Re: [courier-users] extension to email/localname

2017-05-01 Thread Lindsay Haisley
address. I don't have a .courier- default file, nor do I send emails through /usr/bin/preline in the .courier-xxx files. As far as the backscatter bounce is concerned, it's probably a local delivery problem. Check your mail log prior to the entry you quote and see if you can determine the reaso

Re: [courier-users] Spam filtering on SMTP level

2017-02-28 Thread Lindsay Haisley
e at all conversant in python, Gordon Messmer has done an excellent job with this package, its API, and with the documentation for it. I've written a couple of modules for it and expanded on others, and it's one of the reasons I'll probably stick with Courier as long as I run

Re: [courier-users] lo is down

2016-12-28 Thread Lindsay Haisley
On Wed, 2016-12-28 at 15:44 -0800, Gordon Messmer wrote: > On 12/28/2016 02:07 PM, Lindsay Haisley wrote: > > This generally removes any dependency on DNS for resolving > "localhost". > > Courier uses DNS for everything that comes to mind.  Modifying  > /etc/hos

Re: [courier-users] lo is down

2016-12-28 Thread Lindsay Haisley
- > > - > > Check out the vibrant tech community on one of the world's most > > engaging tech sites, SlashDot.org! http://sdm.link/slashdot > > ___ > > courier-users mailing list > > courier-users@lists.sourceforge.net > > Unsubscribe: http

Re: [courier-users] lo is down

2016-12-28 Thread Lindsay Haisley
. I also use Monit, although not to monitor the status of lo. I would look, for the source of this phenomenon, to the configuration stanza in /etc/monit/monitrc (or one of the config subfolders of /etc/monit). -- Lindsay Haisley | "UNIX is user-friendly, it just FMP

Re: [courier-users] A pythonfilter module for recent gibberish spam

2016-09-24 Thread Lindsay Haisley
e may (probably) be faster ways to do this using simple list index value arithmetic. I HATE spammers! -- Lindsay Haisley | "UNIX is user-friendly, it just FMP Computer Services | chooses its friends." 512-259-1190 | -- Andreas Bogk http://www.fmp.com|

Re: [courier-users] A pythonfilter module for recent gibberish spam

2016-09-24 Thread Lindsay Haisley
On Sat, 2016-09-24 at 10:29 -0700, Gordon Messmer wrote: > On 09/22/2016 02:11 PM, Lindsay Haisley wrote: > > > > Gordon, take a look at this code and if you have any suggestions > > please > > post them. > > Do you have a sample of the messages this targets?

Re: [courier-users] A pythonfilter module for recent gibberish spam

2016-09-24 Thread Lindsay Haisley
On Sat, 2016-09-24 at 10:29 -0700, Gordon Messmer wrote: > On 09/22/2016 02:11 PM, Lindsay Haisley wrote: > > > > Gordon, take a look at this code and if you have any suggestions > > please > > post them. > > Do you have a sample of the messages this target

[courier-users] A pythonfilter module for recent gibberish spam

2016-09-22 Thread Lindsay Haisley
I've been receiving a steady stream of spam with the following body format: [3 centered images, referenced by URLs] [A short line of random characters, or sometimes a

Re: [courier-users] Can courier sort mail for one user into multiple subfolders for imap

2016-09-01 Thread Lindsay Haisley
which says simply that the address is valid, and I let my MUA do the filtering.  -- Lindsay Haisley | "UNIX is user-friendly, it just FMP Computer Services | chooses its friends." 512-259-1190 |

Re: [courier-users] Management of maildir structures

2016-07-25 Thread Lindsay Haisley
t description of a POP or IMAP daemon, so I changed the wording to be more specific. Is this technically correct, and is "must" appropriate? -- Lindsay Haisley | "We have met the enemy and he is us." FMP Computer Services | 512-259-1190 | -- Pogo http://www.fm

Re: [courier-users] Management of maildir structures

2016-07-25 Thread Lindsay Haisley
le management utility which should make faithful reproductions of file system structures. It doesn't know a maildir from a website or a python library. -- Lindsay Haisley | "Behold! Our way lies through a FMP Computer Services |dark wood whence in which 512-259-1190

Re: [courier-users] Management of maildir structures

2016-07-24 Thread Lindsay Haisley
On Sun, 2016-07-24 at 08:47 -0500, Lindsay Haisley wrote: > On Sun, 2016-07-24 at 08:41 -0500, Lindsay Haisley wrote: > > > > I don't think this is quite correct either. rsync operates at a file > > level and should NOT move messages from new to cur. The distinction

