value of zero not documented for message_size_limit

2014-04-11 Thread Markus Schönhaber
Hi, while the documentation for mailbox_size_limit http://www.postfix.org/postconf.5.html#mailbox_size_limit explicitly states "[...] or zero (no limit).", the doc for message_size_limit http://www.postfix.org/postconf.5.html#message_size_limit doesn't mention that it's possible to turn off the li

Re: OpenSSL 1.0.1g and Ironport SMTP appliances interop issue

2014-04-11 Thread li...@rhsoft.net
Am 11.04.2014 06:53, schrieb Viktor Dukhovni: > Note that various vendor SSL updates for "Heartbleed" may not > exhibit the issue. For example, Debian wheezy back-ported just the > relevant bug-fix to without back-porting the new padding extension. > I also expect similar (fortunate) behaviour on

Re: DKIM, DMARC, Original-Authentication-Results

2014-04-11 Thread Alessandro Vesely
On Fri 11/Apr/2014 01:40:13 +0200 Scott Kitterman wrote: > On April 10, 2014 7:24:54 PM EDT, LuKreme wrote: >>On 10 Apr 2014, at 17:01 , Viktor Dukhovni wrote: >>> On Fri, Apr 11, 2014 at 12:57:54AM +0200, li...@rhsoft.net wrote: >>> Which, IM(ns)HO is what every list should not do. I actua

Re: value of zero not documented for message_size_limit

2014-04-11 Thread Wietse Venema
Markus Sch?nhaber: > Hi, > > while the documentation for mailbox_size_limit > http://www.postfix.org/postconf.5.html#mailbox_size_limit > explicitly states "[...] or zero (no limit).", the doc for > message_size_limit > http://www.postfix.org/postconf.5.html#message_size_limit > doesn't mention th

Re: value of zero not documented for message_size_limit

2014-04-11 Thread Markus Schönhaber
11.04.2014 13:14, Wietse Venema: > Markus Sch?nhaber: >> Hi, >> >> while the documentation for mailbox_size_limit >> http://www.postfix.org/postconf.5.html#mailbox_size_limit >> explicitly states "[...] or zero (no limit).", the doc for >> message_size_limit >> http://www.postfix.org/postconf.5.ht

v4bl.org anyone knows this ?

2014-04-11 Thread Robert Schetterer
Hi , anyone knows this rbl ? http://v4bl.org/about.html ... A very extensive list of IPs; which include: » Well known spammer IPs » UBE/UCE abusive IPs » rfc-ignorant IPs » IPs with mismatched DNS and RDNS (FCrDNS failure) » IPs with mismatched rDNS and EHLO/HELO (FCrDNS failu

smtp client TLS renegotiation

2014-04-11 Thread Bill Lewis
We are encountering problems sending to certain servers are enforcing the renego TLS patch. Our postfix instances do a TLS negotiation but then defer the message with an EHLO handshake error.Should this be working in Postfix v2.9+ ? Or is there something we can set to allow this for some domains

Re: smtp client TLS renegotiation

2014-04-11 Thread Wietse Venema
Bill Lewis: > We are encountering problems sending to certain servers are enforcing > the renego TLS patch. Our postfix instances do a TLS negotiation > but then defer the message with an EHLO handshake > error.Should this be working in Postfix v2.9+ > ? Or is there something we can set to allow th

Re: smtp client TLS renegotiation

2014-04-11 Thread Viktor Dukhovni
On Fri, Apr 11, 2014 at 01:30:43PM -0500, Bill Lewis wrote: >We are encountering problems sending to certain servers are enforcing >the renego TLS patch. What do you mean by "renego TLS patch"? What specific servers? >Our postfix instances do a TLS negotiation but >then defer th

Re: value of zero not documented for message_size_limit

2014-04-11 Thread Rick Zeman
On Fri, Apr 11, 2014 at 7:14 AM, Wietse Venema wrote: > Markus Sch?nhaber: >> Hi, >> >> while the documentation for mailbox_size_limit >> http://www.postfix.org/postconf.5.html#mailbox_size_limit >> explicitly states "[...] or zero (no limit).", the doc for >> message_size_limit >> http://www.post

Re: value of zero not documented for message_size_limit

2014-04-11 Thread Wietse Venema
Rick Zeman: > On Fri, Apr 11, 2014 at 7:14 AM, Wietse Venema wrote: > > Markus Sch?nhaber: > >> Hi, > >> > >> while the documentation for mailbox_size_limit > >> http://www.postfix.org/postconf.5.html#mailbox_size_limit > >> explicitly states "[...] or zero (no limit).", the doc for > >> message_s

Re: Postfix and TLS 1.2

2014-04-11 Thread Viktor Dukhovni
On Fri, Apr 11, 2014 at 10:32:17PM +0100, Sean Wilson wrote: > http://postfix.1071664.n5.nabble.com/Postfix-and-TLS-1-2-td66859.html > I am battling to understand why my Postfix server doesn't always > use a TLS 1.2 connection with clients that support it. I currently > have the latest version

Re: Postfix + TLS 1.2

2014-04-11 Thread Viktor Dukhovni
On Sat, Apr 12, 2014 at 07:38:30AM +0100, Sean Wilson wrote: > > > So why is only TLS 1.1 being used? > > > > Ask the postmaster of the MTA in question, perhaps they some problems > > with remote MTAs choking on TLSv1.2 and decided to apply hammer to > > problem. > > *This is what I don't unders