Re: Success story: smtpd_reject_footer

2011-01-21 Thread Mikael Bak
Reindl Harald wrote: > Am 20.01.2011 12:29, schrieb Christian Roessner: > >> Why adding a contact form? If a postmaster really does his/her job and scans >> the logs, finds your assistance info and enters the website, don't you think >> the same admin is also able to write a mail to you (postmas

Re: problem with added spaces in the message body

2011-01-21 Thread Matthias Andree
Am 21.01.2011 02:18, schrieb Vince Wang: > Hi, > > We are using postfix to send html version newsletter, and we found that the > postfix(?) adds spaces into the body. > > > > The message body is saved in database so we can preview it to make sure it is > right. > > > > If the space is add

delay some particular addresses ?

2011-01-21 Thread Frank Bonnet
Hello Would it be possible to delay the arrival of some particular addresses ? ( ala greylisting but only for a list of addresses ) Thanks a lot

Re: delay some particular addresses ?

2011-01-21 Thread Wietse Venema
Frank Bonnet: > Hello > > Would it be possible to delay the arrival of some particular addresses ? > ( ala greylisting but only for a list of addresses ) This requires a Milter or policy plugin. Wietse

Re: delay some particular addresses ?

2011-01-21 Thread Frank Bonnet
On 01/21/2011 12:47 PM, Wietse Venema wrote: Frank Bonnet: Hello Would it be possible to delay the arrival of some particular addresses ? ( ala greylisting but only for a list of addresses ) This requires a Milter or policy plugin. Wietse hello could you recommend one ? thank you W

Re: delay some particular addresses ?

2011-01-21 Thread Christian Roessner
Hi, >>> Would it be possible to delay the arrival of some particular addresses ? >>> ( ala greylisting but only for a list of addresses ) >> This requires a Milter or policy plugin. you can use postgrey and a (pcre-) map, which triggers a restriction_class Not sure, if you want it for sender or

Re: delay some particular addresses ?

2011-01-21 Thread Frank Bonnet
On 01/21/2011 01:58 PM, Christian Roessner wrote: Hi, Would it be possible to delay the arrival of some particular addresses ? ( ala greylisting but only for a list of addresses ) This requires a Milter or policy plugin. you can use postgrey and a (pcre-) map, which triggers a restriction_cla

redirect/divert smtp relay mail

2011-01-21 Thread GB GB
I am trying to figure out a way to configure our postfix relay server to send to different relays for the same domain. All our hosts are configured to use relay.abc.com domaine name=abc.com in aliases file root is directed to an email adress ex root: whatever.abc.com I need to be able to redirect

smtpd_sender_login_maps problem

2011-01-21 Thread Timo Veith
Hello postfix-users, I want to tie my users to their email addresses using the smtpd_sender_login_maps and the reject_sender_login_mismatch parameter. I have activated the settings in main.cf and it is working as far as I can tell from the mail.log. I am watching the reject_warnings. The followin

Re: redirect/divert smtp relay mail

2011-01-21 Thread Reindl Harald
sender_dependent_relayhost_maps = mysql:/etc/postfix/mysql-sender_relay_hosts.cf [root@mail:~]$ cat /etc/postfix/mysql-sender_relay_hosts.cf user = dbmailro password = * dbname = dbmail hosts= unix:/var/lib/mysql/mysql.sock query= select transport from dbma_sender_relay where ema

Re: Success story: smtpd_reject_footer

2011-01-21 Thread /dev/rob0
On Fri, Jan 21, 2011 at 09:12:32AM +0100, Mikael Bak wrote: > Reindl Harald wrote: > > Am 20.01.2011 12:29, schrieb Christian Roessner: > > > >> Why adding a contact form? If a postmaster really does > >> his/her job and scans the logs, finds your assistance info > >> and enters the website, don't

Re: delay some particular addresses ?