Re: [courier-users] Management of maildir structures

2016-07-24 Thread Lindsay Haisley
On Sun, 2016-07-24 at 08:41 -0500, Lindsay Haisley wrote: > I don't think this is quite correct either. rsync operates at a file > level and should NOT move messages from new to cur. The distinction > should specify that a "mail retrieval agent" operating directly on a

Re: [courier-users] Management of maildir structures

2016-07-24 Thread Lindsay Haisley
. The distinction should specify that a "mail retrieval agent" operating directly on a Maildir MUST (not MAY) move files from new to cur. This includes a MUA operating on a _local_ Maildir, as well as a daemon such as impad or pop3d, all of which provide a message level interface in the ma

Re: [courier-users] Management of maildir structures

2016-07-23 Thread Lindsay Haisley
agent" in that paragraph is a link to a Wikipedia article which is pretty specific that the term refers to an "email client" or "email reader". I think my assumption is a safe one.  Thanks. -- Lindsay Haisley | "UNIX is user-friendly, it

[courier-users] Management of maildir structures

2016-07-23 Thread Lindsay Haisley
er that a particular mailbox hasn't been checked since 2014, or whenever. If management of the internal details of the maildir structure is somehow the MUA's responsibility, then it's certainly possible that a mailbox is in active use and is being accessed by an ill-behaved MUA whic

Re: [courier-users] Pythonfilter - Variation in spammer NS behavior

2015-10-21 Thread Lindsay Haisley
ythonfilter-modules.conf file. Caching NS lookups would definitely speed things up. How would you suggest that this be done? Thanks for your comments :) -- Lindsay Haisley | "UNIX is user-friendly, it just FMP Comp

Re: [courier-users] Pythonfilter - Variation in spammer NS behavior

2015-09-29 Thread Lindsay Haisley
On Tue, 2015-09-29 at 12:13 -0700, Gordon Messmer wrote: > On 09/24/2015 08:00 AM, Lindsay Haisley wrote: > > Gordon, your thoughts? > > The one thing that consistently seems to be missing from your analyses > is a review of legitimate mail. > > name-services.com ap

[courier-users] Pythonfilter - Variation in spammer NS behavior

2015-09-24 Thread Lindsay Haisley
ifying spam, since this seems to be a rather limited pool of servers, probably associated with the practice of domain name tasting. Gordon, your thoughts? -- Lindsay Haisley | "UNIX is user-friendly, it just FMP Computer Services | chooses its friends.&quo

Re: [courier-users] courier-pythonfilter with Python3

2015-08-16 Thread Lindsay Haisley
it and the go-to person on issues. He's on this list. -- Lindsay Haisley | "Never expect the people who caused a problem FMP Computer Services | to solve it." - Albert Einstein 512-259-1190

Re: [courier-users] Blocking/whitelist precedence

2015-06-07 Thread Lindsay Haisley
On Sun, 2015-06-07 at 16:53 -0700, Gordon Messmer wrote: > On 06/07/2015 11:51 AM, Gordon Messmer wrote: > > On 06/07/2015 10:44 AM, Lindsay Haisley wrote: > >> Does such a whitelist spec take precedence over a hit from one of the > >> specified BLACKLISTS in the esm

[courier-users] Blocking/whitelist precedence

2015-06-07 Thread Lindsay Haisley
recedence over a hit from one of the specified BLACKLISTS in the esmtpd config file? If not, is there any way to override a BLACKLIST hit for single IP addresses? -- Lindsay Haisley | "Never expect the people who caused a problem FMP Computer Services | to solve it."

Re: [courier-users] trusted mail servers

2015-05-23 Thread Lindsay Haisley
On Sat, 2015-05-23 at 17:30 +0200, Szépe Viktor wrote: > Could it be that I am looking for whitelist_block.py? > > 192.168.2.3 allow,BLOCK That's what I use. Works like a champ! Just make sure you put it ahead of other filters in /etc/pythonfilter.conf. This is the default

Re: [courier-users] ratelimit.py 1.9 bug

2015-05-22 Thread Lindsay Haisley
efit ratio of any part of their operating paradigm goes negative, they change it, and we'll need to put the tinker-toys together on the filtering end in a different way. Gordon, I have some questions about your observations and critiques of my script but I

Re: [courier-users] Google and naughty words (was "Gordon Messmer")

2015-05-20 Thread Lindsay Haisley
those > domains it would have seen). > > So... are those anti-open source ninjas? ;) > https://xkcd.com/225/ I sent an email to my Gmail account containing the forbidden .TLDs and didn't get a warning. Maybe the list . -- Lindsay Haisley | "UNIX is user-friendly

