Re: Best way to clean, moderate a small ( email only ) domain

2022-03-09 Thread Jeroen Geilman
You have conflicting requirements; I would just accept the occasional unwanted mail on the mailing list and police subscriptions.Op 9 mrt. 2022 13:17 schreef daniel Azuelos :Hello, I am the admin of a small DNS domain on which I run a Postfix server + Amavis + SpamAssassin. This domain is an

Re: AW: Fun and profit with mailq

2022-02-16 Thread Jeroen Geilman
A cleaner solution for queueing messages is putting them on a disabled smtp service, but the OP meant how to HOLD them.Look at the ACCESS readme for examples.Op 16 feb. 2022 13:43 schreef Joachim Lindenberg :Don´t know what exactly you are trying to do, but to monitor the queue, I use postqueue -j

Re: multiple server site postfix/dns configuration

2014-03-02 Thread Jeroen Geilman
On 2/26/2014 10:35 AM, Matteo Cazzador wrote: Hi, i've configured my postifx to manage different location (server) with the same domain. I've configured 4 postfix mx record one for every site (location/server). My configuration is like this: example.com in virtual_alias_domains $myhostname in

RE: Puzzled with smtp_bind_address

2014-01-20 Thread Jeroen Geilman
Smtp_bind_address behaves as documented; where did you define it? This should normally go on a specific smtp service in master.cf, to override that particular transport. -Original Message- From: fr...@3dn.nl fr...@3dn.nl Sent: ‎20-‎1-‎2014 12:34 To: postfix-us...@cloud9.net

Re: Only deliver mail from authorized users, forward others

2013-12-28 Thread Jeroen Geilman
On 12/28/2013 10:20 AM, post...@pupat-ghestem.net wrote: On 12/28/2013 1:46 AM, Jeroen Geilman wrote: On 12/27/2013 01:13 PM, post...@pupat-ghestem.net wrote: Hello, I am trying to setup an email address where only mails from authorized users (defined in a list) would come in and other

Re: Only deliver mail from authorized users, forward others

2013-12-27 Thread Jeroen Geilman
On 12/27/2013 01:13 PM, post...@pupat-ghestem.net wrote: Hello, I am trying to setup an email address where only mails from authorized users (defined in a list) would come in and other emails would be forwarded to another address. To a single address? Local or remote ? Are you only

Re: reject_unknown_client

2013-12-07 Thread Jeroen Geilman
On 12/06/2013 08:19 AM, Andreas Kasenides wrote: Thank you for the reply. On 05-12-2013 15:26, Charles Marcus wrote: On 2013-12-05 7:50 AM, Andreas Kasenides andr...@cymail.eu wrote: smtpd_client_restrictions = permit_mynetworks permit_sasl_authenticated reject_unknown_client

Re: Does piping to a script require injection of mail after process

2013-12-04 Thread Jeroen Geilman
On 12/04/2013 04:22 PM, Merve Temizer wrote: Thanks for response. It is b) . That's what always_bcc is for. The process behind the bcc address can trivially retrieve the original recipient - heck, postfix can even extract it for you with pipe(8). Don't with the original mail flow

Re: Postfix Repos

2013-11-13 Thread Jeroen Geilman
On 11/13/2013 06:16 PM, Steffan A. Cline wrote: I asked this under a thread but am asking again in its own thread to see if I get better visibility. Does anyone know of any good bleeding edge postfix repos? I am using whatever the CentOS distros come with and it appears to be an older version.

Re: postfix 2.9.x and smtpd_recipient_restrictions in the main.cf and master.cf

2013-11-12 Thread Jeroen Geilman
On 11/12/2013 07:55 AM, Josef Karliak wrote: Good morning, I ve a firewall with 3 network card - WAN, LAN and DMZ. I want to have diferend smtpd_recipient_restrictions on the WAN card, so I've set it in the master.cf 193.11.123.9:smtp inet n - n - - smtpd -o

Re: transport_maps lookup ordering

2013-11-09 Thread Jeroen Geilman
On 11/9/2013 2:13 PM, Simon Effenberg wrote: On Sat, 9 Nov 2013 07:54:30 -0500 (EST) wie...@porcupine.org (Wietse Venema) wrote: transport_maps can use hash tables AND tcp tables. transport_maps queries each table in the specified order, and stops when a result is found. When no result is

Re: transport_maps lookup ordering

2013-11-09 Thread Jeroen Geilman
On 11/09/2013 02:33 PM, Simon Effenberg wrote: On Sat, 09 Nov 2013 14:21:51 +0100 Jeroen Geilman jer...@adaptr.nl wrote: On 11/9/2013 2:13 PM, Simon Effenberg wrote: On Sat, 9 Nov 2013 07:54:30 -0500 (EST) wie...@porcupine.org (Wietse Venema) wrote: transport_maps can use hash tables

