Configuring virtual mailboxes AND local account delivery under one domain name

2009-04-16 Thread Phil Gunhouse
Hi, have googled and searched the list for an answer so hope this isn't a regular query... we're moving from a sendmail configuration to Postfix primarily for database configured virtual mailboxes and the ease of management that entails, we wish to manage both users within our domain and other virt

Auto reply messages

2009-04-16 Thread Antonis Rizopoulos
Hello, I was trying to setup postfix to send auto reply messages using procmail with this script : http://www.opensourcehowto.org/uploads/scripts/vacation.txt but I can't get it work. I also tried the *.forward* files but no luck. So I think procmail and .forward files are for local system users m

problems with smtpd_sender_restrictions and smtpd_client_restrictions

2009-04-16 Thread deconya
Hi list Im having problems with smtpd_sender_restrictions and smtpd_client_restrictions options. Actually I have: smtpd_sender_restrictions = reject_unknown_sender_domain, check_sender_access hash:/etc/postfix/spammer, reject_non_fqdn_sender smtpd_client_restrictions=

Re: problems with smtpd_sender_restrictions and smtpd_client_restrictions

2009-04-16 Thread Ralf Hildebrandt
* deconya : > Hi list > > Im having problems with smtpd_sender_restrictions and > smtpd_client_restrictions options. Actually I have: > > smtpd_sender_restrictions = > reject_unknown_sender_domain, > check_sender_access hash:/etc/postfix/spammer, > reject_non_fqdn_sender >

Re: Configuring virtual mailboxes AND local account delivery under one domain name

2009-04-16 Thread mouss
Phil Gunhouse a écrit : > Hi, have googled and searched the list for an answer so hope this isn't a > regular query... we're moving from a sendmail configuration to Postfix > primarily for database configured virtual mailboxes and the ease of > management that entails, we wish to manage both users

Postfix 2.6.0 stable release candidate

2009-04-16 Thread Wietse Venema
Last night I have uploaded postfix-2.6.0-RC1, the first Postfix 2.6 stable release candidate. The documentation still needs some work, and depending on time I may still be able to slip in some small amount of new code. The biggest changes since Postfix 2.5 are: - Automatic stress-dependent behavio

Re: A better backscatter killer?

2009-04-16 Thread kj
Dennis Carr wrote: Looking at options here for eliminating backscatter. I've reviewed the Howto for this, but it only seems to be effective against backscatter where one's home domain is forged - not too useful, IMNSHO, because spammers aren't always going to forge the home domain. One thi

Re: problems with smtpd_sender_restrictions and smtpd_client_restrictions

2009-04-16 Thread deconya
Thanks! Well if I put reject_unknown_client, my client says " Client host rejected: cannot find your hostname, [10.160.1.193].It's refer about $myhostname ?? Well the good news is if I put only smtpd_client_restrictions= check_client_access hash:/etc/postfix/access, # reject_unknow

meaning of connect immediately followed by disconnect in mail log

2009-04-16 Thread Kevin Murphy
postfix 2.1.5 (Mac OS X 10.4.11, Tiger), logging set to debug level: Out of curiosity, what do empty connect/disconnect pairs in the mail log mean? I.e.: Mar 19 09:50:19 jupiter postfix/smtpd[1452]: connect from mx3.westat.com[198.232.249.38] Mar 19 09:50:20 jupiter postfix/smtpd[1452]: disc

Re: meaning of connect immediately followed by disconnect in mail log

2009-04-16 Thread Victor Duchovni
On Thu, Apr 16, 2009 at 10:27:33AM -0400, Kevin Murphy wrote: > postfix 2.1.5 (Mac OS X 10.4.11, Tiger), logging set to debug level: > > Out of curiosity, what do empty connect/disconnect pairs in the mail log > mean? I.e.: > > Mar 19 09:50:19 jupiter postfix/smtpd[1452]: connect from > mx3.wes

Re: meaning of connect immediately followed by disconnect in mail log

2009-04-16 Thread Ralf Hildebrandt
* Victor Duchovni : > Firewall brain-damage? Does your server have ECN enabled, is > window-scaling on by default? I find that a public mail-server can > rarely afford to have modern TCP options enabled and still send/receive > mail to/from systems behind random vendor's firewall. Amen to that!!!

