how to go about ralaying for POP3 users?

1999-01-06 Thread Josh Murrah
I have a dilema : I'm doing web hosting, including POP3 accounts. POP3 users need to be able to receive mail from anywhere, and send mail through the SMTP server *to* anywhere, so I think that I'm going to have to allow relaying to anywhere. First question : is there another way? the PO

Re: how to go about ralaying for POP3 users?

1999-01-06 Thread Adam D. McKenna
Either do POP-before-SMTP, or run your SMTP relay on a port other than the standard one. --Adam - Original Message - From: Josh Murrah <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Wednesday, January 06, 1999 1:11 AM Subject: how to go about ralaying for POP3 users? : :I have a dil

another question

1999-01-06 Thread Josh Murrah
I'm using Paul Gregg's setup for POP3 accounts for virtual domains, with one UID perdomain, and it works like a charm. Here's the question : I just found out that with the checkpoppaswd that Paul G. suggests using, it still relies on a single passwd-style file, which means that if you're hosting

Re: another question

1999-01-06 Thread Chris Johnson
On Wed, Jan 06, 1999 at 12:52:15AM -0600, Josh Murrah wrote: > > I'm using Paul Gregg's setup for POP3 accounts for virtual domains, with > one UID perdomain, and it works like a charm. Here's the question : I > just found out that with the checkpoppaswd that Paul G. suggests using, it > still r

Re: The qmail security guarantee

1999-01-06 Thread D. J. Bernstein
Jaye Mathisen writes: > whenyou start > getting into serious numbers of users, or tracking down the flow of > messages, it's non-trivial with qmail's logging... Exactly what tracking problems have you had trouble solving? Are you aware that qmailanalog will match up the delivery lines for you? -

Re: anyone done this: one mail domain, but users are split over two internal qmail-servers

1999-01-06 Thread D. J. Bernstein
Russell Nelson writes: > We've got a kick-ass machine here (PII-300, 256K RAM), Wow, that's big. My Apple II has only 48K RAM. Nice to hear that qmail takes advantage of the server's whopping quarter-megabyte of memory. :-) ---Dan

Re: .qmail and looping and bouncing

1999-01-06 Thread D. J. Bernstein
David J. Dooling writes: > Once mail arrived at the desired machine, sendmail would > recognize that the .forward file contained the same address that just > received the mail and not re-forward to the same address multiple > times, but simply terminate the delivery at the address in .forward. qm

Re: Mailbox locking on IRIX (Was: deleted mail files)

1999-01-06 Thread Harald Hanche-Olsen
- Mate Wierdl <[EMAIL PROTECTED]>: |- Mate Wierdl <[EMAIL PROTECTED]>: | || Now, I ran some tests indicating that at least one mail ||client (mailx) on an IRIX 6.2 box I have available, and it appears to ||use dotlocking and to ignore flock-style locks. || |

the IBM Secure Mailer license

1999-01-06 Thread D. J. Bernstein
Edward S. Marshall writes: > because the license sits better with me Have you actually read the IBM Secure Mailer license? The license demands that you stop using the IBM Secure Mailer upon IBM's request. You are explicitly required to destroy every copy you possess of the IBM Secure Mailer. Th

Re: Fastforward address matching order

1999-01-06 Thread D. J. Bernstein
David Harris writes: > It appears > that records in the form "user@" match after the wildcard "@domain" records, Right. If someone puts support: root @nowhere.org: bob into /etc/aliases, then he almost certainly wants [EMAIL PROTECTED] delivered to bob, not root. If you want it the other

Re: Fw: Anonymous Qmail Denial of Service

1999-01-06 Thread D. J. Bernstein
I've sent a response to bugtraq explaining how to identify the uid that filled up the queue. My message also explains a much more powerful series of four attacks against all MTAs, including the IBM Secure Mailer. These attacks can be carried out from anywhere on the Internet, not just the local m

rblsmtpd error codes

1999-01-06 Thread D. J. Bernstein
Sam writes: > Is it only my opinion that rblsmtpd returns a temporary error code, > for no good reason, so that the blacklisted relay keeps banging at > your server for two weeks, until the mail bounces? It's not an opinion. It's a statement of fact. And it's wrong. rblsmtpd gives you the choic

Re: one email with cc creates multiple messages - oh dear.