2011-01-21 Thread Wietse Venema
Frank Bonnet: > On 01/21/2011 12:47 PM, Wietse Venema wrote: > > Frank Bonnet: > >> Hello > >> > >> Would it be possible to delay the arrival of some particular addresses ? > >> ( ala greylisting but only for a list of addresses ) > > This requires a Milter or policy plugin. > > > > Wietse > he

Re: Success story: smtpd_reject_footer

2011-01-21 Thread Wietse Venema
/dev/rob0: > On Fri, Jan 21, 2011 at 09:12:32AM +0100, Mikael Bak wrote: > > Reindl Harald wrote: > > > Am 20.01.2011 12:29, schrieb Christian Roessner: > > > > > >> Why adding a contact form? If a postmaster really does > > >> his/her job and scans the logs, finds your assistance info > > >> and

Re: Success story: smtpd_reject_footer

2011-01-21 Thread Mikael Bak
/dev/rob0 wrote: > On Fri, Jan 21, 2011 at 09:12:32AM +0100, Mikael Bak wrote: >> Reindl Harald wrote: >>> Am 20.01.2011 12:29, schrieb Christian Roessner: >>> Why adding a contact form? If a postmaster really does his/her job and scans the logs, finds your assistance info and enters

problem with log file entry

2011-01-21 Thread Jack
Hello All, I'm finding this entry a few times with a godaddy server: Jan 20 14:35:50 houston postfix/smtpd[19267]: NOQUEUE: reject: RCPT from gateway01.websitewelcome.com[67.18.53.19]: 451 4.3.5 Server configuration problem; from= to= proto=SMTP helo= Is this 451 4.3.5 from their server ha

Re: problem with log file entry

2011-01-21 Thread Wietse Venema
Jack: > Hello All, > > I'm finding this entry a few times with a godaddy server: > > Jan 20 14:35:50 houston postfix/smtpd[19267]: NOQUEUE: reject: RCPT from > gateway01.websitewelcome.com[67.18.53.19]: 451 4.3.5 Server configuration > problem; from= to= proto=SMTP > helo= > > Is this 451 4.3.5 fro

potential postfix_bare_newline_wait configuration param

2011-01-21 Thread Jerrale G
postscreen_bare_newline_wait = time that must be waited in between NEW connection state and the reconnect, for example, 20m before the connection is considered from a normal smtp server This is how postscreen_bare_newline works, right? It assumes that spammers only try to connect once when,

postfix 2.8 & spamassassin/clamav

2011-01-21 Thread Jerrale G
With 2.7 and prior, we would use -o content_filter under the first transport to check for viruses and then pipe to spamassassin: # line 5 of master.cf #smtp inet n - n - - smtpd # -o content_filter=scan:[127.0.0.1]:10025 # -o smtpd_authorized_xf

Re: potential postfix_bare_newline_wait configuration param

2011-01-21 Thread Noel Jones
On 1/21/2011 10:26 AM, Jerrale G wrote: postscreen_bare_newline_wait = time that must be waited in between NEW connection state and the reconnect, for example, 20m before the connection is considered from a normal smtp server I don't see any such parameter. Are you referring to postscreen_ba

RE: problem with log file entry

2011-01-21 Thread Jack
> -Original Message- > From: Wietse Venema [mailto:wie...@porcupine.org] > Sent: Friday, January 21, 2011 10:56 AM > To: Jack > Cc: Postfix > Subject: Re: problem with log file entry > > Jack: > > Hello All, > > > > I'm finding this entry a few times with a godaddy server: > > > > Jan 20 1

Re: potential postfix_bare_newline_wait configuration param

2011-01-21 Thread Jerrale G
On 1/21/2011 12:05 PM, Noel Jones wrote: On 1/21/2011 10:26 AM, Jerrale G wrote: postscreen_bare_newline_wait = time that must be waited in between NEW connection state and the reconnect, for example, 20m before the connection is considered from a normal smtp server I don't see any such param

Re: potential postfix_bare_newline_wait configuration param

2011-01-21 Thread Wietse Venema
Jerrale G: > I explained why it is needed, as the bare_newline is a good idea and the > same principal we used about 4 years ago, before we moved to postfix. it > is to deter bottlers, on the idea that bottlers and spammers with non > rfc-complian smtp bots only try to connect one time. However

