[pfx] postfix maximal_queue_lifetime

2024-08-22 Thread Paul Martin via Postfix-users
Hello, postfix mailq contains differents mails from differents domains. Is it possible to have different "maximal_queue_lifetime" in postfix depending on the domain names ? Thank you Paul ___ Postfix-users mailing list -- postfix-users@post

[pfx] Re: vacation segfaults

2024-08-08 Thread Paul Menzel via Postfix-users
ldn't have been caught in that time. Thank you for the data point. Please report that to the Fedora project [1][2]. Kind regards, Paul [1]: https://docs.fedoraproject.org/en-US/quick-docs/bugzilla-file-a-bug/ [2]: https://bugz.fedoraproject.org/vacation ___

[pfx] Re: vacation segfaults

2024-08-08 Thread Paul Menzel via Postfix-users
set pagination off (gdb) t a a bt f vacation is used to send auto-away messages. That is not what I asked. I asked, in what Fedora package it is. If it’s not part of Postfix, I suggest to report a bug with the backtrace from above to the Fedora project. Kind regards, Paul [1]: htt

[pfx] Re: vacation segfaults

2024-08-08 Thread Paul Menzel via Postfix-users
l` list the crash, and can you get a backtrace? `vacation` does not seem part of Postfix’ source. From what package is it? Kind regards, Paul ___ Postfix-users mailing list -- postfix-users@postfix.org To unsubscribe send an email to postfix-users-le...@postfix.org

[pfx] Re: discard message

2024-06-20 Thread Paul Schmehl via Postfix-users
> On Jun 20, 2024, at 7:17 AM, Wietse Venema via Postfix-users > wrote: > > Paul Schmehl via Postfix-users: >> Is there a place in postfix where I could discard mail if it has >> a spam score higher than say 4 or 5? I know that postfix hands the >> mail off to s

[pfx] Re: discard message

2024-06-19 Thread Paul Schmehl via Postfix-users
for processing and then receives it back for delivery, but I’m unclear what checks could be implemented to catch spam and discard it. This is what I could match on: X-Spam-Status: Yes, score=2.1 If the score was higher than some number (e.g >4) than reject the mail. Paul Schmehl paul.schm...

[pfx] Re: Resetting the discussion

2024-06-18 Thread Paul Schmehl via Postfix-users
> On Jun 18, 2024, at 3:33 PM, Wietse Venema via Postfix-users > wrote: > > Paul Schmehl via Postfix-users: >> [18-Jun-2024 14:53:32 -0500]: PHP Error: SMTP server does not >> support authentication (POST >> /webmail/?_task=mail&_unlock=loading17

[pfx] Re: Resetting the discussion

2024-06-18 Thread Paul Schmehl via Postfix-users
> On Jun 18, 2024, at 2:45 PM, Noel Jones via Postfix-users > wrote: > > >> On Jun 18, 2024, at 2:30 PM, Paul Schmehl via Postfix-users >> wrote: >> >> So, here is what I now have configued in roundcube: >> >> $config['smt

[pfx] Re: Resetting the discussion

2024-06-18 Thread Paul Schmehl via Postfix-users
> On Jun 18, 2024, at 2:45 PM, Noel Jones via Postfix-users > wrote: > > >> On Jun 18, 2024, at 2:30 PM, Paul Schmehl via Postfix-users >> wrote: >> >> So, here is what I now have configued in roundcube: >> >> $config['smt

[pfx] Resetting the discussion

2024-06-18 Thread Paul Schmehl via Postfix-users
but not directly from the server. Meanwhile, our forum software (UBBThreads) is having no problems at all sending mail to the same server. Paul Schmehl paul.schm...@gmail.com ___ Postfix-users mailing list -- postfix-users@postfix.org To unsubscribe send an email to postfix-users-le...@postfix.org

[pfx] Re: Troubleshooting roundcube connections to postfix

2024-06-17 Thread Paul Schmehl via Postfix-users
> On Jun 18, 2024, at 1:34 AM, Viktor Dukhovni via Postfix-users > wrote: > > On Tue, Jun 18, 2024 at 01:04:25AM -0500, Paul Schmehl via Postfix-users > wrote: > >> # posttls-finger -w -lsecure -C "mail.stovebolt.com:465" "www.stovebolt.com" >

[pfx] Re: Troubleshooting roundcube connections to postfix

2024-06-17 Thread Paul Schmehl via Postfix-users
> On Jun 18, 2024, at 12:38 AM, Viktor Dukhovni via Postfix-users > wrote: > > On Mon, Jun 17, 2024 at 11:39:27PM -0500, Paul Schmehl via Postfix-users > wrote: > >> That might have uncovered a problem. >> >> # posttls-finger -w -lsecure -C "

[pfx] Re: Troubleshooting roundcube connections to postfix

2024-06-17 Thread Paul Schmehl via Postfix-users
> On Jun 17, 2024, at 10:14 PM, Cowbay via Postfix-users > wrote: > > On 2024/6/18 10:43, Paul Schmehl via Postfix-users wrote: > The problem is neither tls nor ssl worked. No matter what config I used, > roundcube would always through an error. If I used $config[

[pfx] Re: Troubleshooting roundcube connections to postfix

2024-06-17 Thread Paul Schmehl via Postfix-users
> On Jun 17, 2024, at 6:30 PM, Peter via Postfix-users > wrote: > >> On 17/06/2024 17:28, Paul Schmehl wrote: >>> How do you set up roundcube to not use authentication? I really don’t need >>> it since it’s on the same machine as the mail server. What con

[pfx] Re: Do I have sals authentication properly configured?