Re: [courier-users] Gordon Messmer

2015-05-20 Thread Lindsay Haisley
gle has gotten a bit squirrely and less effective in their spam rejection algorithms. If Jon Postel were alive today he'd be turning over in his grave. -- Lindsay Haisley | "Behold! Our way lies through a FMP Computer Services |dark wood when

Re: [courier-users] Gordon Messmer

2015-05-20 Thread Lindsay Haisley
On Wed, 2015-05-20 at 19:32 -0400, Sam Varshavchik wrote: > Lindsay Haisley writes: > > > On Wed, 2015-05-20 at 15:28 -0700, Gordon Messmer wrote: > > > On 05/20/2015 11:51 AM, Lindsay Haisley wrote: > > > > Has something happened to Gordon Messmer? > > &

Re: [courier-users] Gordon Messmer

2015-05-20 Thread Lindsay Haisley
andling the sale of names using these TLDs are allowing domain tasting. Spamming operations can get them for free, use them for a few days, and then abandon them before they have to pay for them. -- Lindsay Haisley | "UNIX is user-friendly, it just FMP Computer Services | choos

Re: [courier-users] Gordon Messmer

2015-05-20 Thread Lindsay Haisley
On Wed, 2015-05-20 at 15:28 -0700, Gordon Messmer wrote: > On 05/20/2015 11:51 AM, Lindsay Haisley wrote: > > Has something happened to Gordon Messmer? > > Nope. I'm fine, though somewhat busier than normal. And also working > on a recent significant spike in the amo

Re: [courier-users] Gordon Messmer

2015-05-20 Thread Lindsay Haisley
On Wed, 2015-05-20 at 16:19 -0500, Lindsay Haisley wrote: > On Wed, 2015-05-20 at 23:01 +0200, Szépe Viktor wrote: > > Someone could take over this pip package I've uploaded: > > https://pypi.python.org/pypi/courier-pythonfilter > > That's perhaps premature unt

Re: [courier-users] Gordon Messmer

2015-05-20 Thread Lindsay Haisley
mewhere. The courier-pythonfilter package at python.org to which you link is v1.8. Gordon's latest version, to the best of my knowledge, is v1.10 and I have the tarball from dragonsdawn.net here. > > Idézem/Quoting Lindsay Haisley : > > > Has something happened to Gordon Messmer? His

[courier-users] Gordon Messmer

2015-05-20 Thread Lindsay Haisley
updates to courier-pythonfilter are, to the best of my knowledge, only available directly from his web server. -- Lindsay Haisley | "UNIX is user-friendly, it just FMP Computer Services | chooses its friends." 512-259-1190 | -- Andreas Bog

Re: [courier-users] ratelimit.py 1.9 bug

2015-05-20 Thread Lindsay Haisley
On Tue, 2015-03-24 at 16:29 -0700, Gordon Messmer wrote: > On 03/18/2015 08:32 AM, Lindsay Haisley wrote: > > Gordon, there's a bug in your network-aware logic in ratelimit.py in > > courier-pythonfilter 1.9. > > > > sender = sender[:sender.rindex('.&#x

[courier-users] Bad DNS pythonfilter

2015-04-14 Thread Lindsay Haisley
nd it's proving to be VERY effective :) -- Lindsay Haisley | "UNIX is user-friendly, it just FMP Computer Services | chooses its friends." 512-259-1190 | -- Andreas Bogk http://www.fmp.com|

[courier-users] Final patch on ratelimit.py

2015-03-21 Thread Lindsay Haisley
If the connection count is higher than the maxConnections setting, # return a soft failure. -- Lindsay Haisley | "Real programmers use butterflies" FMP Computer Services | 512-259-1190 | - xkcd http://www.fmp.com|

[courier-users] "Received-From-MTA" information

2015-03-21 Thread Lindsay Haisley
s; (domain-literal) ... as requrired by ratelimit.py 1.9? It would be good to know if perhaps Gordon and I are looking at different courier behaviors before I make further suggestions about his code. As courier is configured here, ratelimit.py requires patching to be network aware, but this may

Re: [courier-users] pythonfilter module precedence question - ANSWERED

2015-03-21 Thread Lindsay Haisley
On Sat, 2015-03-21 at 12:03 -0500, Lindsay Haisley wrote: > I'm using pythonfilter modules whitelist_relayclients, spamassassin and > ratelimit for a server installation of courier. If I whitelist IP > address ranges using webadmin in Inbound ESMTP under "Manual netblock > b

