Re: smtp_header_checks

2009-05-13 Thread Ralf Hildebrandt
er_checks: > > > > http://www.postfix.org/postconf.5.html#header_checks > > http://www.postfix.org/postconf.5.html#smtp_header_checks Do you want to do this on INCOMING or OUTGOING mail? -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de postfix-users@postfix.org: The list that makes you think!

Re: header_checks & body_checks exemptions

2009-05-13 Thread Ralf Hildebrandt
* Eric Cunningham : > Is there a way to exempt postmas...@my.domain, ab...@my.domain and > u...@my.domain from header_checks and body_checks while still maintaining > the functionality of those checks? No. -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel.

Re: Postfix-2.6.0 RPM

2009-05-14 Thread Ralf Hildebrandt
d does not always get > to them right after release. A kindly-worded email to him might yield you > an estimate of when he'll get to 2.6. He's a bit busy right now due to family issues. -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-15

Re: Need To Reject Inbound From Addresses with My Own Domain/s

2009-05-15 Thread Ralf Hildebrandt
still be incorrect. Yes. But with simple stuff, it works. > I've not tested this, but I assume you'd get some failure. Or it "just don't work" :) -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschim

Re: RFC 1918 -v- Postfix

2009-05-19 Thread Ralf Hildebrandt
ery: > 60.1.168.192.in-addr.arpa IN PTR + Yes. > Which in turn gives this; > security: warning: client #12345: RFC 1918 response from > Internet for 60.1.168.192.in-addr.arpa The security warning is broken. Turn it off. -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung

Re: RFC 1918 -v- Postfix

2009-05-19 Thread Ralf Hildebrandt
here is this behaviour documented? > As a trusted and solid MTA there must be a way to get it to stop leaking > rubbish DNS lookups from private networks ? You could set up your forwarder/local DNS properly. This doesn't happen here. -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb

Re: RFC 1918 -v- Postfix

2009-05-19 Thread Ralf Hildebrandt
re also a total waste of network resources and > bandwidth. The fix here is to stop the client making them, not to stop > the resolver from answering them. Usually, you would make BIND responsible for those local network, e.g. with dummy zones. powerdns does this automatically (which seems to

Re: RFC 1918 -v- Postfix

2009-05-19 Thread Ralf Hildebrandt
lookup = yes -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de PP: MMDF gone mad with standards fever. Think "Brazil".

Re: RFC 1918 -v- Postfix

2009-05-19 Thread Ralf Hildebrandt
* Ralf Hildebrandt : > > Indeed, Postfix does *not* perform DNS queries. However, it asks the > > question in the first instance that results in the lookup. This is just > > a case of arguing semantics. It is close to buggy behaviour IMHO. If it > > produces

Re: RFC 1918 -v- Postfix

2009-05-19 Thread Ralf Hildebrandt
* Steve : > On Tue, 2009-05-19 at 10:49 +0200, Ralf Hildebrandt wrote: > > smtpd_peername_lookup = no > > Any idea what it defaults to Ralf? postconf -d smtpd_peername_lookup -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-4

Re: mails not getting delivered

2009-05-19 Thread Ralf Hildebrandt
vered. How do you check if the mail is in the mailbox? > May 19 14:36:16 mail postfix/local[23411]: A1A88E6063B: > to=, orig_to=, relay=local, > delay=0, status=sent (delivered to maildir) ... > home_mailbox = Maildir/ I guess the mail should be here: mutt -f ~spamadmin/Maildir/

Re: Custom 550 5.1.1 message

2009-05-19 Thread Ralf Hildebrandt
ride that with a message > saying something like: > >is no longer valid; please contact at address>. > > Is such a thing possible with Postfix? Thanks! man 5 relocated -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http:/

Re: Connection Refused!!

