Unable to send e-mail

2011-10-19 Thread Tolga
Hi, I am using postfixadmin to add mailboxes. Oct 19 15:40:01 vps postfix/pickup[3517]: 5DBFA4100B2B: uid=1005 from= Oct 19 15:40:01 vps postfix/cleanup[3575]: 5DBFA4100B2B: message-id=<20111019124001.5dbfa4100...@mail.bilgisayarciniz.org> Oct 19 15:40:01 vps postfix/qmgr[5859]: 5DBFA4100B2B:

Re: Unable to send e-mail

2011-10-19 Thread Robert Schetterer
Am 19.10.2011 14:57, schrieb Tolga: > Hi, > > I am using postfixadmin to add mailboxes. > > Oct 19 15:40:01 vps postfix/pickup[3517]: 5DBFA4100B2B: uid=1005 > from= > Oct 19 15:40:01 vps postfix/cleanup[3575]: 5DBFA4100B2B: > message-id=<20111019124001.5dbfa4100...@mail.bilgisayarciniz.org> > Oct

Re: Unable to send e-mail

2011-10-19 Thread Reindl Harald
Am 19.10.2011 14:57, schrieb Tolga: > Oct 19 15:40:01 vps postfix/pickup[3517]: 5DBFA4100B2B: uid=1005 from= > Oct 19 15:40:01 vps postfix/cleanup[3575]: 5DBFA4100B2B: > message-id=<20111019124001.5dbfa4100...@mail.bilgisayarciniz.org> > Oct 19 15:40:01 vps postfix/qmgr[5859]: 5DBFA4100B2B: > fr

Re: Unable to send e-mail

2011-10-19 Thread Tolga
On 10/19/2011 04:01 PM, Reindl Harald wrote: Am 19.10.2011 14:57, schrieb Tolga: Oct 19 15:40:01 vps postfix/pickup[3517]: 5DBFA4100B2B: uid=1005 from= Oct 19 15:40:01 vps postfix/cleanup[3575]: 5DBFA4100B2B: message-id=<20111019124001.5dbfa4100...@mail.bilgisayarciniz.org> Oct 19 15:40:01 vp

Re: Unable to send e-mail

2011-10-19 Thread Reindl Harald
Am 19.10.2011 15:30, schrieb Tolga: >> what do you expect? >> "vps.ozses.net" != "ozses.net" and has no MX or A-records >> > Sorry, those were the logs of another transaction (didn't look closely enough > :() > > For the postfixadmin transaction, > I have no logs. Is this even possible? everyt

Re: Unable to send e-mail

2011-10-19 Thread Tom Hendrikx
On 19/10/11 15:30, Tolga wrote: > > > On 10/19/2011 04:01 PM, Reindl Harald wrote: >> >> Am 19.10.2011 14:57, schrieb Tolga: >>> Oct 19 15:40:01 vps postfix/pickup[3517]: 5DBFA4100B2B: uid=1005 >>> from= >>> Oct 19 15:40:01 vps postfix/cleanup[3575]: 5DBFA4100B2B: >>> message-id=<20111019124001.5

Re: Using Spamassassin as content filter

2011-10-19 Thread Kris Deugau
Daniele Nicolodi wrote: Hello Kris, thank you for your comments. On 18/10/11 17:03, Kris Deugau wrote: Since you're happy to deliver the spam somewhere, rather than trying to reject it during the SMTP conversation, you're probably best off calling spamc early in your local-delivery rules rather

wrong order cert chain with Thawte * cert?

2011-10-19 Thread eugen
For some strange reason the party on the other end suddenly no longer can send mail to us (delivery *from* us succeeds), claims that cert chain is in the wrong order. How can I verify this, for StartTLS? The server is this one (mail2.infochem.de). Thanks! Regards, Eugen Leitl

Re: wrong order cert chain with Thawte * cert?

