looking for a little documentation please

2019-11-21 Thread Fazzina, Angelo
Hi, i read this http://www.postfix.org/OVERVIEW.html which got me to this http://www.postfix.org/smtpd.8.html Then i got lost... I am trying to diagnose the details of what smtpd does when a client tries to connect to my postfix server, based on these 2 lines Nov 21 09:00:15 mail5 postfix/smtpd[

RE: looking for a little documentation please

2019-11-21 Thread Fazzina, Angelo
: looking for a little documentation please > On Nov 21, 2019, at 10:54 AM, Fazzina, Angelo > wrote: > > ov 21 09:00:15 mail5 postfix/smtpd[31265]: lost connection after CONNECT from > unknown[unknown] > Nov 21 09:00:15 mail5 postfix/smtpd[31265]: disconnect from unknown[unknown]

RE: looking for a little documentation please

2019-11-21 Thread Fazzina, Angelo
little documentation please On 11/21/2019 10:18 AM, Fazzina, Angelo wrote: > Thank you for clearing that up. > Since this client I have is having trouble and I am trying to determine if > the clients IP is the one generating these log entries do you think these to > settings will give

RE: How to trigger a script based on header

2019-12-04 Thread Fazzina, Angelo
Hi, AFA I know there is the “argv” parameter in master.cf that can run scripts you create, there may be others. This is my test config: autoreply unix - n n - - pipe flags=DFuser=nobody argv=/usr/local/bin/angelo $sender $recipient $original

RE: How to trigger a script based on header

2019-12-05 Thread Fazzina, Angelo
to file ) Sorry i can't be more helpful, good luck. -ANGELO FAZZINA ang...@uconn.edu<mailto:ang...@uconn.edu> University of Connecticut, ITS, SSG, Server Systems 860-486-9075 Hi Angelo, thanks for your quick reply. I had a look at your solution, but I'd need a filter on the

Question on ver 2.6.6

2020-02-27 Thread Fazzina, Angelo
Hi, does Postfix have any built-in parameters to delete emails that postqueue shows like this ? A530D14D6D53528 Thu Feb 27 10:13:52 MAILER-DAEMON (host aspmx.l.google.com[209.85.144.26] said: 450-4.2.1 The user you are trying to contact is receiving mail too quickly. 450-4.2.1 Please resend

RE: postfix3 with opendkim

2020-03-10 Thread Fazzina, Angelo
Hi, may I ask what your Postfix config looks like for OpenDkim ? In Postfix 2.x it is close to this : smtpd_milters = inet:127.0.0.1:8891 non_smtpd_milters = $smtpd_milters milter_default_action = accept milter_protocol = 6 -ANGELO FAZZINA ang...@uconn.edu University of Connecticut, ITS, SSG,

RE: limiting connections to a single host

2020-11-05 Thread Fazzina, Angelo
Maybe this section of the docs is what you are trying to accomplish ? http://www.postfix.org/TUNING_README.html#rope -ANGELO FAZZINA ang...@uconn.edu University of Connecticut,  ITS, SSG, Server Systems 860-486-9075 -Original Message- From: owner-postfix-us...@postfix.org On Behalf O

Question about Anvil

2016-08-02 Thread Fazzina, Angelo
Hello, I am testing anvil by setting these variables: 1. smtpd_client_connection_rate_limit = 100 connections 2. mtpd_client_recipient_rate_limit = 100 recipients addresses 3. smtpd_client_message_rate_limit = 100 delivery requests 4. smtpd_client_new_tls_session_rate_limit = 100 connections 5. sm

RE: Question about Anvil

2016-08-02 Thread Fazzina, Angelo
r Dukhovni Sent: Tuesday, August 2, 2016 1:58 PM To: postfix-users@postfix.org Subject: Re: Question about Anvil On Tue, Aug 02, 2016 at 05:50:23PM +, Fazzina, Angelo wrote: > My question is what would be a good explanation for having BOTH > smtpd_client_message_rate_limit and smtpd_c

How granular are Anvil settings ?

2016-08-03 Thread Fazzina, Angelo
Hi, I did not see any options to implement these settings at different limits for different IP ranges ? smtpd_client_connection_rate_limit = 500 smtpd_client_message_rate_limit = 500 smtpd_client_recipient_rate_limit = 500 smtpd_client_new_tls_session_rate_limit = 500 I know the setting to make

RE: Block certain prefixes/TLDs from accessing

2016-08-11 Thread Fazzina, Angelo
Hello Richard, I have been able to get by with http://www.postfix.org/postconf.5.html#smtpd_recipient_restrictions and http://www.postfix.org/postconf.5.html#smtpd_sender_restrictions But I think the best bet is looking at output of "postconf -d" and guessing what might be descriptive of what yo

RE: Moved Postfix to new server; Gmail now silently dropping messages sent from it

