Re: A little OT: SPF

2008-12-16 Thread Erwan David
Le Tue 16/12/2008, Tolga disait > Hello, > > For an e-mail not to fall into spam category, the sourcing server has to > have SPF record I think, or so I've been told. Some spams are sent from a spf compliant server, many non spam are sent from servers which do not implement spf. spf is a framewo

Re: howto setup outgoing port to 587 ?

2008-12-27 Thread Erwan David
Le Fri 26/12/2008, mouss disait > > it's not required. but if you don't verify the cert, then you trust DNS. > so a DNS attack (poisoning, ...) would make him send passwords to the > wrong server. But if you want to verify the cert the standard way of trusting any CA just because it appears in th

Re: SPF Checking

2009-01-14 Thread Erwan David
On Wed, Jan 14, 2009 at 05:22:25PM CET, Russ Lavoy said: > Hello List, > > I am wondering about an SPF checking addition for postfix. Where I see all > of the addon software, I am not 100% comfortable modifying the postfix code > and still have it be as secure as it was when I first set it up.

Re: how to filter

2009-01-27 Thread Erwan David
On Tue, Jan 27, 2009 at 02:37:22PM CET, Tolga said: > > > Jorey Bump yazmış: >> Tolga wrote, at 01/27/2009 08:19 AM: >> >>> Heiko Wundram yazmış: >>> I filter on the header List-Post: which catches everything (AFAICT) that comes i

Re: how to filter

2009-01-27 Thread Erwan David
Le Tue 27/01/2009, Chris Babcock disait > On Tue, 27 Jan 2009 14:48:43 +0100 > Erwan David wrote: > > > On Tue, Jan 27, 2009 at 02:37:22PM CET, Tolga said: > > >>> or by the From: line > > >>> > > >>> Regards, > > >>>

Re: filtering mail

2009-02-11 Thread Erwan David
On Wed, Feb 11, 2009 at 03:21:39PM CET, Ilo Lorusso said: > Hi > > > is their a way I can reject messages when its from address does not > match the envelope from address? > > using postfix ofcourse Bad idea. I'm just answering anemail with header from Ito Lorusso and envelop from owner-postfi

Re: Accepting messages only for valid users in a secondary MX server

2009-02-23 Thread Erwan David
On Mon, Feb 23, 2009 at 05:01:09PM CET, Santiago Romero said: > > Hi. > > I have a secondary MX server with qmail that I'm migrating to postfix. > Currently, my qmail server checks RCPT TO addresses against a plain text > file that contains all the valid email accounts for some of the domains

Re: address rewriting with pcre?

2009-03-17 Thread Erwan David
On Tue, Mar 17, 2009 at 12:01:13PM CET, Charles Marcus said: > On 3/17/2009 6:47 AM, LuKreme wrote: > > I rewrite foo_...@example.com to foo+...@example.com > > > > virtaul.pcre: > > /^(.*)_(.*)@example.com$/${1}+$...@example.com > > > > virtual_alias_maps = > > hash:$config_directory/v

Re: address rewriting with pcre?

2009-03-17 Thread Erwan David
On Tue, Mar 17, 2009 at 02:39:08PM CET, Charles Marcus said: > On 3/17/2009, LuKreme (krem...@kreme.com) wrote: > > On 17-Mar-2009, at 07:30, Charles Marcus wrote: > >> So, is there no way to rewrite the recipient and *then* validate it? > > > Sure, but not until after you've accepted the messag

Re: address rewriting with pcre?

2009-03-17 Thread Erwan David
On Tue, Mar 17, 2009 at 03:52:27PM CET, Victor Duchovni said: > On Tue, Mar 17, 2009 at 10:01:53AM -0400, Charles Marcus wrote: > > > On 3/17/2009 9:43 AM, Erwan David wrote: > > > You may generate the pcre file with a line > > > /recipient_([...@_]+)@localdomain/

Re: milter protocol

2009-03-23 Thread Erwan David
On Mon, Mar 23, 2009 at 01:12:53PM CET, Danilo Paffi Monteiro said: > Hello, > > This question is stupid, I Think. > > I'm trying to understand how milter works, to implement some filters > (develop a milter program) > > I haven't found a good documentation about the protocol, actually the > o

Re: recipient MX based routing.

2009-04-23 Thread Erwan David
Le Thu 23/04/2009, Marc Jauvin disait > Victor Duchovni wrote: > >> On Thu, Apr 23, 2009 at 03:15:48PM -0400, Marc Jauvin wrote: >> >>> Note: using iptables to reroute traffic for Godaddy's IP address does work, >>> but it's unlikely to work reliably if they change those IP addresses (or >>> add n

Re: LDAP based auto reply in virtual hosting environment

2010-02-02 Thread Erwan David
On Wed, Feb 03, 2010 at 06:50:16AM CET, Jorge Armando Medina said: > ml ml wrote: > > Hello List, > > > > i would like to have a ldap based auto reply feature in a virtual > > hosting environment. I had a look at gnarwl, but it was removed from > > Debian lenny due to some security issues: > >

Re: host suddenly not found ...

