Re: Make local tempfail when LDAP is down

2011-04-26 Thread Wietse Venema
Timo Sirainen: > On 27.4.2011, at 0.53, Victor Duchovni wrote: > > >> Just wondering: Is it really the nss-ldap code that is buggy or just > >> the libc's getpwnam() call that is fundamentally broken? I recently > >> changed Dovecot to use getpwnam_r() instead, since it allows proper > >> error ch

Re: Make local tempfail when LDAP is down

2011-04-26 Thread Timo Sirainen
On 27.4.2011, at 0.53, Victor Duchovni wrote: >> Just wondering: Is it really the nss-ldap code that is buggy or just >> the libc's getpwnam() call that is fundamentally broken? I recently >> changed Dovecot to use getpwnam_r() instead, since it allows proper >> error checking. > > Most likely a

Re: Make local tempfail when LDAP is down

2011-04-26 Thread Victor Duchovni
On Wed, Apr 27, 2011 at 12:34:43AM +0300, Timo Sirainen wrote: > > This is a bug in the SYSTEM NSS LDAP client. The SYSTEM NSS LDAP > > client works incorrectly: when the LDAP server fails to respond, > > the SYSTEM NSS LDAP client returns a NOTFOUND result. > > Just wondering: Is it really the n

Re: Make local tempfail when LDAP is down

2011-04-26 Thread Timo Sirainen
On 26.4.2011, at 15.44, Wietse Venema wrote: >> However, for mail that originates on the mail host, e.g. by mail(1), >> when an LDAP outage causes local users to disappear (getent passwd >> username returns no results with exit code 2) local bounces the mail as >> user unknown. While this is not s

Re: PATCH: Make local tempfail when LDAP is down

2011-04-26 Thread Victor Duchovni
On Tue, Apr 26, 2011 at 05:19:13PM -0400, Wietse Venema wrote: > diff -cr -C4 src/local/bounce_workaround.c src/local/bounce_workaround.c > *** src/local/bounce_workaround.c Sat Feb 13 21:00:24 2010 > --- src/local/bounce_workaround.c Tue Apr 26 16:44:22 2011 > *** > *** 96,126

PATCH: Make local tempfail when LDAP is down

2011-04-26 Thread Wietse Venema
t;not found" result. See attached file: 20110426-local-maps-find-patch. Wietse 20110426 Bugfix: the local(8) delivery agent ignored table lookup errors in mailbox_command_maps, mailbox_transport_maps, fallback_transport_maps and (while bouncing mail to alias)

Re: ldap transport lookups: any holes in my solution?

2011-04-26 Thread Wietse Venema
John Baker: > On 04/25/2011 10:59 AM, Victor Duchovni wrote: > > On Thu, Apr 21, 2011 at 02:59:27PM -0400, John Baker wrote: > > > >> There are several ways to make this work right including virtual aliases > >> but the cleanest way seemed to me to be a per user transport map lookups > >> for cloud

Re: ldap transport lookups: any holes in my solution?

2011-04-26 Thread Victor Duchovni
On Tue, Apr 26, 2011 at 03:59:13PM -0400, John Baker wrote: > On 04/25/2011 10:59 AM, Victor Duchovni wrote: >> On Thu, Apr 21, 2011 at 02:59:27PM -0400, John Baker wrote: >> >>> There are several ways to make this work right including virtual aliases >>> but the cleanest way seemed to me to be a

Re: ldap transport lookups: any holes in my solution?

2011-04-26 Thread John Baker
On 04/25/2011 10:59 AM, Victor Duchovni wrote: On Thu, Apr 21, 2011 at 02:59:27PM -0400, John Baker wrote: There are several ways to make this work right including virtual aliases but the cleanest way seemed to me to be a per user transport map lookups for cloud users. I think that per-user tr

Re: Gateway Spam Recipient Restrictions?

2011-04-26 Thread Fire walls
On Tue, Apr 26, 2011 at 11:43 AM, Noel Jones wrote: > On 4/26/2011 11:51 AM, Fire walls wrote: > >> On Tue, Apr 26, 2011 at 6:16 AM, Noel Jones >> mailto:njo...@megan.vbhcs.org>> wrote: >> >>On 4/26/2011 3:00 AM, Fire walls wrote: >> >> >> Had been reading a postfix manuals and info

Re: Gateway Spam Recipient Restrictions?

