Re: drop unwanted recipients

2022-11-21 Thread Benny Pedersen
Viktor Dukhovni skrev den 2022-11-21 19:29: On Mon, Nov 21, 2022 at 07:14:12PM +0100, Benny Pedersen wrote: > How should this be done properly? show postconf -nf and logs of event that fails Nothing fails. The OP is asking how to selectively discard some recipients. Nothing in the OP's co

Re: Untrusted TLS connections where email domain does not support DNSSEC but MX server has DNSSEC/DANE records

2022-11-21 Thread Bill Cole
On 2022-11-21 at 14:45:52 UTC-0500 (Mon, 21 Nov 2022 20:45:52 +0100) Paul Menzel is rumored to have said: Dear Bill, Thank you for your reply. Am 21.11.22 um 19:05 schrieb Bill Cole: On 2022-11-21 at 12:18:33 UTC-0500 (Mon, 21 Nov 2022 18:18:33 +0100) Paul Menzel is rumored to have said:

Re: Untrusted TLS connections where email domain does not support DNSSEC but MX server has DNSSEC/DANE records

2022-11-21 Thread Paul Menzel
Dear Bill, Thank you for your reply. Am 21.11.22 um 19:05 schrieb Bill Cole: On 2022-11-21 at 12:18:33 UTC-0500 (Mon, 21 Nov 2022 18:18:33 +0100) Paul Menzel is rumored to have said: With Postfix 3.6.0-RC1 and     # postconf -n smtp_tls_security_level     smtp_tls_security_level = dane th

Re: drop unwanted recipients

2022-11-21 Thread Viktor Dukhovni
On Mon, Nov 21, 2022 at 07:14:12PM +0100, Benny Pedersen wrote: > > How should this be done properly? > > show postconf -nf > > and logs of event that fails Nothing fails. The OP is asking how to selectively discard some recipients. Nothing in the OP's configuration is needed here, because no

Re: How do check DKIM and SPF on incoming email?

2022-11-21 Thread raf
On Mon, Nov 21, 2022 at 12:48:49AM +, Scott Kitterman wrote: > On November 20, 2022 11:47:02 PM UTC, raf wrote: > > > >There are also Debian packages for policy server versions: > > > > postfix-policyd-spf-perl > > postfix-policyd-spf-python > > The Perl implementation is very rudimentar

Re: (Patch "half-dane" logging corner case) Untrusted TLS connections where email domain does not support DNSSEC but MX server has DNSSEC/DANE records

2022-11-21 Thread Viktor Dukhovni
On Mon, Nov 21, 2022 at 06:18:33PM +0100, Paul Menzel wrote: > With Postfix 3.6.0-RC1 and I am curious why you are using a rather dated release-candidate. > After a while of head scratching, I thought it might have to do with the > SMTP servers publishing TLSA records, but the domain in the ema

Re: drop unwanted recipients

2022-11-21 Thread Benny Pedersen
Gino Ferguson skrev den 2022-11-21 11:11: How should this be done properly? show postconf -nf and logs of event that fails

Re: Untrusted TLS connections where email domain does not support DNSSEC but MX server has DNSSEC/DANE records

2022-11-21 Thread Bill Cole
On 2022-11-21 at 12:18:33 UTC-0500 (Mon, 21 Nov 2022 18:18:33 +0100) Paul Menzel is rumored to have said: Dear Postfix folks, With Postfix 3.6.0-RC1 and # postconf -n smtp_tls_security_level smtp_tls_security_level = dane the Postfix SMTP client logs several untrusted TLS connection

Untrusted TLS connections where email domain does not support DNSSEC but MX server has DNSSEC/DANE records

2022-11-21 Thread Paul Menzel
Dear Postfix folks, With Postfix 3.6.0-RC1 and # postconf -n smtp_tls_security_level smtp_tls_security_level = dane the Postfix SMTP client logs several untrusted TLS connections for hosts with a good TLS certificate setup. It’s mainly German research organizations using the DFN-Mai

Re: postfix+tansport relay

2022-11-21 Thread Viktor Dukhovni
On Mon, Nov 21, 2022 at 12:08:31PM +0100, natan wrote: > one of client have external spam fileter (like > barracuda/sophos/others) and I need a filter all his outgoing e-mail > (only one client vdomain or two vdomain) > > I thinking: > > cat /etc/postfix/senders.pcre > /vdomain1.com/ relay:[smtp

Re: drop unwanted recipients

2022-11-21 Thread Wietse Venema
Gino Ferguson: > Hi all, > > > We're using smtpd_recipient_restrictions to drop filter out unwanted > recipients. > > The problem with this is, if the email has more recipients, noone > gets the email, not only the unwanted is dropped. > > How should this be done properly? If you cannot rejec

postfix+tansport relay

2022-11-21 Thread natan
Hi I have a postfix (for outgoing) and I have many vusers and vdomain (in mysql) Works fine but one of client have external spam fileter (like barracuda/sophos/others) and I need a filter all his outgoing e-mail (only one client vdomain or two vdomain) I thinking: cat /etc/postfix/senders.

drop unwanted recipients

2022-11-21 Thread Gino Ferguson
Hi all, We're using smtpd_recipient_restrictions to drop filter out unwanted recipients. The problem with this is, if the email has more recipients, noone gets the email, not only the unwanted is dropped. How should this be done properly? Thanks, Gino