[pfx] Re: SASL authentication - first try local and then AD in postfix

2024-07-08 Thread Patrick Ben Koetter via Postfix-users
PLAIN and LOGIN, since these are the only mechanisms saslauthd supports. HTH Patrick [*] sys4 AG http://sys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG, 80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Marc Schiffbauer A

[pfx] Re: Still no luck with Cyrus SASL

2024-07-03 Thread Patrick Ben Koetter via Postfix-users
the "smtpd.conf" file, once it is in the correct (for Debian) > directory. Note that this setting does include the "/mux" suffix. IIRC Debian patches Postfix and expects smtpd.conf to be located in /etc/postfix/sasl/smtpd.conf. Have you tried this? p@rick -- [*] sys4

[pfx] Re: 25 years today

2023-12-15 Thread Patrick Ben Koetter via Postfix-users
ot; Thank you! p@rick -- [*] sys4 AG https://sys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Marc Schiffbauer, Wolfgang Stief Aufsichtsratsvorsitzender: Florian Kirstei

[pfx] FOLLOW-UP Re: Re: [ext] list.sys4.de fails with starttls

2023-11-14 Thread Patrick Ben Koetter via Postfix-users
* Viktor Dukhovni via Postfix-users : > On Mon, Sep 25, 2023 at 04:24:55PM +0200, Patrick Ben Koetter via > Postfix-users wrote: > > > > Do you have SMTP client TLS connection reuse enabled? If so, TLS > > > connections are made via tlsproxy(8), with the smtp(8)

[pfx] Re: Recommendation for dkim signing

2023-11-06 Thread Patrick Ben Koetter via Postfix-users
licy e.g. having the MLM add a footer or not is the owner's privilege. We (sys4) don't own postfix.org's lists – we host them (and are very proud to do so). p@rick -- [*] sys4 AG https://sys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht Münc

[pfx] Re: Recommendation for dkim signing

2023-11-06 Thread Patrick Ben Koetter via Postfix-users
haft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Marc Schiffbauer, Wolfgang Stief Aufsichtsratsvorsitzender: Florian Kirstein ___ Postfix-users mailing list -- postfix-users@postfix.org To unsubscribe send an email to postfix-users-le...@postfix.org

[pfx] Problem setting up postfix on arch linux to forward mail to my gmail account

2023-10-08 Thread Mark Wood-Patrick via Postfix-users
I'm trying to setup postfix on arch linux (running on WSL-2) to forward mail to my gmail account but while I followed and verified the instructions on: How to configure postfix as smtp relay for Gmail on Archlinux |

[pfx] Re: [ext] list.sys4.de fails with starttls

2023-09-25 Thread Patrick Ben Koetter via Postfix-users
* Viktor Dukhovni via Postfix-users : > On Sun, Sep 17, 2023 at 06:20:53PM +0200, Patrick Ben Koetter via > Postfix-users wrote: > > > Yesterday we upgraded LE certs and it seems – we haven't had time to > > investigate in that yet – SELinux bite Postfix where it shouldn

[pfx] Re: [ext] list.sys4.de fails with starttls

2023-09-17 Thread Patrick Ben Koetter via Postfix-users
ehlo=1 starttls=0/1 commands=1/2 > Sep 17 09:57:22 spike postfix/smtpd[56945]: disconnect from > list.sys4.de[188.68.34.52] ehlo=1 mail=1 rcpt=1 data=1 quit=1 commands=5 > > ___ > Postfix-users mailing list -- postfix-users@postfix.org &g

[pfx] warn_if_reject and MILTER

2023-07-11 Thread Patrick Ben Koetter via Postfix-users
Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Marc Schiffbauer, Wolfgang Stief Aufsichtsratsvorsitzender: Florian Kirstein ___ Postfix-users mailing list -- postfix-users

[pfx] SASL auth failure

2023-07-09 Thread Patrick Mahan via Postfix-users
, it may be that I need to talk to the FreeBSD community. Thanks, Patrick ___ Postfix-users mailing list -- postfix-users@postfix.org To unsubscribe send an email to postfix-users-le...@postfix.org

[pfx] Re: Help with receiving mail

2023-07-02 Thread Patrick Mahan via Postfix-users
> smtp_tls_policy_maps = ${indexed}tls-policy > transport_maps = ${indexed}transport > virtual_alias_maps = ${indexed}valias > virtual_mailbox_maps = ${indexed}vmbox > > Nice, thanks for mentioning this. And yes, I have been bitten by the nature

