Re: Local mailserver

2010-09-09 Thread Ralf Hildebrandt
* dky hax dky...@gmail.com: Ok, but the mail isn't arrived. t...@mail:~$ mail No mail for test mail doesn't read maildirs -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin

Re: Aggregating/rate-limiting emails

2010-09-08 Thread Ralf Hildebrandt
) solution ideas would be appreciated as well. -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra...@charite.de

Re: Maximum number of delivery of emails

2010-09-07 Thread Ralf Hildebrandt
reading Sacred games and they talk about Lakhs of Rupees all the time. It's 100k. Ah! -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450

Re: Limit RCPT TO in Postfix

2010-09-07 Thread Ralf Hildebrandt
* Claudio Prono claudio.pr...@atpss.net: Ok, this is right, but is also an information leak... with rcpt to i can enumerate the local users of the system, and for me this is not too good... No way to fix this? Turn off SMTP :) -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk

Re: postscreen bug ?

2010-09-04 Thread Ralf Hildebrandt
/ps_cache.db: No such file or directory -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra...@charite.de | http

Re: postscreen bug ?

2010-09-04 Thread Ralf Hildebrandt
:50:02 mail postfix/postscreen[25263]: close database /var/lib/postfix/ps_cache.db: No such file or directory Sep 4 14:50:21 mail postfix/postscreen[27086]: close database /var/lib/postfix/ps_cache.db: No such file or directory -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk

Re: postscreen bug ?

2010-09-04 Thread Ralf Hildebrandt
that a bug in BerkeleyDB then - and should be reported? -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra...@charite.de

Re: Verification failed error

2010-09-02 Thread Ralf Hildebrandt
(in reply to RCPT TO command) $ host -t mx redmijncomputer.nl redmijncomputer.nl mail is handled by 10 95.97.73.154. It should be mail.redmijncomputer.nl instead of 95.97.73.154 -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin

Re: Verification failed error

2010-09-02 Thread Ralf Hildebrandt
* Aniruddha mailingdotl...@gmail.com: On Thu, Sep 2, 2010 at 9:58 AM, Ralf Hildebrandt ralf.hildebra...@charite.de wrote: $ host -t mx redmijncomputer.nl redmijncomputer.nl mail is handled by 10 95.97.73.154. It should be mail.redmijncomputer.nl instead of 95.97.73.154 -- Thank you

Re: postfix/smtpd: warning: verification failed

2010-09-02 Thread Ralf Hildebrandt
for donbass.com with a large stick. -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra...@charite.de | http

Re: DNS Whitelisting

2010-08-26 Thread Ralf Hildebrandt
? Probably, with positiv and negative weights? -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra...@charite.de | http

Re: blocking brand new domains

2010-08-23 Thread Ralf Hildebrandt
? I'd like to know that as well. There used to be the day old bread BL. -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962

Re: blocking brand new domains

2010-08-23 Thread Ralf Hildebrandt
? http://www.mail-archive.com/us...@spamassassin.apache.org/msg57008.html Dunno if Marc is still active -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155

Re: blocking brand new domains

2010-08-23 Thread Ralf Hildebrandt
=127.0.0.6 should work for that particular purpose. -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra...@charite.de | http

Re: Speed up queue injection

2010-08-13 Thread Ralf Hildebrandt
= that's a lot 50.000/50min = 10.000/min = 186/s = that's even more -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962

Re: reject_rbl_client

2010-08-13 Thread Ralf Hildebrandt
, No or it is smart and will use previous lookup result to compare with next address? Indeed. And that's actually documented -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450

Re: reject_rbl_client

2010-08-13 Thread Ralf Hildebrandt
* Ralf Hildebrandt ralf.hildebra...@charite.de: Indeed. And that's actually documented http://www.postfix.org/STRESS_README.html Although the above example shows three RBL lookups (lines 4-6), Postfix will only do a single DNS query, so it does not affect the performance. -- Ralf

Re: Speed up queue injection

2010-08-13 Thread Ralf Hildebrandt
is not at all an issue , because postfix gives it to further relay boxes which are under our control again. Why not inject to the further relay boxes? Do I need to increase the hardware It could be :) -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin

Re: /usr/lib/postfix/smtp: bad command startup -- throttling

2010-08-13 Thread Ralf Hildebrandt
-app046 postfix/master[4555]: warning: /usr/lib/postfix/smtp: bad command startup -- throttling And Prior to that? -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450