2024-06-17 Thread Paul Schmehl via Postfix-users
> On Jun 17, 2024, at 4:27 PM, Wietse Venema via Postfix-users > wrote: > > Paul Schmehl via Postfix-users: >>>>> - Did the client send starttls? That is logged in the "disconnect >>>>> from" line. >>>>> >>

[pfx] Re: Do I have sals authentication properly configured?

2024-06-17 Thread Paul Schmehl via Postfix-users
> On Jun 17, 2024, at 7:12 AM, Wietse Venema via Postfix-users > wrote: > > Paul Schmehl via Postfix-users: >>> On Jun 16, 2024, at 5:02?PM, Wietse Venema via Postfix-users >>> wrote: >>> >>> Paul Schmehl via Postfix-users: >>>> I?m

[pfx] Re: Troubleshooting roundcube connections to postfix

2024-06-17 Thread Paul Schmehl via Postfix-users
> On Jun 17, 2024, at 4:43 AM, Jaroslaw Rafa via Postfix-users > wrote: > > Dnia 16.06.2024 o godz. 20:54:34 Paul Schmehl via Postfix-users pisze: >> >> The odd thing is, I don’t see any connection attempts at all in the mail >> logs. > > May seem a str

[pfx] Re: Troubleshooting roundcube connections to postfix

2024-06-16 Thread Paul Schmehl via Postfix-users
> On Jun 17, 2024, at 12:16 AM, Peter via Postfix-users > wrote: > > On 17/06/24 16:49, Paul Schmehl via Postfix-users wrote: >> On Jun 16, 2024, at 10:30 PM, Peter via Postfix-users >> wrote: >>> >>> >>> It's likely that r

[pfx] Re: Troubleshooting roundcube connections to postfix

2024-06-16 Thread Paul Schmehl via Postfix-users
the problem. I have roundcube sending mail on port 25 with no auth (all daemons are running on the same server), and it is sending mail. Gmail rejects it, but I’ve altered my spf record to include localhost. I hope once that propagates my problems with be solved. Paul Schmehl pa

[pfx] Troubleshooting roundcube connections to postfix

2024-06-16 Thread Paul Schmehl via Postfix-users
have missed something in the config. I’m wondering if roundcube is not even attempt auth because postfix isn’t announcing it as a service that it offers. Paul Schmehl paul.schm...@gmail.com ___ Postfix-users mailing list -- postfix-users@postfix.org To

[pfx] Re: Do I have sals authentication properly configured?

2024-06-16 Thread Paul Schmehl via Postfix-users
> On Jun 16, 2024, at 5:02 PM, Wietse Venema via Postfix-users > wrote: > > Paul Schmehl via Postfix-users: >> I?m trying to sort out a problem with Roundcube failing to send email with >> an error message that says SMTP Error(): authentication failed. In the >&

[pfx] Do I have sals authentication properly configured?

2024-06-16 Thread Paul Schmehl via Postfix-users
ich I entered, and then for a password, which I entered. I was then able to type commands as expected. I also tested using an incorrect password, and the login was rejected. So, it appears to me that postfix is working correctly Paul Schmehl paul.schm...@gmail.com ___

[pfx] Re: Need help with postfix

2024-06-13 Thread Paul Schmehl via Postfix-users
See inline comments. Paul Schmehl paul.schm...@gmail.com > On Jun 13, 2024, at 3:12 PM, Wietse Venema via Postfix-users > wrote: > > Paul Schmehl via Postfix-users: >> I'm 77. I've been retired for 10 years. Now I'm struggling trying >> to get postfix

[pfx] Re: Need help with postfix

2024-06-13 Thread Paul Schmehl via Postfix-users
delete. Since I copied my 2.10 setup to 3.9, I’m sure there’s some detritus in there that needs to be culled. Paul Schmehl paul.schm...@gmail.com > On Jun 13, 2024, at 12:21 PM, Paul Schmehl wrote: > > I’m 77. I’ve been retired for 10 years. Now I’m struggling trying to get > pos

[pfx] Need help with postfix

2024-06-13 Thread Paul Schmehl via Postfix-users
le. I’m far from a pro, and I’ve been out of the game for a decade. Paul Schmehl paul.schm...@gmail.com ___ Postfix-users mailing list -- postfix-users@postfix.org To unsubscribe send an email to postfix-users-le...@postfix.org

[pfx] Forward mail

2024-04-13 Thread Paul van der Vlis via Postfix-users
good, but maybe easily forged without DKIM? Could someone tell us more about this? And what is a good solution for forwarding? Rewrite the sender? SRS? With regards, Paul van der Vlis -- Paul van der Vlis Linux systeembeheer Groningen https://van

