[exim] Re: "No errors" in $spf_header_comment

2025-01-30 Thread Andreas Metzler via Exim-users
On 2025-01-30 Jeremy Harris via Exim-users wrote: > On 30/01/2025 15:48, Patrik Peng via Exim-users wrote: > > error in processing during > The Exim source doesn't seem to include those words, so I assume they are > coming from the library (libspf2). ametzler@argenau:~/GIT/libspf2$ grep -rl "No

[exim] Re: Imposing a conditional delay on incoming emails

2025-01-22 Thread Andreas Metzler via Exim-users
On 2025-01-22 Odhiambo Washington via Exim-users wrote: > Happy New Year to everyone. > I have the need to impose a 24-hr delay on emails from john...@johndoe.com > to a local recipient. > I have found this config snippet: > https://github.com/Exim/exim/blob/master/doc/doc-src/FAQ.src#L6892 > So

[exim] Re: debian cron.daily no recipients

2025-01-18 Thread Andreas Metzler via Exim-users
On 2025-01-16 Jeremy Harris via Exim-users wrote: > On 16/01/2025 15:59, Randy Bush via Exim-users wrote: > > what happened? the symptom was > > > > 2025-01-13 06:25:27 1tXDt8-00Aigw-35 1tXDt8-00Aigw-35 no recipients found > > in headers > Exim is being fed a message useing a command-line, wit

[exim] Re: Stopping exim breaks delivery and destroys data file

2024-12-25 Thread Andreas Metzler via Exim-users
On 2024-12-23 Kai Bojens via Exim-users wrote: > System: > - Debian 12 > - Exim 4.98 - rebuild from Debian Backports with ARC enabled > - MX'er for several domains, forwarding to a seperate Dovecot server > Action: > - systemctl restart exim4 / systemctl stop exim4 > Symptom: > - Restarting o

[exim] Re: "Spool error for" but seems to work ok

2024-12-22 Thread Andreas Metzler via Exim-users
On 2024-12-22 Andrew C Aitchison via Exim-users wrote: > On Sun, 22 Dec 2024, Marcin Owsiany via Exim-users wrote: >> Would it make sense to write a simple /usr/lib/sendmail shim that >> would simply forward its input to localhost:25 (or to a UNIX socket, >> if Exim could be taught to listen on o

[exim] Re: "Spool error for" but seems to work ok

2024-12-22 Thread Andreas Metzler via Exim-users
On 2024-12-21 Jeremy Harris via Exim-users wrote: > On 21/12/2024 16:11, Andreas Metzler via Exim-users wrote: >> Last time I looked at a similar issue the respective service file did not >> allow CAP_FOWNER CAP_CHOWN. Afaict from looking at >> https://git.progress-linux.org

[exim] Re: "Spool error for" but seems to work ok

2024-12-21 Thread Andreas Metzler via Exim-users
On 2024-12-18 Marcin Owsiany via Exim-users wrote: > śr., 18 gru 2024, 18:32 użytkownik Andreas Metzler via Exim-users < [...] > > The netdata systemd service file might be a good candidate to check. > I did have a look and learned a lot thanks to that, some of the things that

[exim] Re: "Spool error for" but seems to work ok

2024-12-18 Thread Andreas Metzler via Exim-users
On 2024-12-17 Marcin Owsiany via Exim-users wrote: > wt., 17 gru 2024 o 11:45 Jeremy Harris via Exim-users < > exim-users@lists.exim.org> napisał(a): [...] > I suspect there might be some kind of restriction set on the context of the > netdata daemon process, > which gets inherited by the exim bin

[exim] Re: Bug Report: DKIM Signing Failure Causing SIGSEGV in Exim 4.98

2024-09-30 Thread Andreas Metzler via Exim-users
On 2024-09-30 Jeremy Harris via Exim-users wrote: > On 19/09/2024 23:47, Ali Ahmed via Exim-users wrote: > > During the signing process, Exim attempts to read the DKIM private key and > > throws a segmentation fault. > (No immediate resolution) > There's two points of interest: why the key file

[exim] systemd unit - Requires/Wants/...