Re: /usr/lib/postfix/smtp: bad command startup -- throttling

2010-08-13 Thread Ralf Hildebrandt
/etc/postfix/virtual Fix that. Maybe there was a change in BerkeleyDB versions... -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570

Re: /usr/lib/postfix/smtp: bad command startup -- throttling

2010-08-13 Thread Ralf Hildebrandt
* J4 ju...@klunky.co.uk: On 08/13/2010 04:24 PM, Ralf Hildebrandt wrote: * J4 ju...@klunky.co.uk: Aug 13 16:20:07 pp24-app046 postfix/cleanup[6184]: warning: database /etc/postfix/virtual.db is older than source file /etc/postfix/virtual Aug 13 16:20:07 pp24-app046 postfix/trivial

Re: question about Postfix and DNS (maybe not for this list)

2010-08-12 Thread Ralf Hildebrandt
], a public DNS server. Which connection? I do not use OpenDNS in my /etc/resolv.conf file (I have 2 other nameservers listed) Local nameservers or remote nameservers? -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin

Re: Filter deleted without being read messages

2010-08-12 Thread Ralf Hildebrandt
; report-type=disposition-notification But how to specify this in postfix ? And if it is not necessary, is there a way to say if this header is present then check the body ? via header_checks -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin

Re: smtpd_delay_reject = yes Reject Logging

2010-08-10 Thread Ralf Hildebrandt
, and so forth. Yes, set smtpd_delay_reject = no -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra...@charite.de

Re: smtpd_delay_reject = yes Reject Logging

2010-08-10 Thread Ralf Hildebrandt
caused the rejection at an earlier stage. -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra...@charite.de | http

Re: Header information missing

2010-08-06 Thread Ralf Hildebrandt
containing in. Of course it's utterly suboptimal and probably even incorrectly implemented. ritten to the message, what use does this have? Strip any non-internal headers for privacy, perhaps? Yes. Lousy job. -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité

Re: On the subject of errors from unknown ...

2010-08-05 Thread Ralf Hildebrandt
systems. -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra...@charite.de | http://www.charite.de

Re: dnswl doesn't work?

2010-08-04 Thread Ralf Hildebrandt
/etc/postfix/postfix-dnswl-permit server# grep -C 5 '74.125.82.180' /usr/local/etc/postfix/postfix-permit /usr/local/etc/postfix/postfix-permit -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30

Re: Feature request: postsuper release but don't delete (cloning?)

2010-07-22 Thread Ralf Hildebrandt
in the HOLD queue keeps the same (device, inode) numbers. That's ok. -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962

Re: Mixed Setup

2010-07-22 Thread Ralf Hildebrandt
. This is unacceptable. chose your camp... I know we're getting off-topic, but this has bothered me in the past. What is the alternative here? As far as I know, there are no correct reserved domains. Is one bad choice worse than another? .invalid -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk

Is such an SSL attack possible against Postfix?

2010-07-21 Thread Ralf Hildebrandt
outgoing will be blocked by most ISPs, but let's assume that's not done by all IPS. It would work with the submission port! -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49

Re: OT: ISP Blocking of port 25

2010-07-21 Thread Ralf Hildebrandt
* Rod Dorman r...@polylogics.com: Have we gone far enough off the topic of Postfix yet for this thread to be declared dead? Yes, especially since this was about SSL attacks. -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus

Re: Different disclaimaer for each domain???

2010-07-17 Thread Ralf Hildebrandt
* Aravind Divakaran aravind.divaka...@yukthi.com: $SENDMAIL $@ in.$$ That must be $SENDMAIL -i $@ in.$$ -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570

Re: Rewrite non FQDN Domains

2010-07-16 Thread Ralf Hildebrandt
is the default, BTW. -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra...@charite.de | http://www.charite.de

Re: Different disclaimaer for each domain???

2010-07-15 Thread Ralf Hildebrandt
* Adrian P. van Bloois adr...@accu.uu.nl: Hi, Can I automagically attach a different disclaimer for each domain? if so, how? Are there different options? Which program is appending the single disclaimer now? -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité

Re: info about From: address without domain

2010-07-15 Thread Ralf Hildebrandt
A appended. local_header_rewrite_clients = -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra...@charite.de

Re: proxymap(8), number of connections, detecting altered tables

2010-07-15 Thread Ralf Hildebrandt
this been answered? It also affects me, so I'd like to know :) -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra

Re: Reason for blocked access?

