Re: Mail looping issue

2022-05-22 Thread Wietse Venema
Jeremy Hansen: > > On May 21, 2022, at 4:26 PM, Wietse Venema wrote: > > > > Yes, you ave a mailer loop. > > > > mx1 Receive 7B34152BBDB (2326 bytes) from macbook > > mx1 Deliver 7B34152BBDB to content filter, receive as B8C5452BBDF (4004 > > bytes). > > mx1 Deliver B8C5452BBDF to cmx01 as 4L4t

Re: Mail looping issue

2022-05-21 Thread Nick Tait
On 22/05/22 17:42, Jeremy Hansen wrote: So what am I breaking by not having localhost defined in mynetworks.  I tested typical mail and it still delivers…. Hmm. Hi Jeremy. Removing localhost from mynetworks means that if any local process sent emails through this MTA using SMTP to 127.x.x.x,

Re: Mail looping issue

2022-05-21 Thread Jeremy Hansen
Took out localhost references from mynetworks on the ciphermail host and now it’s doing what I think I originally expected: May 21 22:38:17 cmx01.la1.blah.com postfix/smtpd[322660]: NOQUEUE: reject: RCPT from localhost[127.0.0.1]: 554 5.7.1 : Relay access denied; from= to= proto=ESMTP helo=

Re: Mail looping issue

2022-05-21 Thread Jeremy Hansen
> On May 21, 2022, at 10:06 PM, Nick Tait wrote: > > On 21/05/22 19:09, Jeremy Hansen wrote: >> Two MTAs, one is running Ciphermail. The ciphermail host relays mail to the >> “permanent home” MTA where mail gets delivered to users and dovecot runs for >> retrieval of mail. The hosts are int

Re: Mail looping issue

2022-05-21 Thread Jeremy Hansen
> On May 21, 2022, at 4:26 PM, Wietse Venema wrote: > > Yes, you ave a mailer loop. > > mx1 Receive 7B34152BBDB (2326 bytes) from macbook > mx1 Deliver 7B34152BBDB to content filter, receive as B8C5452BBDF (4004 > bytes). > mx1 Deliver B8C5452BBDF to cmx01 as 4L4tdt0Fk8z2SSLv > > cmx01 Recei

Re: Mail looping issue

2022-05-21 Thread Jeremy Hansen
> On May 21, 2022, at 10:34 AM, Fred Morris wrote: > > On Sat, 21 May 2022, Viktor Dukhovni wrote: >> You don't have to accept such mail [...] >> >> Don't forward mail that for which the input MTA is expected to be the >> final destination. > > Maybe I'm misunderstanding, but my interpretatio

Re: Mail looping issue

2022-05-21 Thread Jeremy Hansen
> On May 21, 2022, at 8:03 AM, Viktor Dukhovni > wrote: > > On Sat, May 21, 2022 at 12:09:37AM -0700, Jeremy Hansen wrote: > >> What I experience when the port forward is enabled is suddenly >> “things” out there are attempting to just email random addresses at >> the AWS instance hostname. >

Re: Mail looping issue

2022-05-21 Thread Nick Tait
On 21/05/22 19:09, Jeremy Hansen wrote: Two MTAs, one is running Ciphermail.  The ciphermail host relays mail to the “permanent home” MTA where mail gets delivered to users and dovecot runs for retrieval of mail.  The hosts are internal only hosts.  SSH port forwarding is being used to basicall

Re: Mail looping issue

2022-05-21 Thread Wietse Venema
Yes, you ave a mailer loop. mx1 Receive 7B34152BBDB (2326 bytes) from macbook mx1 Deliver 7B34152BBDB to content filter, receive as B8C5452BBDF (4004 bytes). mx1 Deliver B8C5452BBDF to cmx01 as 4L4tdt0Fk8z2SSLv cmx01 Receive 4L4tdt0Fk8z2SSLv (4998 bytes) from localhost which was sent to 8.10.12.

Re: Mail looping issue

2022-05-21 Thread Fred Morris
On Sat, 21 May 2022, Viktor Dukhovni wrote: You don't have to accept such mail [...] Don't forward mail that for which the input MTA is expected to be the final destination. Maybe I'm misunderstanding, but my interpretation is that the question is "why are you accepting that mail?" and saying

Re: Mail looping issue

2022-05-21 Thread Viktor Dukhovni
On Sat, May 21, 2022 at 12:09:37AM -0700, Jeremy Hansen wrote: > What I experience when the port forward is enabled is suddenly > “things” out there are attempting to just email random addresses at > the AWS instance hostname. You don't have to accept such mail, or if you, you don't have to forwa

Re: Mail looping issue

2022-05-21 Thread Bill Cole
On 2022-05-21 at 03:09:37 UTC-0400 (Sat, 21 May 2022 00:09:37 -0700) Jeremy Hansen is rumored to have said: > Please let me know what other information is useful and I appreciate the > help. Thank you! See http://www.postfix.org/DEBUG_README.html#mail Output of postconf without the "-n" flag i

Re: Mail looping issue

2022-05-21 Thread Benny Pedersen
On 2022-05-21 09:09, Jeremy Hansen wrote: I realize I need to provide better context and information. I’ll do my best. thats a good start The mail configuration is like this, and again, this is just something that’s already in place and unfortunately it’s not within my control to make a ton

Mail looping issue

2022-05-21 Thread Jeremy Hansen
I realize I need to provide better context and information. I’ll do my best. The mail configuration is like this, and again, this is just something that’s already in place and unfortunately it’s not within my control to make a ton of changes. I don’t think what I’m asking for is impossible and I

Re: Mail looping issue

2022-05-20 Thread @lbutlr
On 2022 May 19, at 12:56, Jeremy Hansen wrote: > I’m trying to do a ssh port forward of port 25 from my local mta to an aws > node so my mta doesn’t have to be directly on the routable internet. Why does your mta need port 25 at all if it's not routable? > I’m seeing an interesting problem due

Re: Mail looping issue

2022-05-20 Thread Bill Cole
On 2022-05-19 at 14:56:57 UTC-0400 (Thu, 19 May 2022 11:56:57 -0700) Jeremy Hansen is rumored to have said: Any suggestions on this aside from “don’t do that” It would help a lot if you gave a less vague problem description. See: http://www.postfix.org/DEBUG_README.html#mail I suspect ANY s

Re: Mail looping issue

2022-05-19 Thread Fred Morris
Hi. On Thu, 19 May 2022, Jeremy Hansen wrote: When a prober tries sending email to Is the prober a hostile or friendly actor? @, the mail tries to bounce back About that "bounce back" thing... maybe they shouldn't be able to send that mail? Is your MTA an MX for that domain? -- Fred Mo

Mail looping issue

2022-05-19 Thread Jeremy Hansen
I’m trying to do a ssh port forward of port 25 from my local mta to an aws node so my mta doesn’t have to be directly on the routable internet. I’m seeing an interesting problem due to the fact that aws ip’s are so heavily probed. When a prober tries sending email to @, the mail tries to bounc