[pfx] Re: Aliases with "@" in it

2024-04-13 Thread Paul van der Vlis via Postfix-users
exists Preferrably use virtual_alias_maps, but if you need any of alias_maps features, use that one. Thanks for your explanation! With regards, Paul -- Paul van der Vlis Linux systeembeheer Groningen https://vandervlis.nl/ ___ Postfix-users mai

[pfx] Re: Aliases with "@" in it

2024-04-09 Thread Paul van der Vlis via Postfix-users
Op 09-04-2024 om 11:46 schreef Jaroslaw Rafa via Postfix-users: Dnia 9.04.2024 o godz. 11:11:31 Paul van der Vlis via Postfix-users pisze: When I want to make an alias, I try this in /etc/aliases: "al...@domain.nl": j...@domain.nl But when I sent mail, I get a bounce with &qu

[pfx] Aliases with "@" in it

2024-04-09 Thread Paul van der Vlis via Postfix-users
n.nl This works fine, but for all domains on this server. And that's not what I want. Do you know a way how to use aliases with an @ in it? BTW: I use Cyrus IMAP. In Postfix: mailbox_transport = lmtp:unix:/var/run/cyrus/socket/lmtp With regards, Paul van der Vlis -- Paul van der Vlis Linu

[pfx] Implementing From: field heuristic when sending messages?

2024-03-03 Thread Paul Menzel via Postfix-users
. Kind regards, Paul ¹ After a while the criminals are going to adapt, and just use the correct name for the account. ___ Postfix-users mailing list -- postfix-users@postfix.org To unsubscribe send an email to postfix-users-le...@postfix.org

[pfx] Re: postqueue fatal: output write error: Input/output error

2024-03-01 Thread Paul Lemmons via Postfix-users
came from an external source. Please be careful when opening any attachments or clicking on links. *** Paul Lemmons via Postfix-users: I am getting the following message in my syslog exactly every 30 seconds. Everything is working but words like "Fatal" and "Input/output err

[pfx] postqueue fatal: output write error: Input/output error

2024-03-01 Thread Paul Lemmons via Postfix-users
rdware is a ESXi 7.0 Ubuntu 22.04 Postfix 3.6.4 All current as of the writing of this note. -- Paul Lemmons Lead Systems Engineer – Systems and Databases Tucson Medical Center Healthcare | Information Services Office:520-324-1034 (email preferred) Mobile: Upon Request The information contai

[pfx] Re: I don't understand the problem with DMARC and postfix

2024-02-09 Thread Paul Enlund via Postfix-users
Hi The OP has /var/tmp/opendmarc.dat which will hold the details of why the email was treated the way it was. Paul On 09/02/2024 15:15, Matus UHLAR - fantomas via Postfix-users wrote: On 09.02.24 14:58, natan via Postfix-users wrote: Feb  2 09:02:45 mail134 opendkim[27903]: 888B43B0063

[pfx] Re: Different rules for submission(s)

2024-01-25 Thread Paul van der Vlis via Postfix-users
Hello Viktor, Thanks for your quick answer! See my inline response: Op 25-01-2024 om 20:40 schreef Viktor Dukhovni via Postfix-users: On Thu, Jan 25, 2024 at 08:31:44PM +0100, Paul van der Vlis via Postfix-users wrote: Hello, Since over 20 years I use Postfix, but some things I don&#

[pfx] Different rules for submission(s)

2024-01-25 Thread Paul van der Vlis via Postfix-users
submission ports. And I don't want authentication on port 25. And what about milters, how can I configure them so that they are only used for e.g. SMTP on port 25? E.g. I don't want SPF checking on the submission-ports. Or do I think wrong? With regards, Paul van der Vlis -- Pau

[pfx] Re: How to reject messages on submission with typo in To address?

2024-01-23 Thread Paul Menzel via Postfix-users
Dear Viktor, Thank you for the quick reply with a solution. Am 21.01.24 um 16:55 schrieb Viktor Dukhovni via Postfix-users: On Sun, Jan 21, 2024 at 09:39:06AM +0100, Paul Menzel wrote: pg.de is currently a parked domain, so our users will not going to email there, and I would like to

[pfx] How to reject messages on submission with typo in To address?

2024-01-21 Thread Paul Menzel via Postfix-users
? `master.cf` currently contains: 141.14.17.8:submission inetn - n - - smtpd -o myhostname=mx.molgen.mpg.de -o smtpd_recipient_restrictions=$mx_smtpd_recipient_restrictions -o smtpd_client_recipient_rate_limit=50 Kind regards, Paul

[pfx] Re: (Patch "half-dane" logging corner case) Untrusted TLS connections where email domain does not support DNSSEC but MX server has DNSSEC/DANE records

2024-01-04 Thread Paul Menzel via Postfix-users
TLScontext->namaddr, peername); tls_dane_log(TLScontext); } - } else - TLScontext->peer_status |= TLS_CERT_FLAG_TRUSTED; + } } /* Just a late note, that this diff was applied in on 20221125. Thank yo

[pfx] Re: Odd error

2023-11-21 Thread Paul Enlund via Postfix-users
Venema via Postfix-users wrote: Paul Enlund via Postfix-users: Nov 20 15:48:03 kanuka postfix/smtpd[3566272]: warning: unknown smtpd restriction: "OK" On 21/11/2023 15:25, Wietse Venema via Postfix-users wrote: "OK" is valid only as the first word in a table lookup result.

