> On Feb 10, 2018, at 11:17 AM, J Doe <gene...@nativemethods.com> wrote: > > With postscreen doing the IP ACL work, from what I understand > this extends to *both* smtpd and submission smtpd.
No, that's wrong. It takes quite a bit of care of enable "postscreen" on both port 25 and port 587, in the normal deployment, "postscreen" only filters port 25 connections. With the premise wrong, the follow-on question is moot. -- Viktor.