2009-05-20 Thread Ralf Hildebrandt
on refused > telnet: Unable to connect to remote host: Connection refused Bind postfix to all interfaces, not just localhost > [r...@rs1 ~]# postconf -n ... > inet_interfaces = localhost Oingo Boingo -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450

Re: Connection Refused!!

2009-05-20 Thread Ralf Hildebrandt
alhost Yes, that's why "postconf -n" is such a useful command -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de | <- You must be smarter than this stick to ride the Internet

Re: OT: Multiple Queues

2009-05-21 Thread Ralf Hildebrandt
ol, but on a "one size fits all"-basis. > The real question I guess I am asking - is it possible to have three > instances of Postfix running on the same box, listening on different > ports, with separate queue directories? Yes. 2.6.x can do it easily with the multiple instan

Re: OT: Multiple Queues

2009-05-21 Thread Ralf Hildebrandt
bout that one myself. SPF sucks. DKIM is better. But both are not really widespread -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de "Memory is like gasoline. You use it up when you are running. Of course you

Re: outbound source ip adress

2009-05-22 Thread Ralf Hildebrandt
atch > and want to set up the connection of the outward arrow every 1 domain w > ith 1 global IP. > #Postfix use the first IP address assigning to the NIC as a source IP ad > #dress. > > Is not there any good idea? Setup a individual postfix instances, each one bind

Re: outbound source ip adress

2009-05-22 Thread Ralf Hildebrandt
* gohst...@bc.iij4u.or.jp : > Hi! > Thanks reply. > > After all may not you do it when you do not install postfix in every > each IP address? I beg your pardon? Either do it the way I outlined or it won't work :) -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartu

Re: time stamp changes in the queue'

2009-05-22 Thread Ralf Hildebrandt
. > (I may change USERINBOX to the external storage eventually) . > not sure if there is a way to let procmail to stop the delivery to > /var/mail? maybe I need to check procmail mailing lis. SImply turn procmail off and all will be well -- Ralf Hildebrandt Postfix - Einrichtung, Betri

Re: How to resend a message?

2009-05-24 Thread Ralf Hildebrandt
he correct address > and if yes, how? I fail to see how this is a postfix question! Go to the sent-folder, edit the mail, send it again. -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de The Imperial Vendor or Con

Re: Blocking external messages TO the hostname

2009-05-24 Thread Ralf Hildebrandt
is > stopped any mail from being able to be delivered, probably because address > rewriting uses this as the final destination. e.g. here is some of the > header of an example mail to oli...@gtwm.co.uk Yes. -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Te

Re: message_size_limit,

2009-05-25 Thread Ralf Hildebrandt
* Corey Chandler : > Wietse Venema wrote: >> >> No MTA, including Postfix, sends bounce messages for mail that it >> does not accept. >> >> Wietse >> > I'm pretty sure I've seen qmail do exactly this... :-p Some variation of > its default "accept, then bounce" methodology... In that case

Re: smtp_sasl_mechanism_filter doesn't wok

2009-05-27 Thread Ralf Hildebrandt
* Zero Zeibov : > I try to limit auth mech in postfix 2.6.1 on FreeBSD 6.4. For this > I've added to main.conf: > > smtp_sasl_mechanism_filter = plain, login smtpd_sasl_mechanism_filter = plain, login -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel.

Re: myhostname is different between postconf and main.cf

2009-05-27 Thread Ralf Hildebrandt
* Tim Legg : > > According to 'postconf -d', Which displays the default, not what you set... -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de Wenn etwas Abstoßendes modern wird, ist es sofort anziehend.

"nobody is going to write a new MTA"

2009-05-28 Thread Ralf Hildebrandt
Turns out Wietse was wrong: http://lwn.net/SubscriberLink/334866/fffe7b1a0716c0e4/ -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de I have never seen anything fill up a vacuum so fast and still suck. -- Rob Pike

Re: "nobody is going to write a new MTA"

2009-05-28 Thread Ralf Hildebrandt
> > Turns out Wietse was wrong: > > http://lwn.net/SubscriberLink/334866/fffe7b1a0716c0e4/ > > All political; no real rational reasoning for it I know, but still worth an informational message -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel.