[pfx] Re: Odd error

2023-11-21 Thread Paul Enlund via Postfix-users
ction yesterday On 21/11/2023 15:25, Wietse Venema via Postfix-users wrote: Paul Enlund via Postfix-users: Nov 20 15:48:03 kanuka postfix/smtpd[3566272]: warning: unknown smtpd restriction: "OK" Nov 20 15:48:03 kanuka postfix/smtpd[3566272]: NOQUEUE: reject: RCPT from host.verypinktiger.c

[pfx] Odd error

2023-11-21 Thread Paul Enlund via Postfix-users
tart looking for something  that caused this. 'OK' Paul ___ Postfix-users mailing list -- postfix-users@postfix.org To unsubscribe send an email to postfix-users-le...@postfix.org

[pfx] Re: logging username in a failed smtp attemps

2023-10-24 Thread Paul Menzel via Postfix-users
/xsasl_server.c, xsasl/xsasl_cyrus_server.c, smtpd/smtpd_sasl_glue.c. Kind regards, Paul [1]: https://de.postfix.org/ftpmirror/experimental/postfix-3.9-20231012.HISTORY ___ Postfix-users mailing list -- postfix-users@postfix.org To unsubscribe s

[pfx] Re: *.mail.protection.outlook.com reporting "452 4.5.3 Too many recipients (AS780090)" for many domains

2023-10-11 Thread Paul Enlund via Postfix-users
Hi Interesting read and an answer https://learn.microsoft.com/en-us/answers/questions/1388575/e-mail-sending-to-offcie-microsoft365-customers-no Paul On 11/10/2023 14:06, Ralf Hildebrandt via Postfix-users wrote: Hi! Since this morning, various MX hosts in *.mail.protection.outlook.com

[pfx] How to hide Exim behind Postfix (Configuring Postfix as a proxy in front of Exim MTAs) (was: Possible (indirect) libspf2 security issues)

2023-09-30 Thread Paul Menzel via Postfix-users
]. Kind regards, Paul [1]: https://doing-stupid-things.as59645.net/mail/2023/09/30/postfix-proxy-setup.html ___ Postfix-users mailing list -- postfix-users@postfix.org To unsubscribe send an email to postfix-users-le...@postfix.org

[pfx] ARC signing

2023-09-22 Thread Paul Enlund via Postfix-users
Does anybody know of a working (production level) ARC capable milter particularly for a Ubuntu 22.04.2 LTS with postfix 3.6.4 ? Paul ___ Postfix-users mailing list -- postfix-users@postfix.org To unsubscribe send an email to postfix-users-le

[pfx] Re: Troubleshooting mail loop issue

2023-08-15 Thread Paul Enlund via Postfix-users
Hi One thing to check is that your MX server allowed recipients is in sync with M365 allowed recipients. Regards Paul On 14/08/2023 22:23, Alex via Postfix-users wrote: Hi, I have what appears to be a complicated mail loop problem that I can't figure out. I suspect that their rece

[pfx] Re: email being flagged a spam for using localhost [127.0.0.1] as first hop

2023-08-08 Thread Paul Menzel via Postfix-users
mx105 [212.227.17.168]) with ESMTPSA (Nemesis) id 1M3DJl-1qWda038fN-003eVr for ; Wed, 09 Aug 2023 07:34:49 +0200 mail.gmx.net is the smarthost, and would need to support to not add that Received entry (and remove possible other ones). Kind regards,

[pfx] OT: Does the GPDR require mandatory/verified TLS encryption? (was: SMTP client: How to log reason for untrusted TLS connection to MX?)

2023-07-24 Thread Paul Menzel via Postfix-users
Dear Jaroslow, Am 24.07.23 um 19:02 schrieb Jaroslaw Rafa via Postfix-users: Dnia 24.07.2023 o godz. 17:05:40 Paul Menzel via Postfix-users pisze: (Also from the legal perspective, without being a lawyer, I’d say, that actually all German (European) companies are required to only transmit

[pfx] Re: SMTP client: How to log reason for untrusted TLS connection to MX?

2023-07-24 Thread Paul Menzel via Postfix-users
Dear Viktor, Thank you for your reply. Am 23.07.23 um 23:42 schrieb Viktor Dukhovni via Postfix-users: On Sun, Jul 23, 2023 at 11:22:26PM +0200, Paul Menzel wrote: Does it really matter why some site offering opportunistic STARTTLS does not have a validatable certificate? The connection

[pfx] Problems connecting to desktop client

2023-07-16 Thread Wolfgang Paul Rauchholz via Postfix-users
I run my home server under Rocky Linux 9. The server is modem / router and as such has two firewall interfaces; internal and external. My domain is wo-lar.com Postfix and Dovecot are up and running, and I can send and receive emails from CLI. But I cannot connect from desktop clients. I get the fol

[pfx] Re: How to verify that DH key generation parameters from RFC 7919 are used?