2011-04-26 Thread Noel Jones
On 4/26/2011 11:51 AM, Fire walls wrote: On Tue, Apr 26, 2011 at 6:16 AM, Noel Jones mailto:njo...@megan.vbhcs.org>> wrote: On 4/26/2011 3:00 AM, Fire walls wrote: Had been reading a postfix manuals and info from Internet. I'm running spam server with FreeBSD

Re: Postfix 2.7.0 and yaa 0.3

2011-04-26 Thread fakessh
Le mardi 26 avril 2011 11:28, Peter L. Hansen a écrit : > Hi List, > > Iam having trouble trying to adding autoreply/autoresponder/outofoffice > functionality to our setup. > me i use sieve > Can i configure postfix to send the proper headers? > > > Thanks, > Peter Hansen -- http://pgp.mit.edu

Re: Make local tempfail when LDAP is down

2011-04-26 Thread Wietse Venema
William Ono: > On Tue, Apr 26, 2011 at 08:44:05AM -0400, Wietse Venema wrote: > > That is because the POSTFIX LDAP client queries the LDAP server. > > The POSTFIX LDAP client works correctly: when the LDAP server fails > > to respond, the POSTFIX LDAP client returns a temporary error. > > > > > Ho

Re: Postfix w/TLS, virtual domain, non-unix account

2011-04-26 Thread Mike
On Tue, Apr 26, 2011 at 1:58 PM, Victor Duchovni wrote: > > This is all that would be logged with "smtpd_tls_loglevel = 1", and it > is quite sufficient. Excellent, will do and thanks for letting me know I'm now ready to configure an imap server. Mike

Re: Postfix w/TLS, virtual domain, non-unix account

2011-04-26 Thread Victor Duchovni
On Tue, Apr 26, 2011 at 01:37:16PM -0400, Mike wrote: > I've got postfix working with TLS in a virtual domain configuration. > The postfix server is accepting mail with no problems; per log: > > Apr 26 06:05:23 sato postfix/smtpd[26962]: connect from > mail-iy0-f180.google.com[209.85.210.180] > A

Postfix w/TLS, virtual domain, non-unix account

2011-04-26 Thread Mike
I've got postfix working with TLS in a virtual domain configuration. The postfix server is accepting mail with no problems; per log: Apr 26 06:05:23 sato postfix/smtpd[26962]: connect from mail-iy0-f180.google.com[209.85.210.180] Apr 26 06:05:23 sato postfix/smtpd[26962]: setting up TLS connection

Re: Stop sending, yet allow queuing of messages

2011-04-26 Thread /dev/rob0
On Tue, Apr 26, 2011 at 01:24:06PM -0400, Jeff Bernier wrote: > I have looked for, but cannot find help on doing the following: > > I would like to temporarily stop Postfix from sending queued > messages, but allow it to continue queuing additional new messages, > also to be temporarily held. >

Stop sending, yet allow queuing of messages

2011-04-26 Thread Jeff Bernier
Hello, I have looked for, but cannot find help on doing the following: I would like to temporarily stop Postfix from sending queued messages, but allow it to continue queuing additional new messages, also to be temporarily held. My goal is to be able to watch the mail queue fill up with messages

Re: (WTF) Re: Increase the speed of mails sending in postfix.

2011-04-26 Thread Lorens Kockum
On Mon, Apr 25, 2011 at 12:23:13PM +0200, Reindl Harald wrote: > as long as you starting threads with single liners like > > * How can I send 10 mails using postfix in 5 minutes > * How can I increase mail sending speed in postfix He's been asking the same question since April 5th. Each time

Re: Gateway Spam Recipient Restrictions?

2011-04-26 Thread Fire walls
On Tue, Apr 26, 2011 at 6:16 AM, Noel Jones wrote: > On 4/26/2011 3:00 AM, Fire walls wrote: > >> >> Had been reading a postfix manuals and info from Internet. >> >> I'm running spam server with FreeBSD 8.2 + Postfix 2.8.x, >> single domain. >> >> Internet -->spam server--> mail server -->I

Re: Not Using reverse DNS

2011-04-26 Thread /dev/rob0
On Tue, Apr 26, 2011 at 10:49:03AM -0500, Dan Lists wrote: > I am seeing the following in my logs: > > Apr 26 10:18:43 mailhost postfix/smtpd[46627]: connect from > unknown[98.118.152.26] > > However, the IP does resolve: > > mailhost # host 98.118.152.26 > 26.152.118.98.in-addr.arpa domain name

Re: Make local tempfail when LDAP is down

2011-04-26 Thread William Ono
On Tue, Apr 26, 2011 at 08:44:05AM -0400, Wietse Venema wrote: > That is because the POSTFIX LDAP client queries the LDAP server. > The POSTFIX LDAP client works correctly: when the LDAP server fails > to respond, the POSTFIX LDAP client returns a temporary error. > > > However, for mail that orig

Not Using reverse DNS

2011-04-26 Thread Dan Lists
I am seeing the following in my logs: Apr 26 10:18:43 mailhost postfix/smtpd[46627]: connect from unknown[98.118.152.26] However, the IP does resolve: mailhost # host 98.118.152.26 26.152.118.98.in-addr.arpa domain name pointer onlinecourseevaluations.com. mailhost # host onlinecourseevaluation

Re: Gateway Spam Recipient Restrictions?