[courier-users] pythonfilter module precedence question

2015-03-21 Thread Lindsay Haisley
atelimiting, or do I need to tag these addresses with RELAYCLIENT as well to exempt them? I'd rather not do this, since there's no reason to allow them to relay off of our server, but I want them exempted from the ratelimit and spamassassin modules. -- Lindsay Haisley | "UNIX

[courier-users] ratelimit.py v1.9: a couple more bugs

2015-03-18 Thread Lindsay Haisley
Two more bugs: Typical returns from getSendersMta() here are: for a v4 address: "dns; mmjgroup.beckerhairclinic.com (mmjgroup.beckerhairclinic.com [:::66.23.216.62])" for a v6 address: "dns; mitra.fmp.com ([::1])" On Wed, 2015-03-18 at 10:53 -0500, L

Re: [courier-users] ratelimit.py 1.9 bug

2015-03-18 Thread Lindsay Haisley
if _senders.has_key(now - i) and _senders[now - i].has_key(senderID): +connections = connections + _senders[now - i][senderID] # If the connection count is higher than the maxConnections setting, # return a soft failure. -- Lindsay Haisley | &quo

[courier-users] ratelimit.py 1.9 bug

2015-03-18 Thread Lindsay Haisley
entifier other than that to which the original return from getSendersMta is assigned. Thanks for giving attention to the network ratelimit issue. -- Lindsay Haisley | "UNIX is user-friendly, it just FMP Comput

Re: [courier-users] IPv6 problem with pythonfilter whitelist_relayclients module

2015-03-17 Thread Lindsay Haisley
On Tue, 2015-03-17 at 14:21 -0700, Gordon Messmer wrote: > > On Tue, 2015-03-17 at 09:47 -0700, Gordon Messmer wrote: > >> On 03/16/2015 10:30 PM, Lindsay Haisley wrote: > >>> I whitelisted this IP > >>> address in /etc/courier/smtpaccess/webadmin using the C

[courier-users] IPv6 format for couriertcpd

2015-03-17 Thread Lindsay Haisley
On Tue, 2015-03-17 at 18:43 -0500, Lindsay Haisley wrote: > > ::::::::0001 allow,BLOCK,RELAYCLIENT > > Are you sure about the leading ":"? OK. I read the doc. You're right. Thanks. -- Lindsay Haisley | "UNIX is use

Re: [courier-users] IPv6 problem with pythonfilter whitelist_relayclients module

2015-03-17 Thread Lindsay Haisley
On Tue, 2015-03-17 at 14:21 -0700, Gordon Messmer wrote: > On 03/17/2015 10:08 AM, Lindsay Haisley wrote: > > On Tue, 2015-03-17 at 09:47 -0700, Gordon Messmer wrote: > >> On 03/16/2015 10:30 PM, Lindsay Haisley wrote: > >>> I whitelisted this IP > >>> a

Re: [courier-users] IPv6 problem with pythonfilter whitelist_relayclients module

2015-03-17 Thread Lindsay Haisley
On Tue, 2015-03-17 at 09:47 -0700, Gordon Messmer wrote: > On 03/16/2015 10:30 PM, Lindsay Haisley wrote: > > I whitelisted this IP > > address in /etc/courier/smtpaccess/webadmin using the Courier web UI, > ... > > Is this a bug in whitelist_relayclients? > > Pr

[courier-users] IPv6 problem with pythonfilter whitelist_relayclients module

2015-03-16 Thread Lindsay Haisley
s this a bug in whitelist_relayclients? It works as expected for IPv4 addresses. -- Lindsay Haisley | "UNIX is user-friendly, it just FMP Computer Services | chooses its friends." 512-259-1190 | -- Andrea

Re: [courier-users] ratelimit.py - updated patch

2015-03-16 Thread Lindsay Haisley
On Mon, 2015-03-16 at 14:00 -0500, Lindsay Haisley wrote: On line 64 of the code > _pat6 = re.compile('((:?[0-9a-f]{0,4}:{,1}){%s})' % (range6,)) "{%s}" should probably be "{,%s}" to avoid throwing an AttributeError exception in the case that something such as

[courier-users] ratelimit.py - updated patch

2015-03-16 Thread Lindsay Haisley
: [ratelimit.py] maxConnections = 60 interval = 1 sendersPurgeInterval = 60 * 60 * 12 # Limit rate for all addresses in a /24 address group for IPv4 and a /64 group for IPv6 use_groups = True # If use_groups = True, ratelimit on a /48 group instead of a /64 group v6_groupsize48 = True I hope

