Gerald Galster via Postfix-users:
> 3) SOCKS5 (uncommon)
> 
> This approach requires tools like socksify or proxychains which use LD_PRELOAD
> to intercept system calls to make apps SOCKS5 compatible. On the VPS side 
> you'd
> need a SOCKS5 server such as Dante or just use sshd's SOCKS5 proxy (ssh -D),
> which also encrypts the otherwise plaintext SOCKS5 traffic.

I was thinking of adding libsocks library calls for inbound or
outbound remote SMTP connections.  If I'm not mistaken, socksify
etc. want to intercept not only TCP but also DNS. Would that work
with DNSSEC?

> I don't know if LD_PRELOAD is inherited by child processes spawned by Postfix.

That is enabled with import_environment and export_environment
https://www.postfix.org/postconf.5.html#import_environment
https://www.postfix.org/postconf.5.html#export_environment

You can filter or override environment settings.

        Wietse
_______________________________________________
Postfix-users mailing list -- [email protected]
To unsubscribe send an email to [email protected]

Reply via email to