AW: google's receiving policies

2022-12-10 Thread ludicree
TOL publishes a list of their mailservers and also has them listed at DNSWL. The list auf these ~20 IPs probably is in many configs somewhere. And/or a DNSWL query. F.e. when TOL gets listed on Spamcop or others again. Greets, Ludi -Ursprüngliche Nachricht- Von: owner-postfix-us...@post

sender_bcc_maps documentation

2022-12-10 Thread Markus Schönhaber
Hi all, https://www.postfix.org/postconf.5.html#sender_bcc_maps says Optional BCC (blind carbon-copy) address lookup tables, indexed by sender address. but it doesn't specify whether "address" means envelope address, header address or both. OTOH https://www.postfix.org/ADDRESS_REWRITING_RE

Re: sender_bcc_maps documentation

2022-12-10 Thread Wietse Venema
Markus Sch?nhaber: > Hi all, > > https://www.postfix.org/postconf.5.html#sender_bcc_maps says > > > Optional BCC (blind carbon-copy) address lookup tables, indexed by sender > > address. > > but it doesn't specify whether "address" means envelope address, header > address or both. OTOH Postfi

Re: sender_bcc_maps documentation

2022-12-10 Thread Markus Schönhaber
10.12.22, 13:44 +0100, Wietse Venema: Markus Sch?nhaber: https://www.postfix.org/postconf.5.html#sender_bcc_maps says Optional BCC (blind carbon-copy) address lookup tables, indexed by sender address. but it doesn't specify whether "address" means envelope address, header address or both

Re: TLS config confirmation

2022-12-10 Thread Alex
Hi, On Thu, Dec 8, 2022 at 2:17 AM Matus UHLAR - fantomas wrote: > On 07.12.22 12:28, Alex wrote: > >smtp_tls_security_level = may > >smtpd_tls_security_level = may > >smtp_tls_mandatory_protocols= !SSLv2,!SSLv3,!TLSv1,!TLSv1.1 > >smtp_tls_protocols = !SSLv2,!SSLv3,!TLSv1,!TLSv1

Re: TLS config confirmation

2022-12-10 Thread Viktor Dukhovni
On Sat, Dec 10, 2022 at 04:48:12PM -0500, Alex wrote: > I think I assumed there was a vulnerability, like there is with SSLv3, that > lead me to disable it. > > I've now changed it to just: > > smtpd_tls_mandatory_protocols = >=TLSv1.0 Sadly, that won't work. The known keyword is "TLSv1", th

Re: helo command rejected

2022-12-10 Thread Demi Marie Obenour
On 12/2/22 08:08, David Dolan wrote: > On Fri, 2 Dec 2022 at 10:33, David Dolan wrote: >> Subject:Re: helo command rejected >>> From: Viktor Dukhovni >>> Date: 2022-12-01 16:56:13 >>> Message-ID: Y4jcrRxsEJPsWZVZ () straasha ! imrryr ! org >>> [Download RAW message or body] >>> >>

Re: TLS config confirmation

2022-12-10 Thread Demi Marie Obenour
On 12/10/22 16:48, Alex wrote: > Hi, > > On Thu, Dec 8, 2022 at 2:17 AM Matus UHLAR - fantomas > wrote: > >> On 07.12.22 12:28, Alex wrote: >>> smtp_tls_security_level = may >>> smtpd_tls_security_level = may >>> smtp_tls_mandatory_protocols= !SSLv2,!SSLv3,!TLSv1,!TLSv1.1 >>> smtp_tls_protoc

Re: helo command rejected

2022-12-10 Thread Steffen Nurpmeso
Demi Marie Obenour wrote in <6baaf997-0462-f5de-402b-c77f01ff5...@gmail.com>: |On 12/2/22 08:08, David Dolan wrote: |> On Fri, 2 Dec 2022 at 10:33, David Dolan wrote: |>> Subject:Re: helo command rejected |>>> From: Viktor Dukhovni |>>> Date: 2022-12-01 16:56:13 |>>> Messag

postscreen_dnsbl_reply_map and dnsblog

2022-12-10 Thread Alex
Hi, I hoped someone could help me clear up some confusion. I understand postscreen_dnsbl_reply_map is for postscreen_dnsbl_sites, but I have dnsblog entries revealing my spamhaus key from entries in the postscreen_dnsbl_sites section, not smtp_recipient_restrictions. postscreen_dnsbl_sites =