2023-07-12 Thread Paul Menzel via Postfix-users
# postfix reload But the Internet.nl email test still says that DH 2048 is offered by mx3.molgen.mpg.de [1]. mx3.molgen.mpg.de. DH-2048 insufficient So I am still curious, how to verify that. Kind regards, Paul [1]: https://www.internet.nl/mail/recomb.org/972775

[pfx] How to verify that DH key generation parameters from RFC 7919 are used?

2023-07-12 Thread Paul Menzel via Postfix-users
rops->dh1024_param_file); tls_tmp_dh(server_ctx, 1); That then seems to use the OpenSSL function d2i_DHparams? tls/tls_dh.c:if (d2i_DHparams(&tmp, &endp, sizeof(builtin_der)) Kind regards, Paul PS: Is the “preferred” in the comment in `tls/tls_server.c` outdated?

[pfx] Detect/extract attachments in broken messages composed by Apple Mail

2023-05-26 Thread Paul Menzel via Postfix-users
the attachment, what component would be the right part for such message alteration? A milter? (I am aware, that this will break with end-to-end encryption (GPG or S/MIME).) Kind regards, Paul [1]: https://bugzilla.mozilla.org/show_bug.cgi?id=13625

[pfx] TLS client policy according to domain MTA-STS policy

2023-05-24 Thread Paul Menzel via Postfix-users
61:postfix ``` Do you know of other solutions? Kind regards, Paul [1]: https://www.email-security-scans.org/ [2]: https://github.com/Snawoot/postfix-mta-sts-resolver [3]: https://raw.githubusercontent.com/Snawoot/postfix-mta-sts-resolver/master/README.md __

[pfx] Re: relocated: Allow custom message

2023-05-03 Thread Paul Menzel via Postfix-users
Dear Matus, Thank you for your reply. Am 03.05.23 um 15:02 schrieb Matus UHLAR - fantomas via Postfix-users: On 03.05.23 14:53, Paul Menzel via Postfix-users wrote: Some of our users, that relocate, ask for a custom message over the current one:    user has moved to new_location For

[pfx] relocated: Allow custom message

2023-05-03 Thread Paul Menzel via Postfix-users
contact. I guess, it could be reworded to user has moved to n...@private.example.net, please contact funct...@company.example.net for business and use the current mechanism. Could a third column for a custom message be added to satisfy everybody? Kind regards, Paul

Repetitive message in /var/log/maillog

2023-02-08 Thread Wolfgang Paul Rauchholz
I get the following message almost every one minute. Is this for information only or do I need to be worried? Feb 8 17:33:03 home dovecot[484616]: imap-login: Login: user=, method=PLAIN, rip=127.0.0.1, lip=127.0.0.1, mpid=485528, TLS, session=<2vR70TL0Lr9/AAAB> Feb 8 17:33:03 home dovecot[48461

Re: SSL_accept error from unknown[10.5.2.1]: lost connection

2023-02-08 Thread Wolfgang Paul Rauchholz
Thank you for the insight. It helped solving the issue. Un cordial saludo, Wolfgang Rauchholz +34 627 994 977 https://www.linkedin.com/in/wolfgangrauchholz/ On Tue, Feb 7, 2023 at 6:51 PM Wietse Venema wrote: > Wolfgang Paul Rauchholz: > > Hello I run postfix (postfix-3.5.8-4.el8.x

SSL_accept error from unknown[10.5.2.1]: lost connection

2023-02-07 Thread Wolfgang Paul Rauchholz
Hello I run postfix (postfix-3.5.8-4.el8.x86_64) on my Rocky Linux 8.7 home server I setup postfix and dovecot as a firs step and it seems to be working; meaning I can send and receive mails (I send/returned mail from a gmail account). But I find these error messages in /var/log/maillog and after

Re: postscreen_cache: unable to get exclusive lock

2023-01-15 Thread Paul Netpresto
ways. Single change is all it requires. Easier. G There is a section in https://www.postfix.org/POSTSCREEN_README.html describing how to share a btree cache. Is this not relevant to your need. Paul

TLS encryption fails: lost connection after STARTTLS from unknown[10.5.2.1]

2023-01-12 Thread Wolfgang Paul Rauchholz
Hello. I am trying to find an error for the lost connection error. I tried several different sources but don't seem to make any progress. Thank you for pointing me into the right direction. Jan 12 14:01:02 home postfix/submission/smtpd[7046]: connect from unknown[10.5.2.1] Jan 12 14:01:02 home po

Happy Holidays From SCOM.CA Internet Services Inc.

2022-12-23 Thread Paul Kudla
Wishing you and your Family ... Paul Kudla 004-1009 Byron Street South Whitby, Ontario - Canada L1N 4S3 Toronto 416.642.7266 Main 1.866.411.7266 Fax 1.888.892.7266 Email p...@scom.ca

TLS: Do hostname verification, but still deliver email on mismatch?

