I On Sat, Mar 1, 2014 at 8:46 PM, Wietse Venema <wie...@porcupine.org> wrote:
> > > >>What is in this file? > > I've got delivery to the relay host working, and delivery to the local > mail destination; however it only works from the server's command line > Connections for mail coming outside of $mynetwork just seems to be dropped > (debug level 2 below) wanting the sender to startlls even though I've > commented out the smtpd_use_tls = yes out (postconf -n at the bottom), > added "smtpd_enforce_tls = no", and restarted postfix. Any thoughts? > > > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: connect from > mxout-032-pao.mailhop.org[216.146.32.32] > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: smtp_stream_setup: > maxtime=300 enable_deadline=0 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: match_hostname: > mxout-032-pao.mailhop.org ~? 127.0.0.0/8 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: match_hostaddr: > 216.146.32.32 ~? 127.0.0.0/8 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: match_hostname: > mxout-032-pao.mailhop.org ~? [::1]/128 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: match_hostaddr: > 216.146.32.32 ~? [::1]/128 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: match_hostname: > mxout-032-pao.mailhop.org ~? 192.168.1.0/24 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: match_hostaddr: > 216.146.32.32 ~? 192.168.1.0/24 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: match_list_match: > mxout-032-pao.mailhop.org: no match > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: match_list_match: > 216.146.32.32: no match > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: auto_clnt_open: > connected to private/anvil > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: send attr request = > connect > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: send attr ident = > submission:216.146.32.32 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: private/anvil: > wanted attribute: status > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: input attribute > name: status > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: input attribute > value: 0 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: private/anvil: > wanted attribute: count > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: input attribute > name: count > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: input attribute > value: 1 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: private/anvil: > wanted attribute: rate > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: input attribute > name: rate > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: input attribute > value: 1 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: private/anvil: > wanted attribute: (list terminator) > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: input attribute > name: (end) > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: > > mxout-032-pao.mailhop.org[216.146.32.32]: 220 pointyears.net ESMTP > Postfix (2.9.4) > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: watchdog_pat: > 0x7ff759f00800 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: < > mxout-032-pao.mailhop.org[216.146.32.32]: EHLO mail-11-pao.dyndns.com > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: match_list_match: > mxout-032-pao.mailhop.org: no match > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: match_list_match: > 216.146.32.32: no match > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: > > mxout-032-pao.mailhop.org[216.146.32.32]: 250-pointyears.net > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: > > mxout-032-pao.mailhop.org[216.146.32.32]: 250-PIPELINING > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: > > mxout-032-pao.mailhop.org[216.146.32.32]: 250-SIZE 20485760 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: > > mxout-032-pao.mailhop.org[216.146.32.32]: 250-VRFY > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: > > mxout-032-pao.mailhop.org[216.146.32.32]: 250-ETRN > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: > > mxout-032-pao.mailhop.org[216.146.32.32]: 250-STARTTLS > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: > > mxout-032-pao.mailhop.org[216.146.32.32]: 250-ENHANCEDSTATUSCODES > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: > > mxout-032-pao.mailhop.org[216.146.32.32]: 250-8BITMIME > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: > > mxout-032-pao.mailhop.org[216.146.32.32]: 250-DSN > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: > > mxout-032-pao.mailhop.org[216.146.32.32]: 250-BINARYMIME > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: > > mxout-032-pao.mailhop.org[216.146.32.32]: 250 CHUNKING > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: watchdog_pat: > 0x7ff759f00800 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: < > mxout-032-pao.mailhop.org[216.146.32.32]: MAIL FROM:<rze...@outlook.com> > SIZE=10263 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: > > mxout-032-pao.mailhop.org[216.146.32.32]: 530 5.7.0 Must issue a STARTTLS > command first > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: watchdog_pat: > 0x7ff759f00800 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: < > mxout-032-pao.mailhop.org[216.146.32.32]: RCPT TO:<rze...@pointyears.net> > ORCPT=rfc822;rze...