Re: warning: cannot connect to service private/smtpd

2022-08-25 Thread Brad Chandler
VMware. Is there anything that can be done on the VMware side to prevent this? --- Original Message --- On Thursday, August 25th, 2022 at 6:32 AM, Wietse Venema wrote: > > > Brad Chandler: > > > Aug 15 18:51:24 mx03 postfix/smtpd[13552]: fatal: watchdog timeou

Re: warning: cannot connect to service private/smtpd

2022-08-25 Thread Brad Chandler
Yes, these are virtual machines. The OS is Red Hat Enterprise Linux 7.9. --- Original Message --- On Thursday, August 25th, 2022 at 2:52 AM, Wietse Venema wrote: > > > Brad Chandler: > > > Aug 15 18:51:24 mx03 postfix/smtpd[13552]: fatal: watchdog timeout &

warning: cannot connect to service private/smtpd

2022-08-24 Thread Brad Chandler
On about two or three occasions in the last couple of weeks, I started getting lots of errors like the ones below. There are five relays and they have all had the same basic config for several years, but I've never seen this happen before. The only thing I had changed recently was updating the s

Re: centos 7

2017-01-23 Thread Brad Chandler
Take a look at the gf-plus repository on Ghettoforge. http://ghettoforge.org/index.php/Usage On 2017-01-23 1:46 pm, Vernon Fort wrote: > What's the best way to get the latest version of postfix on centos 7? > > Vernon

Re: understanding postscreen cache?

2016-04-01 Thread Brad Chandler
> My understanding was that postscreen, once it catches a bad actor, it caches the result so subsequent attempts get a response from the cache. IIRC postscreen caches PASS results only. Correct. Postscreen remembers tests that a client has passed. But the client must pass all tests before pos

Dane for smtpd

2016-03-19 Thread Brad Chandler
I've set up DNSSEC and the TLSA records for my domains. And I think I have setup dane for smtp correctly in Postfix. I see "Verified TLS connection established to" in my logs when connecting to a server with TLSA records. Should I also be seeing "Verified TLS connection established from" when

Re: RHEL / CentOS 7 RPMs

2016-03-12 Thread brad . chandler
It didn't overwrite them, but just renamed them to .rpmsave. Yes. I also had to install the Perl script and MySQL packages but that was it. On March 12, 2016 3:46:11 PM CST, Peter wrote: >On 13/03/16 06:06, Brad Chandler wrote: >> I recently added the ghettoforge repo to my

Re: RHEL / CentOS 7 RPMs

2016-03-12 Thread Brad Chandler
I recently added the ghettoforge repo to my Centos 7 vm. I wanted a newer version of postfix so that I could experiment with Dane. Centos 7 is stuck on 2.10. The upgrade went smoothly. I first had to uninstall postfix, then install postfix3 from the gf-plus repo. I replaced the new main.cf and

Re: tls_policy

2015-08-05 Thread Brad Chandler
On 2015-08-04 5:59 pm, Viktor Dukhovni wrote: On Tue, Aug 04, 2015 at 05:04:20PM -0500, Brad Chandler wrote: I would like to enforce smtp tls for a domain and all of it's subdomains except one. For example my tls_policy file would look something like this: .example.com en

tls_policy

2015-08-04 Thread Brad Chandler
I would like to enforce smtp tls for a domain and all of it's subdomains except one. For example my tls_policy file would look something like this: .example.com encrypt test.example.com may Will this work? Is there a particular order the records should be in?

Re: WIth postscreen working so well, still using fail2ban?

2015-06-19 Thread Brad Chandler
On 2015-06-18 12:52 pm, Julio Cesar Covolato wrote: On 18/06/2015 14:44, Wietse Venema wrote: Some tools understand smtpd logging very well, but they need to be updated because postscreen logging is different. Wietse Is there any "recent" Howto or like, for fail2ban and postfix (postscreen, sa

Re: postscreen cache

2015-06-03 Thread brad . chandler
On 2015-06-03 10:49 am, wie...@porcupine.org wrote: brad.chand...@mbchandler.net: How does the memcache interact with the proxy:btree:/var/lib/postfix/postscreen_cache? It happens in the Postfix memcache client. When you specify a backup store in the Postfix memcache client configuration file

postscreen cache

2015-06-03 Thread brad . chandler
I've read over the how-to, man page, and all of the postscreen stuff as I could find in the mailing list archives, but I'm still unsure about something. How does the memcache interact with the proxy:btree:/var/lib/postfix/postscreen_cache? Which one does postscreen use to determine if a connect

Re: Postscreen memcache settings

2015-05-29 Thread brad . chandler
On 2015-05-29 11:27 am, wie...@porcupine.org wrote: brad.chand...@mbchandler.net: I'm testing out postscreen with a shared memcache between different servers. What should I set as the cachesize in /etc/sysconfig/memcached? We get about 1 million connections per day. Also, what is the recommen

Postscreen memcache settings

2015-05-29 Thread brad . chandler
I'm testing out postscreen with a shared memcache between different servers. What should I set as the cachesize in /etc/sysconfig/memcached? We get about 1 million connections per day. Also, what is the recommendation for the ttl in postscreen_cache? Am I correct in assuming that the higher I