Re: temporary errors for DNS

2009-07-15 Thread Keld Jørn Simonsen
On Tue, Jul 14, 2009 at 07:57:27PM -0400, John Peach wrote: On Tue, 14 Jul 2009 17:49:13 -0600 LuKreme krem...@kreme.com wrote: On 13-Jul-2009, at 16:24, Keld J__rn Simonsen wrote: Is there a way to disambiguate between DNS timeouts and DNS errors, and discard the latter? Why

Re: temporary errors for DNS

2009-07-14 Thread Keld Jørn Simonsen
On Mon, Jul 13, 2009 at 06:58:28PM -0400, Wietse Venema wrote: Keld Jørn Simonsen: Is there a way to disambiguate between DNS timeouts and DNS errors, and discard the latter? Postfix is only the messenger of the bad news. When the server responds, Postfix acts accordingly. When the server

Re: temporary errors for DNS

2009-07-14 Thread Keld Jørn Simonsen
On Tue, Jul 14, 2009 at 06:37:30AM -0400, Wietse Venema wrote: Keld Jørn Simonsen: On Mon, Jul 13, 2009 at 06:58:28PM -0400, Wietse Venema wrote: Keld J?rn Simonsen: Is there a way to disambiguate between DNS timeouts and DNS errors, and discard the latter? Postfix is only

Re: temporary errors for DNS

2009-07-14 Thread Keld Jørn Simonsen
On Tue, Jul 14, 2009 at 09:04:15AM -0400, Wietse Venema wrote: Wietse Venema: Keld J_rn Simonsen: OK, here goes: 1) The server replies with good news. Postfix replies with good news. 2) The server replies with bad news. Postfix replies with 5xx. 3) No server

Re: temporary errors for DNS

2009-07-14 Thread Keld Jørn Simonsen
On Tue, Jul 14, 2009 at 01:55:39PM -0400, Wietse Venema wrote: Keld Jørn Simonsen: Jul 14 00:11:58 rap postfix/smtpd[1054]: NOQUEUE: reject: RCPT from rap.rap.dk[127.0.0.1]: 450 4.1.8 jets...@server30.reverya.com: Sender address rejected: Domain not found; from=jets...@server30

temporary errors for DNS

2009-07-13 Thread Keld Jørn Simonsen
Hi I have a few problems with my changed postfix configuration, maybe somebody could help me? I am using fetchmail in cooperation with postfix, and I repededly get the following error: fetchmail: SMTP error: 450 4.1.8 onfnp...@ezbck.parteitv.com: Sender address rejected: Domain not found

postfix not asking for PTR

2009-07-13 Thread Keld Jørn Simonsen
iA problem I have again with the DNS (lack of query) I have in my mail queue: C074C641AF 2236 Sun Jul 12 15:40:56 k...@rap.rap.dk (host spike.porcupine.org[168.100.189.2] said: 450 4.1.7 k...@rap.rap.dk: Sender address rejected: unverified address: host rap.rap.dk[85.81.22.91] said: 450

Re: postfix not asking for PTR

2009-07-13 Thread Keld Jørn Simonsen
On Mon, Jul 13, 2009 at 11:36:21AM +0200, Benny Pedersen wrote: On Mon, July 13, 2009 11:21, Keld Jørn Simonsen wrote: iA problem I have again with the DNS (lack of query) I have in my mail queue: C074C641AF 2236 Sun Jul 12 15:40:56 k...@rap.rap.dk (host spike.porcupine.org

Re: temporary errors for DNS

2009-07-13 Thread Keld Jørn Simonsen
On Mon, Jul 13, 2009 at 11:10:18AM +0200, Benny Pedersen wrote: On Mon, July 13, 2009 10:30, Keld Jørn Simonsen wrote: Hi I have a few problems with my changed postfix configuration, maybe somebody could help me? I am using fetchmail in cooperation with postfix, and I repededly get

Re: temporary errors for DNS

2009-07-13 Thread Keld Jørn Simonsen
On Mon, Jul 13, 2009 at 07:18:03AM -0400, Wietse Venema wrote: Keld Jørn Simonsen: 450 indicates a temporary dns error, and I have set unknown_address_reject_code = 550 unknown_address_reject_code is for permanent errors. In your case, the system library getnameinfo() returns

Re: temporary errors for DNS

2009-07-13 Thread Keld Jørn Simonsen
On Mon, Jul 13, 2009 at 07:07:01AM -0400, Charles Marcus wrote: On 7/13/2009, Keld Jørn Simonsen (k...@dkuug.dk) wrote: I am getting it via fetchmail snip If you are getting it through fetchmail, then the message has already been delivered... so you MUST NOT reject it later, *especially

Re: temporary errors for DNS

2009-07-13 Thread Keld Jørn Simonsen
On Mon, Jul 13, 2009 at 08:28:16AM -0400, Wietse Venema wrote: Keld Jørn Simonsen: [ Charset ISO-8859-1 unsupported, converting... ] On Mon, Jul 13, 2009 at 07:18:03AM -0400, Wietse Venema wrote: Keld J?rn Simonsen: 450 indicates a temporary dns error, and I have set

Re: temporary errors for DNS

2009-07-13 Thread Keld Jørn Simonsen
On Mon, Jul 13, 2009 at 08:29:28AM -0400, John Peach wrote: On Mon, 13 Jul 2009 14:25:01 +0200 Keld J__rn Simonsen k...@dkuug.dk wrote: On Mon, Jul 13, 2009 at 07:07:01AM -0400, Charles Marcus wrote: On 7/13/2009, Keld J__rn Simonsen (k...@dkuug.dk) wrote: I am getting it via

