header .com check false positive

2016-04-12 Thread Voytek
I've struck a false positive problem rejecting email, should reject on file extension '.com', but, rejected on a domain name as below(1): I think this is the rule ?: # grep "may not end with" *head* mime_headers.pcre:/^\s*Content-(Disposition|Type).*name\s*=\s*"?(.*\.(ade|adp|bas|bat|chm|cmd|com

Special method required for Gmail dkim/spf verification

2016-04-12 Thread lists
Google sent me a "fail" on my DMARC.  Everyone else seems happy. It turns out much like Google not accepting robots.txt for some search engines controls, they expect special fields in their DNS. https://support.google.com/mail/answer/6227174‎ Why? Because we're Google and we can.

Re: reality-check on 2016 practical advice re: requiring inbound TLS?

2016-04-12 Thread Curtis Villamizar
On 04/12/16 14:26, Noel Jones wrote: On 4/12/2016 11:38 AM, Curtis Villamizar wrote: On 04/12/16 06:25, Wietse Venema wrote: Curtis Villamizar: I recently had a problem with mail where an ESP was in three blacklists plus SPF failed and spamassassin tossed some mail. That ESP is down to one

Re: reality-check on 2016 practical advice re: requiring inbound TLS?

2016-04-12 Thread Noel Jones
On 4/12/2016 11:38 AM, Curtis Villamizar wrote: > > On 04/12/16 06:25, Wietse Venema wrote: >> Curtis Villamizar: >>> I recently had a problem with mail where an ESP was in three >>> blacklists >>> plus SPF failed and spamassassin tossed some mail. That ESP is >>> down to >>> one blacklist now.

Re: reality-check on 2016 practical advice re: requiring inbound TLS?

2016-04-12 Thread lists
‎No. The report says everything is kosher.    Original Message   From: Curtis Villamizar Sent: Tuesday, April 12, 2016 10:57 AM To: li...@lazygranch.com; postfix-users@postfix.org Subject: Re: reality-check on 2016 practical advice re: requiring inbound TLS? Not an expert on DMARC, but ... On 04

Re: reality-check on 2016 practical advice re: requiring inbound TLS?

2016-04-12 Thread Curtis Villamizar
Not an expert on DMARC, but ... On 04/12/16 01:56, li...@lazygranch.com wrote: Just a quickie here on DMARC. I set one domain to "quarantine" and set up the rua to email me a report. Thus far, only MS Hotmail sends me anything, even though I have emailed yahoo accounts. The MS Hotmail report

Re: reality-check on 2016 practical advice re: requiring inbound TLS?

2016-04-12 Thread Curtis Villamizar
On 04/12/16 06:25, Wietse Venema wrote: Curtis Villamizar: I recently had a problem with mail where an ESP was in three blacklists plus SPF failed and spamassassin tossed some mail. That ESP is down to one blacklist now. A sender got to me out-of-band and I dug up the maillog from a few days

Re: reality-check on 2016 practical advice re: requiring inbound TLS?

2016-04-12 Thread Curtis Villamizar
On 04/12/16 12:06, Robert Schetterer wrote: Am 12.04.2016 um 07:56 schrieb li...@lazygranch.com: Just a quickie here on DMARC. I set one domain to "quarantine" and set up the rua to email me a report. Thus far, only MS Hotmail sends me anything, even though I have emailed yahoo accounts. Th

Re: reality-check on 2016 practical advice re: requiring inbound TLS?

2016-04-12 Thread Robert Schetterer
Am 12.04.2016 um 07:56 schrieb li...@lazygranch.com: > Just a quickie here on DMARC. I set one domain to "quarantine" and set up the > rua to email me a report. Thus far, only MS Hotmail sends me anything, even > though I have emailed yahoo accounts. > > The MS Hotmail report is in XML, which

Re: gmail servers requiring postscreen_access whitelisting

2016-04-12 Thread Steve Jenkins
On Tue, Apr 12, 2016 at 4:30 AM, @lbutlr wrote: > > > On Apr 10, 2016, at 5:37 PM, Curtis Villamizar > wrote: > > > > In message > > "@lbutlr" writes: > >> > >> On Apr 10, 2016, at 10:24 AM, Curtis Villamizar = > >> wrote: > >>> postscreen_dnsbl_sites =3D > >>> list.dnswl.org*-5 > >>>

Re: gmail servers requiring postscreen_access whitelisting

2016-04-12 Thread @lbutlr
> On Apr 10, 2016, at 5:37 PM, Curtis Villamizar > wrote: > > In message > "@lbutlr" writes: >> >> On Apr 10, 2016, at 10:24 AM, Curtis Villamizar = >> wrote: >>> postscreen_dnsbl_sites =3D >>> list.dnswl.org*-5 >>> # followed by some blacklist sites >> >> It was my understanding th

Re: reality-check on 2016 practical advice re: requiring inbound TLS?

2016-04-12 Thread Wietse Venema
Curtis Villamizar: > I recently had a problem with mail where an ESP was in three blacklists > plus SPF failed and spamassassin tossed some mail. That ESP is down to > one blacklist now. A sender got to me out-of-band and I dug up the > maillog from a few days earlier and informed them about h