Re: Illegal address syntax

2009-05-28 Thread Ralf Hildebrandt
llegal address syntax from unknown[ipaddress] in MAIL command: > '' > > Can anyone give me a solution for this. Show the complete, unmodified log entry. -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpf

Re: received date differs

2009-06-02 Thread Ralf Hildebrandt
* K bharathan : > the attached is a header of a spam mail; i found the dates are different and > delivered today; but inbox date shows 13/02/2009; > what could have gone wrong? Nothing. > Date: Fri, 13 Feb 2009 05:48:52 - (GMT) -- Ralf Hildebrandt Postfix - Einrichtung,

Re: received date differs

2009-06-02 Thread Ralf Hildebrandt
* K bharathan : > i find myself dumb on this > appreciate an explanation "Date:" is just a header - meaning the user can specify it, just like "To:", "Subject:" or "Cc:". It need not be correct. -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und

Re: virtual.regexp not working

2009-06-03 Thread Ralf Hildebrandt
> > /j10[0-3][0-9][0-...@domain\.com/ thisaddr...@domain.com /^j10[0-2][0-9][0...@domain\.com$/ thisaddr...@domain.com /^j10...@domain\.com$/ thisaddr...@domain.com -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerb

Re: How is it: mynetworks = 127.0.0.0/8 yet local network users are able to send.

2009-06-03 Thread Ralf Hildebrandt
* Sthu Pous : > Interesting to note, but on > > postconf -d > > I see mynetworks = 127.0.0.0/8 v.x.y.z/25 192.168.0.0/24 > > from whence it comes? postconf -d shows the defaults -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (

multi instance support bug (env not found)

2009-06-05 Thread Ralf Hildebrandt
not found /usr/libexec/postfix/postfix-script: 346: /bin/env: not found /usr/libexec/postfix/postfix-script: 346: /bin/env: not found r...@hanni:/etc/postfix# which env /usr/bin/env -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155

can't get smtp_fallback_relay to work

2009-06-05 Thread Ralf Hildebrandt
ied changing the smtp_helo_name as you can see. -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de Netzwerkgrundlagen anhand Windows lernen zu wollen ist doch wie seine ersten sexuellen Erfahrungen mit einer Prostituierten

Re: can't get smtp_fallback_relay to work

2009-06-05 Thread Ralf Hildebrandt
* Wietse Venema : > Ralf Hildebrandt: > > Jun 5 15:35:18 hanni postfix-ram/smtp[24385]: warning: smtp_fallback_relay > > configuration problem > > smtp_fallback_relay = [194.126.158.237] > > I don't think you can set smtp_fallback_relay to the local SMTP por

Re: can't get smtp_fallback_relay to work

2009-06-05 Thread Ralf Hildebrandt
ly suspected the HELO... > Either play games in main.cf:inet_interfaces or with master.cf, > or use a non-default SMTP port. Yes, that works -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de I dropped my compute

Re: About Postfix Crash

2009-06-06 Thread Ralf Hildebrandt
logs you posted. -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de Wenn die Leute mit dem Logfile die IT-Kompetenz von einem Kilo Torfmoos an den Tag legen, ist dem Anschein nach davon auszugehen, dass sie schlicht nicht f

Re: Number of smtp connections

2009-06-08 Thread Ralf Hildebrandt
* Pascal Maes : > hello, > > > In master.cf, I have > > smtp inet n - n - 100 smtpd > > > Is there a way to measure the number of connections to see how many times > the limit is reached ? Postfix logs a warning once the limit is

Re: Rate limiting

2009-06-08 Thread Ralf Hildebrandt
/24 > > > In that case, the client 130.104.104.130 is no more considered from our > networks and the rate limiting should be applied. > Right ? The customer might not even be allowed to relay anymore. Don't know if you want this. -- Ralf Hildebrandt Postfix - Einrichtung, Bet