Re: Dspam integration order

2013-11-07 Thread Jeroen Geilman
On 11/07/2013 08:43 AM, Matthew Brown wrote: Hi all, I’m trying to integrate dspam into my mail flow and have got some conflict configuration suggestions. Regarding on incoming mail what are the advantages of using dspam as a content filter (and then reinjecting into postfix)[1] vs postfix

Re: Getting automated sending feedback from SMTP server

2013-11-02 Thread Jeroen Geilman
On 10/31/2013 6:00 PM, Sergio Mira wrote: Guys, are you good? I have following scenario: [HTTP Server]: process messages [SMTP Server]: *only *send messages [HTTP Server] === connect to === [SMTP Server] === sends message === [world] Ok, this is going well. My point is: how to get feedback from

Re: Getting automated sending feedback from SMTP server

2013-11-02 Thread Jeroen Geilman
On 11/2/2013 3:00 PM, li...@rhsoft.net wrote: Am 02.11.2013 12:15, schrieb Jeroen Geilman: Using php-mailer or any language/api (in [HTTP Server]), I only have feedback for connection between servers: Connection to SMTP server was OK, but this is not a proof that my message was really sent

Re: postfix access map for sasl authenticated users

2013-10-27 Thread Jeroen Geilman
On 10/25/2013 04:44 PM, Rudy Gevaert wrote: Hello, I was wondering if I could add a access map (to deny access in fact) for specific sasl authenticated users? E.g. even if the login succeeds that user can't send email. I couldn't find anything in the docs, but maybe I'm looking in the

Re: virtual_alias_maps question

2013-10-24 Thread Jeroen Geilman
On 10/24/2013 11:20 PM, LuKreme wrote: On 24 Oct 2013, at 04:39 , Wietse Venema wie...@porcupine.org wrote: Louis-David Mitterrand: Hi, I have a virtual_alias_maps with a pcre entry like /^(info|contact|etc)@/ localuser and it delivers i...@anydomain.com to localuser even though

Re: Domains without MX Records

2013-10-15 Thread Jeroen Geilman
On 10/15/2013 01:55 PM, FliedRice wrote: is the domain missing from /etc/localdomains? With /etc/localdomains being... what ? It's not a postfix parameter. Nor does postfix use local name resolution for email *delivery*, unless you specifically tell it to; this is governed by the

Re: postfix reports no rDNS on a host with many PTR records

2013-10-15 Thread Jeroen Geilman
On 10/15/2013 05:03 PM, Blake Hudson wrote: Wietse Venema wrote the following on 10/15/2013 9:55 AM: Wietse Venema: The DNS query is made by the SYSTEM LIBRARY functions getnameinfo() and getaddrinfo(). Postfix has no control over how they work. When I test this with Postfix test programs

Re: postfix reports no rDNS on a host with many PTR records

2013-10-14 Thread Jeroen Geilman
On 10/14/2013 08:41 PM, Blake Hudson wrote: I'm seeing the following errors when a prominent North American life insurance vendor attempts to send me email. Oct 14 12:57:07 twinc postfix/smtpd[12194]: NOQUEUE: reject: RCPT from unknown[216.163.249.229]: 450 4.7.1 Client host rejected: cannot

Re: Some postfix delivering problems

2013-10-12 Thread Jeroen Geilman
On 10/12/2013 07:34 AM, asbaeza wrote: Hi I am getting some problems with my postfix installation. I use postfix+amavis+clamav+spamassassin in a Debian box. I recently changed from sendmail+canit pro to this configuration. The last error I get is something like: Command time

Re: seamless postfix migration to a new server

2013-10-12 Thread Jeroen Geilman
On 10/12/2013 09:54 AM, teknet9 wrote: Hello Everybody, I need to migrate my old postfix server to a new machine. Domain will be the same. I would like to make this migration seamless for the end users and give them 1-2 months for migration (both servers should work at that time correctly). 1

Re: seamless postfix migration to a new server

2013-10-12 Thread Jeroen Geilman
On 10/12/2013 07:16 PM, DTNX Postmaster wrote: On Oct 12, 2013, at 17:04, teknet9 tekn...@o2.pl wrote: Thank you for advise. I have many users i can not allow for any downtime (not even few seconds). Also i can not loose any single email. Your solution will not guarantee that. I am looking

Re: postfix configuration

2013-10-09 Thread Jeroen Geilman
On 10/09/2013 10:03 PM, Stefano Gatto wrote: Hi all I'm trying to configure postfix 2.7.1 to protect internal mailing list with the restriction classes as per http://www.postfix.org/RESTRICTION_CLASS_README.html#internal Example /etc/postfix/main.cf: smtpd_recipient_restrictions =

Re: status=deferred (temporary failure)

2013-09-29 Thread Jeroen Geilman
On 09/26/2013 09:38 PM, LuKreme wrote: snipped irrelevant spamd logs Sep 26 13:28:03 mail postfix/pipe[90184]: 6842750D335: to=user+faceb...@example.com, relay=procmail, delay=3, delays=0.45/0.02/0/2.5, dsn=4.3.0, status=deferred (temporary failure) Procmail returned an exit status of 75

Re: 1 mail being stuck in incoming mail queue.