2010-02-25 Thread Erwan David
On Thu, Feb 25, 2010 at 09:21:05AM CET, Patrick Ben Koetter said: > * Frank Bonnet : > > Hello > > > > I get this error since few hours : > > > > (Host or domain name not found. Name service error for > > name=bart.esiee.fr type=A: Host not found, try again) > > > > the machine bart.esiee.fr h

Re: How to reject bad hosts

2010-08-09 Thread Erwan David
On Mon, Aug 09, 2010 at 04:29:21PM CEST, Nicolas Michel said: > Hello, > > I want to know if there is a way to reject connections from host not > listed in the MX records of the domain it claims to be. > > For example : a host with IP WWW.XXX.YYY.ZZZ try so send a mail to my > domain (we'll cal

Re: Postfix User unknown in virtual mailbox table

2010-08-11 Thread Erwan David
Aravind Divakaran wrote: > On Wed, 11 Aug 2010 22:48:50 -0700, Walter Pinto > wrote: >> I'm having a hard time understanding your setup. From what I can >> gather, you're MX records point to google, incoming mail is then >> fetched from google to your local server where you have added matching >>

Re: /usr/lib/postfix/smtp: bad command startup -- throttling

2010-08-13 Thread Erwan David
On Fri, Aug 13, 2010 at 04:29:15PM CEST, J4 said: > On 08/13/2010 04:24 PM, Ralf Hildebrandt wrote: > > * J4 : > > > > > >> Aug 13 16:20:07 pp24-app046 postfix/cleanup[6184]: warning: database > >> /etc/postfix/virtual.db is older than source file /etc/postfix/virtual > >> Aug 13 16:20:07 pp24-

Re: How common is reverse DNS checking?

2010-08-20 Thread Erwan David
On Fri, Aug 20, 2010 at 10:39:48AM CEST, Stan Hoeppner said: > Robert Fournerat put forth on 8/19/2010 4:46 PM: > > Quoting Noel Jones : > > > >> Same here. reject_unknown_client_hostname is too strict, but > >> reject_unknown_reverse_client_hostname rejects lots of obvious spambots > >> withou

Re: How common is reverse DNS checking?

2010-08-20 Thread Erwan David
On Fri, Aug 20, 2010 at 11:42:02AM CEST, Stan Hoeppner said: > Erwan David put forth on 8/20/2010 4:23 AM: > > On Fri, Aug 20, 2010 at 10:39:48AM CEST, Stan Hoeppner > > said: > >> Robert Fournerat put forth on 8/19/2010 4:46 PM: > >>> Quoting

Re: Postfix SMTP server

2010-09-29 Thread Erwan David
Le Wed 29/09/2010, mouss disait > Le 28/09/2010 23:44, motty.cruz a écrit : > >Hello, > >When a client has a typo in the recipient email address it takes 5 days for > >my SMTP server to notify that the user does not exist or was unable to > >deliver email. > > No. you are wrong. when you mistype

Re: postfix in an IPv6 network

2010-10-25 Thread Erwan David
On Mon, Oct 25, 2010 at 01:40:46PM CEST, lst_ho...@kwsoft.de said: > > The address 2002:::1::21 is not within 2002::::/64 as > far as i can tell. You should use 2002:::1::/64 instead in > mynetworks. The :: means all zero if memory serves me right. I use [2a01:240:fe0f::

Re: Empty From when generating bounce

2010-12-07 Thread Erwan David
On Tue, Dec 07, 2010 at 08:39:24AM CET, Trigve Siver said: > Hi, > I'm having some problem with bounces. When someone send mail to my mail > server > and sender is not existent, postfix generate bounce. Bounce has empty > envelope > "From" set (from=<>) . I'm using relayhost and when sending b

Re: matching IP ranges in headers

2009-06-26 Thread Erwan David
Le Sat 27/06/2009, mouss disait > > but then again, we come back to "what would be generic control grammar?" > which is not a simple problem. > I think this would lead to embedding a full scripting language, like some applications embed lua... Not sure it woud be a good thing. -- Erwan

Re: Bounce / NDR messages - how to stop them

2009-06-29 Thread Erwan David
Le Mon 29/06/2009, EASY steve.h...@digitalcertainty.co.uk disait > On Mon, 2009-06-29 at 14:56 -0400, Charles Marcus wrote: > > On 6/29/2009 2:41 PM, Steve wrote: > > >>> You are, of course, correct. It would be totally retarded to be able to > > >>> switch of bounce/ndr messages. > > > > >> Yes,

Re: Looking for opinions on FreeBSD OS for Postfix

2009-08-18 Thread Erwan David
Mikael Bak wrote: > Stefan Förster wrote: >> >> The documentation at http://www.postfix.org/INSTALL.html#4 mentions >> that earlier versions of Postfix were supported on FreeBSD 2.x to 5.x. >> >> I think it's very likely that you can run recent Postfix versions on >> newer FreeBSD releases, too. >>