Re: Difficulty in making a SMTP relay with Postfix

2009-06-08 Thread Ralf Hildebrandt
# > geoff.sw...@wemade.com OK > > /etc/postfix/transport: > wemade.com smtp:pop.wemade.com wemade.com [pop.wemade.com] -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de Ein

Re: Cryptic message for end users

2009-06-09 Thread Ralf Hildebrandt
t; > Could I configure Postfix so that the message generated by Postfix when > the quota is exceeded, is easier to understand by end user? Or is a > matter of maildrop? The latter. It even says so: maildirmake: /pathto/user/: File exists maildrop: maildir over quota. the script

Re: deferred mail -retry

2009-06-09 Thread Ralf Hildebrandt
* K bharathan : > hi all > what's the default deferred mail retry time in postfix? retry time for what? -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de Standard Cyrus SASL behaviour. SASL developers do

Re: deferred mail -retry

2009-06-09 Thread Ralf Hildebrandt
0s, with every unsuccessful retry the timespan between to attempts is increased. -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de Windows is the answer, but only if the question was 'what is the intellectual equivale

Re: Stop accepting mails from clients but process the mails which is already in the queue???

2009-06-09 Thread Ralf Hildebrandt
* Truth Seeker : > > > Dear Pros, > > how can i stop accepting mails on postfix server from all my clients > but at the same time, i want to postfix to complete the tasks in the > queue. With 2.6.x postconf -e master_service_disable=inet postfix reload -- Ral

Re: Stop accepting mails from clients but process the mails which is already in the queue???

2009-06-09 Thread Ralf Hildebrandt
lease suggest... Update? -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de Given the opacity of the product, how could a Windows admin ever know as much about Windows as a UNIX admin does about UNIX?! (Roger B. A. Kl

Re: flush all mails for a particular domain from deferred queue

2009-06-09 Thread Ralf Hildebrandt
* Truth Seeker : > > > Dear Pros; > > 1. Is there any way to flush all mails to a particular domain from the > deferred queue? Yes man postqueue > 2. How can i flush just one mail say mail message id 6E4D82ED19E from the > deferred queue? man postqueue --

Re: Cryptic message for end users

2009-06-09 Thread Ralf Hildebrandt
ier/bin/maildirmake $HOME$DEFAULT` Either the line above > log "/usr/local/courier/bin/maildirmake -q $MAILDIRQUOTA $HOME$DEFAULT" > `/usr/local/courier/bin/maildirmake -q $MAILDIRQUOTA $HOME$DEFAULT` Or the line above is causing error 1! > . > . > . > TO "$HOM

Re: transport

2009-06-09 Thread Ralf Hildebrandt
rtstand ? No. Do you want sender based routing? -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de Sysadmins don't go to hell; we're already doing our time in purgatory.

Re: transport

2009-06-09 Thread Ralf Hildebrandt
* Antonio Hooper : > > No. Do you want sender based routing? > exactly. is it possible ? http://www.postfix.org/SOHO_README.html Supporting multiple ISP accounts in the Postfix SMTP client -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570

Re: Confirmation email with captcha

2009-06-10 Thread Ralf Hildebrandt
receives a > message with a web link, explaining that is the first that it sends > mail to me and need to authenticate. This is a backscatter source and will get you blacklisted in no time. -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http

Re: Confirmation email with captcha

2009-06-10 Thread Ralf Hildebrandt
ckscatter issue. -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de "I had a fortune cookie the other day and it said: 'Outlook not so good'. I said: 'Sure, but Microsoft ships it anyway'."

Re: stress_expire_time

2009-06-10 Thread Ralf Hildebrandt
line. Postfix keeps doing this until the problematic condition has not happened for at least 1000 seconds -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de The only secure Microsoft software is what's still shrink-wrapped in the warehouse.