2016-09-21 Thread Fazzina, Angelo
I think this is the issue ? mynetworks = 127.0.0.0/8, [::1]/128 -Angelo Fazzina Operating Systems Programmer / Analyst University of Connecticut, UITS, SSG-Linux/ M&C 860-486-9075 From: owner-postfix-us...@postfix.org [mailto:owner-postfix-us...@postfix.org] On Behalf O

RE: Moved Postfix to new server; Gmail now silently dropping messages sent from it

2016-09-21 Thread Fazzina, Angelo
Forget what I said, you said this I'm setting up Request Tracker for internal use, which requires a Linux system to run So Mynetworks is likely fine. I agree with Noel Jones. -ALF -Angelo Fazzina Operating Systems Programmer / Analyst University of Connecticut,  UITS, SSG-Linux/ M&C 860-486-90

RE: Rate Limiting & 'destination_concurrency_limit'

2016-10-18 Thread Fazzina, Angelo
Noel, I'm confused. What you say seems to contradict this: The default_destination_concurrency_limit parameter (default: 20) controls how many messages may be sent to the same destination simultaneously FROM : http://www.postfix.org/TUNING_README.html Are you saying any custom ones we set act di

RE: SMTP round-trip monitoring

2016-10-20 Thread Fazzina, Angelo
Hello, I don't know of a service, but we have a Zabbix server and I wrote a python script that is run from a server not in our mail infrastructure(Azure) to verify mail is flowing. In short script creates and sends email that hops through all our mail servers, and checks email arrived in the ma

RE: Open relay

2016-10-21 Thread Fazzina, Angelo
So what is SASL using in Postfix ? Is Postfix calling SASL, which calls PAM, which calls LDAP, to check the Password? You must follow the trail of how they got the password if you say you changed it and it does not help. -ALF -Angelo Fazzina Operating Systems Programmer / Analyst University o

RE: Blacklisting googlegroups

2016-10-24 Thread Fazzina, Angelo
Hi, Can't you use REGEX to write a rule to catch them, and then decide what you want to do with those emails ? Maybe: /etc/postfix/catch_spammer file has this: /^oursuperclub-members(.*)@googlegroups.com ${1}@spammer.google.bad Not sure where you add the file to do the rejection, maybe mynetw

RE: Blacklisting googlegroups

2016-10-24 Thread Fazzina, Angelo
ostfix-us...@postfix.org [mailto:owner-postfix-us...@postfix.org] On Behalf Of Nikolaos Milas Sent: Monday, October 24, 2016 10:25 AM To: postfix users Subject: Re: Blacklisting googlegroups On 24/10/2016 5:15 μμ, Fazzina, Angelo wrote: > Can't you use REGEX to write a rule to catch them, and

RE: incoming queue question: 'not found'

2016-10-25 Thread Fazzina, Angelo
Hi, If you are running a linux postfix server, can't you run Postqueue -p > /tmp/queue_file And then look at what is in your mail queue ? -ALF -Angelo Fazzina Operating Systems Programmer / Analyst University of Connecticut,  UITS, SSG-Linux/ M&C 860-486-9075 -Original Message- Fro

RE: Ubuntu 16.04lts & ssl unknown states

2016-11-03 Thread Fazzina, Angelo
Hi Florian, I am curious if you ran a basic telnet test of your SSL config, trying to connect over port 465 or 587 ? Sorry for not reading your attachments. I am attaching one file of the command and its output, showing example test over both ports. Does your postfix respond like my example or y

RE: hacker or server problem

2016-11-16 Thread Fazzina, Angelo
I'm a little late to the party, but wouldn't configuring Anvil in Postfix stop this kind of stuff ? -ALF -Angelo Fazzina Operating Systems Programmer / Analyst University of Connecticut,  UITS, SSG, Server Systems 860-486-9075 -Original Message- From: owner-postfix-us...@postfix.org [ma

RE: Banned by Yahoo?

2016-12-01 Thread Fazzina, Angelo
Hi, I throttle my traffic to AOL and HOTMAIL, maybe you need to do the same for Yahoo. I had to lookup each ISP's limits to configure it in Postfix to help with all the mail to them getting deferred. I must say it has been years since users complained about mail not getting delivered to those d

RE: Banned by Yahoo?

2016-12-01 Thread Fazzina, Angelo
Banned by Yahoo? This sounds like a great idea. Where do you actually specify AOL's mail servers for this rule? On Thu, 1 Dec 2016, Fazzina, Angelo wrote: > Hi, I throttle my traffic to AOL and HOTMAIL, maybe you need to do the same > for Yahoo. > I had to lookup each ISP

RE: Rate-limiting access to postfix on the firewall, what are decent numbers (depending on overall traffic)?