2024-09-09 Thread Andreas Metzler via Exim-users
Hello, I am not 100% sure what the best/correct dependencies for Debian's systemd unit (Type=exec) are. For reference exim git has: Requires=network.target After=networking.target while Fedora, Gentoo, Opensuse use After=network.target and we (Debian) currently have After=network-online.target

[exim] Re: autoreply and DKIM signature ?

2024-08-14 Thread Andreas Metzler via Exim-users
On 2024-08-14 Chris Siebenmann via Exim-users wrote: > > On 14/08/2024 15:27, Kurt Jaeger via Exim-users wrote: > > > So: user1@domain1 has an autoreply, and the autoreply > > > should be signed with dkim for domain1. > > I do not agree. > > The DKIM RFC says that anyone can sign a message. > As

[exim] Re: exim don't speak to google any more!

2024-07-30 Thread Andreas Metzler via Exim-users
On 2024-07-30 Viktor Dukhovni via Exim-users wrote: [...] > I get the impressionexpect that most exim-users list readers find my > occasional posts on TLS in SMTP more useful than not. [...] FWIW I do [find them useful]. cu Andreas -- `What a good friend you are to him, Dr. Maturin. His other f

[exim] Re: exim don't speak to google any more!

2024-07-30 Thread Andreas Metzler via Exim-users
On 2024-07-30 Viktor Dukhovni via Exim-users wrote: [...] > I get the impressionexpect that most exim-users list readers find my > occasional posts on TLS in SMTP more useful than not. [...] FWIW I do. cu Andreas -- `What a good friend you are to him, Dr. Maturin. His other friends are so grate

[exim] Re: DNS blocklist semantics

2024-07-15 Thread Andreas Metzler via Exim-users
On 2024-07-15 Ian Z via Exim-users wrote: > Is the right hand side of a dnslists condition (in ACLs) a true domain > list in the sense of Section 10.3, or just a generic string list? [...] Good morning, afaict from looking at the spec it is not a domain list: dnslists = compared to domains =

[exim] Re: Exim 4.92 to 4.94 upgrade breaking

2024-06-30 Thread Andreas Metzler via Exim-users
On 2024-06-27 Jeff Brown via Exim-users wrote: > Please will someone kindly help me: > I inherited a couple of exim4 mail servers some years ago, and I do plead > guilty to an inadequate understanding of exim! I managed to upgrade one of > them to exim4.94 (dist-upgrade Debian 10 buster to Debian

[exim] Re: Exim 4.98-RC0 released

2024-06-08 Thread Andreas Metzler via Exim-users
On 2024-06-07 Bernard Quatermass via Exim-announce wrote: > Hi all, > Time has come to start the process towards a new release incorporating the > improvements and fixes since 4.97. > This first release candidate v4.98-RC0 is available > - as tarball: https://ftp.exim.org/pub/exim/exim4/test >

[exim] Re: Blowfish auth

2024-05-17 Thread Andreas Metzler via Exim-users
On 2024-05-16 Jeremy Harris via Exim-users wrote: > On 16/05/2024 18:03, Andreas Metzler via Exim-users wrote: >> On 2024-05-16 Slavko via Exim-users wrote: >> [...] >>> Anyway, would be great, if exim can use system's crypto library, >>> to supp

[exim] Re: Blowfish auth

2024-05-16 Thread Andreas Metzler via Exim-users
On 2024-05-16 Slavko via Exim-users wrote: [...] > Anyway, would be great, if exim can use system's crypto library, > to support all system's password hash formats. crypteq should already do that. cu Andreas -- ## subscription configuration (requires account): ## https://lists.exim.org/mailm

[exim] Re: SRS example in spec

2024-04-28 Thread Andreas Metzler via Exim-users
On 2024-04-28 Jeremy Harris via Exim-users wrote: > On 28/04/2024 06:05, Andreas Metzler via Exim-users wrote: >> The router fails all bounces where >> inbound_srs{} fails, not only the ones that "look SRS'd". > It assumes that you really are SRS'ing all out

[exim] SRS example in spec

2024-04-27 Thread Andreas Metzler via Exim-users
Good morning, the SRS example in the spec features three routers: 8X--- outbound: [dnslookup router, choose srs-encoding transport when necessary] inbound_srs: [try to SRS-decode incoming bounce and redirect to new adddress on