Re: reject_rbl_client config in map file?

2009-06-10 Thread Ralf Hildebrandt
specific > values. > > Any idea if it is possible to use map or pointers to a file for this config? Use a makefile to assemble main.cf from parts -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de Realist: Optimist mit Erfahrung

Re: reject_rbl_client config in map file?

2009-06-10 Thread Ralf Hildebrandt
* Harakiri : > > Use a makefile to assemble main.cf from parts > > How should that work if i just have unison/rsync between a few servers and > they only sync each other - there is no option to execute make everytime Simply run "make" in the directory every minute.

Re: anvil

2009-06-10 Thread Ralf Hildebrandt
d_error_sleep_time = 1s That does not enable anvil. -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de The only certainty about documentation is that whoever wrote it "might" have understood it. The rest of us may not be so lucky.

Re: anvil

2009-06-10 Thread Ralf Hildebrandt
* Simon Jones : > > That does not enable anvil. > can you point me to some docs on how to do it perhaps? would be much > appreciated, this is something i cam across today so apologies for > coming across as a complete noob... http://www.postfix.org/TUNING_README.html#conn

Re: anvil

2009-06-10 Thread Ralf Hildebrandt
. Did you throw enough shit in the general direction of the fan to faicilitaty a hitting of the fan? -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de "The percentage of users running Windows NT Workstation 4.0 who

Re: anvil

2009-06-10 Thread Ralf Hildebrandt
* Ralf Hildebrandt : > Shit needs to hit the fan before something happens. Did you throw enough > shit in the general direction of the fan to faicilitaty a hitting of the > fan? If the shit doesn't hit the fan, Postfix will log some info - in my case every 10 minutes: Jun 10

Re: anvil

2009-06-10 Thread Ralf Hildebrandt
must be performed from a client OUTSIDE of $mynetworks Or you just say: smtpd_client_event_limit_exceptions = -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de Ballmer should step down in favour of Mr T, because he

Re: Policy protocol size attribute and postfix version

2009-06-11 Thread Ralf Hildebrandt
ing at postfix.org. Can anyone tell me? postconf -d |grep version -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de If we can dispel the delusion that learning about computers should be an activity of fiddling with

Re: Upgrade TOTAL screw-up - Part One

2009-06-12 Thread Ralf Hildebrandt
> --master.cf-- > smtp inet n - n - - smtpd -v > > -- end of postfinger output -- > > > WTF am I doing wrong ?? Show all of master.cf -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (

Re: Can't whitelist header / bodychecks

2009-06-12 Thread Ralf Hildebrandt
* Steve : > Is this right? Yes > "You cannot whitelist a sender or client in an access list to bypass > header or body checks. Header and body checks take place whether you > explicitly "OK" a client or sender, in access lists, or not." > > I'm gob sm

Re: Can't whitelist header / bodychecks

2009-06-12 Thread Ralf Hildebrandt
postmulti command. Works as documented. I tried :) > Have all inbound mail go to the first service, where mail from > whitelisted sources is handled, then all remaining mail is delivered to > the second service which does header checks before processing the mail. > But there may be other g

Re: Can't whitelist header / bodychecks

2009-06-12 Thread Ralf Hildebrandt
keep making excuses for it so we don't upset *you know who* I read the other mail about pasting the headers into the body and then the header_checks trigger again. Can you show a minimal example for that (with log lines)? -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung

Re: Can't whitelist header / bodychecks

2009-06-12 Thread Ralf Hildebrandt
mail4.xx.co.uk > (xx) with ESMTPA id B9F16AC09D??for ; Fri, 12 Jun > 2009 11:01:58 +0100 (BST) from mail4[192.168.1.xx]; > from= to= proto=ESMTP > helo=<[192.168.1.xx]>: 5.7.1 dynamic host in headers The regular expression is too broad, since it also matches the "fo

