[pfx] Re: Postfix and sasl question

2024-10-23 Thread Jaroslaw Rafa via Postfix-users
Dnia 23.10.2024 o godz. 10:51:38 Ivan Ionut via Postfix-users pisze: > > Well, yes I do have submission service on the same server... and I > do have disabled SASL on port 25 and my logs on failed attempts are > something like this: > > Oct 23 08:15:12 myhost postfix/submission/smtpd[192]: wa

[pfx] Re: Postfix and sasl question

2024-10-23 Thread Viktor Dukhovni via Postfix-users
On Wed, Oct 23, 2024 at 10:51:38AM +0300, Ivan Ionut via Postfix-users wrote: > 2) I have two lists of ipsets ip and ip-cidr blocked for ports > 110,143,993,995,465 - daily updated with a custom script That's too tedious to maintain. You can block known compromised SASL attempts on submission vi

[pfx] Re: Postfix and sasl question

2024-10-23 Thread Ivan Ionut via Postfix-users
On 23-10-2024 10:21, Viktor Dukhovni via Postfix-users wrote: On Wed, Oct 23, 2024 at 10:04:06AM +0300, Ivan Ionut via Postfix-users wrote: Does Postfix can detect an initiated sasl login (before any failed/success). If so, does it have built in option or I must create a shell script or a

[pfx] Re: Postfix and sasl question

2024-10-23 Thread Viktor Dukhovni via Postfix-users
On Wed, Oct 23, 2024 at 10:04:06AM +0300, Ivan Ionut via Postfix-users wrote: > Does Postfix can detect an initiated sasl login (before any failed/success). > If so, does it have built in option or I must create a shell script or a > custom filter in master.cf for this? > > P.S. I'm interesting t

[pfx] Postfix and sasl question

2024-10-23 Thread Ivan Ionut via Postfix-users
Does Postfix can detect an initiated sasl login (before any failed/success). If so, does it have built in option or I must create a shell script or a custom filter in master.cf for this? P.S. I'm interesting to allow my server to receive mails from a large blacklisted ips, but I want to blo

Re: SASL question - SOLVED

2013-02-18 Thread Curtis Maurand
On 2/13/2013 7:35 PM, Bob Proulx wrote: Curtis Maurand wrote: Patrick Ben Koetter wrote: However, nothing in my configuration says to open the sasldb file anywhere as the auth machanism is set to imap, but postfix seems intent on opening this file anyway. Cyrus SASL opens sasldb as fallback wh

Re: SASL question

2013-02-13 Thread Bob Proulx
Curtis Maurand wrote: > Patrick Ben Koetter wrote: > >> However, nothing in my configuration says to open the sasldb file > >> anywhere as the auth machanism is set to imap, but postfix seems > >> intent on opening this file anyway. > > > > Cyrus SASL opens sasldb as fallback when all other attempt

Re: SASL question

2013-02-11 Thread Reindl Harald
Am 11.02.2013 04:53, schrieb Simon Walter: > On 02/11/2013 05:46 AM, Reindl Harald wrote: >> >> what are you using for IMAP? >> if dovecot throw away the whole SASL crap! >> > Don't you mean "...the whole *Cyrus* SASL crap"? Isn't "smtpd_sasl_type = > dovecot" using the dovecot implementation >

Re: SASL question

2013-02-10 Thread Simon Walter
On 02/11/2013 05:46 AM, Reindl Harald wrote: what are you using for IMAP? if dovecot throw away the whole SASL crap! Don't you mean "...the whole *Cyrus* SASL crap"? Isn't "smtpd_sasl_type = dovecot" using the dovecot implementation of SASL? Simon -- htholidays.com

Re: SASL question

2013-02-10 Thread Reindl Harald
Am 10.02.2013 23:59, schrieb Curtis Maurand: > My currwnt setup has the imap connecting to a remote server on a private > network. The imap server is dbmail 2.2.17. > > Postfix is a member of the sasl group. There is an sasldb2 file just in > case. i am using dovecot as proxy in front of dbmai

Re: SASL question

2013-02-10 Thread Curtis Maurand
Patrick Ben Koetter wrote: > * Curtis Maurand : >> >> >> I had a server running on gentoo and it was running OK, but the latest >> updates in the gentoo tree killed it.  So I spent yesterday afternoon >> setting up new mail server using Ubuntu 12.04 LTS. >> >> It took a >> while, but I have it al

Re: SASL question

2013-02-10 Thread Patrick Ben Koetter
* Curtis Maurand : > > > I had a server running on gentoo and it was running OK, but the latest > updates in the gentoo tree killed it.  So I spent yesterday afternoon > setting up new mail server using Ubuntu 12.04 LTS. > > It took a > while, but I have it all working except for smtp authent

Re: SASL question

2013-02-10 Thread Reindl Harald
Am 10.02.2013 21:31, schrieb Curtis Maurand: > I had a server running on gentoo and it was running OK, but the latest > updates in the gentoo tree killed it. So I > spent yesterday afternoon setting up new mail server using Ubuntu 12.04 LTS. > > It took a while, but I have it all working excep

SASL question

2013-02-10 Thread Curtis Maurand
I had a server running on gentoo and it was running OK, but the latest updates in the gentoo tree killed it.  So I spent yesterday afternoon setting up new mail server using Ubuntu 12.04 LTS. It took a while, but I have it all working except for smtp authentication (which was working on the gent

SASL question

2013-02-10 Thread Curtis Maurand
I had a server running on gentoo and it was running OK, but the latest updates in the gentoo tree killed it.  So I spent yesterday afternoon setting up new mail server using Ubuntu 12.04 LTS. It took a while, but I have it all working except for smtp authentication (which was working on the