2017-01-03 Thread Fazzina, Angelo
Hi, are you already leveraging Anvil ? Or at least checked if it can help the situation ? http://www.postfix.org/TUNING_README.html http://www.postfix.org/anvil.8.html -Angelo Fazzina Operating Systems Programmer / Analyst University of Connecticut,  UITS, SSG, Server Systems 860-486-9075 --

RE: multi-instances: how to discriminate "master" in process list

2017-01-04 Thread Fazzina, Angelo
If you are on linux, would you find these commands helpful ? pgrep master|xargs ps –fp Example Output: UIDPID PPID C STIME TTY TIME CMD root 7437 1 0 2016 ?00:29:41 /usr/libexec/postfix/master pgrep -u postfix|xargs ps –fp Example Output

how to check what cipher was used to connect

2017-01-11 Thread Fazzina, Angelo
Hi, I plan on changing my postfix config from smtpd_tls_exclude_ciphers = RC4, aNULL smtpd_tls_mandatory_protocols = !SSLv3, !SSLv2 to smtpd_tls_mandatory_protocols = !SSLv3, !SSLv2 smtpd_tls_exclude_ciphers = DES-CBC3-SHA, EDH-RSA-DES-CBC3-SHA, RC4, aNULL I ran this openssl ciphers -v ALL|grep

RE: how to check what cipher was used to connect

2017-01-12 Thread Fazzina, Angelo
] On Behalf Of Noel Jones Sent: Wednesday, January 11, 2017 4:43 PM To: postfix-users@postfix.org Subject: Re: how to check what cipher was used to connect On 1/11/2017 3:27 PM, Fazzina, Angelo wrote: > My questions: > > 1. can i turn up postfix debug level to see the actual cipher chosen

need help finding a missing email. thanks for looking

2017-01-13 Thread Fazzina, Angelo
I have this email that had 2 users in the CC field, and only one got the email. Anyone see any obvious reason why ? mehgan.willi...@uconn.edu did NOT get the email. My guess is postfix messed up reading the CC field ? Thanks for looking. -ALF Partial header from MX record server: Subject: Re: i

RE: need help finding a missing email. thanks for looking

2017-01-13 Thread Fazzina, Angelo
017 3:49 PM To: postfix-users@postfix.org Subject: Re: need help finding a missing email. thanks for looking On 1/13/2017 2:38 PM, Fazzina, Angelo wrote: > I have this email that had 2 users in the CC field, and only one got > the email. > > Anyone see any obvious reason why ? Yes, the

RE: need help finding a missing email. thanks for looking

2017-01-13 Thread Fazzina, Angelo
-Original Message- From: owner-postfix-us...@postfix.org [mailto:owner-postfix-us...@postfix.org] On Behalf Of Wietse Venema Sent: Friday, January 13, 2017 3:55 PM To: Postfix users Subject: Re: need help finding a missing email. thanks for looking Fazzina, Angelo: > I have this em

RE: need help finding a missing email. thanks for looking

2017-01-13 Thread Fazzina, Angelo
-Original Message- From: owner-postfix-us...@postfix.org [mailto:owner-postfix-us...@postfix.org] On Behalf Of Viktor Dukhovni Sent: Friday, January 13, 2017 4:00 PM To: Postfix users Subject: Re: need help finding a missing email. thanks for looking > On Jan 13, 2017, at 3:55 PM, Fazz

RE: need help finding a missing email. thanks for looking

2017-01-13 Thread Fazzina, Angelo
wner-postfix-us...@postfix.org] On Behalf Of Viktor Dukhovni Sent: Friday, January 13, 2017 4:11 PM To: Postfix users Subject: Re: need help finding a missing email. thanks for looking > On Jan 13, 2017, at 4:06 PM, Fazzina, Angelo wrote: > > I will ask the sender to check his mail server to ver

RE: Autoresponder?

2017-01-17 Thread Fazzina, Angelo
Hi, Here is the solution we use. For this situation we have on our postfix SMTP servers local accounts that handle this. Once the issue is over you can simple delete the user account on the server. The accounts .forward file contains | ~/bin/mail_respond I run these commands RAN useradd -m

question about searching log files

2017-01-25 Thread Fazzina, Angelo
Hi, I am trying to grep out all the log lines for a particular connection. I added logging to see the cipher being used when connecting, now i want to see if anyone is actually getting connected and sending emails. Obviously with many threads, logs are not written chronologically, so need to fin

RE: Postfix 20 years ago

2017-02-14 Thread Fazzina, Angelo
Hello Mr. Venema, Thank you for the history lesson ! I got into mail a little after Y2K, so I don’t have too much experience to fall back on, hence this list has been a great place to find help. Everything you and all those involved in creating and continuing to maintain this software is truly

RE: Strong Ciphers to use with Postfix

2017-02-17 Thread Fazzina, Angelo
Hi, Here is how I am dealing with "weak ciphers" You may be able to do the same type of config ? In /etc/postfix/main.cf # -ALF 2016-09-07 # disable RC4 ciphers with TLS connections. #smtpd_tls_exclude_ciphers = RC4, aNULL # -ALF 2017-01-09 # disable weak ciphers, and RC4 ciphers smtpd_tls_excl

RE: Different treatment of ports 465 and 587 between postfix versions 2.9 and 3.1

2017-02-17 Thread Fazzina, Angelo
Hi, I thought the master.cf file is where you config what protocol to listen for ? Submission or SMTPS I'm no expert either, just curious what your setup is. -ALF -Angelo Fazzina Operating Systems Programmer / Analyst University of Connecticut,  UITS, SSG, Server Systems 860-486-9075 -Or

RE: How do I move messages from a sender to the HOLD queue?

