Here is the output of posfconf -nf
alias_database = hash:/etc/aliases
alias_maps = hash:/etc/aliases proxy:pgsql:/etc/postfix/pgsql-aliases.cf
append_dot_mydomain = no
biff = no
compatibility_level = 2
content_filter = amavis:[127.0.0.1]:10024
inet_interfaces = all
inet_protocols = all
local_recipient_maps = proxy:pgsql:/etc/postfix/pgsql-boxes.cf $alias_maps
mailbox_size_limit = 0
mailbox_transport = lmtp:unix:private/dovecot-lmtp
message_size_limit = 200000000
milter_default_action = accept
milter_protocol = 6
mydestination = $myhostname, sunlightmail.net, mail, localhost.localdomain,
localhost, encryptedmail.info, animaswoodcraft.com, animascreations.com,
appalachianmeats.com, mcmennonitechurch.org, thefabshop.net, postal22.com,
rollingpastures.net
myhostname = mail.sunlightmail.net
mynetworks = 127.0.0.0/8 [::ffff:127.0.0.0]/104 [::1]/128
myorigin = /etc/mailname
non_smtpd_milters = inet:localhost:12345
policy-spf_time_limit = 3600s
readme_directory = no
recipient_delimiter = +
relayhost =
sender_bcc_maps = hash:/etc/postfix/regexp_sender_bcc
smtp_destination_concurrency_failed_cohort_limit = 10
smtp_destination_concurrency_limit = 1
smtp_destination_rate_delay = 1s
smtp_tls_CApath = /etc/ssl/certs
smtp_tls_cert_file = /etc/letsencrypt/live/mail.sunlightmail.net/fullchain.pem
smtp_tls_key_file = /etc/letsencrypt/live/mail.sunlightmail.net/privkey.pem
smtp_tls_security_level = may
smtp_tls_session_cache_database = btree:${data_directory}/smtp_scache
smtp_use_tls = yes
smtpd_banner = $myhostname ESMTP $mail_name (Ubuntu)
smtpd_milters = inet:localhost:12345
smtpd_recipient_restrictions = permit_mynetworks, reject_invalid_hostname,
reject_non_fqdn_hostname, reject_non_fqdn_sender, reject_rbl_client
sbl.spamhaus.org, reject_unknown_sender_domain,
reject_unknown_recipient_domain, permit_sasl_authenticated,
reject_unauth_destination, check_policy_service inet:[127.0.0.1]:10023,
check_policy_service unix:private/policy-spf
smtpd_relay_restrictions = permit_mynetworks, permit_sasl_authenticated,
defer_unauth_destination
smtpd_sasl_auth_enable = yes
smtpd_sasl_path = private/auth
smtpd_sasl_security_options = noanonymous
smtpd_tls_CApath = /etc/ssl/certs
smtpd_tls_cert_file = /etc/letsencrypt/live/mail.sunlightmail.net/fullchain.pem
smtpd_tls_dh1024_param_file = /etc/postfix/dh_2048.pem
smtpd_tls_dh512_param_file = /etc/postfix/dh_512.pem
smtpd_tls_eecdh_grade = strong
smtpd_tls_key_file = /etc/letsencrypt/live/mail.sunlightmail.net/privkey.pem
smtpd_tls_mandatory_ciphers = medium
smtpd_tls_mandatory_protocols = !SSLv2,!SSLv3,!TLSv1,!TLSv1.1
smtpd_tls_protocols = !SSLv2,!SSLv3,!TLSv1,!TLSv1.1
smtpd_tls_security_level = may
smtpd_tls_session_cache_database = btree:${data_directory}/smtpd_scache
smtpd_use_tls = yes
tls_medium_cipherlist = AES128+EECDH:AES128+EDH
tls_preempt_cipherlist = yes
virtual_mailbox_maps = hash:/etc/postfix/virtual_mailbox_maps
And here is the output of postconf -Mf
pickup unix n - y 60 1 pickup
cleanup unix n - y - 0 cleanup
qmgr unix n - n 300 1 qmgr
tlsmgr unix - - y 1000? 1 tlsmgr
rewrite unix - - y - - trivial-rewrite
bounce unix - - y - 0 bounce
defer unix - - y - 0 bounce
trace unix - - y - 0 bounce
verify unix - - y - 1 verify