[pfx] Re: Help with receiving mail

2023-07-02 Thread Patrick Mahan via Postfix-users
On Sun, Jul 2, 2023 at 3:07 PM Viktor Dukhovni via Postfix-users < postfix-users@postfix.org> wrote: > On Sun, Jul 02, 2023 at 02:44:51PM -0700, Patrick Mahan via Postfix-users > wrote: > > > Recipient address rejected: unverified address: > >

[pfx] Help with receiving mail

2023-07-02 Thread Patrick Mahan via Postfix-users
(other that some references to virtual aliases, which I am not using). Pointers, hints, suggestions, slaps to the back of the head are welcomed. Thanks, Patrick ___ Postfix-users mailing list -- postfix-users@postfix.org To unsubscribe send an email to p

[pfx] Re: Upgrading from 2.1.10 to 3.7.4.1

2023-06-29 Thread Patrick Mahan via Postfix-users
On Wed, Jun 28, 2023 at 8:03 PM Viktor Dukhovni via Postfix-users < postfix-users@postfix.org> wrote: > On Wed, Jun 28, 2023 at 06:22:23PM -0700, Patrick Mahan via Postfix-users > wrote: > > > > See: > > > > > > https://www.postfix.org/COMPATIBILITY

[pfx] Re: Upgrading from 2.1.10 to 3.7.4.1

2023-06-28 Thread Patrick Mahan via Postfix-users
On Tue, Jun 27, 2023 at 6:11 PM Wietse Venema via Postfix-users < postfix-users@postfix.org> wrote: > Patrick Mahan via Postfix-users: > > I lost my domain server a few weeks ago just as I was leaving on a > > pre-paid vacation with the family. I have replaced the server

[pfx] Upgrading from 2.1.10 to 3.7.4.1

2023-06-27 Thread Patrick Mahan via Postfix-users
was running 2.1.10 (I know, I know, I'm lazy) and the latest available on FreeBSD is 3.7.4.1 so I am hoping that, configuration-wise, there is not a lot of churn. So any pointers are welcomed. Thanks, Patrick ___ Postfix-users mailing list -- postfix

[pfx] Re: spamlist checks

2023-06-22 Thread Patrick Proniewski via Postfix-users
Hi, > On 23 Jun 2023, at 05:14, Fourhundred Thecat via Postfix-users > wrote: > > Spamhaus has some removal form on their website, but the page does not > work for me (it is stuck at: Checking if the site connection is secure) > > Anyway, I was trying to find out on which other spamlists I

[pfx] Re: Postfix: running a script on authentication failure

2023-06-22 Thread Patrick Proniewski via Postfix-users
Hi, > On 22 Jun 2023, at 21:05, André Rodier via Postfix-users > wrote: > > What are you using on your side ? I'm running postfix on FreeBSD so I can use blacklistd. A blacklistd hook has been inserted in Postfix source code so treatment is triggered directly from events handled by

[pfx] Re: DANE and DNSSEC

2023-05-11 Thread Patrick Ben Koetter via Postfix-users
+49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Marc Schiffbauer, Wolfgang Stief Aufsichtsratsvorsitzender: Florian Kirstein ___ Postfix-users mailing

[pfx] Re: Question to reject_rbl_client zen.spamhaus.org

2023-04-09 Thread Patrick Proniewski via Postfix-users
On 9 Apr 2023, at 08:18, tom--- via Postfix-users wrote: > >> First off make sure that policyd isn't somehow returning an OK (or >> equivalent) response, if you're not sure temporarily remove >> "check_policy_service unix:private/policyd-spf," from your restrictions >> above and see if it

[pfx] OT Re: Re: uceprotect.wtf (was: Send email to one @domain.com via authenticated relay?)