Re: Can't whitelist header / bodychecks

2009-06-12 Thread Ralf Hildebrandt
* Ralf Hildebrandt : > * Steve : > > > /^Received: from.*(cmodem|dhcp|adsl|broadband|dynamic)/ REJECT dynamic host > > in headers > > OK > > > In the logs; tripped on the header filter; > > Jun 12 11:01:58 mail4 postfix/cleanup[1419]: B9F16AC09D: reject:

Re: Can't whitelist header / bodychecks

2009-06-12 Thread Ralf Hildebrandt
ODY* of an email. Your system generates headers on it's own, to which the header_checks apply. -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de It's not that I'm so smart , it's just that I stay with problems longer. -- Albert Einstein

Re: Can't whitelist header / bodychecks

2009-06-12 Thread Ralf Hildebrandt
-- in this case "btbroadband.com" matches "broadband" you'll be seeing this, since you own Received headers will match the header_checks regexp. You COULD strip your own internal Received: headers to avoid this. But that's solving the wrong proble

Re: Can't whitelist header / bodychecks

2009-06-12 Thread Ralf Hildebrandt
* Ralf Hildebrandt : > > > /^Received: from .*(cmodem|dhcp|adsl|broadband|dynamic).*by / REJECT > > > dynamic host in headers > > > > > > It's worth a try. > > > Indeed, but it's *not* in the header section of the email, is it! It has

Re: Can't whitelist header / bodychecks

2009-06-12 Thread Ralf Hildebrandt
* EASY steve.h...@digitalcertainty.co.uk : > Yep, I had already done that. I tried the same thing to ab...@bt.com and > got the same result. Log entry for exactly that case? -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-15

Re: Doubt about smtpd_delay_reject

2009-06-15 Thread Ralf Hildebrandt
estrictions? Yes. > Or I must put each restrictions in each stage? No. -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de "You know the world is going crazy when the best rapper is a white guy, the bes

postscreen logging question

2009-06-16 Thread Ralf Hildebrandt
ished. But what does the "20" signify? -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de Now that we know Microsoft's plan for world domination isn't superman supposed to come out and kick some ass?

Re: postscreen logging question

2009-06-16 Thread Ralf Hildebrandt
* Stefan Palme : > > On Tue, 2009-06-16 at 16:43 +0200, Ralf Hildebrandt wrote: > > I'm trying out postscreen. No unexpected explosions so far. > > ... > > May I ask what exactly "postscreen" is? I've never heard about it > and can not find any re

Preliminary postscreen logging results

2009-06-16 Thread Ralf Hildebrandt
me kind of dialup. maybe I'll whip up some gnuplot graphs... -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de In brightest day, in blackest night no evil shall escape my sight! for those that worship evil's mi

Re: postscreen logging question

2009-06-16 Thread Ralf Hildebrandt
:) > Early results indicate that 1/3 of all the "new" hosts is a > pre-greeter, at least with my own porcupine.org mail server. > I may report more at the Berlin mailserver conference. I'm collecting data at python.org and here... -- Ralf Hildebrandt Postfix - Einrichtung

Re: Preliminary postscreen logging results

2009-06-17 Thread Ralf Hildebrandt
* Ralf Hildebrandt : > % awk '/PREGREET/ {print $NF}' /var/log/mail.log |sort | uniq -c | sort -n > > emits > ... > 25 urhousecareer.info?? > 26 dmx1.bfi0.com?? > 104 freenet.de?? > 111 gmx.de?? > 113 t-online.de?? > 113 w

Re: body_check prepend empty line

2009-06-17 Thread Ralf Hildebrandt
is a little bit complicated and refer to MMS center. I use a > postfix like a SMTP proxy for modification and so on. Aha. -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de What about the four lusers of the ap

Re: postmulti

2009-06-17 Thread Ralf Hildebrandt
rfaces = IP1 smtp_bind_address = IP1 and the other inet_interfaces = IP2 smtp_bind_address = IP2 but that's somewhat obvious. Setting myhostname properly would also make sense. -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.compute