2011-04-26 Thread Noel Jones
On 4/26/2011 3:00 AM, Fire walls wrote: Had been reading a postfix manuals and info from Internet. I'm running spam server with FreeBSD 8.2 + Postfix 2.8.x, single domain. Internet -->spam server--> mail server -->Internal Network. The gateway is working, but I still doing changes

Re: all header_checks works with postmap -q, but not all work when processing actual mail

2011-04-26 Thread b...@bitrate.net
On 2011.04.25 14.41, mouss wrote: you are not testing the same data. you test a "pcre" file, but your postfix uses two regexp files. sigh. that was it, thank you. same problem as my last question, all over again. i switched to pcre, but neglected to update main.cf to reflect that.

Re: Make local tempfail when LDAP is down

2011-04-26 Thread Wietse Venema
William Ono: > Hello all, > > Yes, this again. I promise it's slightly different this time. > > I have users in LDAP and they're brought in as local users by > libnss-ldapd. With local_recipient_maps set to use a LDAP map instead of > unix:passwd.byname, smtpd correctly tempfails incoming mail wh

Re: Make local tempfail when LDAP is down

2011-04-26 Thread jeffrey j donovan
On Apr 25, 2011, at 10:22 PM, William Ono wrote: > Hello all, > > Yes, this again. I promise it's slightly different this time. > > I have users in LDAP and they're brought in as local users by > libnss-ldapd. With local_recipient_maps set to use a LDAP map instead of > unix:passwd.byname, smtp

Re: Postfix 2.7.0 and yaa 0.3

2011-04-26 Thread Peter L. Hansen
Hi Michael, Thanks for the pointer. Much better now. I got i working now .. somewhat. It seems it will use my u...@fake.tld as the lookup key and as the sender of the reply. According to the documentation http://cml.dokuro.org/howto/yaa.txt It should be alias_user@your_domain.tld instead of

Re: Postfix 2.7.0 and yaa 0.3

2011-04-26 Thread Michael Tokarev
26.04.2011 13:28, Peter L. Hansen wrote: > Hi List, > > Iam having trouble trying to adding autoreply/autoresponder/outofoffice > functionality to our setup. > > It seems that the best option is to use "yaa". Other suggestions are > welcome. > > I have a postfix setup with virtual users in mysql

Postfix 2.7.0 and yaa 0.3

2011-04-26 Thread Peter L. Hansen
Hi List, Iam having trouble trying to adding autoreply/autoresponder/outofoffice functionality to our setup. It seems that the best option is to use "yaa". Other suggestions are welcome. I have a postfix setup with virtual users in mysql, and found followed the guide on http://www.howtofo

Gateway Spam Recipient Restrictions?

2011-04-26 Thread Fire walls
Had been reading a postfix manuals and info from Internet. I'm running spam server with FreeBSD 8.2 + Postfix 2.8.x, single domain. Internet -->spam server--> mail server -->Internal Network. The gateway is working, but I still doing changes to block most of the spam that touch my server

Re: NOQUEUE: reject: RCPT from unknown[xxxx.xxxx.xxxx.xxx]: 554

2011-04-26 Thread Ralf Hildebrandt
* motty.cruz : > Hello, > > One of our clients is trying to send us email and this is what I see in the > Logs: > > > > # grep -i "u...@tld.com" /var/log/maillog | more > > Apr 25 06:49:01 host postfix/smtpd[27269]: NOQUEUE: reject: RCPT from > unknown[xxx.xxx.xxx.xxx]: 554 5.7.1 Client host

Re: Postfix STARTTLS bug on SLES11 SP1 still unfixed ? (solved !)

2011-04-26 Thread Alexander Grüner
Hi, just for info, it has been fixed on saturday. postconf | grep mail_ver mail_version = 2.5.6 rpm -qa | grep postfix postfix-2.5.6-5.6.1 Nessus scan is fine. Best regards, Alexander