Re: [courier-users] Block awareness in ratelimit.py

2015-03-14 Thread Lindsay Haisley
p scripting I'd done, so I switched back. These days I'm using the Courier package distributed with Ubuntu Server, which is built with IPv6 capabilities, although it doesn't handle any inbound email with v6 addresses other than v4-mapped v6 addresses, as noted in your post. --

Re: [courier-users] IPv6 spam patterns

2015-03-14 Thread Lindsay Haisley
r one. For a v6 addresses Gordon tells me that the standard allocation is a /48 group, so I'll start with this. -- Lindsay Haisley | "UNIX is user-friendly, it just FMP Computer Services | chooses its friends." 5

Re: [courier-users] Block awareness in ratelimit.py

2015-03-14 Thread Lindsay Haisley
commonly used by spammers in v4 addresses to defeat rate limiting. I would guess that it's a /64 address group, but that's only a guess. -- Lindsay Haisley | "UNIX is user-friendly, it just FMP Computer Services | chooses its friends." 512-259-1190

[courier-users] IPv6 spam patterns

2015-03-14 Thread Lindsay Haisley
e out a /64 or even a /48 for the asking. We don't publish any MX's tied to records so we don't see any IPv6 spam, but I assume it exists. -- Lindsay Haisley | "UNIX is user-friendly, it just FMP Computer Services | chooses its friends." 512-259-1190

Re: [courier-users] Block awareness in ratelimit.py

2015-03-13 Thread Lindsay Haisley
he code would be simpler and run faster without relying on it. -- Lindsay Haisley | "UNIX is user-friendly, it just FMP Computer Services | chooses its friends." 512-259-1190 |

Re: [courier-users] Block awareness in ratelimit.py

2015-03-13 Thread Lindsay Haisley
On Fri, 2015-03-13 at 13:12 -0700, Gordon Messmer wrote: > On 03/13/2015 08:58 AM, Lindsay Haisley wrote: > > > > I will welcome any corrections, improvements or comments on this code. > > 1: I'm pretty sure the patch can be made much smaller by simply changing > &q

[courier-users] Block awareness in ratelimit.py

2015-03-13 Thread Lindsay Haisley
has_key(sender): +connections += _senders[now - i][sender][0] + # If the connection count is higher than the maxConnections setting, # return a soft failure. if connections > maxConnections: -- Lindsay Haisley | "UNIX is user-

[courier-users] A couple of pythonfilter spamassassin.py questions

2015-03-05 Thread Lindsay Haisley
ecedence? We could probably do with a bit more explanation in <https://pypi.python.org/pypi/courier-pythonfilter> (and in the package README) regarding the necessary setup for using pythonfilter to prefilter email using spamassassin. -- Lindsay Haisley | "UNIX is user-friendly, it

Re: [courier-users] Passing the remote ip to authdaemond

2015-03-02 Thread Lindsay Haisley
Tor-connected browser. The same issues apply for email, in different ways. -- Lindsay Haisley | "UNIX is user-friendly, it just FMP Computer Services | chooses its friends." 512-259-1190 |

[courier-users] Ports, SSL and STARTTLS for ESMTP

2015-02-06 Thread Lindsay Haisley
assignment of port 465 to smtps is labeled a "legacy" assignment in some documents, and in other places it's labeled as having been deprecated and the port reassigned. Any guidance will be appreciated! -- Lindsay Haisley | "UNIX is user-friendly, it just FMP Compu

Re: [courier-users] MX should not point to a CNAME?

2015-01-22 Thread Lindsay Haisley
sing a bind-like zone file setup) otherwise your name server will add the default domain after the MX target. -- Lindsay Haisley | "UNIX is user-friendly, it just FMP Computer Services | chooses its friends." 512-259-1190 | -- Andreas Bogk http://www.fmp

[courier-users] Python library for Courier log files

2014-12-01 Thread Lindsay Haisley
Does there exist a python library for parsing courier's log files? -- Lindsay Haisley | "Everything works if you let it" FMP Computer Services | 512-259-1190 | --- The Roadie htt

Re: [courier-users] Custom address blocking

2014-10-24 Thread Lindsay Haisley
On Fri, 2014-10-24 at 16:42 -0400, Bowie Bailey wrote: > On 10/24/2014 3:51 PM, Lindsay Haisley wrote: > > I'm dealing with some issues regarding migration of mailing lists and > > would like to know if there's a quick way to set a custom 500 class > > block for a s

[courier-users] Custom address blocking

2014-10-24 Thread Lindsay Haisley
error after "rcpt to" something like: 550 Mailing list out of service for maintenance. Please try again later. I can usually figure this stuff out but I'm strapped for time and thought maybe Sam or someone could shoot me a quick 'n easy solution. -- Lindsay Haisley

Re: [courier-users] smtpaccess question

2014-09-24 Thread Lindsay Haisley
for 192.168.0.0/22 is going to get replicated as four entries: > 192.168.0.*, 192.168.1.*, 192.168.2.* and 192.168.3.*. So under what circumstances would this differ from the range definition as definded by the CIDR notation? -- Lindsay Haisley | "UNIX is user-friendly, it jus

Re: [courier-users] Remove Received headers in outgoing authed email?