Re: blacklists

2009-06-18 Thread Ralf Hildebrandt
client safe.dnsbl.sorbs.net, > reject_rbl_client cbl.abuseat.org, > > Since the end of May blacklisting is performing worse. Is there an > explanation for this? Of course. Read: http://dsbl.org/ Remove list.dsbl.org Replace pbl.spamhaus.org with zen.spamhaus.org Remove cbl.abuseat.org, which i

Re: blacklists

2009-06-18 Thread Ralf Hildebrandt
* Ralf Hildebrandt : > Of course. > > Read: http://dsbl.org/ > Remove list.dsbl.org > > Replace pbl.spamhaus.org with zen.spamhaus.org > > Remove cbl.abuseat.org, which is included in cbl.abuseat.org Remove cbl.abuseat.org, which is included zen.spamhaus.org :) (sorr

Re: restrict external host

2009-06-21 Thread Ralf Hildebrandt
* K bharathan : > my setup: > external relay1 -->internal postfix mail server > > how can i restrict postfix to receive only mails from relay1; can i do it > through a access map? mynetworks = externalrelay1 smtpd_recipient_restrictions = permit_mynetworks reject --

Change queue_depth on the fly?

2009-06-21 Thread Ralf Hildebrandt
Can I change hash_queue_depth on the fly? I mean, with a queue already filled? If so, how? stop, change, start? -- Ralf Hildebrandt Postfix - Einrichtung, Betrieb und Wartung Tel. +49 (0)30-450 570-155 http://www.computerbeschimpfung.de Wenn die Leute mit dem Logfile die IT-Kompetenz von

Re: Change queue_depth on the fly?

2009-06-21 Thread Ralf Hildebrandt
* Wietse Venema : > Ralf Hildebrandt: > > Can I change hash_queue_depth on the fly? I mean, with a queue already > > filled? If so, how? stop, change, start? > > If you don't change hash_queue_depth of the active queue, edit > main.cf, then "postfix reload".

Re: Postifix-v-Spamassassin BLOCK SMTP

2009-06-23 Thread Ralf Hildebrandt
* The Doctor : > I am contemplating howto use spamassassin effectively with postfix. Usually we use amavisd-new

Re: Postifix-v-Spamassassin BLOCK SMTP

2009-06-23 Thread Ralf Hildebrandt
* The Doctor : > I tried runing amavisd but it is running into weird errors. It's the wrong list here, but usually one shows the errors and is being helped :)

Re: Postifix-v-Spamassassin BLOCK SMTP

2009-06-23 Thread Ralf Hildebrandt
* Wietse Venema : > Perhaps there a case of name confusion. There are several tools > that have "amavis" in the name. The one that reportedly works well > with Postfix is called "amavisd-new". Well, the other project are dead, really. amavis is nowadays synonym for Mark^h^h^h^hamavisd-new. Anyw

Re: Postifix-v-Spamassassin BLOCK SMTP

2009-06-23 Thread Ralf Hildebrandt
* Sahil Tandon : > Noel are you suggesting something might not work for me because I don't > know how to use it? Blasphemer! Sigged.

Re: Postifix-v-Spamassassin BLOCK SMTP

2009-06-23 Thread Ralf Hildebrandt
* The Doctor : > Anyway to use the spamassassin headers to reject mail > instead of using amavisd? amavisd-new USES Mail::SpamAssassin

Re: Anvil Syntax ?

2009-06-24 Thread Ralf Hildebrandt
* Steve : > Hi, > > I'm running through the brilliant 'Book of Postfix' and running into > some confusion with anvil/rate control - specifically syntax. around > page 384 > > smtpd_client_connection_limit_exceptions = > smtpd_client_connection_rate_limit = 3 > smtpd_client_connection_count_limit

Re: Anvil Syntax ?