Re: problem with log file entry

2011-01-21 Thread Wietse Venema
Jack: > I see this particular warning: > Jan 20 14:35:50 houston postfix/smtpd[19267]: warning: problem talking to > server private/policy: Connection timed out > > So in order the related connection looks like this: > Jan 20 14:35:50 houston postfix/smtpd[19267]: warning: problem talking to > ser

Re: postfix 2.8 & spamassassin/clamav

2011-01-21 Thread Wietse Venema
Jerrale G: > With 2.7 and prior, we would use -o content_filter under the first > transport to check for viruses and then pipe to spamassassin: > # line 5 of master.cf > #smtp inet n - n - - smtpd > # -o content_filter=scan:[127.0.0.1]:10025 > #

Re: postfix 2.8 & spamassassin/clamav

2011-01-21 Thread Noel Jones
On 1/21/2011 10:39 AM, Jerrale G wrote: With 2.7 and prior, we would use -o content_filter under the first transport to check for viruses and then pipe to spamassassin: # line 5 of master.cf #smtp inet n - n - - smtpd # -o content_filter=scan:[127.0.0.1]:10025 # -o smtpd_authorized_xforward_hosts

Re: potential postfix_bare_newline_wait configuration param

2011-01-21 Thread Jerrale G
On 1/21/2011 12:41 PM, Wietse Venema wrote: Jerrale G: I explained why it is needed, as the bare_newline is a good idea and the same principal we used about 4 years ago, before we moved to postfix. it is to deter bottlers, on the idea that bottlers and spammers with non rfc-complian smtp bots on

Re: postfix 2.8 & spamassassin/clamav

2011-01-21 Thread Jerrale G
On 1/21/2011 12:54 PM, Noel Jones wrote: On 1/21/2011 10:39 AM, Jerrale G wrote: With 2.7 and prior, we would use -o content_filter under the first transport to check for viruses and then pipe to spamassassin: # line 5 of master.cf #smtp inet n - n - - smtpd # -o content_filter=scan:[127.0.0.1]:

RE: problem with log file entry

2011-01-21 Thread Jack
> -Original Message- > From: owner-postfix-us...@postfix.org [mailto:owner-postfix- > us...@postfix.org] On Behalf Of Wietse Venema > Sent: Friday, January 21, 2011 12:45 PM > To: Postfix users > Subject: Re: problem with log file entry > > Jack: > > I see this particular warning: > > Jan

Re: smtpd_sender_login_maps problem

2011-01-21 Thread Victor Duchovni
On Fri, Jan 21, 2011 at 02:30:22PM +0100, Timo Veith wrote: > I want to tie my users to their email addresses using the > smtpd_sender_login_maps and the reject_sender_login_mismatch parameter. I > have activated the settings in main.cf and it is working as far as I can > tell from the mail.log. I

warning: problem talking to server private/policy: Success

2011-01-21 Thread Jack
Hello All, I am working on cleaning up errors from my different postfix servers and have come across this error: postfix/smtpd[19639]: warning: problem talking to server private/policy: Success It's a warning so I know it's not crucial, but I want all that cleaned up if I can. I have verifi

Re: potential postfix_bare_newline_wait configuration param

2011-01-21 Thread Will Fong
On Jan 21, 2011, at 9:14 AM, Jerrale G wrote: > time at random intervals, usually a time more or less than a real, > "accredited" smtp server would wait before retrying delivery. So, we need a > postscreen_bare_newline_minwait and postscreen_bare_newline_maxwait, which > would be the minimum a

Re: smtpd_sender_login_maps problem

2011-01-21 Thread Timo Veith
2011/1/21 Victor Duchovni : > On Fri, Jan 21, 2011 at 02:30:22PM +0100, Timo Veith wrote: > >> I want to tie my users to their email addresses using the >> smtpd_sender_login_maps and the reject_sender_login_mismatch parameter. I >> have activated the settings in main.cf and it is working as far as