2023-03-24 Thread Patrick Ben Koetter via Postfix-users
ers using UCEprotect blocklists and can't send them an email use a phone and let them know eventually you can't use email because … p@rick -- [*] sys4 AG https://sys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vors

[pfx] Re: /etc/postfix/access only doamin is blocked

2023-03-15 Thread Patrick Ben Koetter via Postfix-users
de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Marc Schiffbauer, Wolfgang Stief Aufsichtsratsvorsitzender: Florian Kirstein __

[pfx] Re: [P-U] Re: New List Host and Reply-to Header

2023-03-10 Thread Patrick Ben Koetter via Postfix-users
Secure Email Transport and Email Authentication are the two cornerstones of todays email policing and my personal wish is to provide a state of the art platform and hopefully a template how to run mailing lists in the 2020s. p@rick -- [*] sys4 AG https://sys4.de, +49 (89) 30 90

[pfx] Re: [P-U] Re: The joke writes itself.

2023-03-10 Thread Patrick Ben Koetter via Postfix-users
ps://sys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Marc Schiffbauer, Wolfgang Stief Aufsichtsratsvorsitzender: Florian Kirstein ___ P

[P-U] Re: Postfix lists are migrating to a new list server

2023-03-07 Thread Patrick Ben Koetter via Postfix-users
* Viktor Dukhovni via Postfix-users : > On Wed, Mar 08, 2023 at 07:42:56AM +0100, Patrick Ben Koetter via > Postfix-users wrote: > > > - The key material is 4096 Bit and it was brought to my attention there's a > > bug / missing functionality (?) in opendmarc which r

[P-U] FOLLOWUP Re: Re: Postfix lists are migrating to a new list server

2023-03-07 Thread Patrick Ben Koetter via Postfix-users
* Patrick Ben Koetter via Postfix-users : > * Scott Kitterman via Postfix-users : > > ... > > > For Debian, if someone can find/test patches, I can get them into Debian's > > package. I assume other distributors are similar. Feel free to update the > > Debi

[P-U] Re: Postfix lists are migrating to a new list server

2023-03-07 Thread Patrick Ben Koetter via Postfix-users
are not a major player. p@rick -- [*] sys4 AG https://sys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Marc Schiffbauer, Wolfgang Stief Aufsichtsra

[P-U] Re: Postfix lists are migrating to a new list server

2023-03-07 Thread Patrick Ben Koetter via Postfix-users
ed in the end and the service will be unavailable for about 30 seconds. No list mail will be lost. p@rick -- [*] sys4 AG https://sys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Marc S

[P-U] Re: sys4 is listed in Abusix

2023-03-07 Thread Patrick Ben Koetter via Postfix-users
z der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Marc Schiffbauer, Wolfgang Stief Aufsichtsratsvorsitzender: Florian Kirstein ___ Postfix-users mailing list -- postfix-users@postfix.org To unsubscribe send a

[P-U] Re: sys4 is listed in Abusix

2023-03-07 Thread Patrick Ben Koetter via Postfix-users
om/search?q=188.68.34.52 list.sys4.de is no more listed. abusix will investigate tomorrow what hit the traps. p@rick -- [*] sys4 AG https://sys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: P

[P-U] Re: sys4 is listed in Abusix

2023-03-07 Thread Patrick Ben Koetter via Postfix-users
ted today. It wasn't on a blocklist before that. That's what the details show on the abusix report. p@rick -- [*] sys4 AG https://sys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koet

[P-U] Re: Postfix lists are migrating to a new list server

2023-03-07 Thread Patrick Ben Koetter via Postfix-users
ys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Marc Schiffbauer, Wolfgang Stief Aufsichtsratsvorsitzender: Florian Kirstein ___ Postfix-users

[P-U] Re: Postfix lists are migrating to a new list server

2023-03-07 Thread Patrick Ben Koetter via Postfix-users
gt; > Do you plan to enable a public archive at > > https://list.sys4.de/hyperkitty/list/postfix-us...@de.postfix.org/ > > as an alternative to marc.info, mail-archive.com, ... ? > > Patrick and I agreed that a local archive was not needed, and I > have verified that marc.inf

Re: Postfix lists are migrating to a new list server

2023-03-07 Thread Patrick Ben Koetter
ts for 24 years, and thanks to Sys4 for being the new host. > > > > > > > > This is the pre-migration announcement. > > > * Phil Stracchino : > > > Out of sheer curiosity ... Mailman 2 or 3? > > On 07.03.23 13:09, Patrick Ben Koetter wrote: >

Re: Postfix lists are migrating to a new list server

2023-03-07 Thread Patrick Ben Koetter
MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Marc Schiffbauer, Wolfgang Stief Aufsichtsratsvorsitzender: Florian Kirstein