2017-03-13 Thread Fazzina, Angelo
Read man page on Postsuper. -Angelo Fazzina Operating Systems Programmer / Analyst University of Connecticut, UITS, SSG, Server Systems 860-486-9075 From: owner-postfix-us...@postfix.org [mailto:owner-postfix-us...@postfix.org] On Behalf Of Sean Son Sent: Monday, March 13, 2017 1:47 PM To: pos

RE: How do I move messages from a sender to the HOLD queue?

2017-03-13 Thread Fazzina, Angelo
Hi again, You may need to run Postqueue –p First go get the users emails. Grep out the ones you need. -ALF -Angelo Fazzina Operating Systems Programmer / Analyst University of Connecticut, UITS, SSG, Server Systems 860-486-9075 From: owner-postfix-us...@postfix.org [mailto:owner-postfix-us...@p

need little help with DKIM, if possible.

2017-03-16 Thread Fazzina, Angelo
Hi, I ran this. opendkim-genkey -v -D /etc/opendkim/keys/uconn/ -d uconn.edu -s 2017_uconn_DKIM which created the private key and selector name I created an entry in DNS and it shows up when I run this. dig any mta4.uits.uconn.edu My issue is how do I get this command to work ? dig 2017_uconn_DK

RE: What does this log message mean?

2017-03-23 Thread Fazzina, Angelo
Hi, I think this is how you read the delay. "delays=a/b/c/d" where a=time before queue manager, including message transmission; b=time in queue manager; c=connection setup time including DNS, HELO and TLS; d=message transmission time That may explain why it’s deferred and not sent. -ALF -Ange

RE: What does this log message mean?

2017-03-23 Thread Fazzina, Angelo
, Angelo Cc: Postfix users Subject: Re: What does this log message mean? On 23 Mar 2017, at 20:16, Fazzina, Angelo mailto:angelo.fazz...@uconn.edu>> wrote: Hi, I think this is how you read the delay. "delays=a/b/c/d" where a=time before queue manager, including message transmission;

RE: Mail queue with 110.000 mails

2017-03-27 Thread Fazzina, Angelo
Hi, Use postqueue -p to look at what is in the queue. Use postsuper -h to move stuff to look at later. Read man pages of those commands if needed. -ALF -Angelo Fazzina Operating Systems Programmer / Analyst University of Connecticut,  UITS, SSG, Server Systems 860-486-9075 -Original Mess

RE: need little help with DKIM, if possible.

2017-03-29 Thread Fazzina, Angelo
-Encoding: 7bit -Angelo Fazzina Operating Systems Programmer / Analyst University of Connecticut, UITS, SSG, Server Systems 860-486-9075 -Original Message- From: Doug [mailto:domain_name_t...@yahoo.com] Sent: Friday, March 17, 2017 1:52 AM To: postfix-users@postfix.org; Fazzin

RE: need little help with DKIM, if possible.

2017-03-30 Thread Fazzina, Angelo
rammer / Analyst University of Connecticut, UITS, SSG, Server Systems 860-486-9075 From: owner-postfix-us...@postfix.org [mailto:owner-postfix-us...@postfix.org] On Behalf Of Dominic Raferd Sent: Wednesday, March 29, 2017 3:56 PM To: Postfix users Subject: Re: need little help with DKIM, if p

RE: relay server - mass mailing tuning

2017-04-11 Thread Fazzina, Angelo
Hi, I would think they would have to tell you the volume and or rate at which they intend to send the mail. By default Postfix lets the queue grow to 20,000 emails I think, and then may stop accepting until it can process some, and start accepting more. Any reason you haven’t been reading this?

RE: dmarc fail on internal emails

2017-04-20 Thread Fazzina, Angelo
Hi, I have been playing and learning DKIM myself lately. On quick glance I would say mail.example.com is not the same as example.com. When you look up the DNS record it is set for both domains ? Also if on linux, did you setup opendkim conf file to check for mail from both example.com and ma

RE: Can this SASL configuration be improved

2017-05-26 Thread Fazzina, Angelo
Hi, Have you considered limiting weak ciphers ? smtpd_tls_exclude_ciphers = -ALF -Angelo Fazzina Operating Systems Programmer / Analyst University of Connecticut, UITS, SSG, Server Systems 860-486-9075 From: owner-postfix-us...@postfix.org [mailto:owner-postfix-us...@postfix.org] On Behalf O

RE: Is there any documentation on the binary format of the mail files under /var/spool/postfix/ ?

