Hello all,

Din ce citesc eu in documentatia postfix, nu mi-e deloc clar cum ar trebui sa 
se termine directiva smtpd_recipient_restrictions: cu PERMIT sau cu REJECT.

Din ce vad eu pe listele de discutii, majoritatea, dupa ce aplica restrictii 
pun un PERMIT la sfirsit, sau nu mai pun nimic. Nimeni nu explica insa, de ce 
pune acel PERMIT la sfirsit, motiv pentru care ma gindesc ca au dat 
copy/paste din alte thread-uri in main.cf-ul lor si daca au vazut ca 
functioneaza, nu si-au mai batut capul...

Question: in cazul in care nu se specifica nici PERMIT si nici REJECT, care ar 
fi valoarea implicita care se aplica la sfirstul lui 
smtpd_recipient_restrictions?

In documentatie spune asa:
[snip]
 permit
    Permit the request. This restriction is useful at the end of a restriction 
list, to make the default policy explicit.

 reject
    Reject the request. This restriction is useful at the end of a restriction 
list, to make the default policy explicit. The reject_code configuration 
parameter specifies the response code to rejected requests (default: 554).
[end snip]

Ex: in prezent, in main.cf am:
smtpd_recipient_restrictions =
    permit_mynetworks,
    permit_sasl_authenticated,
    reject_unauth_destination,
    reject_invalid_hostname,
    reject_non_fqdn_sender,
    reject_non_fqdn_recipient,
    reject_non_fqdn_hostname,
    reject_unknown_sender_domain,
    reject_unknown_recipient_domain,
    reject_rbl_client rbl.kkt.com,
    permit
^^^^^^^^^
Cu aceasta configuratie, totul functioneaza ok.

Ce s-ar intimpla daca as schimba ultima linie in REJECT? Ar mai fi cazuri 
legitime care ar face match cu acel reject?
smtpd_recipient_restrictions =
    permit_mynetworks,
    permit_sasl_authenticated,
    reject_unauth_destination,
    reject_invalid_hostname,
    reject_non_fqdn_sender,
    reject_non_fqdn_recipient,
    reject_non_fqdn_hostname,
    reject_unknown_sender_domain,
    reject_unknown_recipient_domain,
    reject_rbl_client rbl.kkt.com,
    reject
^^^^^^^^

Regards,
Alx

_______________________________________________
RLUG mailing list
RLUG@lists.lug.ro
http://lists.lug.ro/mailman/listinfo/rlug

Raspunde prin e-mail lui