Am 09.03.2021 14:11, schrieb Jeremy Harris via Exim-users:
On 09/03/2021 10:25, Luca Bertoncello via Exim-users wrote:
2021-03-09 09:56:29 1lJYAH-0000lJ-75 <= lucab...@lucabert.de
U=Debian-exim P=local S=3031
2021-03-09 09:56:29 1lJYAH-0000lJ-75 => l.bertonce...@queo-group.com
R=ciphermail_ext_to_int_gw T=ciphermail_smtp H=127.0.0.1 [127.0.0.1]
I=[127.0.0.1] C="250 2.6.0 Message received"
This was a command-line/stdin sourced message. They go through the
not-smtp
ACLs, not the smtp ACLs. Where have you placed your virus-checking?
Hi Jeremy,
The virus-checking is in the data-ACL:
acl_check_data:
warn condition = ${if def:h_X-Ciphermail {false}{true}}
condition = ${if eq {$acl_m_dontAVscan}{} {yes}{no}}
set acl_m_klms_headers =
set acl_m_klms_result =
set acl_m_klms_answer =
${dlfunc{/opt/kaspersky/klms/lib64/libklms-exim.so}{scan}{${spool_directory}/input}}
deny senders = lucab...@lucabert.de
the last entry is just for test, to reject all E-Mails from me *AFTER*
the check by Kaspersky.
As soon as the E-Mail contains a password protected ZIP, Kaspersky seems
to create a new E-Mail...
Any idea?
Thanks
Luca Bertoncello
(lucab...@lucabert.de)
--
## List details at https://lists.exim.org/mailman/listinfo/exim-users
## Exim details at http://www.exim.org/
## Please use the Wiki with this list - http://wiki.exim.org/