2017-05-30 Thread Fazzina, Angelo
Hi, I see you have gotten plenty of good responses, but here is how I deal with it. Once I know what I am looking for from the command line I do this, and it is pretty fast for 1 to 2 thousand emails at a time. These are some recent examples I used to clean things up, that were sitting ther

RE: determine transport based on sender and receiver

2017-06-22 Thread Fazzina, Angelo
Hi Patrick, Not sure this is helpful but I searched the archives and found this. http://marc.info/?l=postfix-users&m=148063002508453&w=2 maybe brush up on the doc of transport config file options ? Good luck. -ALF -Angelo Fazzina Operating Systems Programmer / Analyst University of Connecticut

trying to hunt down meaning of warning in log file

2017-07-28 Thread Fazzina, Angelo
Hi, I run RHEL6.9, postfix 2.6.6, and openssl 1.0.1e-57.el6. I found this in the logs Jul 28 08:39:32 mail6 postfix/smtpd[22622]: connect from uconn.illiad.oclc.org[206.107.43.160] Jul 28 08:39:32 mail6 postfix/smtpd[22622]: SSL_accept error from uconn.illiad.oclc.org[206.107.43.160]: -1 Jul

recipient limit question

2017-08-04 Thread Fazzina, Angelo
Hi, Did my postfix instance limit the number of recipients in the email that was sent ? I was reading this at this link http://www.postfix.org/postconf.5.html default_extra_recipient_limit (default: 1000) The default value for the extra per-transport limit imposed on the number of in-memory

RE: recipient limit question

2017-08-04 Thread Fazzina, Angelo
zzina Operating Systems Programmer / Analyst University of Connecticut,  UITS, SSG, Server Systems 860-486-9075 -Original Message- From: Wietse Venema [mailto:wie...@porcupine.org] Sent: Friday, August 4, 2017 10:51 AM To: Fazzina, Angelo Cc: Postfix users Subject: Re: recipient limit que

RE: recipient limit question

2017-08-04 Thread Fazzina, Angelo
, 2017 11:00 AM To: postfix-users@postfix.org Subject: Re: recipient limit question On Fri, Aug 04, 2017 at 02:29:00PM +, Fazzina, Angelo wrote: > Did my postfix instance limit the number of recipients in the email that was > sent ? Yes, it restricts the amount of recipients to the number

RE: recipient limit question

2017-08-04 Thread Fazzina, Angelo
lto:owner-postfix-us...@postfix.org] On Behalf Of Bastian Blank Sent: Friday, August 4, 2017 11:21 AM To: postfix-users@postfix.org Subject: Re: recipient limit question On Fri, Aug 04, 2017 at 03:12:16PM +0000, Fazzina, Angelo wrote: > Thank you. I see it maybe me doing the limiting > smtp

RE: reloading postfix with systemd

2017-08-10 Thread Fazzina, Angelo
IMHO I would think they both work for backwards compatibility and over time "service postfix reload" will eventually be depreciated and no longer be a valid command. I expect that to take years. -ALF -Angelo Fazzina Operating Systems Programmer / Analyst University of Connecticut,  UITS, SSG,

smtpd_recipient_restrictions and smtpd_relay_restrictions difference ??

2017-08-17 Thread Fazzina, Angelo
Hi, I am reading "man 5 postconf" of version 2.10.1 I am building new server with it, from old 2.6.6. My question is my server with 2.6 has smtpd_recipient_restrictions = check_recipient_access hash:/etc/postfix/maps/block_to, permit_mynetworks, permit_sasl_authenticated, reject_unauth_destinatio

RE: Recommendations on an spf record?

2017-08-18 Thread Fazzina, Angelo
Hi, I was unaware of the controversy. I can tell you that for the specific example given : (For example, a person who uses their home ISP's SMTP servers to send mail with their work email as the address.) I was for years tagging and delivering on SPF failures with my appliances. Just recently

RE: no response from postfix on submission port (or 465)

2017-08-23 Thread Fazzina, Angelo
If anyone needs for future testing openssl s_client -starttls smtp -connect mail6.uits.uconn.edu:587 openssl s_client -connect 137.99.26.36:465 Replace IP/hostname with yours. -ALF -Angelo Fazzina Operating Systems Programmer / Analyst University of Connecticut,  UITS, SSG, Server Systems 860

can't get server to start postfix

2017-09-07 Thread Fazzina, Angelo
Hi, All of a sudden postfix won't load ? where should I look next ? thanks. I tried [root@mail2 postfix]# service postfix start Starting postfix: [ OK ] Logs show Sep 7 16:50:47 mail2 postfix/postfix-script[3214]: starting the Postfix mail system Se

RE: can't get server to start postfix

2017-09-07 Thread Fazzina, Angelo
t get server to start postfix you have a zombie master process hanging around. Stop postfix. Get a list of all running processes and check if there's a orphaned master process hanging around. Kill it. Start postfix. p@rick * Fazzina, Angelo : > Hi, > All of a sudden postfix won't

