Re: rewriting all occurences of a sender domain

2022-11-03 Thread Viktor Dukhovni
On Thu, Nov 03, 2022 at 07:42:17PM -0400, Wietse Venema wrote: > > I don't recall whether milter message content processing happens before > > or after canonical rewriting, Wietse might post a reminder. If milters > > go first, you'll need to do DKIM signing after the message first goes > > throu

Re: rewriting all occurences of a sender domain

2022-11-03 Thread Wietse Venema
Viktor Dukhovni: > I don't recall whether milter message content processing happens before > or after canonical rewriting, Wietse might post a reminder. If milters > go first, you'll need to do DKIM signing after the message first goes > through a null content filter (directly back into Postfix on

Re: policy-spf and whitelisting

2022-11-03 Thread Noel Jones
On 11/3/2022 1:24 PM, Alex wrote: In my rush between projects, I not only confused sqlgrey with postscreen, but I also forgot that I already have a postscreen section as well: postscreen_access_list =         permit_mynetworks,         cidr:/etc/postfix/postscreen_access.cidr,         ci

Re: policy-spf and whitelisting

2022-11-03 Thread Paul Kudla
ok spf white/blacklisting is handled in policy-spf.conf mine is found here # ll | grep spf drwxr-xr-x 2 root wheel uarch4B Sep 14 04:24 python-policyd-spf [14:59:30] mail18.scom.ca [root:0] /etc # cd python-policyd-spf [14:59:37] mail18.scom.ca [root:0] /etc/python-policyd-spf # l

Re: rewriting all occurences of a sender domain

2022-11-03 Thread Viktor Dukhovni
On Thu, Nov 03, 2022 at 06:25:50PM +, Gino Ferguson wrote: > I have to rewrite every occurence of @sender-foo.com domain to > @sender-bar.com. Both in envelope and header from fields. This is typically done early, on input, via canonical_maps. Rewrites in smtp_generic_maps are performed late,

rewriting all occurences of a sender domain

2022-11-03 Thread Gino Ferguson
Hello postfix users! I need your advice. I have to rewrite every occurence of @sender-foo.com domain to @sender-bar.com. Both in envelope and header from fields. I did it with a smtp_generic_maps regexp but I'm not sure this is the best way (these are outbound only emails). Also it messes up

Re: policy-spf and whitelisting

2022-11-03 Thread Alex
> > > > This appears to indicate that generalatlantic.com is using the workday > > service to send email, but the generalatlantic.com SPF record does not > > include myworkday.com on the list of authorized senders. > > > > I've added the following to my sqlgrey FQDN whitelisting entries, but > > so

Re: policy-spf and whitelisting

2022-11-03 Thread Wietse Venema
Alex: > Hi, > > I'm using sqlgrey for my greylisting service and having trouble with a > particular entry. I need to make sure email from this sender doesn't get > blocked, so would like to confirm that I can add something to my recipient > restrictions to bypass the SPF check for this domain. >

Re: policy-spf and whitelisting

2022-11-03 Thread Noel Jones
On 11/3/2022 9:00 AM, Alex wrote: Hi, I'm using sqlgrey for my greylisting service and having trouble with a particular entry. I need to make sure email from this sender doesn't get blocked, so would like to confirm that I can add something to my recipient restrictions to bypass the SPF check

policy-spf and whitelisting

2022-11-03 Thread Alex
Hi, I'm using sqlgrey for my greylisting service and having trouble with a particular entry. I need to make sure email from this sender doesn't get blocked, so would like to confirm that I can add something to my recipient restrictions to bypass the SPF check for this domain. Nov 2 18:02:30 armo

Re: EHLO rejections

2022-11-03 Thread Benny Pedersen
DL Neil skrev den 2022-11-02 18:39: The daily pflogsumm report shows that (in recent days) 60~93% of attempts to connect are rejected, and bounce-off Postfix's settings, eg 450 4.7.1 <00nyBxbT>: Helo command rejected: Host not found; proto=SMTP helo=<00nyBxbT> (total: 1) 1 115.2