1999-01-06 Thread Brian S. Craigie
On 05-Jan-99 [EMAIL PROTECTED] wrote: >The envelope recipient addresses are listed as recip argu- >ments to qmail-remote. Hmm... Yes, but that's not the problem. Apparently qmail-send deliberately only sends one recipient to qmail-remote at a time. I understand the logic fo

Re: Frivolous forking

1999-01-06 Thread D. J. Bernstein
Peter C. Norton writes: > If dan is on sabbatical in Malaysia in the middle of > the 2 month Malaysian internet blackout of 1999, and he's hiking in > the mountains anyway, and a "REAL" qmail security hole is found, where > does that leave the hypothetical* vendor or OEM that's shipping qmail? >

Re: Size limit on relayed message?

1999-01-06 Thread D. J. Bernstein
Steen Suder writes: > Can I restrict relaying based on size of relayed mail? Yes. For example, 1.2.3.4:allow,RELAYCLIENT="",DATABYTES="10485760" in a tcpserver rules file will allow users at 1.2.3.4 to relay messages up to 10MB. ---Dan

Re: Fw: Anonymous Qmail Denial of Service

1999-01-06 Thread Mark Delany
At 09:01 AM 1/6/99 -, D. J. Bernstein wrote: >I've sent a response to bugtraq explaining how to identify the uid that >filled up the queue. > >My message also explains a much more powerful series of four attacks >against all MTAs, including the IBM Secure Mailer. These attacks can be >carried

.qmail- question

1999-01-06 Thread Mark E Drummond
Hi all, I have a mailing list set up using the .qmail- feature. I have email addresses listed one per line like I'm supposed to and it works fine. My question is, can the lines of email addresses take any normal SMTP form or does it have to be just the email address? i.e., could I instead have li

Tcpserver quiz

1999-01-06 Thread Roger O. Svenning
I installed tcpserver for use with qmail 1.03 yesterday so I could allow and restrict relaying. (According to the instrucions in FAQ 5.4) After setting up the tcp.smtp file and rebuilding the cdb, mail relaying worked ... for everyone :) I tried to just make a test tcp.smtp with the following con

Postfix license

1999-01-06 Thread Wietse Venema
> The license also gives IBM special rights over all enhancements to the > IBM Secure Mailer. If you distribute an IBM Secure Mailer add-on, for > example, then IBM can turn your add-on into an IBM commercial product > without your permission. Excuse me for breaking into a conversation in order t

Re: the IBM Secure Mailer license

1999-01-06 Thread Dave Sill
"D. J. Bernstein" <[EMAIL PROTECTED]> wrote: > >The license demands that you stop using the IBM Secure Mailer upon IBM's >request. You are explicitly required to destroy every copy you possess >of the IBM Secure Mailer. Jeeze! I must have been half asleep when I read the license. I completely mis

Re: anyone done this: one mail domain, but users are split over two internal qmail-servers

1999-01-06 Thread Jos Backus
You still needed a whopping *64K* to run a complete office productivity suite though (AppleWorks under ProDOS). Those where the days... -- Jos Backus _/ _/_/_/"Reliability means never _/ _/ _/ having to say you're sorry."

Re: .qmail- question

1999-01-06 Thread Dave Sill
Mark E Drummond <[EMAIL PROTECTED]> wrote: >Hi all, Hi. >I have a mailing list set up using the .qmail- feature. I have >email addresses listed one per line like I'm supposed to and it works >fine. My question is, can the lines of email addresses take any normal >SMTP form or does it have to be

Qmail 2.0 request - Was Re: Tcpserver quiz

1999-01-06 Thread Adam D. McKenna
Please make relaying disabled if there is no rcpthosts file :) --Adam -Original Message- From: Timothy L. Mayo <[EMAIL PROTECTED]> To: Roger O. Svenning <[EMAIL PROTECTED]> Cc: [EMAIL PROTECTED] <[EMAIL PROTECTED]> Date: Wednesday, January 06, 1999 9:54 AM Subject: Re: Tcpserver quiz :

Re: .qmail- question

1999-01-06 Thread Russell Nelson
Mark E Drummond writes: > My question is, can the lines of email addresses take any normal > SMTP form or does it have to be just the email address? For the sake of accuracy, the normal SMTP form *is* just the email address. SMTP is RFC821. Addresses according to RFC822 can have a fairly baro

Re: anyone done this: one mail domain, but users are split over two internal qmail-servers