RE: can't get server to start postfix

2017-09-07 Thread Fazzina, Angelo
ster") - you might have to install the tools, I think they're part of the "process tools" package on Debian (but that's completely from memory) - google is yourf friend Miles Fidelman On 9/7/17 2:14 PM, Fazzina, Angelo wrote: > Server has only been on 25 minutes, I reboote

RE: can't get server to start postfix

2017-09-08 Thread Fazzina, Angelo
n Thu, Sep 07, 2017 at 09:34:55PM +0000, Fazzina, Angelo wrote: > Victor: I messed with it a little but no change. I did not suggest "messing" with it. :-) > [root@mail2 ~]# bash -c "ls -ld /var{,/lib{,/postfix{,/master.lock}}}" > drwxr-xr-x. 20 rootroot4096

RE: can't get server to start postfix --ISSUE RESOLVED

2017-09-08 Thread Fazzina, Angelo
: owner-postfix-us...@postfix.org [mailto:owner-postfix-us...@postfix.org] On Behalf Of Viktor Dukhovni Sent: Friday, September 8, 2017 10:17 AM To: postfix-users@postfix.org Subject: Re: can't get server to start postfix > On Sep 8, 2017, at 10:07 AM, Fazzina, Angelo > mailto:

Trouble sending email to myself on new server i am building

2017-10-02 Thread Fazzina, Angelo
Hi, Ready to pull my hair out herei have a server running 2.6 and everything works fine. Trying to build new server with postfix 2.10.1 I have my postconf -n and postfix logs of my test email. This data is from the new 2.10.1 box. Do you need anything else ? Oct 2 14:23:43 mta5 postfix/sm

RE: Questions about mynetworks_style parameter in main.cf

2017-10-02 Thread Fazzina, Angelo
Hi, For this part : “On Linux, this works correctly only with interfaces specified with the ifconfig command” I think they are saying you can find valid interface names using the ifconfig command. The new way in RHEL 7 is "ip addr" replaces "ifconfig". This: does that mean that network sett

RE: Trouble sending email to myself on new server i am building

2017-10-02 Thread Fazzina, Angelo
/2017 1:31 PM, Fazzina, Angelo wrote: > > Oct  2 14:24:43 mta5 postfix/smtp[13114]: connect to > uconn-mail-onmicrosoft-com.mail.protection.outlook.com[207.46.163.106]:25: > Connection timed out "connection timed out" almost always means some sort of network error outsid

Re: Sending with Multiple Domain Suffixes from Single Apache Server Box

2017-10-10 Thread Fazzina, Angelo
Hi, i am not too savvy, but i think you could do this in PHP or in Postfix. My guess is, if you know what the "returndomain" is from using PHP code you could add it to the transport file maybe, and run postmap to update transport file ? I assume you are pulling the "returndomain" from your PH

Re: Sending with Multiple Domain Suffixes from Single Apache Server Box

2017-10-10 Thread Fazzina, Angelo
t; when sending mail from a home computer to the Internet. From: owner-postfix-us...@postfix.org on behalf of Fazzina, Angelo Sent: Tuesday, October 10, 2017 3:54 PM To: certified; postfix-users@postfix.org Subject: Re: Sending with Multiple Domain Suffixes from

is this the correct DKIM mailing list ?

2017-10-19 Thread Fazzina, Angelo
http://mipassoc.org/mailman/listinfo/ietf-dkim I joined but after a few days nothing but crickets after my post to the list. Is there a different list you guys use to discuss DKIM ? Thanks. -ANGELO FAZZINA UITS Service Manager: Spam and Virus Prevention Mass Mailing G Suite/Gmail ang...@uconn.

easy DKIM question, at least i think it is...

2017-10-20 Thread Fazzina, Angelo
Hi, i have a small DKIM question. config files are at bottom of email. I got it working but don't understand why ? The one change i made to get it to work was add 137.99.0.0/16 to the TrustedHosts file. So tests with from of x...@appmail.uconn.edu and x...@uconn.edu are getting signed and I

Virtual alias maps question

2017-10-24 Thread Fazzina, Angelo
Hi, I added a test domain for my email address only. [root@mta4 postfix]# postmap -q "angelo.fazz...@uconn.edu" /etc/postfix/virtual angelo.fazz...@test.uconn.edu [root@mta4 postfix]# more main.cf|grep virtual_alias_maps #virtual_alias_maps = mysql:/etc/post

RE: Virtual alias maps question

2017-10-24 Thread Fazzina, Angelo
and Virus Prevention Mass Mailing G Suite/Gmail ang...@uconn.edu University of Connecticut, UITS, SSG, Server Systems 860-486-9075 From: Vernon Fort [mailto:vf...@provident-solutions.com] Sent: Tuesday, October 24, 2017 2:34 PM To: Fazzina, Angelo ; postfix-users@postfix.org Subject: RE: Virtual

