Good day,

My postfix email server has been listed by dsnbl.njabl.org as an open relay,
but I'm not sure why. I tested the server from another site, and it passes
every test.

My main.cf is setup with the following:
__________________

alias_database = hash:/etc/aliases
alias_maps = hash:/etc/aliases

body_checks = regexp:/etc/postfix/maps/body_checks
broken_sasl_auth_clients = yes

command_directory = /usr/sbin
config_directory = /etc/postfix
content_filter = smtp-amavis:[127.0.0.1]:10024

daemon_directory = /usr/libexec/postfix
debug_peer_level = 2

header_checks = regexp:/etc/postfix/maps/header_checks
html_directory = no

inet_interfaces = all

local_recipient_maps = hash:/etc/postfix/relay_recipients

mail_owner = postfix
mailbox_size_limit = 15000200000
mailq_path = /usr/bin/mailq.postfix
manpage_directory = /usr/share/man
message_size_limit = 60480000
mime_header_checks = regexp:/etc/postfix/maps/mime_header_checks

mydestination = $myhostname, localhost.$mydomain, localhost, $mydomain,
mail.$mydomain, servpt.com, myexg.myemailserver.com;
myexg.myemailserver.local

mydomain = myemailserver.com
myhostname = mail.myemailserver.com

mynetworks = localhost, mail.myemailserver.com, plq138,
plq139.myemailserver.com, myexg, myexg.myemailserver.local,
fdsexg.myemailserver.com, plq138.myemailserver.com, boditree.net,
a1w.myemailserver.com, apd.myemailserver.com, awd.myemailserver.com,
aaw.myemailserver.com, awa.myemailserver.com, axw.myemailserver.com,
aws.myemailserver.com, awp.myemailserver.com, dirw.myemailserver.com,
dwi.myemailserver.com, dws.myemailserver.com, ewc.myemailserver.com,
fcwc.myemailserver.com, ndw.myemailserver.com, taw.myemailserver.com,
twd.myemailserver.com, uawn.myemailserver.com, uww.myemailserver.com,
wahq.myemailserver.com, wrc.myemailserver.com, parts.myemailserver.com,
parts2.myemailserver.com

mynetworks_style = host

newaliases_path = /usr/bin/newaliases.postfix
queue_directory = /var/spool/postfix
readme_directory = /usr/share/doc/postfix-2.2.10/README_FILES
relay_recipient_maps = hash:/etc/postfix/relay_recipients

resolve_dequoted_address = yes

sample_directory = /usr/share/doc/postfix-2.2.10/samples

sendmail_path = /usr/sbin/sendmail.postfix
setgid_group = postdrop
smtpd_banner = $myhostname ESMTP $mail_name
smtpd_null_access_lookup_key = <>

smtpd_recipient_restrictions = check_sender_access
hash:/etc/postfix/dsn_exceptions,        reject_unauth_pipelining,       
reject_non_fqdn_recipient,        reject_unknown_recipient_domain,       
permit_mynetworks,    check_sender_access hash:/etc/postfix/access,  
check_sender_access hash:/etc/postfix/dsn_exceptions,       
reject_rbl_client relays.mail-abuse.org        permit_sasl_authenticated,       
reject_unauth_destination,        reject_rbl_client bl.spamcop.net,       
reject_rbl_client sbl-xbl.spamhaus.org,        reject_rbl_client
dnsbl.njabl.org,        reject_rbl_client cn.rbl.cluecentral.net,       
reject_rbl_client

smtpd_sasl_auth_enable = yes
smtpd_sasl_local_domain = myemailserver.com
smtpd_sasl_security_options = noanonymous

smtpd_sender_restrictions = check_sender_access
hash:/etc/postfix/dsn_exceptions,        reject_rhsbl_sender rhsbl.ahbl.org,    
   
reject_rhsbl_sender hash:/etc/postfix/access
transport_maps = hash:/etc/postfix/transport

unknown_hostname_reject_code = 550
unknown_local_recipient_reject_code = 550
_______________

njabl.org did a relay test where they send a msg on my email server from
sender postmas...@myemailserver.com, and it apparently sent back to them,
despite the fact their mail server was not my domain.  

Where is the loophole in my config?


Thanks for your help -
-- 
View this message in context: 
http://www.nabble.com/Postfix-Open-Relay-Issue-tp25981301p25981301.html
Sent from the Postfix mailing list archive at Nabble.com.

Reply via email to