2022-11-22 Thread Paul Menzel
E, at least I would disagree, and call it state of the art.) Kind regards, Paul [1]: https://www.postfix.org/FORWARD_SECRECY_README.html#status [2]: https://en.wikipedia.org/wiki/General_Data_Protection_Regulation [3]: https://gdpr-info.eu/art-32-gdpr/

Re: Untrusted TLS connections where email domain does not support DNSSEC but MX server has DNSSEC/DANE records

2022-11-21 Thread Paul Menzel
Dear Bill, Thank you for your reply. Am 21.11.22 um 19:05 schrieb Bill Cole: On 2022-11-21 at 12:18:33 UTC-0500 (Mon, 21 Nov 2022 18:18:33 +0100) Paul Menzel is rumored to have said: With Postfix 3.6.0-RC1 and     # postconf -n smtp_tls_security_level     smtp_tls_security_level = dane

Untrusted TLS connections where email domain does not support DNSSEC but MX server has DNSSEC/DANE records

2022-11-21 Thread Paul Menzel
this issue? Kind regards, Paul [1]: https://dane.sys4.de/ PS: Best would be, if the operators would set up DNSSEC, but unfortunately, my attempts to convince them has been unsuccessful so far. PPS: Postfix log for helmholtz-muenchen.de with `smtp_tls_loglevel=2`: ``` 2022-11-21T16:27:13+01

Re: relay_domains query

2022-11-20 Thread Paul Netpresto
Thanks for clearing that up. Regards Paul On 21/11/2022 00:30, Viktor Dukhovni wrote: On Sun, Nov 20, 2022 at 11:11:44PM +, Paul Netpresto wrote: Hi I have a smtp instance declared in my master.cf a.b.c.d:smtp inet  n   -   y   -   40 smtpd     -o myhostname=myhouse     -o

relay_domains query

2022-11-20 Thread Paul Netpresto
imple mistake may I be making Regards Paul

Re: before-queue Milter support

2022-11-16 Thread Paul van der Vlis
Op 16-11-2022 om 17:19 schreef Wietse Venema: Paul van der Vlis: Hello Wietse and others: Op 16-11-2022 om 15:36 schreef Wietse Venema: Paul van der Vlis: Is there a way to get it refused before-queue? Yes. IF A MILTER REJECTS A MESSAGE then Postfix will not accept it. So far I see the

Re: before-queue Milter support

2022-11-16 Thread Paul van der Vlis
point, now it works. Thanks for your help! With regards, Paul van der Vlis root@hosting:~# echo "Test virus body" | mutt -a eicar.com.txt -s "This is virus8" -- p...@vandervlis.nl root@hosting:~# less /var/log/mail.log root@hosting:~# grep 74D3C2304A /var/log/mail.log Nov

Re: before-queue Milter support

2022-11-16 Thread Paul van der Vlis
Hello Wietse and others: Op 16-11-2022 om 15:36 schreef Wietse Venema: Paul van der Vlis: Is there a way to get it refused before-queue? Yes. IF A MILTER REJECTS A MESSAGE then Postfix will not accept it. So far I see the message is queued as C6E2F880CEC: root@hosting:~# echo "Test

before-queue Milter support

2022-11-16 Thread Paul van der Vlis
in main.cf: - milter_protocol = 6 smtpd_milters = { inet:localhost:10026, connect_timeout=30s, default_action=reject } { inet:localhost:8891, connect_timeout=30s, default_action=accept } non_smtpd_milters = $smtpd_milters Is there a way to get it refused before-queue? With regards, Paul van der VLis

Re: Postfix is Rewriting the email from address with the serveraddress when server from is foreign

2022-11-14 Thread Paul Kudla
will look into that Happy Monday !!! Thanks - paul Paul Kudla Scom.ca Internet Services <http://www.scom.ca> 004-1009 Byron Street South Whitby, Ontario - Canada L1N 4S3 Toronto 416.642.7266 Main 1.866.411.7266 Fax 1.888.892.7266 Email p...@scom.ca On 11/13/2022 8:00 PM, raf wrote

Re: Postfix is Rewriting the email from address with the serveraddress when server from is foreign

2022-11-13 Thread Paul Kudla
zr5Z3oiQkEt" Message-ID: Date: Sun, 13 Nov 2022 04:45:35 -0500 MIME-Version: 1.0 User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:102.0) Gecko/20100101 Thunderbird/102.0.2 Content-Language: en-US To: willsa...@aol.com From: Paul Kudla Subject: test to aol _

Re: Postfix is Rewriting the email from address with the serveraddress when server from is foreign

2022-11-13 Thread Paul Kudla
lling-user ID. So if your SMTP listener isn't picky, the log will look right. Happy Sunday !!! Thanks - paul Paul Kudla Scom.ca Internet Services <http://www.scom.ca> 004-1009 Byron Street South Whitby, Ontario - Canada L1N 4S3 Toronto 416.642.7266 Main 1.866.411.7266 Fax 1.888.