RE: Virtual alias maps question

2017-10-24 Thread Fazzina, Angelo
Hi again, Thanks, that was helpful, and got me on the right track. I am pretty confident it's working now. "test.uconn.edu" is not in the virtual_alias_domains list BTW. /etc/postfix/virtual = angt...@uconn.edu angelo.fazz...@test.uconn.edu angelo.fazz...@test.uconn.edu alf02...@uconn.mail.on

RE: Minimun postfix

2017-10-26 Thread Fazzina, Angelo
Hi, I'm pretty sure you need to 1. Configure Zimbra 2. Configure Postfix so it accepts mail that is destined for the Zimbra server, whatever domain that is. Then postfix is configured to relay The mail to the next hop, which sounds like the Zimbra server from your description of the mail fl

RE: Backup mx relay got rejected due to SPF

2017-11-17 Thread Fazzina, Angelo
Hi, to me it looks like email from= to= Came in and was cleaned Nov 17 11:13:00 mail MailScanner[9148]: Content Checks: Detected and have disarmed web bug, phishing tags in HTML message in 9202040121F2.A6CDC from communicati

RE: smtpd_sasl_auth_enable is true but sasl support is not compiled in (postfix-gento)

2017-11-30 Thread Fazzina, Angelo
Hi, I put STARTTLS on port 587 SSL on port 465 and regular on port 25 Not sure how to do encrypted and unencrypted on port 25 ? -ANGELO FAZZINA UITS Service Manager: Spam and Virus Prevention Mass Mailing G Suite/Gmail ang...@uconn.edu University of Connecticut,  UITS, SSG, Server Sys

RE: smtpd_sasl_auth_enable is true but sasl support is not compiled in (postfix-gento)

2017-11-30 Thread Fazzina, Angelo
Mine that I use to test openssl s_client -connect massmail.uconn.edu:465 openssl s_client -starttls smtp -connect massmail.uconn.edu:587 telnet is just for port 25 YMMV. -ANGELO FAZZINA UITS Service Manager: Spam and Virus Prevention Mass Mailing G Suite/Gmail ang...@uconn.edu University of

RE: smtpd_sasl_auth_enable is true but sasl support is not compiled in (postfix-gento)

2017-11-30 Thread Fazzina, Angelo
ager: Spam and Virus Prevention Mass Mailing G Suite/Gmail ang...@uconn.edu University of Connecticut,  UITS, SSG, Server Systems 860-486-9075 -Original Message- From: owner-postfix-us...@postfix.org [mailto:owner-postfix-us...@postfix.org] On Behalf Of Fazzina, Angelo Sent: Thursday, Novem

RE: Proper procedure for importing TLS cert & private key for Postfix use

2017-12-08 Thread Fazzina, Angelo
This "/etc/ssl/private/tlsprivate.key": Does not equal "/etc/ssl/private/tlsprivatekey.key" -ANGELO FAZZINA UITS Service Manager: Spam and Virus Prevention Mass Mailing G Suite/Gmail ang...@uconn.edu University of Connecticut, UITS, SSG, Server Systems 860-486-9075 From: owner-postfix-us...@p

RE: detect suspicious logins

2017-12-19 Thread Fazzina, Angelo
I bet I could get something like that going easily, as my logs goto Splunk. Just not the biggest fire to put out at the moment. -ANGELO FAZZINA UITS Service Manager: Spam and Virus Prevention Mass Mailing G Suite/Gmail ang...@uconn.edu University of Connecticut,  UITS, SSG, Server Systems 860

RE: Offering STARTTLS in postfix. need help!

2018-01-12 Thread Fazzina, Angelo
My RHEL7 install but it install Postfix 2.10 and I use a LDAP backend for password storage. Not sure it helps you ? -ALF RAN vi /etc/postfix/master.cf submission inet n - n - - smtpd -o syslog_name=postfix/submission -o smtpd_tls_secur

RE: Postfix queue

2018-02-12 Thread Fazzina, Angelo
Hi, I would think you could write a script to do what you need ? Here is one I use that is in Python. [root@mta3 alf02013]# Summary Usage: Summary -s -h {-|POSTFIX_LOG} [ POSTFIX_LOG .. ] Summarize postfix mail log. Gzipped files are OK. Print one line for each delivered email, wi

RE: Postfix using all CPU after nightly mail submission

2018-02-21 Thread Fazzina, Angelo
Hi Zach, my postfix box is on Vmware too….Did the folks that manage VmWare see any oddity? No alarms ? No performance spikes ? Also I use Zabbix for monitoring so I get email warnings when certain thresholds are exceeded. Maybe the backend VMware storage is having an issue ? shooting from the h

RE: Postfix - Amavis erroneus SPAM

2018-03-12 Thread Fazzina, Angelo
Hi, I would expect you need to search your logs for all the entries for this email CB9E3837E0F To see exactly what happened and go from there ? Good Luck. -ANGELO FAZZINA ITS Service Manager: Spam and Virus Prevention Mass Mailing G Suite/Gmail ang...@uconn.edu University of Connecticut,  IT