Re: RFC 5233 "Subaddresses" and LDAP lookups

2023-01-11 Thread Patrick Ben Koetter
* Viktor Dukhovni : > On Wed, Jan 11, 2023 at 03:57:28PM +0100, Patrick Ben Koetter wrote: > > > Today I ran into a lookup problem where a sender (!) was using the RFC 5233 > > subaddress schema so send a message e.g. as localpart+subaddress@domainpart > > and lookups with

RFC 5233 "Subaddresses" and LDAP lookups

2023-01-11 Thread Patrick Ben Koetter
to come up with a query_filter that would actually do what I want. -- [*] sys4 AG https://sys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Marc Schiffbauer, Wolfgang Stief

Re: Spammer succeeded in relaying through my server

2022-12-21 Thread Patrick Proniewski
On 21 Dec 2022, at 08:52, Peter wrote: > > On 21/12/22 20:35, Samer Afach wrote: >> Dear Pat: >> Thank you for throwing this idea, because I really thought it wasn't >> possible to retrieve docker logs without setup, but I dug and found the >> logs. I have them all. Unfortunately, I can't

Re: Spammer succeeded in relaying through my server

2022-12-20 Thread Patrick Proniewski
Hello, Do you have the logs (postfix and maybe dovecot) showing the spammer interaction with the server? pat > On 21 Dec 2022, at 05:45, Samer Afach wrote: > > Thank you, Phil. Here we go. Here's postconf -n: > > > I hope this helps in better identifying how the spammer was able to use my

Re: filtering incoming email mail_from/reply to/from/etc.

2022-08-22 Thread Patrick Proniewski
Hi, I'm already using: smtpd_sender_restrictions = reject_unlisted_sender, check_sender_access hash:/etc/postfix/sender_access reject_unknown_sender_domain, reject_non_fqdn_sender, permit But the "loophole" here is that blank sender/return-path is

Re: Announcement: LetsDNS release 1.0 is now available

2022-04-12 Thread Patrick Proniewski
Hello, This statement is at best off topic. Worst case scenario, it's toxic. And you can be polite, too. Thank you. > On 12 Apr 2022, at 16:58, Ruben Safir wrote: > > automated systems with root access are inherently not secure > > > On Tue, Apr 12, 2022 at 03:30:57PM +0200, Ralph Seichter

Undelivered mail

2022-03-07 Thread Patrick Mahan
logging do you suggest I enable? Appreciate your help, Patrick

Re: Accepting expired client certificate

2022-02-03 Thread Patrick Laimbock
://www.openssl.org/blog/blog/2021/09/13/LetsEncryptRootCertExpire/ Best, Patrick

Re: Opendmarc in after-Amavis smtpd fails

2021-04-15 Thread Patrick Ben Koetter
probably go to the amavis mailing list. p@ -- [*] sys4 AG https://sys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Marc Schiffbauer, Wolfgang Stief Aufsichtsratsvorsitzender: Florian

Postfix redundancy

2021-03-24 Thread Patrick Chemla
? I am looking for such architecture for long time, and from time to time the question come again. Thanks for any idea. Patrick

FYI: ArchLinux modularizes Postfix packages (Arch Users should read this)

2021-03-01 Thread Patrick Ben Koetter
-- [*] sys4 AG https://sys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Marc Schiffbauer, Wolfgang Stief Aufsichtsratsvorsitzender: Florian Kirstein

Re: way to test delivery to me

2021-02-01 Thread Patrick Proniewski
On 01 Feb 2021, at 13:38, Viktor Dukhovni wrote: > > On Mon, Feb 01, 2021 at 12:09:38PM +, pat...@patpro.net wrote: > >> It's a risk I can take if I'm stuck but I'm willing to try the dual-sign >> method. > > I should mention that given the humongous sizes of your current > signatures,

Re: way to test delivery to me

2021-01-31 Thread Patrick Proniewski
On 31 Jan 2021, at 18:13, Wietse Venema wrote: > > Patrick Proniewski: >> I'm looking for a tool/service that would help me diagnose delivery problems >> to my server? Any hint appreciated. > What about good old telnet or netcat? because I'm looking for a way to test as

way to test delivery to me

2021-01-31 Thread Patrick Proniewski
Hello, I've got a strange problem with my MX server, that is not related to postfix: looks like neither Steam nor Binance can post email to me. I've had a discussion with Steam support, they said they have delivery failure on their side but couldn't provide more details than this: Time

Re: spamassassin & bayes

2021-01-27 Thread Patrick Proniewski
Hi, I've switched to REDIS for bayesian storage in Spamassassin more than 4 years ago, and I've never looked back: very good performances and no problem with files (like locking for a start). I wrote about it at the time, unfortunately it's in French ;)

Re: How do you manage the ‘hold’ queue?