Re: how to pipe the received emails to my java function

2009-09-16 Thread Erwan David
On Wed, Sep 16, 2009 at 09:10:01AM CEST, "Arora, Sumit" said: > Hi All, > > I need to execute my code when I receive email on my postfix smtp server. > > Can anybody tell me what I can do if I want to execute my java function when > I receive email. > Also I need my whole email content in my j

Re: Postfix and clamav-milter stopped working after update to clamav-0.95.3

2009-10-30 Thread Erwan David
For me restarting clamav-milter did the trick. Check your milter setting, the permissions on the socket must be changed by the starting script for use with postfix. The port does this well provided it is configured to do so. -- Erwan David

Re: Postfix and clamav-milter stopped working after update to clamav-0.95.3

2009-10-30 Thread Erwan David
Jerry wrote: > On Fri, 30 Oct 2009 16:26:10 +0100 > Erwan David replied: > >> Jerry a écrit : >>> System: FreeBSD-7.2 >>> >>> I just updated to clamav-0.95.3 on my system. I then realized that >>> clamav-milter and Postfix were no lon

Re: About "DomainPOP"

2009-11-07 Thread Erwan David
Le Sat 7/11/2009, Alejandro Esteban Galvez disait > Hi! > I am changing the Operating System from Windows to Linux, and I have the next > question. In windows, in the MDaemon mail server, I have the DomainPOP > option, that it function permit me connect to another mail server, and > download th

Re: Mailbox limit not observed

2011-03-12 Thread Erwan David
Le Sat 12/03/2011, Vincent Lefevre disait > This is a bit old, but... > > On 2011-02-17 07:47:29 -0600, Noel Jones wrote: > > On 2/17/2011 7:32 AM, Nikolaos Milas wrote: > > >Thanks Witsie, > > > > > >Could the use of an IMAP client program (workstation-based or > > >web-based, like Squirrelmail)

Re: The future of SMTP ?

2011-03-13 Thread Erwan David
Le Sun 13/03/2011, Steve disait > > > > > > > Am 13.03.2011 12:38, schrieb Steve: > > > And today it is not big deal to cut down spam to less then 1% of the > > inbound. > > > > but not only with postfix > > > No. Not only with postfix alone. But most of us are not only using postfix in > the

Re: SMTP AUTH

2011-05-04 Thread Erwan David
Le Thu 5/05/2011, punit jain disait > > Wouldn't it be better to leave permit_mynetworks in place and restrict > > > $mynetworks to 127.0.0.0/8 instead? > > > > maybe, but the OP imho want to smtp auth ALL emails > > > > > All *outgoing emails only, from *all users irrespective of whether they > s

Re: limiting postfix to send mail to one domain

2011-07-15 Thread Erwan David
On 15/07/11 22:25, James D. Parra wrote: > Hello, > > I want to restrict postfix to only send mail to our domain, yet to no others. > In other words, I want to set it up to not send mail to any outside address > and only to accounts within our domain (anyuser@our_domain_only.com). This is > a t

Re: what happens with this letter

2011-10-11 Thread Erwan David
On Wed, Oct 12, 2011 at 08:49:16AM CEST, Vladimir Vassiliev said: > But first line says: > host imx1.rambler.ru[81.19.66.234] said: 452 4.7.1 Try again later (in reply > to DATA command) > > How this connects with > relay=imx1.rambler.ru[81.19.66.235]:25, delay=0.38, > delays=0.06/0/0.14/0.18,

Re: How to reject mail on secondary MX?

2011-12-02 Thread Erwan David
Le Fri 2/12/2011, Ken D'Ambrosio disait > Hey, all. I've got a primary -- my actual destination/IMAP server -- and, for > various reasons, a secondary SMTP server. My primary only rejects mail to > invalid recipients (spam is dealt with internally). I'd like my secondary to > reject invalid rec

Re: Possibility to store all incoming mail

2011-12-15 Thread Erwan David
On Thu, Dec 15, 2011 at 04:30:34PM CET, Michael Weissenbacher said: > Hi Postfix Gurus! > Is there a possibility to store all incoming mail in a central folder at > postfix level. I am trying to find a nasty bug in one of our backend > systems which corrupts mail data before they arrive in the us

Re: reply-to header in this list

2012-01-04 Thread Erwan David
On Wed, Jan 04, 2012 at 12:37:53PM CET, Tomas Macek said: > Hi list, is there any reason why the Reply-to: header is not set to > postfix-users in this list? When I press Reply button, I'm replying > to From: address, when pressing 'Reply to all', I'm replying to both > the list and the sender per

Re: ..::mailbox listing issue::..

