Re: Disable logging for specific ips

2016-02-18 Thread Atnakus Arzah
On Thu, Feb 18, 2016 at 03:19:22PM +0100, Julian Kippels wrote: Hi, I would like to prevent postfix from logging when connections come in from certain ip addresses. Feb 14 03:32:45 mail-test postfix/smtpd[16006]: connect from unknown[192.168.25.2] Feb 14 03:32:45 mail-test postfix/smtpd[16006]:

Re: Interpreting unauthorised relaying

2016-02-18 Thread Noel Jones
On 2/18/2016 7:19 PM, James B. Byrne wrote: > > One of our staff had their email account compromised. We have changed > that user's login and password. However I lack experience > interpreting what happened. Would someone take a look at the > following headers and tell me how this was done? I c

Re: How to relay specific domain over TLS and rest all other without TLS ?

2016-02-18 Thread Viktor Dukhovni
On Thu, Feb 18, 2016 at 08:12:36PM -0500, Wietse Venema wrote: > Should tafile be documented under smtp_tls_policy_maps? Yes, I noticed the omission today, the attribute is covered under: http://www.postfix.org/TLS_README.html#client_tls_policy verify Mandatory server certificate v

Interpreting unauthorised relaying

2016-02-18 Thread James B. Byrne
One of our staff had their email account compromised. We have changed that user's login and password. However I lack experience interpreting what happened. Would someone take a look at the following headers and tell me how this was done? I can make a reasonable guess but I would like a definiti

Re: How to relay specific domain over TLS and rest all other without TLS ?

2016-02-18 Thread Wietse Venema
Viktor Dukhovni: > tls-policy: > example.com secure match=nexthop:dot-nexthop > tafile=/etc/postfix/CA_Bundle.pem Should tafile be documented under smtp_tls_policy_maps? Wietse

Re: How to relay specific domain over TLS and rest all other without TLS ?

2016-02-18 Thread Viktor Dukhovni
On Thu, Feb 18, 2016 at 08:16:12PM +0530, Jayesh Shinde wrote: > How to relay only specific domain's email on over TLS and rest all other on > port 25 as normal i.e without TLS ? Postfix 2.3 .. 2.10: main.cf: indexed = ${default_database_type}:${config_directory}/ smtp_tls_s

Re: $myhostname (sometimes) evaluated incorrectly

2016-02-18 Thread Wietse Venema
Wietse Venema: > Julian Kippels: > > Feb 18 16:11:31 balder postfix/smtpd[25344]: warning: TLS library > > problem: 25344:error:02001002:system library:fopen:No such file or > > directory:bss_file.c:398:fopen('/etc/postfix/cert/localhost-cert.pem','r'): > ... > > I use the $myhostname variable in s

Re: $myhostname (sometimes) evaluated incorrectly

2016-02-18 Thread Wietse Venema
Julian Kippels: > Feb 18 16:11:31 balder postfix/smtpd[25344]: warning: TLS library > problem: 25344:error:02001002:system library:fopen:No such file or > directory:bss_file.c:398:fopen('/etc/postfix/cert/localhost-cert.pem','r'): ... > I use the $myhostname variable in smtpd_tls_cert_file so that

Re: Many copies of the same message in the mailbox

2016-02-18 Thread Randy Saeks
We recently had an issue similar to this. Our email gateway was receiving multiple copies of a message from the sending domain. It turned out to be our ISP having SMTP Inspection enabled on a router-port firewall ACL and that was preventing proper communication between our receiving server and

$myhostname (sometimes) evaluated incorrectly

2016-02-18 Thread Julian Kippels
Hi, I just saw that apparently the variable $myhostname is evaluated incorrectly sometimes. I have the following lines in my maillog: Feb 18 16:11:31 balder postfix/smtpd[25344]: warning: cannot get RSA certificate from file /etc/postfix/cert/localhost-cert.pem: disabling TLS support Feb 18 16:11

Re: How to relay specific domain over TLS and rest all other without TLS ?

2016-02-18 Thread Noel Jones
On 2/18/2016 8:46 AM, Jayesh Shinde wrote: > Hi , > > I am using SMTP relay server with centos 6.3 , > postfix-2.10.0-1.el6.x86_64 and TLS configuration . > How to relay only specific domain's email on over TLS and rest all > other on port 25 as normal i.e without TLS ? > > The requirement is

How to relay specific domain over TLS and rest all other without TLS ?

2016-02-18 Thread Jayesh Shinde
Hi , I am using SMTP relay server with centos 6.3 , postfix-2.10.0-1.el6.x86_64 and TLS configuration . How to relay only specific domain's email on over TLS and rest all other on port 25 as normal i.e without TLS ? The requirement is :-- --- 1) Send the outgoing e

Re: Disable logging for specific ips

2016-02-18 Thread koko
On Thu, 18 Feb 2016 15:19:22 +0100 Julian Kippels wrote: > I would like to prevent postfix from logging when > connections come in from certain ip addresses. > postfix send the log to /dev/log and read by syslog daemon. use syslog daemon which have filtering function. search on google.. -- Kok

Disable logging for specific ips

2016-02-18 Thread Julian Kippels
Hi, I would like to prevent postfix from logging when connections come in from certain ip addresses. Feb 14 03:32:45 mail-test postfix/smtpd[16006]: connect from unknown[192.168.25.2] Feb 14 03:32:45 mail-test postfix/smtpd[16006]: disconnect from unknown[192.168.25.2] Feb 14 03:32:46 mail-test p