2010-07-14 Thread Ralf Hildebrandt
=joerg.hal...@flaig-hommel.de to=m.b...@otec.de proto=ESMTP helo=mail.gbc.net client host rejected would require for the host to be in a check_client_access table, right? Hostname or IP or net or domain, yes. -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité

Re: TLS not being advertised or not running?

2010-07-14 Thread Ralf Hildebrandt
in and postfix does run, it does send mail in the clear. However, we need it to send via TLS. I am wondering if there is a line in main.cf that tells postfix to advertis/offer TLS authentication that is not set. Is there a command to ask postfix if TLS is running? postconf -n -- Ralf Hildebrandt

Re: a separate instance for handle bounce only

2010-07-11 Thread Ralf Hildebrandt
* Joe Wong joewon...@gmail.com: Hello, I am looking for a way to configure a 2nd postfix instance for handle mail bounce only. Is it possible? 2nd instance on the same machine? -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus

Re: a separate instance for handle bounce only

2010-07-11 Thread Ralf Hildebrandt
this 'bounce' postfix instance. Any thought? Simply set the envelope sender to a domain/hostname which ends up on the other host. That's it. -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203

Re: How to prevent retrying delivery of invalid addresses

2010-07-11 Thread Ralf Hildebrandt
deferred! -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra...@charite.de | http://www.charite.de

Re: Greylisting SMTP auth

2010-07-09 Thread Ralf Hildebrandt
in that case, and no other restriction fires. Maybe you have more restrictions? -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962

Re: Error between two postfix Command not recognized, RCPT is cut in two words

2010-07-09 Thread Ralf Hildebrandt
a tcpdump to understand why I got this error and I found that one of the RCPT TO: command is cut in two packets. First packet finished by RC and second packet began by PT TO:. And the server doesn't understand this command. Is there a firewall between the two? -- Ralf Hildebrandt

Re: Error between two postfix Command not recognized, RCPT is cut in two words

2010-07-09 Thread Ralf Hildebrandt
* poindessous...@foncia.fr poindessous...@foncia.fr: Yes, I think this is a cisco asa 5550, with a special filter which protects smtp server. Do you think I should ask to disable it ? Yes. It causes nothing but grief :) -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk

Re: Mail blocked if not HTML

2010-07-02 Thread Ralf Hildebrandt
* Matt Hayes domin...@slackadelic.com: ASA: config t no inspect smtp Amen to that! -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30

Re: header_checks REJECT

2010-07-01 Thread Ralf Hildebrandt
* David Hill dh...@mindcry.org: soft_bounce = yes turn it off -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962

Re: Mail blocked if not HTML

2010-07-01 Thread Ralf Hildebrandt
in your organization? -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra...@charite.de | http://www.charite.de

Re: Mail discarded

2010-06-25 Thread Ralf Hildebrandt
this problem with much mail domains) isn't in blacklist and this domain is certainly 'clean'. My doubt is for what reason these mail are blocked ? On my mail server I have SA-3.2.5 with postfix/amavisd-new/clamav. Check the logs amavis is generating Grep for 23600-10 -- Ralf Hildebrandt

Re: Mail discarded

2010-06-25 Thread Ralf Hildebrandt
* sasashop s...@shoponweb.it: Ralf Hildebrandt wroted: Check the logs amavis is generating Grep for 23600-10 I have only log file '/var/log/mailllog' and in this log file I have, about 23600-10 only this: [r...@mail ~]# grep 2360010 /var/log/maillog Jun 24 13:10:26 mail postfix/smtp

Re: A list in a file

2010-06-23 Thread Ralf Hildebrandt
* Phil Howard ttip...@gmail.com: Been trying to figure that out. I'm wanting to use CDB. But it wasn'tfile.out taking it. I guess what I need to do is give each domain a dummy value. awk '{printf(%s OK\n,$1)}' file file.out postmap file.out -- Ralf Hildebrandt Geschäftsbereich

Re: Spooling mail Question

2010-06-22 Thread Ralf Hildebrandt
is online? That's the default :) I have enclosed my main.cf, master.cf, and transport configs (at least the non-default ones).  postconf -n is very much preferred. The config looks OK so far -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin

Re: SQLite support in Postfix

2010-06-18 Thread Ralf Hildebrandt
* then convert into real Database It would actually help the user to use the path that has been recommended by Victor et.al. -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49

Re: finding things postscreen rejects

2010-06-17 Thread Ralf Hildebrandt
* Wietse Venema wie...@porcupine.org: Ralf Hildebrandt: Today I got this bounce from somebody whose mail had been rejected: catalog-...@python.org: Protocol error: host mail.python.org[82.94.164.166] refused to talk to me: 220-mail.python.org ESMTP Postfix 521 5.7.1 Blocked by DNSBL

Re: finding things postscreen rejects

2010-06-17 Thread Ralf Hildebrandt
! -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra...@charite.de | http://www.charite.de

finding things postscreen rejects

2010-06-16 Thread Ralf Hildebrandt
the french system only contained hostnames which would not resolve :( May I recommend that Postfix at least emits the IP in it's rejection message, e.g. like: 521 5.7.1 123.123.123.123 Blocked by DNSBL -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin

Re: Postfix and Disclaimer

2010-06-15 Thread Ralf Hildebrandt
* Stefano Villa st...@pobox.com: I've the task to implement a disclaimer for all mail. What product can I use? Altermime -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel

Re: postscreen doesn't seem to work anymore

2010-06-15 Thread Ralf Hildebrandt
* Ralf Hildebrandt ralf.hildebra...@charite.de: Jun 15 18:30:20 mail postfix/dnsblog[15154]: addr 79.15.172.144 blocked by domain mykey.zen.dq.spamhaus.net as 127.0.0.4 Jun 15 18:30:24 mail postfix/postscreen[14995]: DNSBL rank 1 for 79.15.172.144 again, blacklisted, 15 minutes later

Re: postscreen doesn't seem to work anymore

2010-06-15 Thread Ralf Hildebrandt
* Ralf Hildebrandt ralf.hildebra...@charite.de: I think it was due to me using: postscreen_blacklist_action = drop and no postscreen_dnsbl_action at all. Once I set postscreen_dnsbl_action = drop it seems to work as intended. -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk

Re: [OT] Detecting telnet?

2010-06-11 Thread Ralf Hildebrandt
issues with your server will use telnet 25 from time to time. There is no need to block this, it is by far the least likely source of any significant spam volume... Indeed. There are faster methods. -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin

Re: [OT] Detecting telnet?

2010-06-11 Thread Ralf Hildebrandt
my point. -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra...@charite.de | http://www.charite.de

Invalid size declaration?

2010-06-10 Thread Ralf Hildebrandt
Today I found this double-bounce: - Forwarded message from Mail Delivery System mailer-dae...@charite.de - bounce-25280...@customer110.goolara.net: host customer110.goolara.net[209.209.90.110] said: 552 Invalid size declaration. (in reply to MAIL FROM command) Reporting-MTA:

Re: Invalid size declaration?

2010-06-10 Thread Ralf Hildebrandt
* Ralf Hildebrandt ralf.hildebra...@charite.de: Jun 10 13:00:04 mail-ausfall postfix/smtp[7597]: customer110.goolara.net[209.209.90.110]:25: MAIL FROM:hil...@charite.de SIZE=19091 BODY=8BITMIME Jun 10 13:00:04 mail-ausfall postfix/smtp[7597]: customer110.goolara.net[209.209.90.110]:25

[OT] Detecting telnet?

2010-06-10 Thread Ralf Hildebrandt
I heard that there are firewalls/security appliances that supposedly can distinguish somebody using telnet from a machine speaking SMTP. I must admit, it sounds feasible (timing between keystrokes etc.), but little useful. Anyway. Is there such a thing? Does anybody use such a thing? -- Ralf

Re: Sender address rejected: Domain not found

2010-06-02 Thread Ralf Hildebrandt
? No. $ host onlinealert.bankofamerica.com Host onlinealert.bankofamerica.com not found: 3(NXDOMAIN) $ host -t mx onlinealert.bankofamerica.com Host onlinealert.bankofamerica.com not found: 3(NXDOMAIN) -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin

Re: Sender address rejected: Domain not found

2010-06-02 Thread Ralf Hildebrandt
mailserver generating this message. If you don't see that sender on your postfix gateway, then I guess it's your internal exchange server. -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203

Re: Postscreen DNSBL checks preferable over reject_client_rbl ?