@pointyears.net > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: > > mxout-032-pao.mailhop.org[216.146.32.32]: 530 5.7.0 Must issue a STARTTLS > command first > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: watchdog_pat: > 0x7ff759f00800 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: < > mxout-032-pao.mailhop.org[216.146.32.32]: DATA > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: > > mxout-032-pao.mailhop.org[216.146.32.32]: 530 5.7.0 Must issue a STARTTLS > command first > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: watchdog_pat: > 0x7ff759f00800 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: < > mxout-032-pao.mailhop.org[216.146.32.32]: RSET > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: > > mxout-032-pao.mailhop.org[216.146.32.32]: 530 5.7.0 Must issue a STARTTLS > command first > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: watchdog_pat: > 0x7ff759f00800 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: < > mxout-032-pao.mailhop.org[216.146.32.32]: QUIT > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: > > mxout-032-pao.mailhop.org[216.146.32.32]: 221 2.0.0 Bye > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: match_hostname: > mxout-032-pao.mailhop.org ~? 127.0.0.0/8 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: match_hostaddr: > 216.146.32.32 ~? 127.0.0.0/8 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: match_hostname: > mxout-032-pao.mailhop.org ~? [::1]/128 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: match_hostaddr: > 216.146.32.32 ~? [::1]/128 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: match_hostname: > mxout-032-pao.mailhop.org ~? 192.168.1.0/24 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: match_hostaddr: > 216.146.32.32 ~? 192.168.1.0/24 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: match_list_match: > mxout-032-pao.mailhop.org: no match > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: match_list_match: > 216.146.32.32: no match > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: send attr request = > disconnect > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: send attr ident = > submission:216.146.32.32 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: private/anvil: > wanted attribute: status > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: input attribute > name: status > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: input attribute > value: 0 > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: private/anvil: > wanted attribute: (list terminator) > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: input attribute > name: (end) > Mar 2 15:04:03 miniserv.private postfix/smtpd[35096]: disconnect from > mxout-032-pao.mailhop.org[216.146.32.32] > Mar 2 15:04:59 miniserv.private postfix/smtpd[35096]: connect from > localhost[::1] > Mar 2 15:05:15 miniserv.private postfix/smtpd[35096]: disconnect from > localhost[::1] > Mar 2 15:05:47 miniserv.private postfix/pickup[35008]: AB6ABAEB8F: > uid=501 from=<rzeman> > Mar 2 15:05:47 miniserv.private postfix/cleanup[35249]: AB6ABAEB8F: > message-id=<20140302200547.ab6abae...@pointyears.net> > > ********************* > $postconf -n -c /Library/Server/Mail/Config/postfix > biff = no > command_directory = /usr/sbin > config_directory = /Library/Server/Mail/Config/postfix > content_filter = smtp-amavis:[127.0.0.1]:10024 > > daemon_directory = /usr/libexec/postfix > data_directory = /Library/Server/Mail/Data/mta > debug_peer_level = 2 > debug_peer_list = mailhop.org > > debugger_command = PATH=/bin:/usr/bin:/usr/local/bin:/usr/X11R6/bin xxgdb > $daemon_directory/$process_name $process_id & sleep 5 > dovecot_destination_recipient_limit = 1 > enable_server_options = yes > header_checks = > > html_directory = /usr/share/doc/postfix/html > imap_submit_cred_file = /Library/Server/Mail/Config/postfix/submit.cred > inet_interfaces = all > inet_protocols = all > > local_transport = error:local mail delivery is disabled > mail_owner = _postfix > mailbox_size_limit = 0 > mailq_path = /usr/bin/mailq > manpage_directory = /usr/share/man > message_size_limit = 20485760 > mydestination = > mydomain = pointyears.net > mydomain_fallback = localhost > myhostname = pointyears.net > mynetworks = 127.0.0.0/8, [::1]/128 , 192.168.1.0/24 > > newaliases_path = /usr/bin/newaliases > queue_directory = /Library/Server/Mail/Data/spool > readme_directory = /usr/share/doc/postfix > recipient_canonical_maps = > hash:/Library/Server/Mail/Config/postfix/system_user_maps > recipient_delimiter = - > relayhost = smtp.comcast.net:587 > > sample_directory = /usr/share/doc/postfix/examples > sendmail_path = /usr/sbin/sendmail > setgid_group = _postdrop > smtp_sasl_auth_enable = yes > smtp_sasl_password_maps = > hash:/Library/Server/Mail/Config/postfix/sasl/passwd > smtp_sasl_security_options = > smtpd_banner = $myhostname ESMTP $mail_name ($mail_version) > > smtpd_client_restrictions = permit_mynetworks permit_sasl_authenticated > permit > smtpd_enforce_tls = no > smtpd_helo_required = no > smtpd_helo_restrictions = > smtpd_pw_server_security_options = cram-md5,digest-md5,login,plain > smtpd_recipient_restrictions = permit_sasl_authenticated permit_mynetworks > reject_unauth_destination > smtpd_sasl_auth_enable = yes > smtpd_tls_CAfile = > /etc/certificates/miniserv.private.4B51A5FA6E5667ACF67485DA6BA7BB562F685C80.chain.pem > smtpd_tls_cert_file = > /etc/certificates/miniserv.private.4B51A5FA6E5667ACF67485DA6BA7BB562F685C80.cert.pem > > smtpd_tls_ciphers = medium > smtpd_tls_exclude_ciphers = SSLv2, aNULL, ADH, eNULL > smtpd_tls_key_file = > /etc/certificates/miniserv.private.4B51A5FA6E5667ACF67485DA6BA7BB562F685C80.key.pem > smtpd_tls_loglevel = 2 > smtpd_tls_security_level = may > smtpd_use_pw_server = yes > tls_random_source = dev:/dev/urandom > transport_maps = hash:/Library/Server/Mail/Config/postfix/transport > > unknown_local_recipient_reject_code = 550 > use_sacl_cache = yes > virtual_alias_domains = $virtual_alias_maps > virtual_alias_maps = $virtual_maps >