flush unix n - y 1000? 0 flush
proxymap unix - - n - - proxymap
proxywrite unix - - n - 1 proxymap
smtp unix - - y - - smtp
relay unix - - y - - smtp
-o syslog_name=postfix/$service_name
showq unix n - y - - showq
error unix - - y - - error
retry unix - - y - - error
discard unix - - y - - discard
local unix - n n - - local
virtual unix - n n - - virtual
lmtp unix - - y - - lmtp
anvil unix - - y - 1 anvil
scache unix - - y - 1 scache
postlog unix-dgram n - n - 1 postlogd
smtp inet n - - - - smtpd
-o content_filter=gpgit-pipe
-o cleanup_service_name=subcleanup
submission inet n - n - - smtpd
-o syslog_name=postfix/submission
-o smtpd_tls_security_level=encrypt
-o smtpd_sasl_auth_enable=yes
-o
smtpd_recipient_restrictions=permit_mynetworks,permit_sasl_authenticated,reject
-o smtpd_client_restrictions=permit_sasl_authenticated,reject
-o milter_macro_daemon_name=ORIGINATING
-o smtpd_sasl_type=dovecot
-o smtpd_sasl_path=private/auth
-o content_filter=gpgit-pipe
-o cleanup_service_name=subcleanup
-o smtpd_enforce_tls=yes
-o sender_bcc_maps=hash:/etc/postfix/regexp_sender_bcc
smtps inet n - - - - smtpd
-o syslog_name=postfix/smtps
-o smtpd_tls_wrappermode=yes
-o smtpd_sasl_auth_enable=yes
-o smtpd_client_restrictions=permit_sasl_authenticated,reject
-o milter_macro_daemon_name=ORIGINATING
-o content_filter=gpgit-pipe
-o cleanup_service_name=subcleanup
dovecot unix - n n - - pipe flags=DRhu
user=email:email argv=/usr/lib/dovecot/deliver -f ${sender} -d ${recipient}
policy-spf unix - n n - - spawn user=nobody
argv=/usr/bin/policyd-spf
maildrop unix - n n - - pipe flags=DRhu
user=vmail argv=/usr/bin/maildrop -d ${recipient}
uucp unix - n n - - pipe flags=Fqhu
user=uucp argv=uux -r -n -z -a$sender - $nexthop!rmail ($recipient)
ifmail unix - n n - - pipe flags=F user=ftn
argv=/usr/lib/ifmail/ifmail -r $nexthop ($recipient)
bsmtp unix - n n - - pipe flags=Fq.
user=bsmtp argv=/usr/lib/bsmtp/bsmtp -t$nexthop -f$sender $recipient
scalemail-backend unix - n n - 2 pipe flags=R
user=scalemail argv=/usr/lib/scalemail/bin/scalemail-store ${nexthop}
${user} ${extension}
mailman unix - n n - - pipe flags=FR
user=list argv=/usr/lib/mailman/bin/postfix-to-mailman.py ${nexthop}
${user}
amavis unix - - - - 2 smtp
-o smtp_send_xforward_command=yes
-o smtp_tls_security_level=none
-o cleanup_service_name=subcleanup
-o receive_override_options=no_address_mappings
127.0.0.1:10025 inet n - - - - smtpd
-o content_filter=
-o receive_override_options=no_milters
gpgit-pipe unix - n n - - pipe flags=Rq
user=gpgit argv=/var/opt/gpgit/gpgit_postfix.sh -oi -f ${sender}
${recipient}
subcleanup unix n - - - 0 cleanup
-o header_checks=pcre:/etc/postfix/smtp_header_checks.pcre
Austin Witmer
> On Jun 18, 2022, at 8:56 AM, Viktor Dukhovni <[email protected]>
> wrote:
>
>
> On Sat, Jun 18, 2022 at 08:33:02AM -0600, Austin Witmer wrote:
>
>> I’m not sure what instructions I’m not following?
>
> http://www.postfix.org/DEBUG_README.html#mail
>
> Specifically "postconf -nf" and "postconf -Mf" output, verbatim without
> changes in whitespace or line breaks.
>
> Though I've already explained the crux of the issue, more could be said
> with reference to the configuration.
>
> --
> Viktor.