On 12/15/2011 7:42 AM, Noel Jones wrote:
> On 12/15/2011 2:30 AM, Tom Kinghorn wrote:
>> Morning List.
>>
>> Sorry for the trivial question.
>>
>> I was just wondering where the best place for the fqrdns.regexp
>> "check_client_access".
>>
>> I see on the systems I have inherited, it is in the
>> "smtpd_client_restrictions" which makes sense however
>> it is placed before the "permit_sasl_authenticated" line, which does
>> not make sense
>> as this would reject the connection, even if they use smtp
>> authentication.
> 
> 
> Yes, the check should be after permit_mynetworks and
> permit_sasl_authenticated.  Something like:
> 
> smtpd_client_restrictions =
>   permit_mynetworks
>   permit_sasl_authenticated
>   check_reverse_client_hostname_access regexp:/etc/postfix/fqrdns.regexp

However, the regexp version of the table was deprecated many years ago
when I converted it to run as a PCRE.  It has also seen over 100
additional expressions, most user contributed, and other enhancements
since then.  Please use the maintained version.  Usage instructions are
comments in the top of the file, available here:

http://www.hardwarefreak.com/fqrdns.pcre

-- 
Stan

Reply via email to