1999-01-06 Thread Peter van Dijk
On Wed, Jan 06, 1999 at 01:32:03PM -, Russell Nelson wrote: > D. J. Bernstein writes: > > Russell Nelson writes: > > > We've got a kick-ass machine here (PII-300, 256K RAM), > > > > Wow, that's big. My Apple II has only 48K RAM. Nice to hear that qmail > > takes advantage of the server's

Re: Tcpserver quiz

1999-01-06 Thread Chris Johnson
On Wed, Jan 06, 1999 at 03:34:19PM +0100, Roger O. Svenning wrote: > I installed tcpserver for use with qmail 1.03 yesterday so > I could allow and restrict relaying. (According to the instrucions in FAQ 5.4) > After setting up the tcp.smtp file and rebuilding the cdb, mail relaying worked > ... f

Re: Need qmail to reload smtproutes

1999-01-06 Thread Peter van Dijk
On Wed, Jan 06, 1999 at 04:10:32PM +, Stuart Ballard wrote: > Eric Smith wrote: > > > > Stuart Ballard <[EMAIL PROTECTED]> asks several questions, including: > > > I'm also unsure how > > > to tell qmail to "always hold mail for this domain in the queue" > > > > You'll probably be told that

RE: Tcpserver quiz

1999-01-06 Thread Soffen, Matthew
> -- > From: Chris Johnson[SMTP:[EMAIL PROTECTED]] > Sent: Wednesday, January 06, 1999 11:04 AM > To: Roger O. Svenning; [EMAIL PROTECTED] > Subject: Re: Tcpserver quiz > > On Wed, Jan 06, 1999 at 03:34:19PM +0100, Roger O. Svenning wrote: > > I installed tcpserver

Re: anyone done this: one mail domain, but users are split over two internal qmail-servers

1999-01-06 Thread Russell Nelson
D. J. Bernstein writes: > Russell Nelson writes: > > We've got a kick-ass machine here (PII-300, 256K RAM), > > Wow, that's big. My Apple II has only 48K RAM. Nice to hear that qmail > takes advantage of the server's whopping quarter-megabyte of memory. :-) I must be showing my age. I reme

Re: Tcpserver quiz

1999-01-06 Thread Timothy L. Mayo
What is in your rcpthosts file? That is the FIRST point that needs to be in place to prevent relaying. RELAYCLIENT overrides the rcpthosts file, it does not replace it. On Wed, 6 Jan 1999, Roger O. Svenning wrote: > I installed tcpserver for use with qmail 1.03 yesterday so > I could allow and

SV: Tcpserver quiz

1999-01-06 Thread Roger O. Svenning
>What is in your rcpthosts file? That is the FIRST point that needs to be >in place to prevent relaying. RELAYCLIENT overrides the rcpthosts file, >it does not replace it. > localhost fab.foobar.com fib.foofub.no In other words .. Localhost, the local domain and all virtual domains RELAYCLIEN

Re: Postfix license

1999-01-06 Thread Russell Nelson
Wietse Venema writes: > > The license also gives IBM special rights over all enhancements to the > > IBM Secure Mailer. If you distribute an IBM Secure Mailer add-on, for > > example, then IBM can turn your add-on into an IBM commercial product > > without your permission. > > Excuse me for

Re: SV: Tcpserver quiz

1999-01-06 Thread Timothy L. Mayo
My guess is a DNS problem since there are no DNS records for fab.foobar.com or fib.foofub.no that I can find and only an MX record for foobar.com. On Wed, 6 Jan 1999, Roger O. Svenning wrote: > >What is in your rcpthosts file? That is the FIRST point that needs to be > >in place to prevent rela

SV: Tcpserver quiz

1999-01-06 Thread Roger O. Svenning
>My guess is a DNS problem since there are no DNS records for >fab.foobar.com or fib.foofub.no that I can find and only an MX record for >foobar.com. > Sorry .. those two entries was just examples cause I don't want to give away hosted domains to the whole world. -Roger

Re: SV: Tcpserver quiz

1999-01-06 Thread Timothy L. Mayo
Then we can't help you. Sorry. On Wed, 6 Jan 1999, Roger O. Svenning wrote: > >My guess is a DNS problem since there are no DNS records for > >fab.foobar.com or fib.foofub.no that I can find and only an MX record for > >foobar.com. > > > > > Sorry .. those two entries was just examples cause