[exim] Re: Setting a specific email address to receive panic log notifications from exim

2024-04-27 Thread Andreas Metzler via Exim-users
On 2024-04-25 Third World Developer via Exim-users wrote: > I have a mail server for the domain 'example.net' and the hostname of that > mail server is 'mail.example.net'. > When the exim MTA panics, then emails are automatically queued to ' > r...@mail.example.net' but I would prefer to send th

[exim] Re: Equivalent of Envelope-to as variables in pipe transport

2024-04-24 Thread Andreas Metzler via Exim-users
On 2024-04-24 Odhiambo Washington wrote: [...] > LMTP error after RCPT TO: virtual_domains: [...] > data = ${extract{smtp}{$address_data}} Afaict you need to modify this to return john...@domain.name instead of /var/spool/virtual/domain.name/johndoe/Maildir. cu Andreas -- `W

[exim] Re: Equivalent of Envelope-to as variables in pipe transport

2024-04-23 Thread Andreas Metzler via Exim-users
On 2024-04-23 Mark Hills via Exim-users wrote: > How do I access the equivalent of "Envelope-to" header in transport > variables? > I'm trying to call dovecot-lda in a manner that enables its "envelope" > rule. [...] Hello, Iirc think the easiest way to combine dovecot and exim is nowadays to

[exim] Re: Message ID in envelopes with multiple recipients

2024-03-08 Thread Andreas Metzler via Exim-users
On 2024-03-09 Slavko via Exim-users wrote: > Dňa 8. marca 2024 20:12:08 UTC používateľ Jeremy Harris via Exim-users > napísal: > >DKIM signing is done after a transport filter. > Please, is that documented somewhere? I fail to find that, > and headers add/remove/rewrite in too. > I roughly re

[exim] Re: Sasl and Exim

2024-02-24 Thread Andreas Metzler via Exim-users
On 2024-02-25 The Doctor via Exim-users wrote: > how can one check to see if Exim is using SASL? I do not get this question, is this trolling? You would look at the configuration files obviously. cu Andreas -- ## subscription configuration (requires account): ## https://lists.exim.org/mailma

[exim] Re: Exim4 smarthost troubles

2024-02-23 Thread Andreas Metzler via Exim-users
Good morning, On 2024-02-24 Eric Kingston via Exim-users wrote: [...] > 16:48:51.076 57957  ╭considering: <; ${if exists{passwd.client} [...] > 16:48:51.076 57957  ├──condition: exists{passwd.client} > 16:48:51.076 57957  ├─result: false [...] > It seems that the check if passwd.client exists

[exim] Re: Exim4 smarthost troubles

2024-02-23 Thread Andreas Metzler via Exim-users
On 2024-02-23 Eric Kingston via Exim-users wrote: [...] > Below is a communication log directly from the command-line > exim -v ericnk...@gmail.com [...] echo blah | /usr/sbin/exim -d+all ericnk...@gmail.com should give you a lot more information on where things go wrong; especially why ex

[exim] Re: locking et al.

2024-02-10 Thread Andreas Metzler via Exim-users
On 2024-02-10 graeme vetterlein via Exim-users wrote: > So, taking j...@wizmail.org URL: > https://exim.org/exim-html-current/doc/html/spec_html/ch-the_appendfile_transport.html > I see the text:  (I've added **highlights**) [...] > use_fcntl_lock     Use: appendfile     Type: boolean Default:

[exim] Re: Fwd: Can I tell exim to accept messages and queue them rather than send them on?

2024-02-09 Thread Andreas Metzler via Exim-users
On 2024-02-09 Johnnie W Adams via Exim-users wrote: > Hi, folks, > The man page wasn't helpful for this. Good Morning, take a look at the full documentation (spec.(txt|pdf|html) instead and find ... > I'm going to be replacing our mail nodes over the next few weeks and > I've been se

[exim] Re: Dynamic local_domains

2024-01-27 Thread Andreas Metzler via Exim-users
On 2024-01-28 Jerry Stuckle via Exim-users wrote: [...] > In my local configuration file I have > MAIN_LOCAL_DOMAINS=${lookup MySQL{SELECT GROUP_CONCAT(DISTINCT domain > SEPARATOR ' : ') FROM emailtable} > (one line) > The Debian configuration file has a line > local_domains = MAIN_LOCAL_DOMAI

