Matus:

why just outgoing? Are you willing to accept spam with fake from in your
domain?

On 07.09.17 15:13, Scott Techlist wrote:
I am not willing.  Inbound is already restricted and functioning properly.

That said, I migrated my configs from an older version of PF so now you made me 
worry about *how* it is restricted.

I have set at postfix level for local, virtual and relay users:
   local_recipient_maps = hash:/etc/postfix/local_recipient
   virtual_alias_maps = hash:/etc/postfix/virtual_users
   relay_recipient_maps = hash:/etc/postfix/relay_recipients

If the email isn't in one of those, it is rejected.

I *thought* it was those settings that are causing/accomplishing the inbound 
invalid address restricting.  No?  Fuzzy on this detail.

I will deploy reject_unlisted_sender for outbound checking.  I gather it will also 
consult local, virtual, and relay maps for what is "listed"?

I believe you must configure reject_unlisted_sender everywhere in order to
check sender address if it exists.  That's why I recommended you to do it
(and put it before all permit_* options).

--
Matus UHLAR - fantomas, uh...@fantomas.sk ; http://www.fantomas.sk/
Warning: I wish NOT to receive e-mail advertising to this address.
Varovanie: na tuto adresu chcem NEDOSTAVAT akukolvek reklamnu postu.
I wonder how much deeper the ocean would be without sponges.

Reply via email to