Re: meaning of connect immediately followed by disconnect in mail log

2009-04-16 Thread Wietse Venema
Victor Duchovni: > On Thu, Apr 16, 2009 at 10:27:33AM -0400, Kevin Murphy wrote: > > > postfix 2.1.5 (Mac OS X 10.4.11, Tiger), logging set to debug level: > > > > Out of curiosity, what do empty connect/disconnect pairs in the mail log > > mean? I.e.: > > > > Mar 19 09:50:19 jupiter postfix/smt

Delivering mail to 2 sites

2009-04-16 Thread Eric Magutu
Hi, I am currently using exim and was doing and installation on postifx. I needed postfix to accept mail for domain.com and deliver the email to 2 different servers a local and remote without configuring forwarders. We have implemented this in exim but would like to do the same with Postfix. Can s

Re: Delivering mail to 2 sites

2009-04-16 Thread Noel Jones
Eric Magutu wrote: Hi, I am currently using exim and was doing and installation on postifx. I needed postfix to accept mail for domain.com and deliver the email to 2 different servers a local and remote without configuring forwarders. We have implemented this in exim but wo

Info about queues

2009-04-16 Thread no7find -
How I can get more information about the messages through the different queues ? For example, information like input/output time. How many queues, Postfix have? 5 or 6 ? 1. active 2. deferred 3. hold 4. incoming 5. maildrop 6. corrupt (is a queue ?) Thanks

Info about queues

2009-04-16 Thread no7find -
How I can get more information about the messages through the different queues ? For example, information like input/output time. How many queues, Postfix have? 5 or 6 ? 1. active 2. deferred 3. hold 4. incoming 5. maildrop 6. corrupt (is a queue ?) Thanks

Re: Auto reply messages

2009-04-16 Thread Sahil Tandon
On Thu, 16 Apr 2009, Antonis Rizopoulos wrote: > I was trying to setup postfix to send auto reply messages using procmail > with this script : > http://www.opensourcehowto.org/uploads/scripts/vacation.txt > but I can't get it work. I also tried the *.forward* files but no luck. > So I think procma

Re: Filter incoming emails by source IP but depending on destination domains

2009-04-16 Thread Denis BUCHER
Noel Jones a écrit : > Denis BUCHER wrote: >> I have a server with different domains on it. Some domains should only >> receive emails from specific IP adresses (SPAM filtering) while other >> domains should accept emails from all domains. >> >> How could I implement this ? >> >> I suppose I have t

Re: Info about queues

2009-04-16 Thread Sahil Tandon
On Thu, 16 Apr 2009, no7find - wrote: > How I can get more information about the messages through the different > queues ? > For example, information like input/output time. > > How many queues, Postfix have? 5 or 6 ? > 1. active > 2. deferred > 3. hold > 4. incoming > 5. maildrop > > 6. corrupt

Re: Auto reply messages

2009-04-16 Thread mouss
Sahil Tandon a écrit : > On Thu, 16 Apr 2009, Antonis Rizopoulos wrote: > >> I was trying to setup postfix to send auto reply messages using procmail >> with this script : >> http://www.opensourcehowto.org/uploads/scripts/vacation.txt >> but I can't get it work. I also tried the *.forward* files b

Disabling LDAP lookups

2009-04-16 Thread Darek M.
Hi there, my postfix "smart relay" install queries my LDAP system where it was never configured to do so. The OS is configured with LDAP/KRB5 authentication and does user/group lookups via LDAP using nss_ldap: # egrep 'passwd|group' /etc/nsswitch.conf group: files ldap group_compat: nis pa

Re: Disabling LDAP lookups

2009-04-16 Thread Victor Duchovni
On Thu, Apr 16, 2009 at 01:46:07PM -0400, Darek M. wrote: > Hi there, my postfix "smart relay" install queries my LDAP system where it > was never configured to do so. > > The OS is configured with LDAP/KRB5 authentication and does user/group > lookups via LDAP using nss_ldap: Postfix will at t

Re: Info about queues

2009-04-16 Thread Terry Carmen
> How I can get more information about the messages through the different > queues ? > For example, information like input/output time. > > > How many queues, Postfix have? 5 or 6 ? > 1. active > 2. deferred > 3. hold > 4. incoming > 5. maildrop > > 6. corrupt (is a queue ?) http://www.postfix.o

Re: Disabling LDAP lookups

2009-04-16 Thread Wietse Venema
Darek M.: > Hi there, my postfix "smart relay" install queries my LDAP system where > it was never configured to do so. > > The OS is configured with LDAP/KRB5 authentication and does user/group > lookups via LDAP using nss_ldap: > > # egrep 'passwd|group' /etc/nsswitch.conf > group: files ld