[exim] Re: Exim hates CNAMEs, not IPv6

2023-11-30 Thread Andreas Metzler via Exim-users
On 2023-12-01 John R Levine via Exim-users wrote: > It appears that Jeremy Harris via Exim-users said: [...] > > Our log says that message was aimed at exim-us...@cumin.exim.org > Oh, I see the problem. lists.exim.org is a CNAME for cumin.exim.org, > and qmail is standard compliant per RFC 1123:

[exim] Re: Destination address in a transport

2023-10-26 Thread Andreas Metzler via Exim-users
On 2023-10-26 Thomas Andrews via Exim-users wrote: > On 10/25/23 23:09, Jeremy Harris via Exim-users wrote: [...] > > For use in a command line for a pipe transport, you'll need de-tainted > > versions of those.  Which means full verification of both components > > against a local source of trust

[exim] Re: List headers [Was: DKIM does not work]

2023-10-23 Thread Andreas Metzler via Exim-users
On 2023-10-23 Jeremy Harris via Exim-users wrote: > On 23/10/2023 06:37, Andreas Metzler via Exim-users wrote: > > Exim's default setting for dkim_sign_headers is > > extremely conservative and imho does not make sense. > It's also as per RFC 6376 Section 5.4.1. &q

[exim] Re: List headers [Was: DKIM does not work]

2023-10-22 Thread Andreas Metzler via Exim-users
On 2023-10-23 Ian Z via Exim-users wrote: [...] > I wonder what the fabulous debian configuration daoes in this respect. We have a open bug about it https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=939808 but have not yet overridden exim's default. cu Andreas -- `What a good friend you are to

[exim] Re: List headers [Was: DKIM does not work]

2023-10-22 Thread Andreas Metzler via Exim-users
On 2023-10-22 Jeremy Harris via Exim-users wrote: [...] > If (and there's the question) you think that a DKIM signature should > detect when a message has been modified, do you not think that > adding headers is a modification? Hello, I think it depends on which the header would be added. Some a

[exim] Re: Server side PLAIN and LOGIN Auth against PAM

2023-10-21 Thread Andreas Metzler via Exim-users
On 2023-10-20 Mihamina RKTMB via Exim-users wrote: > Hi all, > Running Archlinux, I installed exim 4.96.2. > I want to implement server side PLAIN and LOGIN auth against PAM. [...] > I think there is a problem with my "server_condition" in each authenticator, > bu tI cannot figure out what is th

[exim] Re: Mitigation statement for CVE-2023-42119

2023-10-06 Thread Andreas Metzler via Exim-users
On 2023-10-06 Slavko via Exim-users wrote: [...] > hmm, i still cannot get how "network adjacent" is related to root > privileges. But my head never was good for attacks... Hello, Afaiui the attack will require special DNS packets that would not be sent out by a real recursive resolver. i.e. the

[exim] Re: Exim Zero Day?

2023-10-02 Thread Andreas Metzler via Exim-users
On 2023-10-02 Christof Meerwald via Exim-users wrote: > On Sun, 01 Oct 2023 20:35:48 +, Slavko via Exim-users wrote: > > Dňa 1. októbra 2023 20:07:45 UTC používateľ Christof Meerwald via > > Exim-users napísal: > >>This was only officially confirmed today (which is very unfortunate), > > >

[exim] Re: [exim-announce] Exim 4.97-RC0 released

2023-09-10 Thread Andreas Metzler via Exim-users
On 2023-09-07 Jeremy Harris via Exim-users wrote: [...] > Notable changes: > - The internal (but exposed in logs, Received: headers and Message-ID: > headers) >identifier used for messages is longer than in the previous release [...] Hello, there is typo/missing word in exim_id_update --he

[exim] Re: Exim 4.97-RC0 released

2023-09-09 Thread Andreas Metzler via Exim-users
On 2023-09-08 Jasen Betts via Exim-users wrote: [...] > https://packages.debian.org/search?keywords=libfile-fcntllock-perl > seems to exist and have existed for several years. > It's a dependancy of debhelper and dpkg-dev both of which are needed > to build the debian packages for exim so it will