RE: Howto configure Postfix to relay messages from a specific email address

2018-03-20 Thread Fazzina, Angelo
Hi, I use postfix version 2.6 or 2.10 I forget Can you test setting these settings ? In main.cf #relay_domains = test.uconn.edu $mydestination #relay_recipient_maps = hash:/etc/postfix/relay_recipients tfix]# more relay_recipients angelo.fazz...@test.uconn.edu OK Not sure is virtual_alias_d

RE: user unknown in virtual mailbox table

2018-04-18 Thread Fazzina, Angelo
You will get more help if you provide helpful info. http://www.postfix.org/DEBUG_README.html#mail -ANGELO FAZZINA ITS Service Manager: Spam and Virus Prevention Mass Mailing G Suite/Gmail ang...@uconn.edu University of Connecticut, ITS, SSG, Server Systems 860-486-9075 From: owner-postfix-us

RE: alternate ways to mark messages with Received SPF : None

2018-04-24 Thread Fazzina, Angelo
Hi, wouldn’t that break the DKIM sig if the email was signed ? -ANGELO FAZZINA ITS Service Manager: Spam and Virus Prevention Mass Mailing G Suite/Gmail ang...@uconn.edu University of Connecticut, ITS, SSG, Server Systems 860-486-9075 From: owner-postfix-us...@postfix.org On Behalf Of Selcu

RE: postfix maximum load capacities by official document

2018-04-30 Thread Fazzina, Angelo
Hi, I don't mean to hi-jack this thread but figured this was related. I was asked in 2014 what rate of mail could flow through per hour. I gave this response. Do you see anything dangerous in my assumptions ? Thank you for looking. BTW Postfix version is likely 2.6 ### I took a stab at

RE: postfix maximum load capacities by official document

2018-05-01 Thread Fazzina, Angelo
iktor Dukhovni Sent: Monday, April 30, 2018 6:12 PM To: Postfix users Subject: Re: postfix maximum load capacities by official document > On Apr 30, 2018, at 5:02 PM, Fazzina, Angelo wrote: > > B. Our queues only hold 20,000 emails at a time What is the reason for that? Postfix has no

RE: postfix maximum load capacities by official document

2018-05-01 Thread Fazzina, Angelo
official document Fazzina, Angelo: > Hi again, I guess I don't have a clear understanding of this in the man page ? > > Ran command > [root@mta1 ~]# man 5 postconf > > default_recipient_limit (default: 2) > > The default per-transport upper limit on the num

RE: postfix maximum load capacities by official document

2018-05-01 Thread Fazzina, Angelo
860-486-9075 -Original Message- From: owner-postfix-us...@postfix.org On Behalf Of Viktor Dukhovni Sent: Tuesday, May 1, 2018 12:38 PM To: Postfix users Subject: Re: postfix maximum load capacities by official document > On May 1, 2018, at 10:38 AM, Fazzina, Angelo wrote: >

RE: postfix maximum load capacities by official document

2018-05-01 Thread Fazzina, Angelo
ximum load capacities by official document > On May 1, 2018, at 12:50 PM, Fazzina, Angelo wrote: > > Yes, I was guessing, must have be active and not incoming queue. > Thanks for the explanation of what I was seeing. I hope it is clear that the active queue size limits don't de

RE: Ptr DNS and domains

2018-05-09 Thread Fazzina, Angelo
Hi, I would think if you are relaying mail for multiple domains then you may not need to. I relay/handle mail for many sub domains of uconn.edu and some don’t have PTR records. If it is not a sub domain I think you should follow best practice, and my guess is yes you want DNS configured as comp

RE: check rcpt to, from and destination in one session - nested smtpd_restriction_classes?

2018-05-15 Thread Fazzina, Angelo
Hi, sounds like you want If from ( benachrichtig...@cubewerk.de) and from (10.8.1.1-3) Then allow Else REJECT Sounds like you would need a regex expression to catch two conditions and then act on it. Not sure postfix can store result of first check and not

new strangeness with O365

2018-05-17 Thread Fazzina, Angelo
Hi, wanted to ask if anyone has this issue and how they deal with it ? My work email is on O365 and we just turned ATP and EOP on so emails with URLS are being rewritten. That is fine, but my issue is with plain text emails from this list. when they come in i get the rewritten hyper link in the em

RE: new strangeness with O365

2018-05-17 Thread Fazzina, Angelo
Hi, I'm not sure but this may be getting off topic but here goes. I use full Outlook client and I think I have it setup to make new emails in Plain text, other options are RTF and HTML. I am guessing replies come back in same format, but could easily be changed by replying client. I guess I can

RE: Feedback on Tutorial

2018-06-19 Thread Fazzina, Angelo
Hi, I took a quick look, I did not see which version of Postfix this was based on, you may want to mention it as some settings require a minimum Postfix version to be running. As well as some command examples you gave have minimum versions needed to work. I am no expert but I get lots of legit

RE: 5 messages per second

2018-06-20 Thread Fazzina, Angelo
This does not anvil_rate_time_unit

  1   2   >