Hello,

After having a user's account either bruteforced or keylogged by some evil 
malware, I'm finding I need a way to limit outbound traffic that's beyond what 
the "x messages/period" config internal to postfix can offer.  policyd2 seems 
to be the main policy daemon that can do such things.

I've had no problems building or installing, but I'm really lost on just where 
to start - I see there's a web interface, but the docs seem to refer to 
configuration items to define policies/groups that would go in a config file 
(but don't look like they belong in cluebringer.conf).  So there's that...

Next, I have a number of domains.  They get added, deleted via our control 
panel - is my only route to determining inbound vs. outbound email to define 
internal domains and match on that?  Might matching on any auth'd sasl user 
work, and if so, what does that match look like (this would be preferred).

For now, I'm not looking for anything fancy, just want to protect us if another 
account gets compromised somewhere along the way.

Thanks,

Charles
_______________________________________________
Users mailing list
[email protected]
http://lists.policyd.org/mailman/listinfo/users

Reply via email to