[exim] Re: No immediate delivery for emails locally submitted in systemd unit

2023-09-01 Thread Andreas Metzler via Exim-users
On 2023-09-01 Slavko via Exim-users wrote: [...] > You have several options: > + use forking type unit (not appropriate in all cases) > + disable kill in unit (not very good idea) > + setup sendwait in mailx (not with bsd-mailx) > + use exim directly with -odf > + use cron for repeated tasks + I

[exim] Re: Pipe transport and script (shebang)

2023-08-29 Thread Andreas Metzler via Exim-users
On 2023-08-28 Slavko via Exim-users wrote: [...] > The only changes which i did, are -- i add path option to transport: > path = /my/scripts/path Hello, So you tell it to search *exclusively* there. > I changed command name to relative (without path) in redirect router: > data = |scri

[exim] Re: ${run leaves $value empty

2023-08-23 Thread Andreas Metzler via Exim-users
On 2023-08-23 Andreas Metzler wrote: > On 2023-08-22 Bill Brelsford via Exim-users wrote: >> Under Exim 4.96-19 in Debian unstable/testing, ${run fails to put >> standard output into $value. E.g., in a .forward file, [...] > This is recent breakage - Checking the uploaded versions this was brok

[exim] Re: ${run leaves $value empty

2023-08-23 Thread Andreas Metzler via Exim-users
On 2023-08-22 Bill Brelsford via Exim-users wrote: > Under Exim 4.96-19 in Debian unstable/testing, ${run fails to put > standard output into $value. E.g., in a .forward file, > if "${run{/bin/echo -n foo}{}}$runrc" is not 99 > then save /tmp/exim-$runrc-$value endif > creates file /tmp/

[exim] Re: exim systemd service: Type=exec or Type=simple

2023-08-16 Thread Andreas Metzler via Exim-users
On 2023-07-24 Andreas Metzler via Exim-users wrote: > I am currently playing around with shipping a native systemd service > file for exim. [...] I have now uploaded to Debian/experimental. cu Andreas -- `What a good friend you are to him, Dr. Maturin. His other friends are so grateful

[exim] Re: exim systemd service: Type=exec or Type=simple

2023-07-30 Thread Andreas Metzler via Exim-users
On 2023-07-28 u34--- via Exim-users wrote: [...] > Doesn't systemd has a forking service type? Not sure why, but Type=forking does not work with exim, service exim4 start hangs. cu Andreas -- `What a good friend you are to him, Dr. Maturin. His other friends are so grateful to you.' `I sew his

[exim] Re: exim systemd service: Type=exec or Type=simple

2023-07-30 Thread Andreas Metzler via Exim-users
On 2023-07-24 Heiko Schlittermann via Exim-users wrote: > Andreas Metzler via Exim-users (Mo 24 Jul 2023 > 18:52:14 CEST): [...] > Maybe you want to check the branch hs/systemd-units, there I started to > collect my effort to provide native systemd units for Exim. > I'

[exim] Re: exim systemd service: Type=exec or Type=simple

2023-07-27 Thread Andreas Metzler via Exim-users
On 2023-07-24 Heiko Schlittermann via Exim-users wrote: > Andreas Metzler via Exim-users (Mo 24 Jul 2023 > 18:52:14 CEST): [systemd] > Maybe you want to check the branch hs/systemd-units, there I started to > collect my effort to provide native systemd units for Exim. Hello, Th

[exim] exim systemd service: Type=exec or Type=simple

2023-07-24 Thread Andreas Metzler via Exim-users
Hello, I am currently playing around with shipping a native systemd service file for exim. Both openSUSE and archlinux provide nice starting points. However, both[2] use Type=simple and reading the docs [1] I cannot understand why. - The error detection Type=exec offers and Type=simple lacks seems

[exim] Re: ${run expansion error in 4.96

2023-06-21 Thread Andreas Metzler via Exim-users
On 2023-06-20 Robert Lister via Exim-users wrote: > Hmmm. > I ran into this after upgrade from Debian 11 (bullseye) to Debian 12 > (bookworm) > It seems the package maintainers decided not to build Exim with SPF > ACL support, and some configurations rely on calling spfquery instead. /usr/shar