2009-06-24 Thread Ralf Hildebrandt
* Ralf Hildebrandt : > > Which makes me wonder what the right syntax should be. Has the syntax > > changed since the box was produced or is it going to change in the near > > future? > > The former. The concept stays the same, though. Reason: When the book was writte

Re: Anvil Syntax ?

2009-06-24 Thread Ralf Hildebrandt
* Steve : > smtpd_client_event_limit_exceptions = my_networks smtpd_client_event_limit_exceptions = $mynetworks > or > > smtpd_client_event_limit_exceptions = my_networks, 1.2.3.4, 5.6.7.8 smtpd_client_event_limit_exceptions = $mynetworks, 1.2.3.4, 5.6.7.8 > and that will be good? Yep You

Re: Incoming smtp: 554 Access Denied

2009-06-24 Thread Ralf Hildebrandt
our server. I investigated >> and found that postfix was rejecting the sending server with: >> NOQUEUE: reject: RCPT from bb02d1.eurorscg.com[69.74.116.40]: 554 5.7.1 >> : Client host rejected: Access >> denied; > > This looks like a REJECT from a check_client_

Re: Incoming smtp: 554 Access Denied

2009-06-24 Thread Ralf Hildebrandt
[1]xremov...@psyop.tv> proto=ESMTP >helo= -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra...@charite.de | http://www.charite.de

Re: Incoming smtp: 554 Access Denied

2009-06-24 Thread Ralf Hildebrandt
uth_destination check_client_access > hash:/usr/local/etc/postfix/whitelist An entry in /usr/local/etc/postfix/whitelist could cause a rejection -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Be

Re: Incoming smtp: 554 Access Denied

2009-06-24 Thread Ralf Hildebrandt
* Jesse Kretschmer : > Ralf Hildebrandt wrote: >> Nothing in here cold cause what you see. >> Show master.cf please > [r...@mail ~]# sed -e '/^#/d' -e '/^\s*$/d' /usr/local/etc/postfix/main.cf This hardly shows master.cf :) -- Ralf Hildebrandt Ge

Re: Incoming smtp: 554 Access Denied

2009-06-24 Thread Ralf Hildebrandt
ct THIS could be the problem. This would cause the reject as you see it in the log :) -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fa

Re: Incoming smtp: 554 Access Denied

2009-06-24 Thread Ralf Hildebrandt
* Noel Jones : > Jesse, > > You may find it helpful to add >-o syslog_name=postfix-smtps > to the above options to differentiate logging from the smtps service. Amen to that! -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin

Re: Incoming smtp: 554 Access Denied

2009-06-24 Thread Ralf Hildebrandt
gt;>> -o smtpd_client_restrictions=permit_sasl_authenticated,reject >>> >> THIS could be the problem. >> This would cause the reject as you see it in the log :) >> > I've been reading the docs. I am not sure what the correct solution is, Simply turn it off. CO

Re: Slowly drain the active queue

2009-06-24 Thread Ralf Hildebrandt
es to 1 What kind of super flaky LMTP server is that? -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 155 | Fax: +49 30 450 570 962 ralf.hildebra...@charite.de | http://www.charite.de

Re: Header Time

2009-06-25 Thread Ralf Hildebrandt
* Linux Addict : > We are, but these aren't even going out. There is a transport map which > directs it to internal exchange servers. > > I am curious where its getting the -400(EDIT) from. Please show the exact header... and 2 lines before and after. -- Ralf Hildebrandt Ge

Re: Postfix Logfile

2009-06-26 Thread Ralf Hildebrandt
ecause postfix doesn't rotate its log, but some other software does. Like logrotate. Depending on your OS. -- Ralf Hildebrandt Geschäftsbereich IT | Abteilung Netzwerk Charité - Universitätsmedizin Berlin Campus Benjamin Franklin Hindenburgdamm 30 | D-12203 Berlin Tel. +49 30 450 570 15

<    3   4   5   6   7   8   9   10   11   12   >