2013-09-19 Thread Jeroen Geilman
On 09/12/2013 03:17 AM, Josh Cason wrote: The two entries in log file. I change a few things to protect my mail server, client and sender. But you should get the idea. This is how my mailserver system is setup. cisco router - assp spam filter - postfix mailserver with mailscanner.

Re: spam - headers: from ME to ME, but different anvelope sender

2013-09-11 Thread Jeroen Geilman
On 09/07/2013 05:19 AM, FliedRice wrote: Just a thought, In order to block more incoming spam you could add more rbl's to your main.cf file. I have spamassassin, but it's turned off in favor of the following smtpd restrictions and domain blocking in the plesk user interface, or filtering in the

Re: Dealing with outages

2013-09-11 Thread Jeroen Geilman
On 09/09/2013 09:27 PM, Wietse Venema wrote: Postfix does a hard bounce when the DNS server replies that the name has no MX record AND the DNS server replies that the name has no A record, AND (if Postfix IPv6 support is on) the DNS server replies that the name has no record. Does that

Re: Postfix SMTP server: errors from mail-ve0-f174.google.com[209.85.128.174]

2013-09-08 Thread Jeroen Geilman
On 09/02/2013 08:11 AM, Eric Kom wrote: Good day, Please my smtp based on postfix its sending me a messages with the above subject and body: Postfix SMTP server: errors from mail-ve0-f174.google.com[209.85.128.174] Transcript of session follows. Out: 220 Great Kom Networks (Pty) LTD,

Re: sending mail using more then one smarthost\relayhost and sasl?

2013-09-08 Thread Jeroen Geilman
On 09/02/2013 10:56 PM, Eliezer Croitoru wrote: Hey, I have a situation with a working postfix install which I am not sure how to implement. You're not sure how to implement... a working situation ? the main problem is that from time to time I get a rejected mail from a remote system and

Re: iptables based spam prevention

2013-08-27 Thread Jeroen Geilman
On 08/25/2013 08:11 PM, Niclas Arndt wrote: Hi, Sorry if this is slightly off-topic, but at least a bunch of experts are listening. I am using Spamhaus (and other methods) and over time I have amassed a list of IP ranges that (according to Spamhaus) shouldn't be sending e-mail at all. One

Re: Disabling user submission on port 25

2013-08-27 Thread Jeroen Geilman
On 08/27/2013 05:24 AM, John Allen wrote: On 26/08/2013 9:00 PM, Noel Jones wrote: On 8/26/2013 7:49 PM, LuKreme wrote: OK, now that port 587 is working, I would like to disable user submission via port 25. Not right now, but in a bit once people have a chance to change their settings.

Re: Postfix queues mails rejected with 5xx errors

2013-08-24 Thread Jeroen Geilman
On 08/24/2013 08:16 PM, Szőts Ákos wrote: Dear list members, I have the following problem: A 3rd party e-mail provider refuses the HELO/EHLO command if it doesn't contain a valid FQDN address (which is acceptable from their point of view). They refuse it with a 501 (permanent) error, which

Re: Issue with a customer running Symantec Messaging Gateway: .dat attachments

2013-08-19 Thread Jeroen Geilman
On 08/19/2013 06:24 PM, Marcio Merlone wrote: Greetings, I run a mail server for my company with Ubuntu 10.04 LTS and postfix 2.7.0-1ubuntu0.2 and all my users use Thunderbird ESR. We have a customer running Symantec Messaging Gateway and it converts attachments of our messages with *special

Re: Custom routing

2013-08-17 Thread Jeroen Geilman
On 08/16/2013 03:58 PM, Carlos L wrote: Ok since my explanation of the problem is poor at best I'll give an example Please don't top-post. Incoming mail comes in like this (actual headers): Provide postfix mail logs showing the processing of a single message that exhibits the problem.

Re: SMTP auth without mailbox

2013-08-13 Thread Jeroen Geilman
On 08/12/2013 08:30 PM, M. Spini wrote: I need auth to send email, and possibly give the users the possibility to change their pwd. Postfix supports server SASL via either dovecot or cyrus. You can see which your installation supports with #postconf -a I recommend dovecot since it is

Re: SASL:Connect to private/auth failed: Connection refused -- throttling

2013-08-08 Thread Jeroen Geilman
On 08/08/2013 05:10 PM, v.dimit...@synergetic.ag wrote: Hi List. Is there a way to ensure that submission listener will not accept connections when dovecot is not running? Dovecot is pretty much as stable as postfix itself. The real question, therefore, is: why is dovecot not running ?