Re: Need qmail to reload smtproutes

1999-01-06 Thread Stuart Ballard
Eric Smith wrote: > > Stuart Ballard <[EMAIL PROTECTED]> asks several questions, including: > > I'm also unsure how > > to tell qmail to "always hold mail for this domain in the queue" > > You'll probably be told that serialmail is the officially 'correct' > solution to this problem. I personal

SV: Tcpserver quiz

1999-01-06 Thread Roger O. Svenning
>You don't need (or want) any deny entries. You're not trying to deny anyone a >connection to your SMTP server; you're just trying to set RELAYCLIENT for >certain clients. Ok .. lets see if I've got this right, .. so if a client makes a smtp connection trough tcpserver and it's host (ip) does no

Re: Tcpserver quiz

1999-01-06 Thread Adam D. McKenna
From: Roger O. Svenning <[EMAIL PROTECTED]> :One down, one to go ... :What about that strange pop3 error? .. how is it possible that he couldn't open that account until :I altered the tcp.smtp ? .. He actually tested it on two different computers with no luck. :I had no problems accessing that ac

Re: Postfix license

1999-01-06 Thread Lars Balker Rasmussen
"I. Dwayne Koonce" <[EMAIL PROTECTED]> writes: > This is untrue. IBM's download page for Postfix (which appears to be the > only place it's available) insists that it is covered by IBM's rather ugly > "Alphaworks" license, which allows only "personal, non-commercial, and > lawful end use", and no

/etc/aliases - fastforward question

1999-01-06 Thread Abel Lucano
briefly: -qmail-1.0.3 + fastforward + dotforward running smoothly -3 userids: mingfs, mingca, mingdg -an inherited /etc/aliases big file with these 2 entries: mingfs-garcia: mingdg mingfs-calc: mingca when sending mail to an alias [EMAIL PROTECTED] (mingca's alias) <[EMAIL PROTECTED]>: S

Re: Postfix license

1999-01-06 Thread I. Dwayne Koonce
On 6 Jan 1999, Lars Balker Rasmussen wrote: > "I. Dwayne Koonce" <[EMAIL PROTECTED]> writes: > > This is untrue. IBM's download page for Postfix (which appears to be the > > only place it's available) insists that it is covered by IBM's rather ugly > > "Alphaworks" license, which allows only "pe

Re: SV: Tcpserver quiz

1999-01-06 Thread Timothy L. Mayo
On Wed, 6 Jan 1999, Roger O. Svenning wrote: > >You don't need (or want) any deny entries. You're not trying to deny anyone a > >connection to your SMTP server; you're just trying to set RELAYCLIENT for > >certain clients. > > > Ok .. lets see if I've got this right, .. so if a client makes a s

Re: Postfix license

1999-01-06 Thread I. Dwayne Koonce
On Wed, 6 Jan 1999, Wietse Venema wrote: > > The license also gives IBM special rights over all enhancements to the > > IBM Secure Mailer. If you distribute an IBM Secure Mailer add-on, for > > example, then IBM can turn your add-on into an IBM commercial product > > without your permission. > >

SV: Tcpserver quiz

1999-01-06 Thread Roger O. Svenning
>> Ok .. lets see if I've got this right, .. so if a client makes a smtp connection >trough >> tcpserver and it's host (ip) does not exist in the tcp.smtp.cdb it will be passed to >> qmail-smtpd without the RELAYCLIENT which compares the recipient to rcpthosts >> and denies it if it doesn't exist

SV: Tcpserver quiz

1999-01-06 Thread Roger O. Svenning
>Usually when having POP3 errors the best thing to do is to telnet into the >pop3 port and issue the commands manually. > >Are you sure he was using the right password? Perhaps when you were >changing your cdb, he realized that he was using the wrong password, and >fixed it, and was then too emba

Re: Tcpserver quiz

1999-01-06 Thread Adam D. McKenna
the problem is with netscape and eudora. You can see from the logs that the domain was being stripped, because those email clients assume you are stupid and strip off the @domain. lucky for you that vchkpw supports user%domain and user_domain as well. Tell your client to switch to one of those.

