I have a sender from a web hosting company who is not able to send to
one of my users. The log entry looks like this:
Nov 16 10:50:57 smtp postfix/smtpd[15063]: NOQUEUE: reject: RCPT from
ip67-89-97-251.z97-89-67.customer.algx.net[67.89.97.251]: 554 5.7.1
<ip67-89-97-251.z97-89-67.customer.algx.net[67.89.97.251]>: Client host
rejected: Access denied; from=<prvs=1936c65064=sen...@senderdomain.tld>
to=<myu...@mydomain.tld> proto=ESMTP helo=<tigsnet.com>
I have "sen...@senderdomain.tld" in my whitelist (ok_by_email_hash)
but this sender still rejecting. How do things like "prvs=1936c65064="
preceding a recipients email address affect this and how can I
successfully permit that sender without re-working the postfix
configuration drastically?
postconf -n
alias_database = hash:/etc/aliases
alias_maps = hash:/etc/aliases
append_dot_mydomain = no
biff = no
config_directory = /etc/postfix
disable_vrfy_command = yes
header_checks = pcre:/etc/postfix/header_checks_pcre (note: all set to
WARN)
inet_interfaces = all
mailbox_size_limit = 0
message_size_limit = 0
mydestination = /etc/postfix/mydestination.cf
myhostname = smtp.myDomain.tld
mynetworks = /etc/postfix/mynetworks.cf
myorigin = /etc/postfix/myorigin.cf
readme_directory = no
recipient_delimiter = +
relay_domains = /etc/postfix/myrelay_domains.cf
relay_recipient_maps = hash:/etc/postfix/exchange_recipients
relayhost =
show_user_unknown_table_name = no
smtpd_banner = Ready
smtpd_client_restrictions =
smtpd_delay_reject = yes
smtpd_helo_required = yes
smtpd_helo_restrictions =
smtpd_recipient_restrictions =
permit_mynetworks
reject_unauth_destination
check_sender_access hash:/etc/postfix/ok_by_email_hash
check_sender_access hash:/etc/postfix/ok_by_domain_hash
check_sender_access hash:/etc/postfix/access_hash
check_client_access hash:/etc/postfix/ok_by_domain_hash
check_client_access hash:/etc/postfix/access_hash
warn_if_reject check_client_access
hash:/etc/postfix/reject_by_ip_hash
check_helo_access hash:/etc/postfix/ok_by_domain_hash
check_helo_access hash:/etc/postfix/access_hash
check_client_access regexp:/etc/postfix/access_regexp
check_recipient_access hash:/etc/postfix/reject_by_recipient_hash
reject_unknown_reverse_client_hostname
reject_unknown_client_hostname
reject_non_fqdn_helo_hostname
reject_invalid_helo_hostname
reject_unknown_sender_domain
reject_rbl_client dnsbl-1.uceprotect.net
reject_rbl_client dnsbl-2.uceprotect.net
smtpd_sender_restrictions =
transport_maps = hash:/etc/postfix/transport
unknown_address_reject_code = 550
unknown_client_reject_code = 550
unknown_hostname_reject_code = 550