2011-10-19 Thread Kamil Raczyński
On 2011-10-19 16:03, eu...@mail2.infochem.de wrote: > For some strange reason the party on the other end suddenly > no longer can send mail to us (delivery *from* us succeeds), > claims that cert chain is in the wrong order. > > How can I verify this, for StartTLS? The server is this > one (mail2.

Re: wrong order cert chain with Thawte * cert?

2011-10-19 Thread eugen
On Wed, Oct 19, 2011 at 04:20:08PM +0200, Kamil Raczyński wrote: > On 2011-10-19 16:03, eu...@mail2.infochem.de wrote: > > For some strange reason the party on the other end suddenly > > no longer can send mail to us (delivery *from* us succeeds), > > claims that cert chain is in the wrong order. >

Re: wrong order cert chain with Thawte * cert?

2011-10-19 Thread Viktor Dukhovni
On Wed, Oct 19, 2011 at 04:50:08PM +0200, eu...@mail2.infochem.de wrote: > > In this case certificate is not signed by Thawte, but it's > > self-signed. Check if smtpd_tls_cert_file and smtpd_tls_key_file > > options are pointing to the correct certificate/key. > > Thanks, Kamil, that was indeed

Re: Using Spamassassin as content filter

2011-10-19 Thread Daniele Nicolodi
On 19/10/11 16:01, Kris Deugau wrote: > Daniele Nicolodi wrote: >> Sieve can not call external programs, therefore I do not know ho to hook >> Spamassassin there, and, furthermore, I would like to avoid to have to >> setup things for each user. > > O_o News to me. Maybe there's some option to do

Re: wrong order cert chain with Thawte * cert?

2011-10-19 Thread eugen
On Wed, Oct 19, 2011 at 02:56:59PM +, Viktor Dukhovni wrote: > > Not entirely, you configured only the leaf server cert, and did > not also configure the intermediate CA cert (which should be appended > to your cert.pem file). Thanks for catching it -- I obviously don't really know what I'm d

Re: wrong order cert chain with Thawte * cert?

2011-10-19 Thread Kamil Raczyński
On 2011-10-19 18:15, eu...@mail2.infochem.de wrote: Thanks for catching it -- I obviously don't really know what I'm doing. I've appended the cert, and now am getting $ openssl s_client -starttls smtp -showcerts -connect mail2.infochem.de:25 CONNECTED(0003) depth=1 /C=US/O=Thawte, Inc./CN=Th

Re: Using Spamassassin as content filter

2011-10-19 Thread Tom Hendrikx
On 19-10-11 17:33, Daniele Nicolodi wrote: > On 19/10/11 16:01, Kris Deugau wrote: >> Daniele Nicolodi wrote: >>> Sieve can not call external programs, therefore I do not know ho to hook >>> Spamassassin there, and, furthermore, I would like to avoid to have to >>> setup things for each user. >> >>

Permission for delivered messages.

2011-10-19 Thread Simone Piccardi
Hi, I'm trying to deliver some messages to a "Public" IMAP directory (Public in the dovecot namespace meaning). I tried to use virtual to do this, I created a virtual domain shared.folders and then used a virtual_mailbox_maps to define a mapping between an address like someaddress@shared.fol

Re: Using Spamassassin as content filter

2011-10-19 Thread Daniele Nicolodi
On 19/10/11 18:46, Tom Hendrikx wrote: > Actually, there is an experimental extension for dovecot sieve that > allows piping to external commands, but with a quite secure design > (sysadmin controls which commands are available to the pipe extension). > It works quite nice in the current state, and

By Passing RBL for specific domain for specific IP

2011-10-19 Thread Janaka Wickramasinghe
Hi, Is there a way to by pass RBL check for a specific domain and receiving from specific IP, my main.cf's smtpd_recipient_restrictions looks like this smtpd_recipient_restrictions = permit_mynetworks, reject_unauth_destination, reject_rbl_client multi.uri

