On 10/9/21 7:01 PM, Matus UHLAR - fantomas wrote:
On 2021-10-09 at 11:39:48 UTC-0400 (Sat, 9 Oct 2021 17:39:48 +0200)
Thomas Seilund <t...@netmaster.dk>
is rumored to have said:
Mail server is Debian Buster running Postfix and SA 3.4.2.
On 09.10.21 12:54, Bill Cole wrote:
You should upgrade SA. The current release is 3.4.6 and it includes
significant performance, functionality, and security improvements.
You aren't in severe danger (the security issues have no reported
exploits in the wild) but upgrading would be prudent.
debian 11 includes SA 3.4.6. Meanwhile, there's 3.4.4 in buster-backports
(better than nothing)
Another partial solution with Postfix is to enable its postscreen
component with the greeting delay feature enabled, which bears a
slight resemblance to greylisting, but is safer because it only ever
rejects or defers senders who violate the SMTP protocol. This at
least assures that you will get a few seconds of delay, which can be
enough for the DNSBLs to catch up with the latest spammer.
I can only recommend using postscreen for non-client mail
Hi Matus
Thanks a lot.
I will look into your recommendations.
Regards
Thomas S