Re: Disabling LDAP lookups

2009-04-16 Thread Darek M.
Wietse Venema wrote: Darek M.: Hi there, my postfix "smart relay" install queries my LDAP system where it was never configured to do so. The OS is configured with LDAP/KRB5 authentication and does user/group lookups via LDAP using nss_ldap: # egrep 'passwd|group' /etc/nsswitch.conf gro

Looking for a little (offlist?) help with ldap integration

2009-04-16 Thread Evan Platt
I know this is somewhat offtopic, but hopefully someone here can / is willing to help me out a little... :) I run a mail server for me, myself, and I. I create aliases as needed to 'tag' where an address goes - ie if I sign up for ABC Corp, I might give them abccorp@ my domain. My mail serve

Re: Looking for a little (offlist?) help with ldap integration

2009-04-16 Thread Charles Marcus
On 4/16/2009 3:11 PM, Evan Platt wrote: > My mail provider says they can query an LDAP database, but can't offer > much assistance to me in setting it up. > > Baiscally now I use /etc/posfix/aliases, but that's obviously useless > for LDAP. Surprising - they can't do recipient verification (doesn

Re: Looking for a little (offlist?) help with ldap integration

2009-04-16 Thread Evan Platt
At 12:22 PM 4/16/2009, you wrote: On 4/16/2009 3:11 PM, Evan Platt wrote: > My mail provider says they can query an LDAP database, but can't offer > much assistance to me in setting it up. > > Baiscally now I use /etc/posfix/aliases, but that's obviously useless > for LDAP. Surprising - they can

Re: Newbie configuration/installation question

2009-04-16 Thread Tashfeen Ekram
can a previous installation of sendmail conflict with postfix? i seem to be getting timed out errors. postfix is running per the command prompt status check. - Original Message From: Tashfeen Ekram To: postfix-users@postfix.org Sent: Tuesday, April 14, 2009 9:57:35 AM Subject: Re:

Re: Looking for a little (offlist?) help with ldap integration

2009-04-16 Thread Charles Marcus
On 4/16/2009 3:27 PM, Evan Platt wrote: > So - if my username is joesmith, use say joesmith+abcincorporated @ > mydomain . com? Yes... > Well, the problem is whenever I sign up for a list or make a purchase, I > create a new one, so I'd be sending them a list pretty often, hence the > idea of LDA

Re: Looking for a little (offlist?) help with ldap integration

2009-04-16 Thread Evan Platt
At 12:44 PM 4/16/2009, you wrote: No... as long as they support plus addressing, you give them your main address - joesm...@example.com - then they will accept anything addressed to joesmith+anyth...@example.com, and reject everything else. That's still back at square one.. I often see my addre

mailserver with dynamic IP and relayhost

2009-04-16 Thread svoop
Hi My mailserver (mail.bitcetera.com) is behind a router that gets a dynamic IP (87.221.120.44) from the ISP. In order to prevent outgoing mail from being considered spam due to the dynamic IP, I've configured the ISP's mailserver as relayhost. Unfortunately, Yahoo still throws my mails in the sp

Re: Looking for a little (offlist?) help with ldap integration

2009-04-16 Thread Charles Marcus
On 4/16/2009 4:05 PM, Evan Platt wrote: > At 12:44 PM 4/16/2009, you wrote: >> No... as long as they support plus addressing, you give them your main >> address - joesm...@example.com - then they will accept anything >> addressed to joesmith+anyth...@example.com, and reject everything else. > That

delivery temporarily suspended: Server certificate not verified

2009-04-16 Thread gabriele
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Hi list ! I have only one peer as nexthop in my transport table , this is my configuration for postfix smtp : > # SMTP TLS > smtp_use_tls=yes > smtp_tls_loglevel = 1 > smtp_tls_enforce_peername = no > smtp_tls_CAfile = /etc/postfix/ssl/CA.pem > smt

Re: delivery temporarily suspended: Server certificate not verified

2009-04-16 Thread Sahil Tandon
On Thu, 16 Apr 2009, gabriele wrote: > I have only one peer as nexthop in my transport table , this is my > configuration for postfix smtp : No; show output of 'postconf -n'. [...] > ... and i can't still have a verified TLS connection with my relayhost . > My CA.pem , smtp_tls_CAfile = /etc/p

Re: delivery temporarily suspended: Server certificate not verified

2009-04-16 Thread Victor Duchovni
On Thu, Apr 16, 2009 at 08:23:18PM +0200, gabriele wrote: > I have only one peer as nexthop in my transport table , this is my > configuration for postfix smtp : These settings look a bit like an experimental particle physicist trying to learn about the inner working of client TLS in Postfix by s

Cluster of postfix

2009-04-16 Thread Juan Antonio Cuesta
Hello, i have two postfix servers, and when i have to do any change in virtual file or in aliases file i must to do the same change in the 2 servers. Can someone say me how can i do my job more confortable and only do one time. Thank you.