Re: potential postfix_bare_newline_wait configuration param

2011-01-21 Thread Jerrale G
On 1/21/2011 4:16 PM, Will Fong wrote: On Jan 21, 2011, at 9:14 AM, Jerrale G wrote: time at random intervals, usually a time more or less than a real, "accredited" smtp server would wait before retrying delivery. So, we need a postscreen_bare_newline_minwait and postscreen_bare_newline_maxw

Re: warning: problem talking to server private/policy: Success

2011-01-21 Thread Wietse Venema
Jack: > Hello All, > > I am working on cleaning up errors from my different postfix servers and > have come across this error: > > postfix/smtpd[19639]: warning: problem talking to server private/policy: > Success Apparently, postfix sends a query to the policy server, but the policy server clos

Why my helo configuration is not loaded ?

2011-01-21 Thread Condor
Hello, any one can help me what is wrong with my restriction ?I use postfix 2.7.2 First i see my helo restriction is not showed with postconf -n, here is it: alias_database = hash:/etc/postfix/aliases alias_maps = hash:/etc/postfix/aliases append_dot_mydomain = no biff = no broken_sasl_auth_client

Re: Why my helo configuration is not loaded ?

2011-01-21 Thread Ralf Hildebrandt
* Condor : > smtpd_helo_restriction = smtpd_helo_restriction**S** -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hild

I think that thing smtpd_recipient_restrictions does not work

2011-01-21 Thread Condor
Hello, i have postfix 2.7.2 and i have problem with restrictions. I setup smtpd_recipient_restrictions here is my main.cf config file: smtpd_recipient_restrictions = permit_mynetworks, permit_sasl_authenticated, check_helo_access hash:/etc/postfix/helo_checks, check_sender_access hash:/et

Re: Why my helo configuration is not loaded ?

2011-01-21 Thread Condor
> * Condor : > >> smtpd_helo_restriction = > > smtpd_helo_restriction**S** > > -- > Ralf Hildebrandt > Geschäftsbereich IT | Abteilung Netzwerk > Charité - Universitätsmedizin Berlin > Campus Benjamin Franklin > Hindenburgdamm 30 | D-12203 Berlin > Tel. +49 30 450 570 155 | Fax: +49 3

Re: postfix 2.8 & spamassassin/clamav

2011-01-21 Thread Jerrale G
On 1/21/2011 11:39 AM, Jerrale G wrote: With 2.7 and prior, we would use -o content_filter under the first transport to check for viruses and then pipe to spamassassin: # line 5 of master.cf #smtp inet n - n - - smtpd # -o content_filter=scan:[127.0.0.

Re: postfix 2.8 & spamassassin/clamav

2011-01-21 Thread Wietse Venema
Jerrale G: > Thanks to Wietse and Noel for their help; however, what is this about? > > NOQUEUE: reject: RCPT from [x.x.x.x]:59439: 550 5.5.1 Protocol error; The explanation is the logfile, right before this. The description of those messages (DNSBL, PREGREET, etc.) is in the POSTSCREEN_README f

Re: I think that thing smtpd_recipient_restrictions does not work

2011-01-21 Thread Noel Jones
On 1/21/2011 5:08 PM, Condor wrote: Hello, i have postfix 2.7.2 and i have problem with restrictions. I setup smtpd_recipient_restrictions here is my main.cf config file: smtpd_recipient_restrictions = permit_mynetworks, permit_sasl_authenticated, check_helo_access hash:/etc/postfix/he

Re: postfix 2.8 & spamassassin/clamav

2011-01-21 Thread Jerrale G
On 1/21/2011 7:18 PM, Wietse Venema wrote: Jerrale G: Thanks to Wietse and Noel for their help; however, what is this about? NOQUEUE: reject: RCPT from [x.x.x.x]:59439: 550 5.5.1 Protocol error; The explanation is the logfile, right before this. The description of those messages (DNSBL, PREGR

Config check

2011-01-21 Thread Walter Pinto
I've been somewhat satisfied with the config I've had in place for a while, but I thought it wouldn't hurt to have the experts take a look and see if I've fubared something. Would the preferred method be a postconf -n or snippets from main.cf?

