Re: mail from external servers connecting but timing out after tls established. t.s.

2020-05-08 Thread Thomas Strike
>On postfix itself you can use regular blocklists to prevent such 
obvious IPs.



For the other services like imap etc. it helps to use fail2ban.


I have all filtering that I know of off right now. I am just trying to 
establish incoming communication with other SMTP clients right now. Once I get 
SMTPD services running and delivering incoming messages to the virtual 
mailboxes, I will work on fetching the mail through dovecot. Then at last I'll 
address blacklisting and spam after I get my server basically working.



Re: mail from external servers connecting but timing out after tls established. t.s.

2020-05-08 Thread Christian
Am Freitag, den 08.05.2020, 15:51 -0500 schrieb Thomas Strike:
> Matus: your right. I misused the word server. I thought that this was
> the test message being sent with gmail because every time I sent a
> new test, this IP came up in the maillog.
> This turns out to be a Russian IP. Geez, Louise! I have Russia trying
> to hack me.
>

Just an idea
On postfix itself you can use regular blocklists to prevent such
obvious IPs.
For the other services like imap etc. it helps to use fail2ban.



Re: mail from external servers connecting but timing out after tls established. t.s.

2020-05-08 Thread Thomas Strike

Matus: your right. I misused the word server. I thought that this was the test 
message being sent with gmail because every time I sent a new test, this IP 
came up in the maillog.
This turns out to be a Russian IP. Geez, Louise! I have Russia trying to hack 
me.



Re: mail from external servers connecting but timing out after tls established. t.s.

2020-05-08 Thread Matus UHLAR - fantomas

On 08.05.20 13:01, Thomas Strike wrote:

Subject: mail from external servers connecting but timing out after tls
established. t.s.

External smtp servers time out after tls v1.2 is established. the 
following is from the maillog;


May  8 17:40:48 sleepyvalley postfix/smtps/smtpd[17534]: connect 
from unknown[185.50.149.12]


On 08.05.20 20:57, Matus UHLAR - fantomas wrote:

remote servers don't connect to smtps port.
These are remote clients, guessing passwords.
and this address block looks familiar to me,


... apparently abusers

I set up certificates with letsincrypt. If these crets are wrong, 
would that cause this type of behavior?


no.


--
Matus UHLAR - fantomas, uh...@fantomas.sk ; http://www.fantomas.sk/
Warning: I wish NOT to receive e-mail advertising to this address.
Varovanie: na tuto adresu chcem NEDOSTAVAT akukolvek reklamnu postu.
"Two words: Windows survives." - Craig Mundie, Microsoft senior strategist
"So does syphillis. Good thing we have penicillin." - Matthew Alton


Re: mail from external servers connecting but timing out after tls established. t.s.

2020-05-08 Thread Matus UHLAR - fantomas

On 08.05.20 13:01, Thomas Strike wrote:

Subject: mail from external servers connecting but timing out after tls
established. t.s.

External smtp servers time out after tls v1.2 is established. the 
following is from the maillog;


May  8 17:40:48 sleepyvalley postfix/smtps/smtpd[17534]: connect from 
unknown[185.50.149.12]


remote servers don't connect to smtps port.
These are remote clients, guessing passwords.
and this address block looks familiar to me, 

I set up certificates with letsincrypt. If these crets are wrong, 
would that cause this type of behavior?


no.

--
Matus UHLAR - fantomas, uh...@fantomas.sk ; http://www.fantomas.sk/
Warning: I wish NOT to receive e-mail advertising to this address.
Varovanie: na tuto adresu chcem NEDOSTAVAT akukolvek reklamnu postu.
My mind is like a steel trap - rusty and illegal in 37 states.