Re: Postfix is Rewriting the email from address with the serveraddress when server from is foreign

2022-11-13 Thread Paul Kudla
tent-Language: en-US To: willsa...@aol.com From: Paul Kudla Subject: test to aol ___ Note p...@scom.ca has been replaced with p...@mail19.scom.ca (the server that did the final delivery) and this is a know fetchmail reported

Postfix is Rewriting the email from address with the serveraddress when server from is foreign

2022-11-12 Thread Paul Kudla
la/5.0 (Windows NT 10.0; Win64; x64; rv:102.0) Gecko/20100101 Thunderbird/102.0.2 Content-Language: en-US To: Howard From: Paul Kudla Subject: hey This is a multi-part message in MIME format. --TEhcg574Li9HT1V9LuqDyEZM Content-Type: text/plain; charset=UTF-8; format=flowed Content-T

Re: Forward & Reverse DNS Lookups not working correctly

2022-11-11 Thread Paul Kudla
ok this was muchly appreciated i have it working now i did have a mismatch on the dns and i was also running 3 local networks which were also not setup properly the postfix utilities helped a lot. thanks again. Happy Friday !!! Thanks - paul Paul Kudla Scom.ca Internet Services

Re: Forward & Reverse DNS Lookups not working correctly

2022-11-06 Thread Paul Kudla
much appreciated i will look into your suggestions and advise back Happy Sunday !!! Thanks - paul Paul Kudla Scom.ca Internet Services <http://www.scom.ca> 004-1009 Byron Street South Whitby, Ontario - Canada L1N 4S3 Toronto 416.642.7266 Main 1.866.411.7266 Fax 1.888.892.7266 E

Forward & Reverse DNS Lookups not working correctly

2022-11-05 Thread Paul Kudla
appy Saturday !!! Thanks - paul Paul Kudla Scom.ca Internet Services <http://www.scom.ca> 004-1009 Byron Street South Whitby, Ontario - Canada L1N 4S3 Toronto 416.642.7266 Main 1.866.411.7266 Fax 1.888.892.7266 Email p...@scom.ca

Re: policy-spf and whitelisting

2022-11-03 Thread Paul Kudla
add in the domains, please note postfix has to be restarted to pickup the changes. Happy Thursday !!! Thanks - paul Paul Kudla Scom.ca Internet Services <http://www.scom.ca> 004-1009 Byron Street South Whitby, Ontario - Canada L1N 4S3 Toronto 416.642.7266 Main 1.866.411

Re: mail.protection.outlook.com rejections

2022-11-01 Thread Paul Kudla
fic. The 376 is chosen to fall within the 400 msec rtt band and it is also a reasonable value (many pings fall in it) while still allowing several resends within about a single second. ??? maybe look at this ??? Happy Tuesday !!! Thanks - paul Paul Kudla Scom.ca Internet Services <http:

Re: mail.protection.outlook.com rejections

2022-11-01 Thread Paul Kudla
thanks for the info I learned something ! Happy Tuesday !!! Thanks - paul Paul Kudla Scom.ca Internet Services <http://www.scom.ca> 004-1009 Byron Street South Whitby, Ontario - Canada L1N 4S3 Toronto 416.642.7266 Main 1.866.411.7266 Fax 1.888.892.7266 Email p...@scom.ca O

Re: mail.protection.outlook.com rejections

2022-11-01 Thread Paul Kudla
and google's both replied with valid dns results. fyi Happy Tuesday !!! Thanks - paul Paul Kudla Scom.ca Internet Services <http://www.scom.ca> 004-1009 Byron Street South Whitby, Ontario - Canada L1N 4S3 Toronto 416.642.7266 Main 1.866.411.7266 Fax 1.888.892.7266 Email p...@

Re: mail.protection.outlook.com rejections

2022-11-01 Thread Paul Kudla
t to ruffle any feathers! Happy Tuesday !!! Thanks - paul Paul Kudla Scom.ca Internet Services <http://www.scom.ca> 004-1009 Byron Street South Whitby, Ontario - Canada L1N 4S3 Toronto 416.642.7266 Main 1.866.411.7266 Fax 1.888.892.7266 Email p...@scom.ca On 11/1/2022 10:19 AM, Viktor Duk

Re: mail.protection.outlook.com rejections

2022-11-01 Thread Paul Kudla
. these are the standard's on anything unix based. if you really need to run unbound then i suggest that you contact there tech support or community as it is clearly a factor in your issues. hope this helps. Happy Tuesday !!! Thanks - paul Paul Kudla Scom.ca Internet Services

Re: mail.protection.outlook.com rejections

2022-10-31 Thread Paul Kudla
e timeouts note my name servers are internal to my network (the 10.220.0/24) however on the email server you should throw a 8.8.8.8 in as a backup as for a windows desktop it is more flexable on timeouts - fyi Happy Monday !!! Thanks - paul Paul Kudla Scom.ca Internet Services <http://www

Re: mail.protection.outlook.com rejections

2022-10-31 Thread Paul Kudla
erly. which indicates an outlook365 office instance ? [11:03:27] peer1.scom.ca [paul:0] /home/paul ## dig mx bcs.hants.sch.uk ; <<>> DiG 9.14.3 <<>> mx bcs.hants.sch.uk ;; global options: +cmd ;; Got answer: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 28