2014-09-24 Thread Lindsay Haisley
Bad Idea. Redacting the problem IP address would make more sense, IMHO. -- Lindsay Haisley | "UNIX is user-friendly, it just FMP Computer Services | chooses its friends." 512-259-1190 | -- Andreas Bogk

[courier-users] smtpaccess question

2014-09-24 Thread Lindsay Haisley
nother? I would assume, since the whole directory is processed into a single .dat file with makesmtpaccess, that the same rule applies regardless of which file a directive may be found in. -- Lindsay Haisley | "UNIX is user-friendly, it just FMP Computer Services | chooses its fr

Re: [courier-users] Courier MLM From Rewrite

2014-05-29 Thread Lindsay Haisley
On Sat, 2014-05-24 at 20:55 -0400, Sam Varshavchik wrote: > Lindsay Haisley writes: > > > On Sat, 2014-05-24 at 09:00 -0400, Sam Varshavchik wrote: > > > kb2...@kb2ear.net writes: > > > > > > > With the recent DMARC implementation from AOL and Yahoo I ha

Re: [courier-users] Courier MLM From Rewrite

2014-05-29 Thread Lindsay Haisley
> meant to be temporary solutions, but are probably going to stay around > until the problem persists. Let me replay your footer. > > Ale > -- > "Never expect the people who caused a problem to solve it." > - Albert Einstein Th

Re: [courier-users] Courier MLM From Rewrite

2014-05-25 Thread Lindsay Haisley
On Sun, 2014-05-25 at 11:24 +0200, Alessandro Vesely wrote: > On Sun 25/May/2014 02:55:45 +0200 Sam Varshavchik wrote: > > Lindsay Haisley writes: > >> On Sat, 2014-05-24 at 09:00 -0400, Sam Varshavchik wrote: > >>> kb2...@kb2ear.net writes: > >>> > &

Re: [courier-users] Courier MLM From Rewrite

2014-05-24 Thread Lindsay Haisley
asco. The DMARC problem implies information loss, contrary to the spirit and in some cases the letter of applicable mail RFCs. When and how this information loss occurs is up to ML software designers and list administrators. -- Lindsay Haisley | "Never expect the people who cause

Re: [courier-users] OpenSSL crash with STARTTLS in Courier

2014-05-04 Thread Lindsay Haisley
On Sun, 2014-05-04 at 14:51 -0400, Sam Varshavchik wrote: > Lindsay Haisley writes: > > > So it looks as if the issue here is that courier is using only SSL/TLS > > v2 or v3. If I spec TLS v1 to couriertls I get, with no errors: > > > > # TLS_VERIFYPEER=NONE TLS_

Re: [courier-users] OpenSSL crash with STARTTLS in Courier

2014-05-04 Thread Lindsay Haisley
Thanks. I'm CCing this to the system administrator at nv.net. On Sun, 2014-05-04 at 20:48 +0200, Hanno Böck wrote: > On Sun, 04 May 2014 13:05:30 -0500 Lindsay Haisley > wrote: > > I'd like to configure courier to use TLS1 as a fallback in cases such > > as this.

Re: [courier-users] OpenSSL crash with STARTTLS in Courier

2014-05-04 Thread Lindsay Haisley
On Sun, 2014-05-04 at 09:13 -0400, Sam Varshavchik wrote: > Lindsay Haisley writes: > > > Would the verify errors be playing into this problem? > > No, the verify errors are to be expected. > > > This is beyond being a courier issue, so it's probably not appropri

Re: [courier-users] OpenSSL crash with STARTTLS in Courier

2014-05-03 Thread Lindsay Haisley
rors be playing into this problem? This is beyond being a courier issue, so it's probably not appropriate for this list, but it is a mail issue and rather a puzzle. Thanks for your insights. My guess is that patches to OpenSSL which have come into play to address the Heartbleed bug may be contr