2012-05-06 Thread Erwan David
On Mon, May 07, 2012 at 12:26:27AM CEST, Alfonso Reyes said: > But it handles the mail boxes and deliver to them, thats why I was confused. > As > far as I know dovecot only read the information con them. > > But it's ok I will contact the dovecot mailing list, sorry for the email. It depend

Re: special characters in mail address

2012-07-03 Thread Erwan David
Le Tue 3/07/2012, Dentzer, Daniel disait > The server is running for years now, the only thing is that with an > exclamation mark in the local part of the mail address the email is not > forwarded, hundreds of user mail addresses work. > > I think the configuration is (mostly) correct and worki

Re: Unauthenticated user and domain restriction

2012-08-05 Thread Erwan David
On 05/08/12 19:51, Adam NEVERT wrote: > Hello, > > I need to have a unical user who can send emails without > authentication and only on my domain how can I achieve that ? > How can you tell wether it is this user or not if it is not authenticated ?

Re: The ultimate email server

2012-10-21 Thread Erwan David
On 21/10/12 16:29, Mark Goodge wrote: > On 21/10/2012 15:21, Mike's unattended mail wrote: >> On 2012-10-21, Mark Goodge wrote: >> >>> And, even if it isn't spam, it is a near-100% indicator of >>> incompetance on the part of the sending system's administrator. >> >> How do you think a competent s

Re: Postfix with Active directory

2012-11-27 Thread Erwan David
On Tue, Nov 27, 2012 at 09:03:56AM CET, Muhammad Yousuf Khan said: > Newbie Alert! :) > > i am using Postfix with maildir and i want my mailboxes to be > integrated with my active directly windows 2003 server. > i don't want to recreate all the "accounts" and "home directories" in > Linux which

Re: Postfix with Active directory

2012-11-27 Thread Erwan David
On Tue, Nov 27, 2012 at 10:22:48AM CET, Muhammad Yousuf Khan said: > On Tue, Nov 27, 2012 at 1:17 PM, Erwan David wrote: > > On Tue, Nov 27, 2012 at 09:03:56AM CET, Muhammad Yousuf Khan > > said: > >> Newbie Alert! :) > >> > >> i am using Postfix

Re: SASL authentication fails

2013-01-14 Thread Erwan David
Le 15/01/2013 05:53, Muzaffer Tolga Ozses a écrit : myPhone'dan gönderdim 14 Oca 2013 tarihinde 22:37 saatinde, Brian Evans mailto:grkni...@scent-team.com>> şunları yazdı: On 1/14/2013 3:02 PM, Muzaffer wrote: Hi, I'm trying to get postfix/dovecot working on a Webmin enabled server and

Re: Recommendations for antivirus

2013-01-16 Thread Erwan David
Le 16/01/2013 23:17, Terry Gilsenan a écrit : -Original Message- From: owner-postfix-us...@postfix.org [mailto:owner-postfix- us...@postfix.org] On Behalf Of TFML Sent: Thursday, 17 January 2013 7:55 AM To: Postfix users Subject: Recommendations for antivirus I'm running a server on aver

Re: fatal: no SASL authentication mechanisms

2013-01-27 Thread Erwan David
Le 27/01/2013 16:14, FigureoTV SFM a écrit : Hello. I'm a postfix newbie and experiencing a lot of problems trying to get to run smoothly as it was on my previous server. I don't know what's causing these errors: Jan 27 15:07:40 hawk084 postfix/smtpd[13897]: connect from unknown[190.80.213.58]

Re: Accept and store locally any mail received

2013-03-04 Thread Erwan David
Le 04/03/2013 20:35, Noel Jones a écrit : On 3/4/2013 1:02 PM, Nicolas KOWALSKI wrote: Hello, For a lab test, with several computers sending mail to any domain, I would like to setup a postfix server accepting and storing locally to only one account any mail received. It would be a sort of blac

Re: quiet or broken

2013-03-12 Thread Erwan David
On Tue, Mar 12, 2013 at 01:33:43AM CET, Viktor Dukhovni said: > On Mon, Mar 11, 2013 at 08:28:11PM -0400, Wietse Venema wrote: > > > Either it has become very quiet here, or something has broken. > > Nah, it's just that the 2.10.0 release is perfect and nobody has > any questions anymore. :-)

Re: monitoring with Icinga?

2013-06-02 Thread Erwan David
Le 02/06/2013 18:12, Wietse Venema a écrit : Lars Nielsen: s?n, 02 06 2013 kl. 12:14 -0300, skrev Mike: On 13-06-02 11:52 AM, Lars Nielsen wrote: Hey List, What is the most common solution to monitoring your postfix mailservers? I use Icinga and Munin. Is there a good integration to these?

Re: question about postfix queue scheduler

2013-06-04 Thread Erwan David
On Tue, Jun 04, 2013 at 01:44:46PM CEST, Tom Hendrikx said: > On 06/04/2013 01:22 PM, Antonio Gutiérrez Mayoral wrote: > > Hi Wietse, > > > > Yes, its a solution, but these emails should be delivered in > > bussines-time :-( > > (it doesnt matter if it takes 2 hours... but in bussiness time...) >

Re: 'reject_non_fqdn_helo_hostname' not working?!