Re: postfix 2.8 & spamassassin/clamav

2011-01-21 Thread Noel Jones
On 1/21/2011 6:57 PM, Jerrale G wrote: On 1/21/2011 7:18 PM, Wietse Venema wrote: Jerrale G: Thanks to Wietse and Noel for their help; however, what is this about? NOQUEUE: reject: RCPT from [x.x.x.x]:59439: 550 5.5.1 Protocol error; The explanation is the logfile, right before this. The des

Re: I think that thing smtpd_recipient_restrictions does not work

2011-01-21 Thread Mike Morris
On 01/21/2011 04:56 PM, Noel Jones wrote: > On 1/21/2011 5:08 PM, Condor wrote: >> >> Hello, >> i have postfix 2.7.2 and i have problem with restrictions. I setup >> smtpd_recipient_restrictions here is my main.cf config file: >> >> smtpd_recipient_restrictions = >>permit_mynetworks, >>perm

Re: Config check

2011-01-21 Thread Noel Jones
On 1/21/2011 7:11 PM, Walter Pinto wrote: I've been somewhat satisfied with the config I've had in place for a while, but I thought it wouldn't hurt to have the experts take a look and see if I've fubared something. Would the preferred method be a postconf -n or snippets from main.cf? You're we

Re: I think that thing smtpd_recipient_restrictions does not work

2011-01-21 Thread Noel Jones
On 1/21/2011 7:13 PM, Mike Morris wrote: On 01/21/2011 04:56 PM, Noel Jones wrote: On 1/21/2011 5:08 PM, Condor wrote: Hello, i have postfix 2.7.2 and i have problem with restrictions. I setup smtpd_recipient_restrictions here is my main.cf config file: smtpd_recipient_restrictions = perm

Re: I think that thing smtpd_recipient_restrictions does not work

2011-01-21 Thread Mike Morris
On 01/21/2011 05:25 PM, Noel Jones wrote: > On 1/21/2011 7:13 PM, Mike Morris wrote: >> On 01/21/2011 04:56 PM, Noel Jones wrote: >>> On 1/21/2011 5:08 PM, Condor wrote: Hello, i have postfix 2.7.2 and i have problem with restrictions. I setup smtpd_recipient_restrictions here i

Re: Config check

2011-01-21 Thread Walter Pinto
Thanks Noel. Let me know if I'm missing anything. This server is supposed to act just as a relay. postconf -n alias_maps = anvil_rate_time_unit = 180s body_checks = regexp:/etc/postfix/body_checks bounce_size_limit = 1500 broken_sasl_auth_clients = yes command_directory = /usr/sbin config_directo

Re: I think that thing smtpd_recipient_restrictions does not work

2011-01-21 Thread Jerrale G
On 1/21/2011 8:25 PM, Noel Jones wrote: On 1/21/2011 7:13 PM, Mike Morris wrote: On 01/21/2011 04:56 PM, Noel Jones wrote: On 1/21/2011 5:08 PM, Condor wrote: Hello, i have postfix 2.7.2 and i have problem with restrictions. I setup smtpd_recipient_restrictions here is my main.cf config file:

Re: Config check

2011-01-21 Thread Stan Hoeppner
Walter Pinto put forth on 1/21/2011 7:42 PM: > Thanks Noel. Let me know if I'm missing anything. This server is > supposed to act just as a relay. It sure would read a lot easier if you didn't manually declare all those default settings. Which Linux distro is this? Whoever packages Postfix with

Re: Config check

2011-01-21 Thread Walter Pinto
CentOS 5.5 mail_version = 2.3.3

Re: I think that thing smtpd_recipient_restrictions does not work

2011-01-21 Thread Noel Jones
On 1/21/2011 8:12 PM, Jerrale G wrote: ... reject_unauth_destination. Also, as an anti-openrelay failsafe, you should put "OK 250 custom message here" instead of "permit 250 custom message". No, OK and permit are the same. Technically, OK is an access map result, permit is a smtpd_*_restrict