Re: Migrate mail from one drive to another

2013-08-06 Thread Jeroen Geilman
On 08/06/2013 12:22 PM, Felix Rubio Dalmau wrote: Hi all, I have set up a postfix+dovecot mail server that stores all the mails under /home mountpoint, and that has been working for half a year. Now I have bought a new disk and I'd like to move all the existing mail to this new

Re: Alias to command not working

2013-08-05 Thread Jeroen Geilman
On 08/05/2013 02:35 AM, Sam Flint wrote: I hve an alias to a command defined in my /etc/aliases file, anytime I send to it, I get this error: |postman...@flintfam.org (expanded from postman...@flintfam.org): user unknown You are apparently *piping* a copy to a /recipient/. This does not

Re: postmulti behind NAT

2013-07-22 Thread Jeroen Geilman
On 07/21/2013 12:23 AM, /dev/rob0 wrote: On Sat, Jul 20, 2013 at 05:18:58PM -0400, Wietse Venema wrote: /dev/rob0: The doubt in my mind about this is for mail truly destined to our hosted domains. It resolves to an Internet (not an internal) IP address which is in the MX instance's

Re: Possibly deprecated parameters

2013-07-19 Thread Jeroen Geilman
On 07/19/2013 02:04 PM, Mgr. Peter Tuharsky, MsU Banska Bystrica wrote: Thank You, both were probably a typo. After correcting, Postfix stopped complaining. (Well, they were probably not so important, since postfix was running fine for 5 years now :-) As documented, postfix 2.9 introduced

Re: Sending a lot of emails

2013-07-19 Thread Jeroen Geilman
On 07/19/2013 08:01 PM, Krzysztof Szarlej wrote: Because sendmail and postfix cannot run simulatenusely That refers to the postfix sendmail(1)-compatibility interface. It works even when postfix is not running. and I am using my email. Also my postfix is configured with ssl certs and it

Re: which type of list should I use ?

2013-07-12 Thread Jeroen Geilman
On 07/10/2013 04:04 PM, jeffrey j donovan wrote: On Jul 9, 2013, at 10:18 PM, jeffrey j donovan dono...@beth.k12.pa.us wrote: Greetings it's been a while since I have done this. I have an old server running a mail list. I have successfully relocated the list to a new server. what i need to

Re: Right way to evaluate a Outbound Spam prevention product

2013-07-01 Thread Jeroen Geilman
On 07/01/2013 07:24 PM, Abhijeet Rastogi wrote: Hi all, - Current'y, for outbound spam protection, I use combination of header checks, rbls, a commercial product that works as a milter. - Now, I need to evaluate another product which doesn't work as a milter I've to authenticate via SSL to

Re: Modify subject based on recipient

2013-07-01 Thread Jeroen Geilman
On 07/01/2013 08:09 PM, Daniel L. Miller wrote: On 6/28/2013 4:34 PM, Noel Jones wrote: On 6/28/2013 5:39 PM, Daniel L. Miller wrote: Does anyone know of a tool that will let me modify the subject line of all emails that pass through it? I would call it via a transport map. My application -

Re: Modify subject based on recipient

2013-07-01 Thread Jeroen Geilman
On 07/01/2013 08:15 PM, Jeroen Geilman wrote: On 07/01/2013 08:09 PM, Daniel L. Miller wrote: On 6/28/2013 4:34 PM, Noel Jones wrote: On 6/28/2013 5:39 PM, Daniel L. Miller wrote: Does anyone know of a tool that will let me modify the subject line of all emails that pass through it? I would

Re: postfix rejecting valid mail server

2013-06-29 Thread Jeroen Geilman
On 06/28/2013 11:50 PM, Téssio Fechine wrote: var/log/mail.log:Jun 28 18:25:43 rt-dq postfix/smtpd[4931]: NOQUEUE: reject: RCPT from unknown[209.85.219.66]: 450 4.7.1 Client host rejected: cannot find your hostname, [209.85.219.66]; from=tess...@gmail.com mailto:tess...@gmail.com

Re: cert error on outlook when send email using ssl

2013-06-29 Thread Jeroen Geilman
On 06/29/2013 08:25 PM, kazabe wrote: Hi. Im trying to use postfix with ssl. Now is working, but i have a little situation with the outloook clients. always to send a email, see a message The name of the security certificate is invalid or does not match the name of the site Well, is it

Re: STARTTLS only to send ?

2013-06-28 Thread Jeroen Geilman
On 06/28/2013 01:33 PM, Roel Wagenaar wrote: Frank Bonnet frank.bon...@esiee.fr wrote: Hello is it possible to setup one instance of postfix to 1 - use submission to let users send ( with STARTTLS ) 2 - receive emails with normal SMTP thank you

Re: Local UNIX accounts, aliasing rejecting mail to non-public UNIX accounts

2013-06-21 Thread Jeroen Geilman
On 06/21/2013 09:57 PM, Craig R. Skinner wrote: On 2013-06-19 Wed 21:09 PM |, Viktor Dukhovni wrote: virtual_alias_maps.map: user.n...@example.com user1@localhost status=bounced (mail for localhost.example.com loops back to myself) You MUST include localhost.$mydomain in mydestination:

Re: 250-AUTH LOGIN PLAIN 250-AUTH=LOGIN PLAIN

2013-06-20 Thread Jeroen Geilman
On 06/20/2013 11:19 AM, Mohsen Pahlevanzadeh wrote: Dear all, when i use telnet 0 587, i get the following result: Trying 0.0.0.0... Connected to 0. Escape character is '^]'. 220 mail.pahlevanzadeh.info ESMTP Postfix AND WHEN I USE EHLO COMMAND, I GET THE FOLLOWING RESULT: ehlo localhost

Re: MySQL tables and official documenttation

2013-06-20 Thread Jeroen Geilman
On 06/20/2013 03:04 PM, Mohsen Pahlevanzadeh wrote: Dear all, Unfortunately, i created my tables according to the older tutorial, i search in dovecot.org and postfix.org but i didn't find any official documentation for tables. I want to use PF 2.10 and dovecot 2. Its tutorial was wrote on

Re: Is this an attack?

2013-06-19 Thread Jeroen Geilman
On 06/19/2013 02:33 PM, Birta Levente wrote: On 19/06/2013 14:37, lst_ho...@kwsoft.de wrote: Zitat von Andreas Kasenides andr...@cymail.eu: One of my mail servers (postfix 2.6) has been target of what seems to me to be an attack. The attacker tried to deliver messages to a non-existent user

Re: Local UNIX accounts, aliasing rejecting mail to non-public UNIX accounts

2013-06-19 Thread Jeroen Geilman
On 06/19/2013 05:55 PM, Stan Hoeppner wrote: On 6/19/2013 10:16 AM, Wietse Venema wrote: Craig R. Skinner: On 2013-06-19 Wed 06:51 AM |, Stan Hoeppner wrote: On 6/19/2013 6:11 AM, Craig R. Skinner wrote: What happens when you try mydestination = That's something I didn't think of trying.

Re: Is this an attack?

2013-06-19 Thread Jeroen Geilman
On 06/19/2013 07:32 PM, Wietse Venema wrote: Ansgar Wiechers: On 2013-06-19 Jeroen Geilman wrote: Zitat von Andreas Kasenides andr...@cymail.eu: Out: 250-VRFY You really don't want to enable VRFY on a public mailserver; it only enables more spammers to abuse you. Set 'disable_vrfy_command

Re: Differentiate emails depending on originating server

2013-06-17 Thread Jeroen Geilman
On 06/17/2013 11:56 AM, Ashay Chitnis wrote: Hi All, I wanted to differentiate the incoming emails depending on whether they are generated by same server postfix Mail can be submitted locally in several ways; smtp is usually not the most prevalent way. sendmail(1) submission is not subject

Re: Investigating iPhone Compatibility

2013-06-17 Thread Jeroen Geilman
On 06/18/2013 12:15 AM, Asai wrote: Would it follow then that I should remove the smtp_sasl_mechanism_filter from main.cf? Would that be causing clients to try to connect via port 25 even though they're set to connect to 587? ...what makes you think these things are related in any way ?

Re: STARTTLS not announced?!

2013-06-15 Thread Jeroen Geilman
On 06/15/2013 12:13 PM, Benny Pedersen wrote: Jan Kohnert skrev den 2013-06-15 10:57: http://www.postfix.org/postconf.5.html#smtpd_tls_auth_only do i need to tell it in --verbose ? starttls have nothing to do with auth, just becurse this option have tls and auth in one line does not make

Re: problem sending some email from mailman

2013-06-14 Thread Jeroen Geilman
On 06/14/2013 11:08 PM, Ben Greenfield wrote: Hey All, Please excuse my loose terminology in the following description as I barely know what I'm doing. I have a strange problem where I'm unable to send some mail from mailman using a postfix installation on the same host. I have postfix

Re: 550 Action not taken

2013-06-13 Thread Jeroen Geilman
On 06/13/2013 09:02 PM, Ravindra Gupta // Viva wrote: Dear Wietse, So how we will resolve the issue. Please let me know for your valuable suggestion. As your log clearly shows, the OTHER SIDE of the SMTP conversation tells you this. If this other side is a receiving SMTP *server*, then

Re: question about postfix queue scheduler

2013-06-12 Thread Jeroen Geilman
On 06/08/2013 08:17 PM, Wietse Venema wrote: Jeroen Geilman: On 06/04/2013 02:20 PM, Erwan David wrote: On Tue, Jun 04, 2013 at 01:44:46PM CEST, Tom Hendrikx t...@whyscream.net said: On 06/04/2013 01:22 PM, Antonio Guti?rrez Mayoral wrote: Hi Wietse, Yes, its a solution, but these emails

Re: How to check client certifications?