Re: [courier-users] OpenSSL crash with STARTTLS in Courier

2014-05-03 Thread Lindsay Haisley
mail to mx.nv.net from a system running OpenSSL 0.9.8e-fips-rhel5 has no problem connecting and completing an ESMTP session with STARTTLS. The other client box doesn't have couriertls on it so I can't try to pull the information on the cert from there, unless there's another tool wit

Re: [courier-users] OpenSSL crash with STARTTLS in Courier

2014-05-03 Thread Lindsay Haisley
On Sat, 2014-05-03 at 18:11 -0400, Sam Varshavchik wrote: > Lindsay Haisley writes: > > > Just recently, as in the past few days, I'm seeing failures from > > Courier's outbound SMTP which report in the mail logs as: > > > > Ma

[courier-users] OpenSSL crash with STARTTLS in Courier

2014-05-03 Thread Lindsay Haisley
blem in Courier, at the expense of email security. Does anyone have any insight on this problem? -- Lindsay Haisley | "UNIX is user-friendly, it just FMP Computer Services | chooses its friends." 512-259-1190 | -- Andrea

Re: [courier-users] Courier and Linux kernel 3.2.0-59-generic from Ubuntu 12.04 LTS

2014-02-21 Thread Lindsay Haisley
On Fri, 2014-02-21 at 18:45 -0500, Sam Varshavchik wrote: > Lindsay Haisley writes: > > > I've had some very strange problems related to mail and name service > > subsequent to an update from Ubuntu's 3.2.0-58-generic x86_64 kernel to > > the 3.2.0-59 and am try

[courier-users] Courier and Linux kernel 3.2.0-59-generic from Ubuntu 12.04 LTS

2014-02-21 Thread Lindsay Haisley
a VPN IF and also via the localhost IF on the box unless I had an explicit IPv4 interface ACL in the bind9 config. This was NOT an issue under previous Linux kernels. -- Lindsay Haisley | "UNIX is user-friendly, it just FMP Computer Services | chooses its friends." 512-259-1190

Re: [courier-users] Error message

2014-01-14 Thread Lindsay Haisley
ed, which is also fairly easy, in which case the black listing disappears. I've seen this happen to some major ISPs, and it's usually fixed within a day or so. -- Lindsay Haisley | "UNIX is user-friendly, it just FMP Computer Services | chooses its friends." 512-

Re: [courier-users] server connect slow

2013-10-09 Thread Lindsay Haisley
not be your problem, but if you're not sure how TCPDOPTS is set in the esmtpd and imapd config files it might be worth checking. -- Lindsay Haisley | "UNIX is user-friendly, it just FMP Computer Services

Re: [courier-users] Relay Control

2013-08-29 Thread Lindsay Haisley
ake the time to go through the proper procedure to unsubscribe from an opt-in list. -- Lindsay Haisley | "UNIX is user-friendly, it just FMP Computer Services | chooses its friends." 512-259

Re: [courier-users] Relay Control

2013-08-28 Thread Lindsay Haisley
On Wed, 2013-08-28 at 17:58 +0200, Matus UHLAR - fantomas wrote: > On 28.08.13 10:52, Lindsay Haisley wrote: > >None of FMP's customers have dedicated MSPs, to the best of my > >knowledge. That's their concern. All ISPs provide SMTP service. If > >people want

Re: [courier-users] Relay Control

2013-08-28 Thread Lindsay Haisley
ll ISPs provide SMTP service. If people want SMTP from FMP Computer Services then it's available, but it's not provided by default. -- Lindsay Haisley | "UNIX is user-friendly, it just FMP Computer Services | chooses its friends.&quo

Re: [courier-users] Relay Control

2013-08-26 Thread Lindsay Haisley
On Mon, 2013-08-26 at 08:44 +0200, Matus UHLAR - fantomas wrote: > On 23.08.13 16:00, Lindsay Haisley wrote: > >As a rule, I don't provide SMTP services to any FMP customers by > >default. Since FMP is an IPP, not an ISP, I encourage users to use the > >SMTP servi

Re: [courier-users] Relay Control

2013-08-26 Thread Lindsay Haisley
On Sat, 2013-08-24 at 17:06 +0200, Alessandro Vesely wrote: > On Fri 23/Aug/2013 23:00:01 +0200 Lindsay Haisley wrote: > > As a rule, I don't provide SMTP services to any FMP customers by > > default. Since FMP is an IPP, not an ISP, I encourage users to use the > >

Re: [courier-users] Relay Control

2013-08-23 Thread Lindsay Haisley
On Fri, 2013-08-23 at 16:00 -0500, Lindsay Haisley wrote: > > Do you mean you wouldn't have conceded the relay auth flag to that user > > of yours? Based on what, if you don't mind my asking? You may be able > > to estimate who is more likely to catch a key-logger, bu