2013-06-07 Thread Erwan David
Le 07/06/2013 15:11, Mark Goodge a écrit : On 07/06/2013 14:06, Nikolas Kallis wrote: Hello, I just got an unsolicited e-mail from the domain 'bbbmail.com', which is hosted at '46.235.78.1'. '46.235.78.1' does not resolve to a host name, therefore 'bbbmail.com' is not a FQDN. 'bbbmail.com'

Re: Mail server, what else?

2013-07-12 Thread Erwan David
Le 12/07/2013 21:08, J Gao a écrit : > Forgot to mention that I also use SASL to authenticated user: > SMTP on port 587 only (STARSSL) > IMAP on port 993 (SSL) > POP3 on port 995 (SSL) > > So for email, port 25, 587, 993,995 is opened on firewall. > > STARTTLS also exists in IMAP or POP3 (where it

Re: Monitoring

2013-07-17 Thread Erwan David
On Wed, Jul 17, 2013 at 02:14:39PM CEST, Roman Gelfand said: > Is there open source web based postfix server monitoring software? > > I am looking to see if there is something to monitor queue size, etc... > > Thanks in advance > munin has some postifx monitoring plugins (among them the queue

Re: greylisting generates error email?

2013-08-20 Thread Erwan David
On Tue, Aug 20, 2013 at 05:58:44AM CEST, LuKreme said: . > > > > zen blocks these categories: > > SBL Direct UBE sources, spam operations & spam services > CSS Direct snowshoe spam sources detected via automation > CBL (3rd party exploits such as proxies, trojans,

Re: Piping to external perl then back.

2013-09-01 Thread Erwan David
Le 01/09/2013 21:55, Bruce Markey a écrit : > Viktor > > Thank you. I'm glad I asked before I spent any more time trying to > make this work. > > I'll look at modifying the actual script for now. > > Viktor Dukhovni wrote: > > On Sun, Sep 01, 2013 at 03:02:36PM -0400, Bruce Markey wrote: > >

Re: Google rejecting IPv6 mails

2013-10-07 Thread Erwan David
Le 07/10/2013 18:58, Wietse Venema a écrit : > Andreas Herrmann: >> On 10/07/13 16:25, Wietse Venema wrote: >>> And here is the corrected example in one place. BTW it seems the >>> real fix is to set up one PTR record, with a matching record. >> I have a correct PTR and also got the error: >>

Re: Google rejecting IPv6 mails

2013-10-07 Thread Erwan David
Le 07/10/2013 19:38, li...@rhsoft.net a écrit : > > Am 07.10.2013 19:15, schrieb Erwan David: >> No Google is really rejecting emails in IPv6 because of a lack of PTR... > as virtually everbody else does for IPv4 > why should someone handle IPv6 different? > > if you ha

Re: Google rejecting IPv6 mails

2013-10-07 Thread Erwan David
Le 07/10/2013 20:24, li...@rhsoft.net a écrit : > > Am 07.10.2013 19:42, schrieb Erwan David: >> Le 07/10/2013 19:38, li...@rhsoft.net a écrit : >>> Am 07.10.2013 19:15, schrieb Erwan David: >>>> No Google is really rejecting emails in IPv6 because of a lack of

Re: Google rejecting IPv6 mails

2013-10-07 Thread Erwan David
Le 07/10/2013 20:37, li...@rhsoft.net a écrit : > Am 07.10.2013 20:30, schrieb Erwan David: >> Le 07/10/2013 20:24, li...@rhsoft.net a écrit : >>> Am 07.10.2013 19:42, schrieb Erwan David: >>>> That's a matter of policy, if you cannot afford to loose legitimate &

Re: How not to turn off chroot (on debian or anywhere else)

2013-11-12 Thread Erwan David
Le 12/11/2013 19:19, Simon Loewenthal a écrit : > Please! You are mixing up different email threads. > > The error message is and running without chroot. > > > Nov 12 13:37:08 lt postfix/smtpd[30776]: warning: connect to Milter > service unix:/var/spool/postfix/spamass/spamass.sock: No such file

Re: Very strange problem : "lost connection after UNKNOWN"

2013-12-16 Thread Erwan David
Le 16/12/2013 22:05, (lists) Denis BUCHER a écrit : > Dear all, > > I have a very strange problem with our postfix server. It has been > working for years without problem, but suddenly we started to have > errors with SMTP connexions from outside. > > On the client side (we tested with Thunderbird

Re: postfix tries to send mail to domains with no mx record

2014-02-11 Thread Erwan David
On Tue, Feb 11, 2014 at 09:48:29AM CET, "Klaffehn, Peter" said: > > Now the strange thing. There is no mx record for apple.de: > > > > root@mx-50:~# host -t mx apple.de > > apple.de has no MX record > > > > So how could postfix determine the mxer for this Domain? Apparently postfix > us

Re: TLS client logging PATCH

2014-02-25 Thread Erwan David
On Wed, Feb 26, 2014 at 12:46:13AM CET, DTNX Postmaster said: > On 26 Feb 2014, at 00:29, li...@rhsoft.net wrote: > > > Am 25.02.2014 17:41, schrieb Dirk Stöcker: > >> On Tue, 25 Feb 2014, Viktor Dukhovni wrote: > smtp_dns_support_level = dnssec > > was enough to fix this. I'll s