Re: HOLD access action and smtpd_proxy_filter

2022-10-24 Thread Paul Kudla
Ok unaware this was fixed? will look into that fyi - i dont log passwords just username & ip addresses ! but appreceate the input Happy Monday !!! Thanks - paul Paul Kudla Scom.ca Internet Services <http://www.scom.ca> 004-1009 Byron Street South Whitby, Ontario - Cana

Re: HOLD access action and smtpd_proxy_filter

2022-10-24 Thread Paul Kudla
e->sasl_method); state->sasl_method = 0; } } /* smtpd_sasl_login - set login information */ voidsmtpd_sasl_login(SMTPD_STATE *state, const char *sasl_username, const char *sasl_method) { if (state->sasl_username) myfree(state-

MTA-STS implementation

2022-08-26 Thread Paul Kingsnorth
MTA-STS seems to be getting more widespread. I wondered how many people are using the postfix-mta-sts-resolver from Snawoot, and whether there are any standout good/bad features of it? Or whether there are any other ways of implementing MTA-STS with postfix? Paul

Re: Solving reverse DNS problem with Postfix configuration?

2022-04-12 Thread Paul van der Vlis
Hi Richard, Op 12-04-2022 om 14:07 schreef Richard Rasker: Op 11-04-22 om 18:34 schreef Paul van der Vlis: Hi Richard, ... Eventually you could use my mailserver as a relayhost. That is a very friendly offer, but if I do, that would of course only be temporary, so that I can send e-mail

Re: Solving reverse DNS problem with Postfix configuration?

2022-04-11 Thread Paul van der Vlis
Hi Richard, Op 11-04-2022 om 18:20 schreef Richard Rasker: Hi Paul, Op 11-04-22 om 17:40 schreef Paul van der Vlis: [snip] Maybe switch to freedom.nl, they give you a good reverse DNS. Also IPv6. Thanks for the tip; I think that may be a good idea. They're a lot cheaper as well

Re: Solving reverse DNS problem with Postfix configuration?

2022-04-11 Thread Paul van der Vlis
Op 11-04-2022 om 17:19 schreef Paul van der Vlis: Hi Richard and others, Op 11-04-2022 om 16:52 schreef Richard Rasker: #Set Username and Password   smtp_sasl_password_maps = static:Chosen-Username:Chosen-Password What I use is this: smtp_sasl_password_maps = hash:/etc/postfix/saslpasswd

Re: Solving reverse DNS problem with Postfix configuration?

2022-04-11 Thread Paul van der Vlis
the time being. Perhaps I made a mistake in main.cf? Maybe switch to freedom.nl, they give you a good reverse DNS. Also IPv6. Eventually you could use my mailserver as a relayhost. Bye, Paul -- Paul van der Vlis Linux systeembeheer Groningen https://vandervlis.nl/

Re: [solved] DNSSEC/DANE: TLSA records looked up for parent domain

2022-02-17 Thread Paul Menzel
Dear Postfix folks, Am 17.02.22 um 15:56 schrieb Paul Menzel: Am 17.02.22 um 10:57 schrieb Paul Menzel: Using Postfix 3.6.0-rc1, for an email sent to x.y.molgen.mpg.de it looks up the TLSA records for y.molgen.mpg.de instead of x.y.molgen.mpg.de: 2022-02-12T12:02:21+01:00 tldr

Re: DNSSEC/DANE: TLSA records looked up for parent domain

2022-02-17 Thread Paul Menzel
Dear Postfix folks, Am 17.02.22 um 10:57 schrieb Paul Menzel: Using Postfix 3.6.0-rc1, for an email sent to x.y.molgen.mpg.de it looks up the TLSA records for y.molgen.mpg.de instead of x.y.molgen.mpg.de:     2022-02-12T12:02:21+01:00 tldr postfix/smtp[25656]: warning: TLS policy lookup

DNSSEC/DANE: TLSA records looked up for parent domain

2022-02-17 Thread Paul Menzel
7AAD43A0FDFF34452CA695A2B510F613A2997077E4C2EDFF2B32DE36 26552C2832EF72F5DC12B5FE3984BAFE1B87406207EDAD34A4F3E11F 49CD4A23DB83374C The DANE SMTP Validator verifies, that it should work for reply.github.molgen.mpg.de [1]. Any idea, why github.molgen.mpg.de is looked at? Kind regards, Paul [1]: https

Make rule to install posttls-finger?

2021-04-28 Thread Paul Menzel
Dear Postfix users, I couldn’t find a Make rule to install `posttls-finger`? Did I overlook something, or would I need to copy it manually? Kind regards, Paul

Re: Building and running Postfix as unprivileged user

2021-04-27 Thread Paul Menzel
Dear Wietse, Am 27.04.21 um 14:49 schrieb Wietse Venema: Paul Menzel: In our infrastructure, we are building Postfix from source with an unprivileged user, and also try to run most services as an unprivileged user. Privileged ports are forwarded to unprivileged ports, used by the service

Building and running Postfix as unprivileged user

2021-04-27 Thread Paul Menzel
done for the “postfix owner”? Or are there downsides? Kind regards, Paul [1]: https://github.com/vdukhovni/postfix/blob/2595917e491dfe704390b9bf1100bcdd35b21ae8/postfix/conf/postfix-files#L48

  1   2   3   4   5   >