2013-06-12 Thread Jeroen Geilman
On 06/12/2013 03:02 PM, Peter Bauer wrote: I got a connection from someone with a client certification: Received: from foo.bar (foo.bar [10.0.0.1]) (using TLSv1.1 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (Client CN mail.foo.bar, Issuer StartCom Class 1 Primary

Re: question about postfix queue scheduler

2013-06-08 Thread Jeroen Geilman
On 06/04/2013 02:20 PM, Erwan David wrote: On Tue, Jun 04, 2013 at 01:44:46PM CEST, Tom Hendrikx t...@whyscream.net said: On 06/04/2013 01:22 PM, Antonio Gutiérrez Mayoral wrote: Hi Wietse, Yes, its a solution, but these emails should be delivered in bussines-time :-( (it doesnt matter if it

Re: monitoring with Icinga?

2013-06-02 Thread Jeroen Geilman
On 06/02/2013 06:55 PM, Erwan David wrote: Le 02/06/2013 18:12, Wietse Venema a écrit : Lars Nielsen: s?n, 02 06 2013 kl. 12:14 -0300, skrev Mike: On 13-06-02 11:52 AM, Lars Nielsen wrote: Hey List, What is the most common solution to monitoring your postfix mailservers? I use Icinga and

Re: Is it time for 2.x.y - x.y?

2013-06-01 Thread Jeroen Geilman
On 06/01/2013 03:42 PM, Ove Evensen wrote: I would say keep it as normal. 2.9 and then 2.10. If you can not see the difference between 2.1 and 2.10 you should not use postfix. Period! Regards Ove Jk. Evensen Original message From: Linux Addict linuxaddi...@gmail.com

Re: Challenges of an internal relay server

2013-06-01 Thread Jeroen Geilman
On 05/31/2013 10:53 PM, Jason Price wrote: Background: Internal Mail Relay server. Connections from the internet are not possible. The vast majority of messages are going to Google Apps. Problem one: How to properly 'blacklist' certain To: addresses. With a blacklist in the form of a

Re: Virtual User Aliases

2013-05-29 Thread Jeroen Geilman
On 05/29/2013 11:26 AM, Simon B wrote: On 28 May 2013 20:35, Viktor Dukhovni postfix-us...@dukhovni.org wrote: On Tue, May 28, 2013 at 08:22:56PM +0200, Simon B wrote: On 28 May 2013 19:34, Viktor Dukhovni postfix-us...@dukhovni.org wrote: On Tue, May 28, 2013 at 07:25:02PM +0200, Simon B

Re: custom content_filter script: set a specific error code and reject the message

2013-05-15 Thread Jeroen Geilman
On 05/15/2013 07:06 PM, nik600 wrote: dear all i'm using a content_filter param in master.cf http://master.cf to make some custom checks on mail content and recently also on mailbox quota size. In know that exists some patch to handle that (vda or others) but i need to handler this feature

Re: postscreen_dnsbl_sites

2013-05-03 Thread Jeroen Geilman
On 5/3/2013 9:33 PM, Robert Lopez wrote: If in /etc/postfix/dnsbl_reply file there is a line: the-authorization-key-was-here.zen.dq.spamhaus.net http://the-authorization-key-was-here.zen.dq.spamhaus.net zen.dq.spamhaus.org http://zen.dq.spamhaus.org And in main.cf http://main.cf there is

Re: Mismatch virtual_alias_maps

2013-05-01 Thread Jeroen Geilman
On 05/01/2013 11:17 AM, b...@systron.de wrote: Hello list. This is not working: user1@host1 sends mail to userX@host2 Intention: userX@host2 incoming forwarding to user2@host1 host2 virtual_alias_maps: @host1 user1@host1 @host2 user2@host1 Don't blindly use catch-alls; see below for why.

Re: OT - mail archive

2013-04-25 Thread Jeroen Geilman
On 04/25/2013 08:56 PM, John Allen wrote: I realize that this is off topic, but as there are more email experts assembled here than any where else I know of I have a couple of users who are using their maildir as online storage for emails (current and archival). They have done this on

Re: Postscreen DNSBL Sites

2013-04-24 Thread Jeroen Geilman
On 04/24/2013 11:23 PM, Steve Jenkins wrote: On Tue, Apr 23, 2013 at 12:41 PM, /dev/rob0 r...@gmx.co.uk mailto:r...@gmx.co.uk wrote: With those restrictions, you could just as well raise the corresponding postscreen_dnsbl_sites scores to 3 for each. ISTM that you're missing the

Re: sender_dependent_relayhost_maps Syntax

2013-04-21 Thread Jeroen Geilman
On 04/19/2013 03:17 PM, awingnut wrote: On 4/19/2013 8:30 AM, Reindl Harald wrote: Am 19.04.2013 14:25, schrieb awingnut: I have a series of user names that need to be relayed through a server other then the default. It is not clear from the documentation if wild cards are allowed but it

Re: sender_dependent_relayhost_maps Syntax

2013-04-21 Thread Jeroen Geilman
On 04/21/2013 05:06 PM, awingnut wrote: On 4/21/2013 10:50 AM, Jeroen Geilman wrote: On 04/19/2013 03:17 PM, awingnut wrote: On 4/19/2013 8:30 AM, Reindl Harald wrote: Am 19.04.2013 14:25, schrieb awingnut: I have a series of user names that need to be relayed through a server other

Re: Multiple recipient_delimiter address extensions?