Re: Reverse DNS Lookup

2014-04-22 Thread Erwan David
Le 22/04/2014 18:29, Tim Smith a écrit : > Just trying to get my head round the error and understand what is > actually happening. > > So to summarize, the delivery.mailspampropection.com domain has 81 A > records which, when queried won't fit into a UDP packet which explains > why Postfix correctl

Re: Reverse DNS Lookup

2014-04-22 Thread Erwan David
Le 22/04/2014 18:55, Scott Kitterman a écrit : > On Tuesday, April 22, 2014 18:36:08 Erwan David wrote: >> Le 22/04/2014 18:29, Tim Smith a écrit : >>> Just trying to get my head round the error and understand what is >>> actually happening. &

Re: How to configure to let one specific sender to bypass the relay host in /etc/postfix/main.cf?

2014-04-22 Thread Erwan David
Le 22/04/2014 19:28, Xie, Wei a écrit : > > Need help!!! > > > > We are using Postfix-2.6.6 running on RHEL 6.4. > > > > We define all outgoing emails are relayed to Windows Antispam System – > FOPE for scanning in file /etc/postfix/main.cf. > > > > relayhost = mail.us.messaging.microsoft.com

Re: How to configure to let one specific sender to bypass the relay host in /etc/postfix/main.cf?

2014-04-22 Thread Erwan David
Le 22/04/2014 20:37, Xie, Wei a écrit : >>> You might want to use sender_dependent_relayhost_maps, to set an empty >>> relayhost for this sender My >>doc says it appeared in 2.3, so it should be >>> Ok in 2.6.6 > The warning is returned when I run the following command: > > # postmap /etc/postfix

Re: limited port 587

2014-05-26 Thread Erwan David
On Tue, May 27, 2014 at 07:59:04AM CEST, Tom Kinghorn said: > Morning list. > > Is it possible to limit port 587 access to users who are known to be > traveling outside your network (foreign countries)? > > We have a user who cannot access port 25 and as such I am looking at the > submission po

Re: impact of new gTLDs

2014-06-16 Thread Erwan David
Le 16/06/2014 04:02, Viktor Dukhovni a écrit : > On Mon, Jun 16, 2014 at 10:29:03AM +0900, Akihiro Koike wrote: > >> We are a registry operator of new generic top-level domain(gTLD). >> Therefore we are interested in the impact of new gTLDs. >> I'd like your thoughts on what kind of impact the appe

Re: Multiple relay?

2014-08-21 Thread Erwan David
On Thu, Aug 21, 2014 at 12:37:33PM CEST, Joe Acquisto-j4 said: > New to list, been using postfix for a little while. > > I would like to point a postfix install to two outbound relay's (all outbound > mail to go thru them) so that, should one be unavailable, it will attempt to > send via the o

Re: Multiple relay?

2014-08-21 Thread Erwan David
On Thu, Aug 21, 2014 at 01:05:51PM CEST, Erwan David said: > On Thu, Aug 21, 2014 at 12:37:33PM CEST, Joe Acquisto-j4 > said: > > New to list, been using postfix for a little while. > > > > I would like to point a postfix install to two outbound relay's (all >

Re: bounces to reply-to or return-path?

2008-08-24 Thread Erwan David
On Mon, Aug 25, 2008 at 08:54:40AM CEST, Magnus Bäck <[EMAIL PROTECTED]> said: > On Mon, August 25, 2008 8:32 am, Stefan Palme said: > > > this is a question not exactly postfix related: When a mail server > > is about to send a bounce message to the original sender of an > > undeliverable mail -

Re: Triple retry?

2008-08-26 Thread Erwan David
On Wed, Aug 27, 2008 at 08:04:27AM CEST, Ralf Hildebrandt <[EMAIL PROTECTED]> said: > A mail was greylisted. No big deal, let's flush the queue and grep the > log: > > # postfix flush && tail -f /var/log/mail.log|grep timmer > > Aug 27 08:00:09 mail-ausfall postfix/smtp[3983]: 3D7143DB09: host

Re: Triple retry?

2008-08-26 Thread Erwan David
On Wed, Aug 27, 2008 at 08:11:16AM CEST, Erwan David <[EMAIL PROTECTED]> said: > > Maybe because postfix tries 3 different MXs when it receives the 4xx > errors ? Sorry, I was trapped by the long lines in editors, I wanted to put the emphasis on the different IP addresses (81.88.4

Re: checking integrity

2008-09-18 Thread Erwan David
On Thu, Sep 18, 2008 at 11:26:52AM CEST, Milos Prudek <[EMAIL PROTECTED]> said: > Dne Wednesday 17 of September 2008 22:56:00 Brian Evans - Postfix List > napsal(a): > > No relay_recipient_maps? You could be a Backscatter source and may end > > up on blacklists. > > Is relay_recipient_maps a list

Re: Virtual domain uncertainty...