2021-01-25 Thread Patrick Ben Koetter
ace to send (release) commands to and comes with a script to do it manually on the command line. p@rick -- [*] sys4 AG https://sys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Ma

Re: Receiving emails from my own address

2020-11-06 Thread Patrick Laimbock
stfix reload Note that this only works for MAIL FROM, see http://www.postfix.org/postconf.5.html#smtpd_sender_restrictions http://www.postfix.org/postconf.5.html#check_sender_access Best, Patrick

Re: any success with postfix + dkimpy-milter outbound DKIM signing -- with ed25519 keys?

2020-10-26 Thread Patrick Ben Koetter
* PGNet Dev : > On 10/26/20 4:19 AM, Patrick Ben Koetter wrote: > > There's only *one* SigningTable, but there are two KeyTables – one for rsa > > and > > the other one for ed25519. Maybe you are using an older version of > > dkimpy-milter. IIRC it had a related error

Re: any success with postfix + dkimpy-milter outbound DKIM signing -- with ed25519 keys?

2020-10-26 Thread Patrick Ben Koetter
G,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Marc Schiffbauer, Wolfgang Stief Aufsichtsratsvorsitzender: Florian Kirstein

Re: Host not found?

2020-10-18 Thread Patrick Chemla
No MX server for client.com: # nslookup -type=mx client.com Server: 8.8.8.8 Address:    8.8.8.8#53 Non-authoritative answer: *** Can't find client.com: No answer Le 18/10/2020 à 23:16, Richard a écrit 

Re: Recommended milters for small setup

2020-10-15 Thread Patrick Ben Koetter
ents away from rspamd and that prevents it from learning and becoming more efficient. p@rick -- [*] sys4 AG https://sys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Ko

put message on HOLD based on sender & recipient

2020-09-15 Thread Patrick Proniewski
Hello, What would be the best way to hold an incoming email that match both criteria From=foo and To=bar? First I thought about header_checks with something like: if /^From:.*foo.*/ /^To:.*bar.*/ HOLD endif but obviously it can't work as headers are processed 1 by 1. The final solution will

Re: Untrusted TLS connection appearing in logs

2020-07-16 Thread Patrick Ben Koetter
er to also see 'verified' connections add DANE config to all outgoing mail (read: Postfix smtp-client). p@rick -- [*] sys4 AG https://sys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Ma

Re: SMTPUTF8 problem with Exchange servers

2020-06-18 Thread Patrick Proniewski
On 17 juin 2020, at 22:05, Viktor Dukhovni wrote: > > On Wed, Jun 17, 2020 at 10:00:32PM +0200, Patrick Proniewski wrote: > >>> - disable SMTPUTF8 in Postfix. >> >> That means disabling it everywhere and let messages bounce on MX servers. >> Would n

Re: SMTPUTF8 problem with Exchange servers

2020-06-18 Thread Patrick Proniewski
Hello, > On 17 juin 2020, at 16:28, Wietse Venema wrote: > > Patrick Proniewski: >> Jun 17 12:34:20 postfix-mailgw/smtp[77347]: 57F56EB256: >> to=, orig_to=, >> relay=Exchange-VIP[Exchange-VIP]:25, delay=0.01, delays=0.01/0/0/0, >> dsn=5.6.7, sta

Re: SMTPUTF8 problem with Exchange servers

2020-06-18 Thread Patrick Proniewski
Hello, > On 17 juin 2020, at 22:48, @lbutlr wrote: > > On 17 Jun 2020, at 14:00, Patrick Proniewski wrote: >> Not possible yet. A flag exists for Exchange 2019 but we are running 2016 >> now and upgrade is not scheduled for now. > > Perhaps showing the

