[pfx] Re: problem with local delivery of received email

2025-01-01 Thread Gerd Hoerst via Postfix-users
Hi ! I took a really old config from one of my servers (main.cf) and now its working... during next week i will try to compare the configs and find out where the difference is... Ciao Gerd Am 31.12.2024 um 22:23 schrieb Viktor Dukhovni via Postfix-users: On Tue, Dec 31, 2024 at 09:51:01PM

[pfx] Re: Implicit TLS via SRV record?

2025-01-01 Thread Steffen Nurpmeso via Postfix-users
Hello Wietse Venema. Wietse Venema via Postfix-users wrote in <4yn8j34j6lzj...@spike.porcupine.org>: |Full disclosure: I was the original finder of the STARTTLS plaintext |injection problem, which affected Postfix and several other SMTP |server implementations. See the text and links to other

[pfx] Re: Implicit TLS via SRV record?

2025-01-01 Thread Joachim Lindenberg via Postfix-users
Wietse wrote: > When an SRV response for "_smtps._tcp.example.com" names the standard SMTP > port, the feature overrides a default TLS security level "may" with > "encrypt". This is on/off configurable and needs a few lines of code in the > SMTP client's MX host iterator to upgrade a default TLS

[pfx] relayhost might not be reachable for weeks, long maximal_queue_lifetime as solution?

2025-01-01 Thread r.barclay--- via Postfix-users
Hello, I have a system that happens to be disconnected from my LAN for 2 or 3 weeks, from time to time. I use Postfix to process mail generated locally, e.g. reports from unattended-upgrades. All email is then sent to my regular mail server which I, therefore, have configured as relayhost: re

[pfx] Re: documentation for tags that appear after 'disconnect from' log lines?

2025-01-01 Thread Greg Klanderman via Postfix-users
> On January 1, 2025 Wietse Venema via Postfix-users > wrote: > Greg Klanderman via Postfix-users: >> >> Hello all and Happy New Year! >> >> Is there some documentation for the list of tags, their meanings, >> and the format for the value after '=' for the 'disconnect from' >> log lines?

[pfx] Re: documentation for tags that appear after 'disconnect from' log lines?

2025-01-01 Thread Viktor Dukhovni via Postfix-users
On Wed, Jan 01, 2025 at 08:13:35PM -0500, Greg Klanderman via Postfix-users wrote: > I'm fine with allowing a little probing, especially if the host doing > so has reverse DNS set up, which I assume you do. But I do not see > any trace of 'dnssec-tools.org' in my logs; is that the domain you are

[pfx] Re: documentation for tags that appear after 'disconnect from' log lines?

2025-01-01 Thread Greg Klanderman via Postfix-users
> On January 1, 2025 Viktor Dukhovni via Postfix-users > wrote: > On Wed, Jan 01, 2025 at 08:13:35PM -0500, Greg Klanderman via > Postfix-users wrote: >> I'm fine with allowing a little probing, especially if the host >> doing so has reverse DNS set up, which I assume you do. But I do >

[pfx] Re: relayhost might not be reachable for weeks, long maximal_queue_lifetime as solution?

2025-01-01 Thread Viktor Dukhovni via Postfix-users
On Thu, Jan 02, 2025 at 01:56:07AM +, r.barclay--- via Postfix-users wrote: > Hello, > > I have a system that happens to be disconnected from my LAN for 2 or 3 weeks, > from time to time. > > I use Postfix to process mail generated locally, e.g. reports from > unattended-upgrades. > All ema

[pfx] Re: Implicit TLS via SRV record?

2025-01-01 Thread Wietse Venema via Postfix-users
I scanned the draft version 3. On the Postfix side this appears to involve: - For "_smtps._tcp.example.com" SRV responses that don't name the standard SMTP port, it may be helpful to automatically turn on TLS wrappermode for a configurable list of service names. This is nice to have and relativel

[pfx] documentation for tags that appear after 'disconnect from' log lines?

2025-01-01 Thread Greg Klanderman via Postfix-users
Hello all and Happy New Year! Is there some documentation for the list of tags, their meanings, and the format for the value after '=' for the 'disconnect from' log lines? For example: | disconnect from X[IP] ehlo=1 auth=0/1 rset=1 quit=1 commands=3/4 I believe auth=0/1 indicates that aut

[pfx] Re: documentation for tags that appear after 'disconnect from' log lines?

2025-01-01 Thread Viktor Dukhovni via Postfix-users
On Wed, Jan 01, 2025 at 07:21:18PM -0500, Greg Klanderman via Postfix-users wrote: > I was also going to ask how to distinguish port 25 vs submission in > the logs but looks like I should be able to use syslog_name for that.. > though changing this may require adjustments to fail2ban config. As

[pfx] Re: documentation for tags that appear after 'disconnect from' log lines?

2025-01-01 Thread Wietse Venema via Postfix-users
Greg Klanderman via Postfix-users: > > Hello all and Happy New Year! > > Is there some documentation for the list of tags, their meanings, and > the format for the value after '=' for the 'disconnect from' log > lines? This was described in RELEASE_NOTES-3.0, but not in the manpages or README fi

[pfx] Re: Implicit TLS via SRV record?

2025-01-01 Thread Steffen Nurpmeso via Postfix-users
Ralph Seichter via Postfix-users wrote in : |* Steffen Nurpmeso via Postfix-users: | |> I did not want to initiate a discussion, actually. | |And who would have guessed? Just push a feature which does not serve a |real purpose. Discussions are *so* last year. That not; I would not say so, n

[pfx] Re: Implicit TLS via SRV record?

2025-01-01 Thread Steffen Nurpmeso via Postfix-users
Wietse Venema via Postfix-users wrote in <4ynn0f4f5gzj...@spike.porcupine.org>: |I scanned the draft version 3. On the Postfix side this appears |to involve: | |- For "_smtps._tcp.example.com" SRV responses that don't name the |standard SMTP port, it may be helpful to automatically turn on T

[pfx] Re: documentation for tags that appear after 'disconnect from' log lines?

2025-01-01 Thread Greg Klanderman via Postfix-users
> On January 1, 2025 Viktor Dukhovni via Postfix-users > wrote: > As the operator of a "responsible" SMTP survey engine: > https://stats.dnssec-tools.org/about.html > https://stats.dnssec-tools.org/ > that connects just a few times a day (once per IP address of an MX > host, wi

[pfx] Trouble authenticating to Postfix + Dovecot server from remote client.

2025-01-01 Thread Christian Seberino via Postfix-users
I'm getting "SASL PLAIN authentication failed" in /var/log/mail.log and "smtplib.SMTPAuthenticationError: (535, b'5.7.8 Error: authentication failed:')" on command line when I try to send email from a remote Python script. I can't figure out what it is. Do you have any suggestions on h

[pfx] Re: Trouble authenticating to Postfix + Dovecot server from remote client.

2025-01-01 Thread Antonin VERRIER via Postfix-users
Le 01/01/2025 à 21:26, Christian Seberino via Postfix-users a écrit : [...]      server.login("cs@bighelp.business", password) [...] = doveconf -n ===

[pfx] Re: Trouble authenticating to Postfix + Dovecot server from remote client.

2025-01-01 Thread Viktor Dukhovni via Postfix-users
On Wed, Jan 01, 2025 at 10:01:56PM +0100, Antonin VERRIER via Postfix-users wrote: > Le 01/01/2025 à 21:26, Christian Seberino via Postfix-users a écrit : > [...] > >      server.login("cs@bighelp.business", password) > [...] > > ===