2008-10-07 Thread Erwan David
Le Tue 7/10/2008, Charles Marcus disait > On 10/7/2008 3:09 PM, mouss wrote: > >> but, example.com (the domain, not the hostname) is also listed in > >> virtual_mailbox_domains via the mysql lookup... > >> > >> Is this OK/normal? I'm thinking yes, because: > > > yes, it's ok. > > Ok, good... :)

Re: RBL & Postfix

2008-12-15 Thread Erwan David
On Mon, Dec 15, 2008 at 11:11:07AM CET, lst_ho...@kwsoft.de said: > Zitat von neugi : > >> Hi, >> >> thx, sasl is already active. > > In this case you have the wrong order of restrictions. The > "permit_sasl_authenticated" must be before any RBL and other spam tests. > Most of the time it is bes

Re: Has rfc2487 been obsoleted and mandatory TLS in smtpd is now kosher?

2021-07-29 Thread Erwan David
Le 29/07/2021 à 18:46, Dominic Raferd a écrit : > Some commercial vulnerability scan services (e.g. by Qualys, > SecurityMetrics) which are required by payment providers regard > TLSv1/TLSv1.1 as absolute fails for PCI DSS compliance and > organisations that must meet PCI DSS > (https://www.pcisecu

Re: Announcement: LetsDNS release 1.0 is now available

2022-04-12 Thread Erwan David
Le 12/04/2022 à 15:30, Ralph Seichter a écrit : I'm happy to announce that LetsDNS release 1.0 is now available and ready for public use. Website: https://letsdns.org GitHub : https://github.com/LetsDNS/letsdns PyPI : https://pypi.org/project/letsdns/ LetsDNS is a utility to manage D

Re: Announcement: LetsDNS release 1.0 is now available

2022-04-12 Thread Erwan David
Le 12/04/2022 à 18:52, Ralph Seichter a écrit : * Erwan David: Does it handle restarting/reloading a program when changing the certificate ? Postfix does not need it, but dovecot does. LetsDNS does not obtain or change TLS certificates, because that's what specialised ACME clients

Re: DMARC in postfix ?

2022-04-13 Thread Erwan David
Le 14/04/2022 à 07:58, Aban Dokht a écrit : P V Anthony wrote: Rspamd is really powerful and fast. Give it a go. You will be very pleased. P.V.Anthony I also prefer rspamd over other solutions, because it implemets DMARC out of the box. Also other features, like ARC, HA ready and the nice

Re: how to deal with t-online's blocking

2022-11-30 Thread Erwan David
Those are obligations for web sites. But what about a mail sending domain without web site ?

Re: Unable to send mail via office365

2020-04-08 Thread Erwan David
Le 08/04/2020 à 12:42, Gerard E. Seibert a écrit : > postfix 3.6-20200316 > FreeBSD 11.3 p7 > OpenSSL 1.1.1f > > For several years, I was able to sent mail via Outlook. Suddenly, as of > yesterday, it fails. > > This is the log output from one attempt from postfix: > > Apr 8 05:33:46 scorpio p

Re: Relay access by IP

2020-10-26 Thread Erwan David
Le 26/10/2020 à 11:11, Matteo Cazzador a écrit : I i've a problem, i have a list of IP in mynetworks file I notice that postfix treats the ip address differently in the following two cases 010.001.001.011 from 10.1.1.11 In mynetworks i have 010.001.001.011 and when external server connect

Re: empty message-ID

2020-11-23 Thread Erwan David
Le 23/11/2020 à 20:16, @lbutlr a écrit : > On 23 Nov 2020, at 06:49, maciejm wrote: >> "RFC 822 Message-ID is not required" > RFC 822 has been obsoleted several times. > > RFC 5322 states: > >Though listed as optional in the table in section 3.6, every message >SHOULD have a "Message-ID:"

Re: can't send to GSuite mailserver via IPv6 protocol

2021-03-01 Thread Erwan David
Le 01/03/2021 à 07:01, Philip a écrit : > > If IPv4 works then maybe IPv6 isn't set up? > > ping6 ipv6.google.com > > On 01/03/2021 18:24, Thomas wrote: > >> Postfix can't send email to gsuite's MTA via IPV6 interface. >> But if I change this item to: >> >> inet_protocols = ipv4 >> >> >> It works.

Re: Specific DNS server

2021-04-22 Thread Erwan David
Le 22/04/2021 à 21:14, Sonic a écrit : You could run Postfix in a container (LXC) on the host. It would have it's own IP and it's own resolv.conf. Would'nt the chroot feature built in postfix sufficient for this ?

Re: postfix docs re "SPF Support"?

2016-04-07 Thread Erwan David
Le 06/04/2016 19:24, jaso...@mail-central.com a écrit : > > On Wed, Apr 6, 2016, at 10:20 AM, Noel Jones wrote: >> A third-party policy daemon or milter is required for SPF. Postfix >> ships with support for these external third-party programs. >> >> Postfix does not include nor officially recomme

Re: Having Postfix relay and deliver locally for one domain?