Re: SMTPUTF8 problem with Exchange servers

2020-06-17 Thread Patrick Proniewski
Hi, > On 17 juin 2020, at 15:42, Bastian Blank > wrote: > > On Wed, Jun 17, 2020 at 02:37:23PM +0200, Patrick Proniewski wrote: >> For some time now I notice that some messages, either originating from >> Internet or from internal servers are bounced when they ar

Re: SMTPUTF8 problem with Exchange servers

2020-06-17 Thread Patrick Proniewski
Hi, > On 17 juin 2020, at 15:08, Matus UHLAR - fantomas wrote: > > On 17.06.20 14:37, Patrick Proniewski wrote: >> I have at work a Postfix infrastructure that sits between Internet and our >> Exchange servers. Postfix is used for MX and SMTP roles, ensure filtering &

SMTPUTF8 problem with Exchange servers

2020-06-17 Thread Patrick Proniewski
Hello, I have at work a Postfix infrastructure that sits between Internet and our Exchange servers. Postfix is used for MX and SMTP roles, ensure filtering with Amavisd/Clamav/etc. For some time now I notice that some messages, either originating from Internet or from internal servers are

Re: dnsblog filtering?

2020-06-09 Thread Patrick Proniewski
Hi, > On 10 juin 2020, at 05:22, PGNet Dev wrote: > > On 6/9/20 8:15 PM, Noel Jones wrote: >> Postfix assumes the logs are private. > > They generally are. The very-recent switch to BLs with Acct-ID's is new, and > complicated that a bit. > >> To sanitize the log, you'll need to use an

Re: Preferred/maintained greylisting options?

2020-05-25 Thread Patrick Proniewski
On 25 mai 2020, at 13:56, Michael wrote: > > I've found the Barracuda rbl to be very useful. > > https://www.barracudacentral.org/rbl I'm using paid spamhaus RBL (local zone file rsynched) for a very long time, at work, and we are very happy about it. I use complementary RBL also like

Re: Preferred/maintained greylisting options?

2020-05-25 Thread Patrick Proniewski
Hello, > On 25 mai 2020, at 03:59, Vincent Pelletier wrote: > > On Fri, May 22, 2020 at 5:43 AM Ralph Seichter wrote: >> Yeah, delays... Used to be people understood the difference between >> asynchronous messaging (i.e. email) and instant messaging. Nowadays it >> seems that no day goes by

Re: filtering locally submitted emails / tidying up the config

2020-05-02 Thread Patrick Proniewski
aders. My bad. thank you all. patpro > On 02 mai 2020, at 19:36, Patrick Proniewski wrote: > > On 02 mai 2020, at 19:25, Matus UHLAR - fantomas wrote: >> >> On 02.05.20 17:46, Patrick Proniewski wrote: >>> well in fact I've tried the default se

Re: filtering locally submitted emails / tidying up the config

2020-05-02 Thread Patrick Proniewski
On 02 mai 2020, at 19:25, Matus UHLAR - fantomas wrote: > > On 02.05.20 17:46, Patrick Proniewski wrote: >> well in fact I've tried the default settings first ("client" as per >> <https://manpages.debian.org/testing/amavisd-milter/amavisd-milter.8.en.html#D>

Re: filtering locally submitted emails / tidying up the config

2020-05-02 Thread Patrick Proniewski
> On 02 mai 2020, at 18:09, Bob Proulx wrote: > >> Unfortunately I've discovered that Amavisd is unable to add headers >> I want as it would do as an smtp proxy filter. >> It will properly add: >> >> X-Virus-Scanned: my custom tag >> X-Crm114-Status: UNSURE ( 6.79 ) > > Those two

Re: filtering locally submitted emails / tidying up the config

2020-05-02 Thread Patrick Proniewski
On 02 mai 2020, at 15:13, Bastian Blank wrote: > > On Sat, May 02, 2020 at 11:40:52AM +0200, Patrick Proniewski wrote: >> It negates the benefit you were writing about as amavisd-milter will drop >> the message on the milter interface (postfix/cleanup[26401]: 87E5316135:

Re: filtering locally submitted emails / tidying up the config

2020-05-02 Thread Patrick Proniewski
On 02 mai 2020, at 14:19, Wietse Venema wrote: > > Patrick Proniewski: >> It negates the benefit you were writing about as amavisd-milter >> will drop the message on the milter interface (postfix/cleanup[26401]: >> 87E5316135: milter-discard: END-OF-MESSAGE from localho