Re: Cluster of postfix

2009-04-16 Thread Wietse Venema
Juan Antonio Cuesta: > Hello, > > i have two postfix servers, and when i have to do any change in > virtual file or in aliases file i must to do the same change in the 2 > servers. > > Can someone say me how can i do my job more confortable and only do one time. Instead of a local file, use LDAP

Re: Sending SSL/TLS state to Dovecot auth

2009-04-16 Thread Wietse Venema
Postfix 2.6 will pass the "TLS is active flag". I have changed the API so that we no longer need to make code changes in every SASL plugin when another attribute is added. Wietse On Mon, Feb 23, 2009 at 02:18:01PM -0500, Timo Sirainen wrote: > In some setups it's useful for authentication

Transport map lookup failures are fatal?

2009-04-16 Thread Seth Mattinen
I apologize in advance if I'm being horribly dense, but I'm seeing something that doesn't feel right. In the event that a transport map lookup fails with a "host not found" error, Postfix is bouncing the message rather than treating it as a temporary error. For my test, I have the transport map:

Better default enhanced status codes for REJECT status

2009-04-16 Thread Rob Mueller
We have a list of blocked users in a hash file like this: blockedacco...@example.com REJECT And use it like this: smtpd_recipient_restrictions = ... check_recipient_access hash:/etc/postfix/access_to.hash The error message generated by postfix when trying to send to this is: 554 5.7.1 : Rec

Re: Transport map lookup failures are fatal?

2009-04-16 Thread Victor Duchovni
On Thu, Apr 16, 2009 at 06:47:58PM -0700, Seth Mattinen wrote: > I apologize in advance if I'm being horribly dense, but I'm seeing > something that doesn't feel right. In the event that a transport map > lookup fails with a "host not found" error, Postfix is bouncing the > message rather than tre

Re: Transport map lookup failures are fatal?

2009-04-16 Thread Seth Mattinen
Victor Duchovni wrote: > On Thu, Apr 16, 2009 at 06:47:58PM -0700, Seth Mattinen wrote: > >> I apologize in advance if I'm being horribly dense, but I'm seeing >> something that doesn't feel right. In the event that a transport map >> lookup fails with a "host not found" error, Postfix is bouncing

Re: Transport map lookup failures are fatal?

2009-04-16 Thread Seth Mattinen
Victor Duchovni wrote: >> So, my question is, why is that fatal instead of temporary? Shouldn't it >> be temporary? Observed on 2.5.5 and 2.4.5. > > It should not be temporary. All lookups succeed and establish that the > destination is non-existent. Postfix correctly bounces the message. > > If

Plus Addressing

2009-04-16 Thread Jeff Grossman
I have set up "recipient_delimiter = +" so I could put a folder name in an e-mail address and have it automatically filtered for me. I am using "mailbox_command = /usr/local/libexec/dovecot/deliver -n -m "$EXTENSION"" as my mailbox_command. When the mail gets passed to deliver, the extension

Re: Newbie configuration/installation question

2009-04-16 Thread Joe Sloan
I would try testing just smtp delivery and make sure that is working, before adding the extra layer of complexity. Right now it's not clear whether the message is being rejected by postfix, or postfix is misconfigured, or rails is misconfigured. A peek at the relevant sections, if any, in /var

Re: Plus Addressing

2009-04-16 Thread Victor Duchovni
On Thu, Apr 16, 2009 at 08:24:54PM -0700, Jeff Grossman wrote: > I have set up "recipient_delimiter = +" so I could put a folder name in an > e-mail address and have it automatically filtered for me. I am using > "mailbox_command = /usr/local/libexec/dovecot/deliver -n -m "$EXTENSION"" > as my

Re: Plus Addressing

2009-04-16 Thread LuKreme
On 16-Apr-2009, at 21:24, Jeff Grossman wrote: Is there a way for me to not have Postfix change the case? I had a similar issue where postfix (well, or something) was NOT changing the case on some virtual users $USER portion. I solved it with the following in the procmailrc file: :0D * US

Question regarding SPF

2009-04-16 Thread Kammen van, Marco, Springer SBM NL
Hi All, We recently took over a company that used SPF. Because our e-mail infra is way more complicated than theirs and we have tons of external parties who send mails using our domains, we decided long ago not to use SPF. Now they say that %5 of their mailings don't arrive at customers an