2013-04-11 Thread Jeroen Geilman
On 04/05/2013 08:17 PM, Wietse Venema wrote: /dev/rob0: Thanks. A very minor complaint is that you have always been very consistent IIRC regarding plural and singular in parameter names, but now recipient_delimiter can be multiple characters. :) (I do Yes and no. Postfix still supports only

Re: specific internal user rerouting to external mail service

2013-04-10 Thread Jeroen Geilman
On 04/08/2013 10:37 PM, Viktor Dukhovni wrote: On Mon, Apr 08, 2013 at 09:31:12PM +0200, Jeroen Geilman wrote: On 04/05/2013 07:13 PM, gbrinker wrote: Hi, I hope I have a simple request for how and where to look to accomplish this. Situation - I was using postfix as a gateway to route

Re: Setting up secure submission for remote users

2013-04-08 Thread Jeroen Geilman
On 04/08/2013 01:32 AM, LuKreme wrote: I've long used pop-before-smtp to allow authenticated users a short window in which to send mail, but now that I've setup postfix 2.8.14 I want to also setup secure submission on port 587 with ssl and something like Kerberos 5 or MD5 challenge/response

Re: specific internal user rerouting to external mail service

2013-04-08 Thread Jeroen Geilman
On 04/05/2013 07:13 PM, gbrinker wrote: Hi, I hope I have a simple request for how and where to look to accomplish this. Situation - I was using postfix as a gateway to route incoming mail to two locations, one a listserv server and second to an exchange server with a couple of family users

Re: Duplicate Emails Sent

2013-03-18 Thread Jeroen Geilman
On 03/18/2013 09:51 PM, Ed wrote: Hi All. The scenario: From: a...@site1.com To: b...@site2.com CC: m...@site3.com After receiving the email CC at site 3, site 3 is sending out emails to everyone on the original, Configure site3 to stop doing that. -- J.

Re: Our postfix works fine, but it is very slow when we send newsletter

2013-02-21 Thread Jeroen Geilman
On 02/20/2013 07:16 PM, Vince Wang wrote: Hello, We have a configured postfix email server worked well when we had it on the public IP. After we moved it behind our firewall on a intranet with ip 192.168.xxx.xxx, we found it is very slow when we send newsletter. How is DNS set up in

Re: Our postfix works fine, but it is very slow when we send newsletter

2013-02-21 Thread Jeroen Geilman
On 02/21/2013 03:34 PM, Ralf Hildebrandt wrote: It could be that the process injecting the mails into the queue is stalling the queuemanager, thus sending out can only begin AFTER the injection period. ... how ? Either pickup(8) or smtpd(8) do the queueing; the qmgr only SENDS mail. There

Re: Restrict some users to local recipients only?

2013-02-15 Thread Jeroen Geilman
On 02/14/2013 12:23 AM, Patrick wrote: I have a customer who would like to configure the Postfix server he uses such that certain users can only send to local users. Use a restriction class that implements this; examples are included here:

Re: Trouble configuring backup MX to reject unauth destination

2013-02-08 Thread Jeroen Geilman
On 02/08/2013 06:02 PM, Titanus Eramius wrote: Feb 7 22:12:48 ntdata postfix/pickup[24843]: 048341743609: uid=5005 from=SRS0=3u76=L7=gmail.com=jimmiedcu...@nt-data.dk So you are...not re-injecting spamassassin traffic, but instead re-submitting it via sendmail ? That's weird. Feb 7

Re: Recommendations for antivirus

2013-01-25 Thread Jeroen Geilman
On 01/16/2013 10:55 PM, TFML wrote: I'm running a server on average week we receive 14,000, send 19,000, and in total deferred/bounced/rejected 5,000 Are you certain of those numbers ? For any publically-reachable MX host, the amount of spam rejected is AT LEAST 10 times the amount of

Re: Sufficiently locked down?

2013-01-24 Thread Jeroen Geilman
On 01/24/2013 07:08 AM, Stan Hoeppner wrote: On 1/23/2013 2:23 PM, Grant wrote: I thought my postfix setup was configured to send mail on port 587 and receive mail on port 25, so I was surprised to find that I could send mail from the local machine on port 25. Is my config OK? Postfix never

Re: postfix rejecting mail: 555 5.5.4 Unsupported option: AUTH=

2013-01-14 Thread Jeroen Geilman
On 01/14/2013 10:55 PM, Jaap van Wingerde wrote: Is microsoft.com and versatel.nl sending mail with invalid AUTH? What means: SPF Permanent Error: Too many DNS lookups'? Permanent Error seems fairly self-explanatory to me. That said, postfix contains no SPF functionality. You'll have to

Re: Copy email with ALL headers (inc. BCC)

2013-01-14 Thread Jeroen Geilman
On 01/10/2013 02:05 AM, Jean-Luc Wasmer wrote: Hi, I've searched the mailing lists but every time the proposed solution involves using sender_bcc_maps (or other form of bcc'ing). The problem with adding a BCC to the incoming email is that other BCC headers will be dropped to the recipient of

Re: Just more complaining about mail headers that impact replying

2013-01-14 Thread Jeroen Geilman
On 01/14/2013 11:48 PM, Robert Moskowitz wrote: Just complaining while listing to a MAC simulation presentation for 802.15.8. :) Complaining about... what ? This is the postfix-users mailing list, for help with the postfix MTA. -- J.