Re: filtering locally submitted emails / tidying up the config

2020-05-02 Thread Patrick Proniewski
On 01 mai 2020, at 18:28, Wietse Venema wrote: >> >> would there be a performance/functionality penalty switching from >> smtpd_proxy_filter to smtpd_milters/non_smtpd_milters? > > It will be faster, because it avoids the need to deliver the whole > message outside of Postfix, and then to

Re: filtering locally submitted emails / tidying up the config

2020-05-01 Thread Patrick Proniewski
Thanks Wietse, > On 01 mai 2020, at 15:37, Wietse Venema wrote: > > Patrick Proniewski: >> I really feel like my setup needs some cleanup and I'm not sure were to >> start. Some of you have suggested to me, in the past, that I could move to >> amavisd-milter in

filtering locally submitted emails / tidying up the config

2020-05-01 Thread Patrick Proniewski
Hello, I've been using postfix with great success and delight for many years now, but my config has become quite messy over time, with additions like dkim/spf/dmarc and various filtering options. I'm currently having a problem with some locally generated emails (eg. sendmail command). I would

Re: saslauthd problem

2020-04-20 Thread Patrick Ben Koetter
native: Use dovecot as password verification service and let it do the SQL queries. p@rick -- [*] sys4 AG https://sys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, M

Re: Building recipient maps from Exchange/O365

2020-02-09 Thread Patrick Proniewski
Hi, I'm using an hourly shell script to retrieve from our AD the proper LDAP records, and an AWK script to transform this output into an alias map (our Exchange setup uses a different internal address from the public external address). This alias map is later used to create a list of allowed

Problems with milter_default_action = accept

2020-01-10 Thread Patrick Ben Koetter
something else at the moment. So I'd like to let Postfix accept messages when the milter runs into problems. TIA, p@rick -- [*] sys4 AG https://sys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick

ANN: dkimpy-milter ansible role

2020-01-04 Thread Patrick Ben Koetter
ojects issue tracker located at <https://github.com/sys4/dkimpy-role/issues>. p@rick -- [*] sys4 AG https://sys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Marc Schiffbau

Re: Unable to send mail via "smtp.office365.com"

2019-12-08 Thread Patrick Ben Koetter
tsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Marc Schiffbauer, Wolfgang Stief Aufsichtsratsvorsitzender: Florian Kirstein

Re: Postfix web interface for log analysis

2019-11-14 Thread Patrick Proniewski
f logs (less than 500 MB/day), I would HIGHLY recommend installing a free instance of Splunk. You'll have to build your own dashboards, but hell, it's really a good SIEM. I'm using it at home and at work for several years and it never let me down. Patrick

Re: 5XX vs 4XX

2019-11-02 Thread Patrick Proniewski
Hi > On 02 nov. 2019, at 19:44, John Schmerold wrote: > > I have a few email addresses that were valid 15 years ago, but they have been > invalid for 5+ years, we are rejecting them with a 450 message, my thought is > "Let's tie up this spammer's computer just a little bit" > > Good idea?

Re: Limiting mail relay

2019-10-26 Thread Patrick Mahan
On Sat, Oct 26, 2019 at 6:11 AM Atnakus Arzah wrote: > On Sat, Oct 05, 2019 at 11:09:35PM -0700, Patrick Mahan wrote: > >All, > > > >I am trying to understand how I am being a mail relay for (what I believe) > >are unauthorized users. I have the f

Re: Limiting mail relay

2019-10-06 Thread Patrick Mahan
Many thanks. Especially for the GeoIP reference. I will take steps to clean up that account. Again, thanks. Patrick On Sat, Oct 5, 2019 at 11:45 PM Viktor Dukhovni wrote: > > On Oct 6, 2019, at 2:09 AM, Patrick Mahan wrote: > > > > I am trying to understand how I am

Limiting mail relay

2019-10-06 Thread Patrick Mahan
It looks like I am being used as a spam relay, but thought I had closed that hole. Pointers? Documentation? I have obviously mis-configured it. My environment is FreeBSD 11.2-RELEASE-p7 amd64. Postfix 3.3.2. Thanks, Patrick Mahan

Re: Sending bounce notification via a relayhost

2019-07-11 Thread Patrick Ben Koetter
r' mail and this might have a negative influence on the outbound IP that is used for sending 'regular' mail. p@rick -- [*] sys4 AG https://sys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Be

Re: Permanent store of incoming mail.