Re: Content filter after DKIM proxy

2011-10-19 Thread Steve Jenkins
> > I think the hour or less it would take to replace dkimproxy with > OpenDKIM would be well spent. > > A big +1 on this. I wrestled with DKIM-Proxy for a couple of afternoons before stumbling upon OpenDKIM. I had it up and running and playing nicely with Amavis-new in under an hour. The followin

Re: Content filter after DKIM proxy

2011-10-19 Thread Steve Jenkins
On Wed, Oct 19, 2011 at 12:03 PM, Steve Jenkins wrote: > The following isn't one of my normal walkthrough HowTo blog posts, but it >> does contain some notes I wrote to myself about things to consider when >> deploying OpenDKIM with Amavis-new. I've also got additional stuff there >> detailing how

Re: wrong order cert chain with Thawte * cert?

2011-10-19 Thread Viktor Dukhovni
On Wed, Oct 19, 2011 at 06:15:31PM +0200, eu...@mail2.infochem.de wrote: > > Not entirely, you configured only the leaf server cert, and did > > not also configure the intermediate CA cert (which should be appended > > to your cert.pem file). > > Thanks for catching it -- I obviously don't really

Whitelisting a domain

2011-10-19 Thread N. Yaakov Ziskind
I'm getting errors like this from one particular sender: Oct 19 13:54:13 pizza postfix/smtpd[31372]: NOQUEUE: reject: RCPT from chocolate.egps.com[38.119.130.7]: 450 4.1.8 : Sender address rejected: Domain not found; from= to= proto=ESMTP helo= where the capitalized domain name has been munged.

Re: Permission for delivered messages.

2011-10-19 Thread tobi
On 19.10.2011 18:49, Simone Piccardi wrote: Hi, I'm trying to deliver some messages to a "Public" IMAP directory (Public in the dovecot namespace meaning). I tried to use virtual to do this, I created a virtual domain shared.folders and then used a virtual_mailbox_maps to define a mapping b

Re: Using Spamassassin as content filter

2011-10-19 Thread Tom Hendrikx
On 19-10-11 18:54, Daniele Nicolodi wrote: > On 19/10/11 18:46, Tom Hendrikx wrote: >> Actually, there is an experimental extension for dovecot sieve that >> allows piping to external commands, but with a quite secure design >> (sysadmin controls which commands are available to the pipe extension).

Re: Using Spamassassin as content filter

2011-10-19 Thread tobi
On 19.10.2011 21:00, Tom Hendrikx wrote: On 19-10-11 18:54, Daniele Nicolodi wrote: On 19/10/11 18:46, Tom Hendrikx wrote: Actually, there is an experimental extension for dovecot sieve that allows piping to external commands, but with a quite secure design (sysadmin controls which commands are

Re: Whitelisting a domain

2011-10-19 Thread /dev/rob0
On Wednesday 19 October 2011 13:05:58 N. Yaakov Ziskind wrote: > I'm getting errors like this from one particular sender: > > Oct 19 13:54:13 pizza postfix/smtpd[31372]: NOQUEUE: reject: RCPT > from chocolate.egps.com[38.119.130.7]: 450 4.1.8 > : > Sender address rejected: Domain not found; > from

Re: By Passing RBL for specific domain for specific IP

2011-10-19 Thread Kamil Raczyński
On 2011-10-19 19:37, Janaka Wickramasinghe wrote:" Is there a way to by pass RBL check for a specific domain and receiving from specific IP, Yes. I've tried creating a smtpd_restriction_class where I assign whitelisted_ip and hash list linking the whitelited_ip with domain as be

perform check after authentication

2011-10-19 Thread Daniel L. Miller
How can I execute a policy service AFTER successful authentication or local sender verification? -- Daniel

Re: perform check after authentication

2011-10-19 Thread Noel Jones
On 10/19/2011 3:06 PM, Daniel L. Miller wrote: > How can I execute a policy service AFTER successful authentication > or local sender verification? > > -- > Daniel Have your policy service check for existence of sasl_sender or sasl_username. -- Noel Jones