Re: [courier-users] Relay Control

2013-08-23 Thread Lindsay Haisley
er limit as a backstop. It shouldn't be difficult to program at all. If smtp.example.com gets more than X hits in a 24 hour period to send mail, the auth_smtp flag gets set to a value which disallows SMTP use and sends me and the account owner an email stating what happened. When the 24 hour per

Re: [courier-users] Relay Control

2013-08-20 Thread Lindsay Haisley
rtunately, courier logs the user IDs for authenticated SMTP access, and places the same information in the Received header added by the SMTP server. -- Lindsay Haisley | "Behold! Our way lies through a FMP Computer Services |dark wood whence in which 512-259-1190 |

Re: [courier-users] Courier User would like help (IMAPD stopped working)

2013-08-16 Thread Lindsay Haisley
that ldap.h ring any bells? > > Nick > > Nick Ellson - from iPhone (forgive typos) > CCIE #20018 > Network Hobbyist > "Educating Layer 8, one user at a time." > > On Aug 16, 2013, at 7:28 AM,

Re: [courier-users] Courier User would like help (IMAPD stopped working)

2013-08-16 Thread Lindsay Haisley
me what the imapd daemon did not like? (mail.log and > messages.log did not have it, while mail.log does have all the courier > smtpd stuff it seems. > You may find some help at <http://www.courier-mta.org/authlib/README.authdebug.html> -- Lindsay Haisley | "UN

Re: [courier-users] IMAP in general use

2013-08-15 Thread Lindsay Haisley
e misbegotten efforts to stop it), viruses and trojans, and the incredible expansion of the Internet over the last 20 years, the fact that email services still survive at all is a tribute to the genius and foresight of the people who developed and published the protocols on which it's based. --

Re: [courier-users] IMAP in general use

2013-08-15 Thread Lindsay Haisley
ably > > won't be doing this too much longer. > > My own folks are retired, too. They're enjoying it immensely. Mark my words, > you'll get to enjoy it too. These days, in the US, we can't afford to retire. FMP Computer Services marches on! -- Lindsay Hais

Re: [courier-users] IMAP in general use

2013-08-15 Thread Lindsay Haisley
xibility and security of the old, mature mail protocols. I probably won't be doing this too much longer. -- Lindsay Haisley | "UNIX is user-friendly, it just FMP Computer Services | chooses its friends." 512-259-1190 | -- Andreas Bogk http://www.fmp.co

Re: [courier-users] Greetings and feature request

2013-07-31 Thread Lindsay Haisley
n supporting program structures to manage things the way I want them done. -- Lindsay Haisley | "Never expect the people who caused a problem FMP Computer Services | to solve it." - Albert Einstein 512-259-1190 | http://www.fmp.com| --

Re: [courier-users] No route to host

2013-06-18 Thread Lindsay Haisley
ute, where routing decisions are based on the transport layer (TCP/UDP/ICMP) rather than the internet layer. ICMP ping packets will take one route, whereas TCP and UDP packets will take another, so a ping will work, but a connection using another transport protocol will fail. This is probably temp

Re: [courier-users] dots in aliases

2013-06-05 Thread Lindsay Haisley
ut of my mind in the wake of all the gigo traffic that goes through my brain ;) -- Lindsay Haisley | "We have met the enemy and he is us." FMP Computer Services | 512-259-1190 | -- Pogo http://www.fmp.com| --

Re: [courier-users] dots in aliases

2013-06-05 Thread Lindsay Haisley
On Wed, 2013-06-05 at 14:43 -0700, Claus Assmann wrote: > On Wed, Jun 05, 2013, Lindsay Haisley wrote: > > > .courier-abcdefines mail processing for a...@example.com > > > AFAIK, there is nothing special about a "." in the personal part of > an > > em

[courier-users] dots in aliases

2013-06-05 Thread Lindsay Haisley
xample.com .courier-a.b "RCPT TO failed: User unknown" .courier-foo.bar [same as previous failure] AFAIK, there is nothing special about a "." in the personal part of an email address, so why is Courier unable to detect it? -- Lindsay Haisley | "UNIX is

Re: [courier-users] misbehaving dot-courier directive ??

2013-04-17 Thread Lindsay Haisley
I missing something? The courier installation here is v0.66.1 On Wed, 2013-04-17 at 13:19 -0500, Lindsay Haisley wrote: > I have a .courier-postmaster file in the alias directory for my domain > name which handles mail to postmaster at my domain. This works as > expected if the .courie

  1   2   3   4   >