http://www.postfix.org/postconf.5.html#smtpd_helo_restrictions

I would mean this should do that and the permits are needed because
we do not want that authenticated endusers are rejected

smtpd_helo_required = yes
smtpd_helo_restrictions = permit_mynetworks, permit_sasl_authenticated, 
reject_non_fqdn_helo_hostname

Am 03.03.2011 11:01, schrieb Erik de Castro Lopo:
> Hi all,
> 
> I'm running postfix 2.7.1 from Debian testing.
> 
> I'm getting quite a bit of spam from machines in places like Vietnam
> whose IP addresses resolve to localhost.
> 
> For example:
> 
> postfix/smtpd[1427]: warning: 117.4.33.231: address not listed for hostname 
> localhost
> postfix/smtpd[1427]: connect from unknown[117.4.33.231]
> policyd-spf[1508]: None; identity=helo; client-ip=117.4.33.231; 
> helo=localhost; envelope-from=xx...@aguaclara.org; 
> receiver=xx...@mega-nerd.com 
> policyd-spf[1508]: None; identity=mailfrom; client-ip=117.4.33.231; 
> helo=localhost; envelope-from=xx...@aguaclara.org; 
> receiver=xx...@mega-nerd.com 
> postfix/smtpd[1402]: 7D08B106DD6: client=unknown[117.4.33.231]
> postfix/cleanup[1510]: 7D08B106DD6: 
> message-id=<e1pv4ra-0000xi...@aguaclara.org>
> postfix/qmgr[1395]: 7D08B106DD6: from=<xx...@aguaclara.org>, size=4971, 
> nrcpt=1 (queue active)
> postfix/local[1511]: 7D08B106DD6: to=<xx...@mega-nerd.com>, relay=local, 
> delay=1.3, delays=1.2/0/0/0.06, dsn=2.0.0, status=sent (delivered to command: 
> /usr/bin/procmail)
> postfix/qmgr[1395]: 7D08B106DD6: removed
> 
> Is there a way to detect and reject any email from IP addresses
> falsly claiming to be localhost?
> 
> Cheers,
> Erik

-- 

Mit besten Grüßen, Reindl Harald
the lounge interactive design GmbH
A-1060 Vienna, Hofmühlgasse 17
CTO / software-development / cms-solutions
p: +43 (1) 595 3999 33, m: +43 (676) 40 221 40
icq: 154546673, http://www.thelounge.net/

Attachment: signature.asc
Description: OpenPGP digital signature

Reply via email to