2010-05-30 Thread Ralf Hildebrandt
this would not be the case ? No. But you can still have OTHER RBLs in *_restrictions Does postscreen also log any DNSBL hits ? Yes I can't seem to find any so far. May 30 23:33:15 mail-ausfall postfix/dnsblog[31351]: addr 222.168.14.205 blocked by domain zen.spamhaus.org as 127.0.0.4 -- Ralf

Re: I've inherited a botnet target

2010-05-27 Thread Ralf Hildebrandt
* LuKreme krem...@kreme.com: It's in 2.7 only, yes? I'm still running 2.6. It's in the snapshots Just add: postscreen_dnsbl_sites zen.spamhous.org To a 2.7 config? No, you really have to read the README, since there are changes to master.cf as well! -- Ralf Hildebrandt

Re: I've inherited a botnet target

2010-05-27 Thread Ralf Hildebrandt
* Nataraj incoming-post...@rjl.com: How does rate limiting work in conjunction with postscreen? Just like without postscreen -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin

Re: illegal address syntax

2010-05-27 Thread Ralf Hildebrandt
smtpd_soft_error_limit = 1000 -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra...@charite.de | http://www.charite.de

Re: illegal address syntax

2010-05-27 Thread Ralf Hildebrandt
why one uses mailing list manager like mailman!)? -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra...@charite.de

Re: I've inherited a botnet target

2010-05-26 Thread Ralf Hildebrandt
, reject_unauth_destination reject_rbl_client zen.spamhaus.org -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra

Re: I've inherited a botnet target

2010-05-26 Thread Ralf Hildebrandt
in order to catch web traffic and redirect it. So set a fake MX record pointing to localhost -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49

Re: I've inherited a botnet target

2010-05-26 Thread Ralf Hildebrandt
;-) It's postfix, not prefix. But then -- postscreen is using an RBL... -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962

Re: I've inherited a botnet target

2010-05-26 Thread Ralf Hildebrandt
problem there, even thousands of 554s normally don't stress Postfix too much. * One could also turn off postfix. * Or disable smtpd * Or (if there's a spare IP) point the mx to the spare IP and run smtp-sink there! -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité

Re: I've inherited a botnet target

2010-05-26 Thread Ralf Hildebrandt
reducing system load. That's how I'm using it here. It's amazing :) -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra

Re: relay local domains to a specific server

2010-05-23 Thread Ralf Hildebrandt
exampleN.com and delivers through an outside address. How do you know that? -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962

Re: relay local domains to a specific server

2010-05-23 Thread Ralf Hildebrandt
* Patrick Chemla patrick.che...@perfaction.net: Le 23/05/2010 19:16, Ralf Hildebrandt a écrit : I made some simple tests puting mails through a telnet to port 25 of the front server. It still lookup for MX for domains exampleN.com and delivers through an outside address. How do you

Re: stumped: postfix silently won't start

2010-05-21 Thread Ralf Hildebrandt
postfix) which I all killed, after that it would work again. -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra

Re: Webmaster for Postfix.org

2010-05-06 Thread Ralf Hildebrandt
* osuser g fufo...@gmail.com: Does any one know how has access the content on Postfix.org ? Whom should one contact for updates/improvements to content? Wietse comes to mind. -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus

Re: header_checks

2010-05-06 Thread Ralf Hildebrandt
a header_check (and/or body check) to catch this. I tried this, but it didnt work: /^From:.ret@/REJECT unsolicited email /^From:.*ret@/REJECT unsolicited email or /^From: ret@/REJECT unsolicited email or /^From:\b*ret@/REJECT unsolicited email -- Ralf Hildebrandt

Re: .forward files

2010-05-05 Thread Ralf Hildebrandt
/etc/postfix/virtual which was hitherto handling forwarding? Hard to tell, without logs or postconf -n output. -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450

Re: postfix multi-instances and qmail co-existence

2010-05-04 Thread Ralf Hildebrandt
? ? Nothing, you disabled qmail I hope. Whenever, postfix starts, all instances, and I can process messages. Is this a correct production environnement? I wouldn't think so. Why is qmail still there when you already moved to postfix? -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk

MIA: mstone author / maintainer

2010-05-03 Thread Ralf Hildebrandt
I'm trying to get in contact with the mstone author/maintainer. Both dac at x.cx and dchristian at google.com are non-operational :( Who knows his current address? -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin

Re: How to forward mail when mailbox not localy existing

2010-05-01 Thread Ralf Hildebrandt
mailbox is localy existing on it then deliver localy (maildir format) and if the mailbox is not yet exising (user not migret) it would then transferred the mail to the old server. luser_relay -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin

Re: Client Access Reject List

2010-04-28 Thread Ralf Hildebrandt
that form, because the rejection is caused by an IP anyway - so all you need is grep for the IP in your /etc/postfix/client_access file -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin

Re: DNS RBL error

2010-04-19 Thread Ralf Hildebrandt
* donovan jeffrey j dono...@beth.k12.pa.us: Greetings i have been seeing tons of errors coming from spamhaus, it seems it's not resolving. at least for me. is anyone else having any problems ? You might have been blocked because you exceeded the limits for free usage. -- Ralf Hildebrandt

Re: DNS RBL error

2010-04-19 Thread Ralf Hildebrandt
* donovan jeffrey j dono...@beth.k12.pa.us: I certainly do not want to exceed any limits, how do i avoid that ? Well, how big is your server? -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30

Re: DNS RBL error

2010-04-19 Thread Ralf Hildebrandt
* donovan jeffrey j dono...@beth.k12.pa.us: this system in question picks up mail ( primary MX ) for about 2000 users. This should well be within the limits. We're execeeding the limit at about 30k users. Maybe you're using your ISPs DNS forwarder? -- Ralf Hildebrandt Geschäftsbereich

Re: DNS RBL error

2010-04-19 Thread Ralf Hildebrandt
* donovan jeffrey j dono...@beth.k12.pa.us: On Apr 19, 2010, at 9:03 AM, Ralf Hildebrandt wrote: * donovan jeffrey j dono...@beth.k12.pa.us: this system in question picks up mail ( primary MX ) for about 2000 users. This should well be within the limits. We're execeeding the limit

Re: DNS RBL error

2010-04-19 Thread Ralf Hildebrandt
install pdns-recursor -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra...@charite.de | http://www.charite.de

Re: DNS RBL error

2010-04-19 Thread Ralf Hildebrandt
find zen.spamhaus.org: REFUSED okay,.. Ill have to check this. to make sure my queries to zen are directly from my mail system does that sound right ? Yes. Install a local caching DNS which directly queries the internet ... -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk

Re: Postfix Logfile Statistics

2010-04-14 Thread Ralf Hildebrandt
looking for things like amount of messages sent/received daily weekly monthly etc ... mailgraph.schweikert.ch/ -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450

Re: Postfix Logfile Statistics

2010-04-14 Thread Ralf Hildebrandt
week/month/year, they want to see how many messages where sent/received on January 1th, or June 16th... etc etc Use pflogsumm for that -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203

Re: RBL Usage questions

2010-04-11 Thread Ralf Hildebrandt
another server. -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra...@charite.de | http://www.charite.de

Re: RBL Usage questions

2010-04-10 Thread Ralf Hildebrandt
zen.spamhaus.org in postscreen and, reject_rbl_client bl.spamcop.net reject_rbl_client bogons.cymru.com reject_rhsbl_sender dbl.spamhaus.org reject_rhsbl_reverse_client dbl.spamhaus.org -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité

Re: Multiple access lists

2010-04-08 Thread Ralf Hildebrandt
is appreciated. Dirk -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra...@charite.de | http://www.charite.de

Re: Rejecting certain sub-names (from recipient_delimiter)

2010-04-08 Thread Ralf Hildebrandt
hash:/etc/postfix/recipient_access user.s...@example.com REJECT -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra

Re: UTF-8 Subject Logging

2010-04-07 Thread Ralf Hildebrandt
: warning: header Subject: =?utf-8?B?UX. (UTF-8 stuff in here) How can I make it so that Subject: =?utf-8?B?UX. is displayed correctly in it's native language? (in this case it's Chinese but it could be another language) You'd need to convert that string using a program -- Ralf

Using Spamhaus DNSL feed

2010-04-06 Thread Ralf Hildebrandt
if the scheme Spamhaus uses is commonplace. -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra...@charite.de | http

<    4   5   6   7   8   9   10   11   12   13   >