2016-04-07 Thread Erwan David
Le 07/04/2016 20:19, Juerg Reimann a écrit : > Sorry if this has been asked a 1000 times (but I couldn't find a hint). I > need to relay the majority of users of one domain to another postfix host, > except two users. How would I accomplish this? > > Like: us...@example.com and us...@example.com lo

Re: Redirecting to devnull from master.cf

2016-07-09 Thread Erwan David
Le 09/07/2016 à 16:18, Lefteris Tsintjelis a écrit : > Is there a way to redirect to dev null (without using local aliases) > by using master.cf and a shell script maybe? > > http://www.postfix.org/FILTER_README.html#simple_filter > > Would something as simple as this work? > > !/bin/sh > > cat >/d

Re: Redirecting to devnull from master.cf

2016-07-09 Thread Erwan David
Le 09/07/2016 à 16:25, Erwan David a écrit : > Le 09/07/2016 à 16:18, Lefteris Tsintjelis a écrit : >> Is there a way to redirect to dev null (without using local aliases) >> by using master.cf and a shell script maybe? >> >> http://www.postfix.org/FILTER_README.htm

Re: Postscreen white listing based on MX, SPF

2016-07-16 Thread Erwan David
Le 16/07/2016 à 11:11, Lefteris Tsintjelis a écrit : > On 16/07/2016 11:35, Jim Reid wrote: >> That wouldn’t have worked anyway. >> >> Assuming a reverse lookup of an IP address returns a name -- a big if >> -- there’s no guarantee that name has any relation to whatever domain >> name is in the MAI

Re: How to restrict encrypted email

2016-07-16 Thread Erwan David
Le 16/07/2016 à 16:39, Phil Stracchino a écrit : > On 07/16/16 10:32, Albrecht Dreß wrote: >> Am 16.07.16 15:59 schrieb(en) Michael Fox: >>> So, are there other obvious ways to recognize encrypted contents, other than >>> "Content-Type: multipart/encrypted"? >> Basically, you need to check for >> -

Re: How to restrict encrypted email

2016-07-16 Thread Erwan David
Le 16/07/2016 à 16:49, Jan Ceuleers a écrit : > On 16/07/16 15:59, Michael Fox wrote: >> So, are there other obvious ways to recognize encrypted contents, other than >> "Content-Type: multipart/encrypted"? > Theoretical (and therefore possibly entirely impractical) answer: > > Encrypted data contai

Re: How to restrict encrypted email

2016-07-16 Thread Erwan David
Le 16/07/2016 à 19:04, Jan Ceuleers a écrit : > On 16/07/16 17:42, Yuval Levy wrote: >> Imposing the onus on the SMTP server operator is like imposing the onus >> on gas stations for fueling vehicles used in criminal endeavors. It >> does not fly because the gas station can't possibly know what th

Re: postscreen contantly deferring mail

2016-07-25 Thread Erwan David
Le 25/07/2016 à 11:25, Ralf Hildebrandt a écrit : > From my log: > > Jul 23 03:58:52 mail-cbf postfix/postscreen[36326]: NOQUEUE: reject: RCPT > from [106.10.151.33]:58305: 450 4.3.2 Service currently > unavailable; from=, > to=, proto=ESMTP, > helo= > Jul 23 03:58:53 mail-cbf postfix/postscreen

Re: FYI: Null MX back from the dead

2014-09-02 Thread Erwan David
Le 02/09/2014 18:51, Viktor Dukhovni a écrit : > On Tue, Sep 02, 2014 at 06:44:19PM +0200, Robert Schetterer wrote: > >> so this stays as valid mx record ? >> >> $ dig -t mx airbus.com >> airbus.com. IN MX 0 vip-smtp.airbus.gmessaging.net. > Yes, of course. > >> and this is what nullmx is done righ

Re: Cannot get Postfix to communicate with mysqld.sock

2014-11-03 Thread Erwan David
On Mon, Nov 03, 2014 at 04:09:03PM CET, "li...@rhsoft.net" said: > > Am 03.11.2014 um 16:04 schrieb Kurt Petersen: > >I've just installed Debian with Postfix and MySQL. Later I found out > >that I also needed the postfix-mysql package. > > > >I now get an error that Postfix cannot connect to > >

Re: PCRE question

2014-11-13 Thread Erwan David
Le 13/11/2014 19:08, J. a écrit : > Why does this text match the pcre? As I read it, there must be a line > break after the underscores to match, but it's matching. Does . match > linebreaks?: > > Text: > "For Testing Only: __ xxx > > From: My Name > To: any one " > >

Re: detecting encryption for outgoing mail

2015-02-16 Thread Erwan David
Le 16/02/2015 14:09, Michael Ströder a écrit : > LuKreme wrote: >> I’d assume there would be something in the headers to indicate the message >> was encrypted. Probably some sort of milter running on your submission port >> would be able to check this? > I'd implement a milter or similar which look

  1   2   >