2019-03-20 Thread Patrick Ben Koetter
over all messages in all mailboxes and age those older than one year. p@rick -- [*] sys4 AG https://sys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Marc Schiffbauer, Wolfgang Stief Aufsichtsratsvorsitzender: Florian Kirstein

Re: Understanding the importance of submission

2019-03-20 Thread Patrick Ben Koetter
m > (we're the final destination), it can still be delivered unauthed from port > 25, so that won't stop *receiving* spam, will it ? > > I'm all confused. > > Yassine. > -- [*] sys4 AG https://sys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz d

Re: 'Linux 5' support in Postfix Stable Release 3.4.1 ?

2019-03-08 Thread Patrick Ben Koetter
x x1.sys4.de 5.0.0-arch1-1-ARCH #1 SMP PREEMPT Mon Mar 4 14:11:43 UTC 2019 x86_64 GNU/Linux -- [*] sys4 AG https://sys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Marc Schiffbau

Re: how to use (open)dmarc when already doing before-queue content filtering?

2019-02-25 Thread Patrick Proniewski
On 25 févr. 2019, at 20:23, Peter wrote: > > On 24/02/19 08:47, Patrick Proniewski wrote: >> I'm also using postscreen, but it doesn't provide the same filtering >> as a regular greylist. And milter-greylist is nice enough to >> synchronise between multiple MX se

Re: how to use (open)dmarc when already doing before-queue content filtering?

2019-02-25 Thread Patrick Proniewski
On 25 févr. 2019, at 19:55, Viktor Dukhovni wrote: > > On Mon, Feb 25, 2019 at 07:43:49PM +0100, Patrick Proniewski wrote: > >> Then, I'm currently trying another approach. In my current setup, I've an >> amavisd sandwich: outer-smtp->amavisd->inner-smtp. I can't put

Re: how to use (open)dmarc when already doing before-queue content filtering?

2019-02-25 Thread Patrick Proniewski
ide: I can't reject mails on dmarc failure, but I should be able to quarantine/tag those messages later on the road. Any though about that? patrick

Re: how to use (open)dmarc when already doing before-queue content filtering?

2019-02-23 Thread Patrick Proniewski
On 23 févr. 2019, at 20:58, Viktor Dukhovni wrote: > >> On Feb 23, 2019, at 2:47 PM, Patrick Proniewski wrote: >> >> My try was a reply to Andrey saying that it's working and I should try. > > Milters that inspect message content can only be used downstream of any

Re: how to use (open)dmarc when already doing before-queue content filtering?

2019-02-23 Thread Patrick Proniewski
egular greylist. And milter-greylist is nice enough to synchronise between multiple MX servers in a load balanced environment, which is what I'm using at work. patrick

Re: how to use (open)dmarc when already doing before-queue content filtering?

2019-02-23 Thread Patrick Proniewski
p opendmarc will not work, but still, I can read it wrong… patrick

how to use (open)dmarc when already doing before-queue content filtering?

2019-02-22 Thread Patrick Proniewski
work in a BQCF setup like mine? Same question applies for DKIM validation. Any idea appreciated :) thanks patrick

Re: 3.3.0 -> 3.3.2 and sasl error

2019-02-15 Thread Patrick Ben Koetter
his removes the noplaintext restriction and only forbids usage of anonymous mechanisms. p@rick -- [*] sys4 AG https://sys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Marc Schiffbauer, Wolfgang Stief Aufsichtsratsvorsitzender: Florian Kirstein

Re: user authentication and password format

2019-02-12 Thread Patrick Ben Koetter
. p@rick -- [*] sys4 AG https://sys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Marc Schiffbauer, Wolfgang Stief Aufsichtsratsvorsitzender: Florian Kirstein

Re: Rethinking the Postfix release schedule

2019-01-30 Thread Patrick Ben Koetter
tures before a release? Why not release per feature? p@rick -- [*] sys4 AG https://sys4.de, +49 (89) 30 90 46 64 Schleißheimer Straße 26/MG,80333 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Marc Schiffbauer, Wolfgang Stief Aufsichtsratsvorsitzender: Florian Kirstein

  1   2   3   4   5   6   7   8   9   >