09-04 Thread Jeroen Geilman
On 09/02/2010 03:26 PM, Zhou, Yan wrote: Hi there, If Postfix server gets a mail message with multiple TO: address (i.e., multiple recipients), does Postfix send one message to each address? These decisions are not made when postfix receives mail. The message in the incoming queue includes

Re: Ldap query source ip selection

2010-09-05 Thread Jeroen Geilman
On 09/05/2010 11:02 AM, Carlos Velasco wrote: Hello, Is there any way to choose source IP address for LDAP query in postfix? We have a multi-instance setup where one instance need to use a specific source ip address in the system because LDAP queries must go trough a VPN IPsec connection. I

Re: recipient bcc at which point does the mail get duplicated

2010-09-05 Thread Jeroen Geilman
On 09/05/2010 02:52 PM, Frank Doege wrote: Hi, i have a postfix implementation where i use recipient_bcc maps to duplicate messages which are from users which are on my exchange server. Don't you mean sender_bcc_maps in that case ? This is needed because users still want to be able to

Re: processing time metrics for rejected connections

2010-09-05 Thread Jeroen Geilman
On 09/04/2010 10:42 PM, Stan Hoeppner wrote: Victor Duchovni put forth on 9/4/2010 7:33 AM: What do you mean by filters? Spam filters in the form of table lookups and dnsbl queries. I'm currently processing 12,581 CIDRs 1,568 regular expressions (PCRE) 5 dnsbl lookups

Re: processing time metrics for rejected connections

2010-09-05 Thread Jeroen Geilman
On 09/05/2010 04:59 PM, Wietse Venema wrote: Jeroen Geilman: As for your original question, the combined processing time of all your smtpd_* checks will still be reflected in the delay-a value (pre-queue). Whatever time postfix itself adds for processing will be either static

Re: Trying to use different header_checks depending on TCP port for incoming mail

2010-09-05 Thread Jeroen Geilman
On 09/05/2010 07:20 PM, Ralph Seichter wrote: I'm currently trying to figure out if it is possible to use different header_checks for TCP ports 25 (mail from world) and 587 (mail submitted by authenticated users). I tried the following without success: Since header_checks is performed by

Re: Trying to use different header_checks depending on TCP port for incoming mail

2010-09-06 Thread Jeroen Geilman
On 09/05/2010 08:55 PM, Wietse Venema wrote: Ralph Seichter: I'm currently trying to figure out if it is possible to use different header_checks for TCP ports 25 (mail from world) and 587 (mail submitted by authenticated users). I tried the following without success: # cat

Re: Limit RCPT TO in Postfix

2010-09-07 Thread Jeroen Geilman
On 09/07/2010 12:16 PM, Claudio Prono wrote: Hello all, I use Postfix with mysql database for the users lookup. I have recently found an information leak with the RCPT TO command. Here is an example: telnet mailserver 25 Trying XXX.XXX.XXX.XXX... Connected to mailserver. Escape character is

Re: set envelope sender = sasl authenticated user ?

2010-09-07 Thread Jeroen Geilman
On 09/07/2010 06:57 PM, mouss wrote: Le 07/09/2010 16:17, Noel Jones a écrit : On 9/7/2010 2:32 AM, Jan-Frode Myklebust wrote: On Mon, Sep 06, 2010 at 06:29:28PM -0500, Noel Jones wrote: I fail to see how controlling your users From: addresses will affect a backscatterer.org listing. I'm

Re: Maximum number of delivery of emails

2010-09-07 Thread Jeroen Geilman
On 09/07/2010 08:07 PM, Victor Duchovni wrote: On Tue, Sep 07, 2010 at 06:13:23PM +0200, lst_ho...@kwsoft.de wrote: This question has no answer, except to say that on typical commodity server hardware you are unlikely to send more than ~3,000 msgs/sec per Postfix instance. A queue-manager

Re: blocking particular senders by country

2010-09-10 Thread Jeroen Geilman
On 09/10/2010 05:28 PM, post...@corwyn.net wrote: Hi! what I'd like to do is block all emails from individual contries based on sender email address (.au, .jp, etc) What makes you think those are dependable criteria for filtering ? In reading the docs, it looks like I can block

Re: postfix doesn't respond to smtp commands

2010-09-10 Thread Jeroen Geilman
On 09/10/2010 09:58 PM, Raymond Fagnon wrote: I am having issues with my postfix install. When I telnet to port 25 and try to do any smtp commands the system doesn't respond. I see in my logs /var/lib/postfix/smtpd_tls_session_cache.db: Permission denied. I have chown of the /var/lib/postfix/

Re: only allow tlsv1 connection from spesific ip addresses

2010-09-14 Thread Jeroen Geilman
On 09/14/2010 03:06 PM, Eero Volotinen wrote: How to configure postfix only allow tlsv1 connections (no plaintext allowed) from defined ip ranges? three hosts are needed to communicate smarthost with tlsv1 only? If these hosts are using you as their smarthost, simply whitelist their IPs.

Re: custom reject messages

2010-09-14 Thread Jeroen Geilman
On 09/14/2010 12:13 PM, Frank Doege wrote: Hi all, id like to modify the message postfix sends to the server when it rejects an email in one of the checks performed. For example, 450 Helo command rejected: Host not found; http://readhereforemore.info Any check_*_access map can return an

Re: Problems to understand reject_unlisted_recipients

2010-09-14 Thread Jeroen Geilman
On 09/14/2010 04:42 PM, Christian Rößner wrote: Sep 11 10:34:36 mx0 postfix/lmtp[29594]: 40FC3520A6: to=ad4f0.5040...@roessner-net.com, relay=127.0.0.1[127.0.0.1]:24, delay=0.39, delays=0.19/0.06/0.01/0.13, dsn=5.1.1, status=bounced (host 127.0.0.1[127.0.0.1] Who is that ? said: 550

Re: Problems to understand reject_unlisted_recipients

2010-09-15 Thread Jeroen Geilman
On 09/15/2010 02:05 AM, Stan Hoeppner wrote: Jeroen Geilman put forth on 9/14/2010 5:56 PM: On 09/14/2010 04:42 PM, Christian Rößner wrote: Sep 11 10:34:36 mx0 postfix/lmtp[29594]: 40FC3520A6: to=ad4f0.5040...@roessner-net.com, relay=127.0.0.1[127.0.0.1]:24, delay=0.39, delays=0.19

Re: custom reject messages

2010-09-15 Thread Jeroen Geilman
On 09/15/2010 06:33 AM, Frank Doege wrote: On 09/15/2010 01:47 AM, Jeroen Geilman wrote: On 09/14/2010 12:13 PM, Frank Doege wrote: Hi all, id like to modify the message postfix sends to the server when it rejects an email in one of the checks performed. For example, 450 Helo command

  1   2   3   4   5   6   7   8   >