Slow mail sending using TLS on port 25

2011-01-21 Thread Janantha Marasinghe
Hi Im running postix 2.7 on a ubuntu 10.04 lts server. it is configured to use smtp-auth and uses dovecots sasl. My clients connect to the server using TLS setting.my issue is that when a client sends a mail it takes around 15-20 seconds to make the connection and send the mail. Can I tweak t

Re: Config check

2011-01-21 Thread Noel Jones
On 1/21/2011 7:42 PM, Walter Pinto wrote: Thanks Noel. Let me know if I'm missing anything. This server is supposed to act just as a relay. postconf -n alias_maps = anvil_rate_time_unit = 180s body_checks = regexp:/etc/postfix/body_checks bounce_size_limit = 1500 broken_sasl_auth_clients = yes

Re: Slow mail sending using TLS on port 25

2011-01-21 Thread Noel Jones
On 1/21/2011 9:11 PM, Janantha Marasinghe wrote: Hi Im running postix 2.7 on a ubuntu 10.04 lts server. it is configured to use smtp-auth and uses dovecots sasl. My clients connect to the server using TLS setting.my issue is that when a client sends a mail it takes around 15-20 seconds to make t

Re: Config check

2011-01-21 Thread Walter Pinto
Thanks Noel, I will make the suggested changes along with cleaning out the defaults. As far as the check policy goes, I shouldnt have any issues moving it on this server because all I have enabled is HELO and SPF checking. Now on my SMTP server, I have to have it before or else the quota checking d

Re: Config check

2011-01-21 Thread Noel Jones
On 1/21/2011 9:46 PM, Walter Pinto wrote: Thanks Noel, I will make the suggested changes along with cleaning out the defaults. As far as the check policy goes, I shouldnt have any issues moving it on this server because all I have enabled is HELO and SPF checking. Now on my SMTP server, I have to

Re: Config check

2011-01-21 Thread Walter Pinto
I used the following command to determine what needed to be removed from my main.cf: postconf -d > defaultcfg && postconf -n > customcfg && perl -ne 'print if ($seen{$_} .= @ARGV) =~ /10$/' customcfg defaultcfg Then I made the suggested changes and I'm left with: anvil_rate_time_unit = 180s bod

Re: Config check

2011-01-21 Thread Sahil Tandon
On Fri, 2011-01-21 at 20:57:18 -0800, Walter Pinto wrote: > I used the following command to determine what needed to be removed > from my main.cf: > > postconf -d > defaultcfg && postconf -n > customcfg && perl -ne 'print > if ($seen{$_} .= @ARGV) =~ /10$/' customcfg defaultcfg FWIW, an untested

RE: authentication

2011-01-21 Thread Ejaz
Hello, Thanks a lot for your help, would you please tell me in order to achieve as I said below, does it requires to maintain the local database (username and password of email accounts) in sql database or in a flat file, Regards Ejaz -Original Message- From: owner-postfi

Re: Milter for handling messages bound for non-TLS-capable hosts?

2011-01-21 Thread Jerrale G
On 12/28/2010 4:19 AM, email builder wrote: Hello, I might need to learn how to write a milter that tries to divert outgoing messages (so a smtp/client milter) that have been sent with smtp_tls_security_level = encrypt but failed because the destination server doesn't support STARTTLS (I underst

Re: Config check

2011-01-21 Thread Walter Pinto
Sahil, I tested your command and it worked, thanks for that.

Re: I think that thing smtpd_recipient_restrictions does not work

2011-01-21 Thread Condor
> On 1/21/2011 5:08 PM, Condor wrote: >> >> Hello, >> i have postfix 2.7.2 and i have problem with restrictions. I setup >> smtpd_recipient_restrictions here is my main.cf config file: >> >> > > Your RBL list is a mess. Several of the lists you are > querying are dead -- securitysage, wirehub, ea