Re: STARTTLS not announced?!

2013-06-16 Thread Peter
I do realize that this thread probably shouldn't be continued, however I see some gross miss-statements here that need correcting so that someone browsing the thread won't be mislead by them at a later time... On 06/16/2013 01:58 AM, Benny Pedersen wrote: smtpd_tls_auth_only (default: no)

Re: Problem using TLS: lost connection after STARTTLS

2013-06-16 Thread /dev/rob0
Beside the point, yet possibly of interest: On Sun, Jun 16, 2013 at 03:07:01AM +0200, Jan P. Kessler wrote: > # /opt/vrnetze/openssl/bin/openssl s_client -connect > mxtls.allianz.com:25 -starttls smtp > CONNECTED(0004) snip > --- > 250 HELP > HELO mail.EXAMPLE.COM > 250 mailgw.allianz.de Hello

Re: how to stop massive email attack in Postfix

2013-06-16 Thread Viktor Dukhovni
On Sun, Jun 16, 2013 at 07:55:28AM -0500, Stan Hoeppner wrote: > > Looks more like a botnet, so the connections may not in fact recur. > > Quite right, it is a botnet attack. And without further logging, I'd > guess this is a DOS attack on TCP 25. The clients are probably not even > attempting

Re: Semi-OT: Exchange 2013 SMTP Callout

2013-06-16 Thread LuKreme
On Jun 14, 2013, at 9:10, Bernhard Schmidt wrote: > According to this threat: > > http://social.technet.microsoft.com/Forums/en-US/exchangesvrdeploy/thread/91c26fd2-aa0c-4006-9326-ece609bf4f67/ > > this is expected. I can hardly believe that. > > We do not have in-house experience with 2013 ye

Re: how to stop massive email attack in Postfix

2013-06-16 Thread Stan Hoeppner
On 6/14/2013 11:19 AM, Viktor Dukhovni wrote: > On Fri, Jun 14, 2013 at 06:00:37PM +0200, Simon B wrote: > >> On 14 June 2013 17:44, c cc wrote: >>> >>> Hi, >>> >>> For the last few days, I noticed that our postfix server had crawl to a halt >>> due to some kind of email attack. As you can see be

Re: Problem using TLS: lost connection after STARTTLS

2013-06-16 Thread Jan P. Kessler
Am 16.06.2013 05:00, schrieb Viktor Dukhovni: > On Sun, Jun 16, 2013 at 01:58:27AM +0200, Jan P. Kessler wrote: > > > The openssl update from 0.9.8k to 1.0.1e solved the client certificate > > issue. Unfortunately now we see another problem with the outgoing > > instance, trying to send to another

Re: problem sending some email from mailman

2013-06-16 Thread Ralf Hildebrandt
* Ben Greenfield : > Jun 14 17:00:16 services postfix/smtpd[28663]: NOQUEUE: reject: RCPT from > localhost[::1]: 554 5.7.1 : Relay access denied; > from= to= > proto=ESMTP helo= > Jun 14 17:00:27 services postfix/smtpd[28663]: NOQUEUE: reject: RCPT from > localhost[::1]: 554 5.7.1 : Relay acce