Re: BCC Transport Map

2013-01-01 Thread Jeroen Geilman
On 12/23/2012 11:49 AM, Joey J wrote: What you are saying is correct 100%, the transport map handles it. MY server is set in DNS as the MX record so it delivers to myrelayservice.com http://myrelayservice.com and then holds it, but what I want is to BCC any messages that come in when their

Re: Send mails use the same source IP across multiple servers

2012-12-15 Thread Jeroen Geilman
On 12/15/2012 06:59 PM, John Levine wrote: You want to share one dedicated external source IP address among multiple Postfix SMTP clients. If there were only one dedicated external source IP address, then a NAT router would suffice. That would be my first suggestion. For a cheap experiment,

Re: Need to review my postfix setup

2012-12-02 Thread Jeroen Geilman
On 12/02/2012 04:17 PM, John Allen wrote: I setup my original Postfix setup up some time ago using Jeff Posluns excellent howto/tutorial. My setup works and seems to work quite well, but I know that I have not kept pace with the changes and improvements in Postfix. Additionally, as a result of

Re: cache MX record

2012-11-19 Thread Jeroen Geilman
On 11/19/2012 12:51 PM, Muhammad Yousuf Khan wrote: due to some reason my primary DNS (windows 2003) is not giving me an MX record. That would be correct. No DNS server would give you an MX record of its own accord. even i have created one manually for my mailserver and afterwords it

Re: Simplest approach to full-adress aliases?

2012-11-18 Thread Jeroen Geilman
On 11/18/2012 08:26 PM, Jan Johansson wrote: NOTE that domainALPHA.com must be in an address class you control: relay, local, or virtual_*. The presence of the alias alone does not mean mail for the domain is accepted. That I gathered. The box is a MX for the domains in question. That has

Re: Simplest approach to full-adress aliases?

2012-11-17 Thread Jeroen Geilman
On 11/17/2012 02:22 PM, Ansgar Wiechers wrote: On 2012-11-17 Jan Johansson wrote: Having mostly used Exim I am trying to sort out a few things with a postfix (2.8.5-2~build0.11.04 on Ubuntu) install. Basically, I want a forwarding mechanism that can map

Re: Policy delegation after alias expansion

2012-11-14 Thread Jeroen Geilman
On 11/14/2012 11:45 PM, Reinaldo de Carvalho wrote: Is possible call a policy daemon after alias expansion? Policy checks happen in the context of smtp reception (before end-of-data); alias expansion happens once the message has been accepted (after end-of-data) and just before it is

Re: ..:: Postfix authentication requered for relay ::..

2012-11-13 Thread Jeroen Geilman
On 11/13/2012 12:41 AM, Alfonso Alejandro Reyes Jiménez wrote: snipped The SASL auth is working on the smtpd server and it works fine, but when we try to send anything from the other server we don't even see the login attempt. So...what does the postfix log say on the sending side ? If an

Re: ..:: Postfix authentication requered for relay ::..

2012-11-12 Thread Jeroen Geilman
On 11/13/2012 12:21 AM, Alfonso Alejandro Reyes Jiménez wrote: Hi everyone. We have 2 postfix servers, one for every email from our company and the other inside our LAN just sending Nagios notifications. The thing is that we need to configure the SMTP authentication in the notifications

Re: mixing mbox and maildirs for local users

2012-11-11 Thread Jeroen Geilman
On 11/10/2012 11:26 PM, maillis...@gmail.com wrote: Postfix does respect set guid, that's my bad. I still don't see how to share a Maildir, though. On delivery ? Not possible. One recipient == one mailbox. However, you can trivially make one (separate) mailbox available to a group of IMAP

Re: Mail forwarding loop

2012-11-08 Thread Jeroen Geilman
On 11/08/2012 05:25 PM, Daniele Nicolodi wrote: Hello, I think I have a problem with my simple mail server. I noticed several bounce mails in the queue, which postfix in unable to deliver. C0B0160EC 12730 Thu Nov 8 12:35:47 MAILER-DAEMON (lost connection with

Re: Mail forwarding loop

2012-11-08 Thread Jeroen Geilman
On 11/08/2012 11:12 PM, Jeroen Geilman wrote: On 11/08/2012 05:25 PM, Daniele Nicolodi wrote: Hello, I think I have a problem with my simple mail server. I noticed several bounce mails in the queue, which postfix in unable to deliver. C0B0160EC 12730 Thu Nov 8 12:35:47 MAILER-DAEMON

  1   2   3   4   5   6   7   8   >