Re: Strange TLS error when sending mail from one server to my Postfix SMTP server

2018-12-11 Thread Sean Son
On Mon, Dec 10, 2018 at 9:40 PM Viktor Dukhovni wrote: > > On Dec 10, 2018, at 8:00 PM, Sean Son > wrote: > > > > Thank you for the reply. Can the client be configured to trust more > than one SSL cert? > > You've told us nothing about the client, so it wou

Re: Strange TLS error when sending mail from one server to my Postfix SMTP server

2018-12-10 Thread Sean Son
On Mon, Dec 10, 2018 at 6:57 PM Viktor Dukhovni wrote: > > On Dec 10, 2018, at 6:41 PM, Sean Son > wrote: > > > > 330462 Dec 7 20:39:21 mailer postfix/smtpd[12242]: SSL3 alert > read:fatal:unknown CA > > 330463 Dec 7 20:39:21 mailer postfix/smtpd[12242]: SSL

Strange TLS error when sending mail from one server to my Postfix SMTP server

2018-12-10 Thread Sean Son
hello all We have a RHEL 7 based server running monitoring software consisting of Groundwork Monitoring Software, which includes Nagios , Nedi, and other tools. This server is set up with TLS enabled and it uses a script to send email to any SMTP server that we choose. I have an SMTP server set u

Re: Question about disabling SSLv2 and SSLv3 and Opportunistic TLS

2018-05-26 Thread Sean Son
On Sat, May 26, 2018 at 12:56 PM, Viktor Dukhovni < postfix-us...@dukhovni.org> wrote: > > > > On May 26, 2018, at 8:30 AM, Sean Son > wrote: > > > > Also, if I set smtpd_tls_ciphers" and/or "smtp_tls_ciphers" to "high" , > won'

Re: Question about disabling SSLv2 and SSLv3 and Opportunistic TLS

2018-05-26 Thread Sean Son
On Mon, May 21, 2018 at 5:21 PM, Viktor Dukhovni wrote: > > > > On May 21, 2018, at 5:16 PM, Sean Son > wrote: > > > > lmtp_tls_mandatory_protocols = !SSLv2 > > lmtp_tls_protocols = !SSLv2 > > smtp_tls_mandatory_protocols =

Re: Question about disabling SSLv2 and SSLv3 and Opportunistic TLS

2018-05-21 Thread Sean Son
On Mon, May 21, 2018 at 2:08 PM, Viktor Dukhovni wrote: > > > > On May 21, 2018, at 1:16 PM, Sean Son > wrote: > > > > Hello all > > > > I have opportunistic TLS (offering STARTLS) configured in my main.cf > file. I have been tasked to disable S

Question about disabling SSLv2 and SSLv3 and Opportunistic TLS

2018-05-21 Thread Sean Son
Hello all I have opportunistic TLS (offering STARTLS) configured in my main.cf file. I have been tasked to disable SSLv2 and SSLv3 as well as disable medium strength ciphers (to use high strength ones instead) in my postfix server. If I was to add the following to my main.cf: smtpd_tls_mandat

Re: Offering STARTTLS in postfix. need help!

2018-01-15 Thread Sean Son
On Mon, Jan 15, 2018 at 11:01 PM, Benny Pedersen wrote: > Sean Son skrev den 2018-01-16 04:49: > > Is it possible to use a Wildcard cert with Postfix? Or does it have to >> be a cert for an exact FQDN? >> > > both is supported in openssl > > commo

Re: Offering STARTTLS in postfix. need help!

2018-01-15 Thread Sean Son
Hello all Is it possible to use a Wildcard cert with Postfix? Or does it have to be a cert for an exact FQDN? Thanks! On Fri, Jan 12, 2018 at 4:35 PM, Sean Son wrote: > > > On Fri, Jan 12, 2018 at 4:06 PM, Viktor Dukhovni < > postfix-us...@dukhovni.org> wrote: > >>

Re: Offering STARTTLS in postfix. need help!

2018-01-12 Thread Sean Son
On Fri, Jan 12, 2018 at 4:06 PM, Viktor Dukhovni wrote: > > > > On Jan 12, 2018, at 3:55 PM, Sean Son > wrote: > > > > By default, TLS is disabled in the Postfix SMTP server, so no difference > to plain Postfix is visible. Explicitly switch it on with >

Re: Offering STARTTLS in postfix. need help!

2018-01-12 Thread Sean Son
On Fri, Jan 12, 2018 at 3:48 PM, Philip Paeps wrote: > On 2018-01-12 15:45:33 (-0500), Sean Son wrote: > >> How does one configure an internet facing Postfix SMTP mail relay server, >> to offer STARTTLS? I have been googling around and seeing various >> different articl

Offering STARTTLS in postfix. need help!

2018-01-12 Thread Sean Son
hello everyone I hope you all had a wonderful holiday season. How does one configure an internet facing Postfix SMTP mail relay server, to offer STARTTLS? I have been googling around and seeing various different articles and blog entries, but I cannot figure out what is the quickest and easiest

Monitoring Postfix Mail queue with SNMP

2017-03-17 Thread Sean Son
Hello all We would like to monitor Postfix mail queues using SMNP so we can receive alerts whenever the mail queue reaches a certain threshold. What OID and MIB would we have to use to be able to monitor Postfix mail queues? Thank you for all of your help in this post and other posts of mine!

Re: How do I move messages from a sender to the HOLD queue?

2017-03-13 Thread Sean Son
Up to you. > > After you do one, go find it in the HOLD queue. > > -ALF > > > > -Angelo Fazzina > > Operating Systems Programmer / Analyst > > University of Connecticut, UITS, SSG, Server Systems > > 860-486-9075 <(860)%20486-9075> > > > > *

Re: How do I move messages from a sender to the HOLD queue?

2017-03-13 Thread Sean Son
Programmer / Analyst > > University of Connecticut, UITS, SSG, Server Systems > > 860-486-9075 <(860)%20486-9075> > > > > *From:* owner-postfix-us...@postfix.org [mailto:owner-postfix-users@ > postfix.org] *On Behalf Of *Sean Son > *Sent:* Monday, March 13, 2017 1:

How do I move messages from a sender to the HOLD queue?

2017-03-13 Thread Sean Son
Hello all We have over a thousand messages from a certain user that are stuck in our mail queue. Is there a way to move those messages to the HOLD queue for now? I want to move all messages from that specific sender, to the HOLD queue. All help is greatly appreciated! Thanks S

Migrating Postfix mail account to a new mail account without losing mail

2017-02-13 Thread Sean Son
Hello all I have an user who has a number of mail accounts on our Postfix server. He is interested in knowing if its possible to migrate these accounts to new accounts with out losing any old mail? For example: current mail account: happy_us...@mymailserver.com new mail account: very_happy_us..

Using Postfix with a Dual Homed Server

2016-11-18 Thread Sean Son
Hello all We have a recently set up a dual homed VM running Postfix. We set up policy based routing to allow for each of the two NICs to have a different IP with different subnets. This server is an SMTP Relay server. Will postfix work properly with a dual homed VM? Or will the postfix service on