Re: perform check after authentication

2011-10-19 Thread Daniel L. Miller
On 10/19/2011 1:21 PM, Noel Jones wrote: On 10/19/2011 3:06 PM, Daniel L. Miller wrote: How can I execute a policy service AFTER successful authentication or local sender verification? Have your policy service check for existence of sasl_sender or sasl_username. If I use that in smtpd_sender

Re: perform check after authentication

2011-10-19 Thread Noel Jones
On 10/19/2011 3:30 PM, Daniel L. Miller wrote: > On 10/19/2011 1:21 PM, Noel Jones wrote: >> On 10/19/2011 3:06 PM, Daniel L. Miller wrote: >>> How can I execute a policy service AFTER successful authentication >>> or local sender verification? >>> >> >> Have your policy service check for existence

Re: Content filter after DKIM proxy

2011-10-19 Thread Simon Brereton
On 19 October 2011 14:04, Steve Jenkins wrote: > On Wed, Oct 19, 2011 at 12:03 PM, Steve Jenkins > wrote: >>> >>> The following isn't one of my normal walkthrough HowTo blog posts, but it >>> does contain some notes I wrote to myself about things to consider when >>> deploying OpenDKIM with Amavi

Re: Content filter after DKIM proxy

2011-10-19 Thread Simon Brereton
On 18 October 2011 14:27, Noel Jones wrote: > On 10/18/2011 1:20 PM, Simon Brereton wrote: > >> I already use amavis to do the dkim checking on incoming mails.  I'm >> using dkimproxy to sign outgoing mails (and I confess I only found out >> about opendkim after I'd set it up, so I'm not keen to c

Re: By Passing RBL for specific domain for specific IP

2011-10-19 Thread Janaka Wickramasinghe
Thanks for the reply.. yes I've configured wrong way.. it's working now.. :-) The IP that we wanted to white-list is actually one of the ISPs relay server so, it get blacklisted sometime, but we wanted to receive the mails from one domain which, is also using the same relay server and not wanted t

RE: Content filter after DKIM proxy

2011-10-19 Thread Murray S. Kucherawy
> -Original Message- > From: owner-postfix-us...@postfix.org > [mailto:owner-postfix-us...@postfix.org] On Behalf Of Simon Brereton > Sent: Wednesday, October 19, 2011 2:36 PM > To: postfix users > Subject: Re: Content filter after DKIM proxy > > And I'd like to implement > dnssec as well

Mail Followup Marker Sanitation

2011-10-19 Thread Svoop
Mail clients such as Outlook breach standards by translating "Re" e.g. to "AW" (German short for "Antwort"). This results in cascades such as "Re: AW: Re: AW: Hello World" as a message goes hence and forth. I've written a simple header_check which sanitizies this madness: http://www.bitcetera.com/

AW: Re: Mail Followup Marker Sanitation

2011-10-19 Thread Noel Jones
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 10/19/2011 9:04 PM, Svoop wrote: > Mail clients such as Outlook breach standards by translating > "Re" e.g. to "AW" (German short for "Antwort"). This results in > cascades such as "Re: AW: Re: AW: Hello World" as a message > goes hence and forth. I

blocking all attachments

2011-10-19 Thread Ian Masters
Hi Is it possible to block all attachments with postfix? I'm using /etc/postfix/mime_header_checks but I can't seem to block all attachments, especially ones without file suffixes. Thanks Ian

Re: blocking all attachments

2011-10-19 Thread Stan Hoeppner
On 10/20/2011 12:44 AM, Ian Masters wrote: > Is it possible to block all attachments with postfix? I'm using > /etc/postfix/mime_header_checks but I can't seem to block all attachments, > especially ones without file suffixes. Do you want to REJECT all emails containing an attachment? Or do you