Re: temporary errors for DNS

2009-07-13 Thread Keld Jørn Simonsen
On Mon, Jul 13, 2009 at 09:26:44AM -0400, John Peach wrote: On Mon, 13 Jul 2009 15:24:04 +0200 Keld J__rn Simonsen k...@dkuug.dk wrote: [snip] # == # service type private unpriv chroot wakeup maxproc command +

Re: temporary errors for DNS

2009-07-13 Thread Keld Jørn Simonsen
On Mon, Jul 13, 2009 at 03:39:57PM +0200, Keld Jørn Simonsen wrote: On Mon, Jul 13, 2009 at 09:26:44AM -0400, John Peach wrote: On Mon, 13 Jul 2009 15:24:04 +0200 Keld J__rn Simonsen k...@dkuug.dk wrote: [snip

Re: temporary errors for DNS

2009-07-13 Thread Keld Jørn Simonsen
On Mon, Jul 13, 2009 at 11:49:10PM +0200, Keld Jørn Simonsen wrote: On Mon, Jul 13, 2009 at 03:39:57PM +0200, Keld Jørn Simonsen wrote: It is chrooted. Thanks for spelling it out. I was just building on the defalt configuration of my distro. There were many other chroot services

Re: temporary errors for DNS

2009-07-13 Thread Keld Jørn Simonsen
On Mon, Jul 13, 2009 at 06:19:40PM -0400, Rod Dorman wrote: On Monday, July 13, 2009, 17:49:10, Keld Jørn Simonsen wrote: ... Are there distros that are known to have a postfix package that is set up correctly wrt chroot? OpenBSD Well, I confine myself to Linux, as I am doing some

reject mail without valid MX

2009-07-12 Thread Keld Jørn Simonsen
Hi I am fooling around with my postfix, and I wanted to reject mail without a valid MX record. How to do that? I tried smtpd_sender_restrictions = check_sender_mx_access cidr:/etc/postfix/mxaccess With a file /etc/postfix/mxaccess having the following contents: 64.94.110/24REJECT

reject_unknown_reverse_client_hostname rejects even if PTR RR is found

2009-07-12 Thread Keld Jørn Simonsen
Hi More fooling around with postfix, Using in main.cf smtpd_sender_restrictions = reject_unknown_reverse_client_hostname did not do what I expected: from the /var/log/mail/info file: Jul 12 09:12:48 rap postfix/smtpd[6597]: NOQUEUE: reject: RCPT from unknown[92.45.179.70]: 450 4.7.1 Client

Re: reject_unknown_reverse_client_hostname rejects even if PTR RR is found

2009-07-12 Thread Keld Jørn Simonsen
On Sun, Jul 12, 2009 at 11:55:36AM +0200, Ole Tange wrote: 2009/7/12 Keld Jørn Simonsen k...@dkuug.dk: from the /var/log/mail/info file: Jul 12 09:12:48 rap postfix/smtpd[6597]: NOQUEUE: reject: RCPT from unknown[92.45.179.70]: 450 4.7.1 Client host rejected: cannot find your

Re: reject mail without valid MX

2009-07-12 Thread Keld Jørn Simonsen
On Sun, Jul 12, 2009 at 12:09:15PM +0200, Magnus Bäck wrote: On Sunday, July 12, 2009 at 11:52 CEST, Keld Jørn Simonsen k...@dkuug.dk wrote: On Sun, Jul 12, 2009 at 11:41:51AM +0200, Magnus Bäck wrote: Don't do that. MX records are not required, and you will reject legitimate

Re: reject_unknown_reverse_client_hostname rejects even if PTR RR is found

2009-07-12 Thread Keld Jørn Simonsen
On Sun, Jul 12, 2009 at 08:15:11AM -0400, Wietse Venema wrote: Keld Jørn Simonsen: Hi More fooling around with postfix, Using in main.cf smtpd_sender_restrictions = reject_unknown_reverse_client_hostname did not do what I expected: from the /var/log/mail/info file

Re: reject mail without valid MX

2009-07-12 Thread Keld Jørn Simonsen
On Sun, Jul 12, 2009 at 05:45:37PM +0200, Ralf Hildebrandt wrote: * Keld Jørn Simonsen k...@dkuug.dk: Hi I am fooling around with my postfix, and I wanted to reject mail without a valid MX record. How to do that? reject_unknown_sender_domain That does not reject mail, if the A record

Re: reject mail without valid MX

2009-07-12 Thread Keld Jørn Simonsen
On Sun, Jul 12, 2009 at 09:14:53PM +0200, Ralf Hildebrandt wrote: * Keld Jørn Simonsen k...@dkuug.dk: On Sun, Jul 12, 2009 at 05:45:37PM +0200, Ralf Hildebrandt wrote: * Keld Jørn Simonsen k...@dkuug.dk: Hi I am fooling around with my postfix, and I wanted to reject mail without

Re: reject_unknown_reverse_client_hostname rejects even if PTR RR is found

2009-07-12 Thread Keld Jørn Simonsen
On Sun, Jul 12, 2009 at 03:20:21PM -0500, Noel Jones wrote: Keld Jørn Simonsen wrote: Is it true that if a PTR was found, then this name would be displayed in the above log message, and not the IP number? No, the name will still be unknown if the hostname-IP lookup fails. OK. Anyway, can