SV: Tcpserver quiz

1999-01-06 Thread Roger O. Svenning
>the problem is with netscape and eudora. > >You can see from the logs that the domain was being stripped, because those >email clients assume you are stupid and strip off the @domain. > >lucky for you that vchkpw supports user%domain and user_domain as well. >Tell your client to switch to one of

Re: anyone done this: one mail domain, but users are split over two internal qmail-servers

1999-01-06 Thread Peter Haworth
Peter van Dijk informed us: > On Wed, Jan 06, 1999 at 01:32:03PM -, Russell Nelson wrote: > > I must be showing my age. I remember when 48K of RAM *was* a big > > machine, and how excited I was to upgrade my development machine to > > 32K -- "Now I'll have enough memory to write anything!" >

Re: Size limit on relayed message?

1999-01-06 Thread Steen Suder
"D. J. Bernstein" wrote: > > Steen Suder writes: > > Can I restrict relaying based on size of relayed mail? > > Yes. For example, > >1.2.3.4:allow,RELAYCLIENT="",DATABYTES="10485760" Tnx. I appreciate your work. Now my curious mind keeps bugging me: can I do it separately for each user

alias and automated mail->news

1999-01-06 Thread Mirko Zeibig
Hello, I now use this alias-definition to post every mail to a list to a newsgroup as well. Any ideas to do this more efficient? Thanx Mirko ** /var/qmail/alias/.qmail-all ** | { echo "Newsgroups: local.announce"; cat - } | sed '/^Received:/d' | sed '/^\ \ by\ unknown\ with\ SMTP/d' | rpost localh

Re: newbie needs some pointers...

1999-01-06 Thread Mate Wierdl
[ I am forwarding this to the qmail list; perhaps somebody has a better idea what to do ] So I think I understand your problem completely: the problem is that upon postmaster receiving the message from the isp, you want to forward the message to only the local addresses that appear in To, Cc,

Re: SV: Tcpserver quiz

1999-01-06 Thread Mate Wierdl
Relay control works fine for you: $ telnet pop.intrafish.no 25 Trying 195.204.144.43... Connected to pop.intrafish.no. Escape character is '^]'. 220 pop.intrafish.no ESMTP mail from: [EMAIL PROTECTED] 250 ok rcpt to: [EMAIL PROTECTED] 553 sorry, that domain isn't in my list of allowed rcpthosts (

Re: alias and automated mail->news

1999-01-06 Thread Russell Nelson
Mirko Zeibig writes: > Hello, > I now use this alias-definition to post every mail to a list to a > newsgroup as well. Any ideas to do this more efficient? > Thanx > Mirko > ** /var/qmail/alias/.qmail-all ** > | { echo "Newsgroups: local.announce"; cat - } | sed '/^Received:/d' | > sed '/^

Re: alias and automated mail->news

1999-01-06 Thread Sam
Mirko Zeibig writes: > Hello, > I now use this alias-definition to post every mail to a list to a > newsgroup as well. Any ideas to do this more efficient? > Thanx > Mirko > ** /var/qmail/alias/.qmail-all ** > | { echo "Newsgroups: local.announce"; cat - } | sed '/^Received:/d' | > sed '/^\ \ by\

Re: /etc/aliases - fastforward question

1999-01-06 Thread Russell Nelson
Abel Lucano writes: > > briefly: > -qmail-1.0.3 + fastforward + dotforward running smoothly > > -3 userids: mingfs, mingca, mingdg > > -an inherited /etc/aliases big file with these 2 entries: > mingfs-garcia: mingdg > mingfs-calc: mingca > > when sending mail to an alias [EMAI

Re: alias and automated mail->news

1999-01-06 Thread Lars Balker Rasmussen
On Wed, Jan 06, 1999 at 09:18:42PM +0100, Mirko Zeibig wrote: > I now use this alias-definition to post every mail to a list to a > newsgroup as well. Any ideas to do this more efficient? > ** /var/qmail/alias/.qmail-all ** > | { echo "Newsgroups: local.announce"; cat - } | sed '/^Received:/d' |

Re: alias and automated mail->news

1999-01-06 Thread Mirko Zeibig
Sam wrote: > Yuck. Use formail which comes with procmail, or reformail which comes with > maildrop, to properly twiddle your headers. This is not the right way to > do it, and it will break sooner or later. *** | { echo "Newsgroups: local.announce" ; cat - | formail -c -k -X From: -X To: -X Refe

fetchmail and missing delivery-information

1999-01-06 Thread Mirko Zeibig
Hello, my provider does collect all mail for [EMAIL PROTECTED] in one single POP-account. I retrieve mail by the help of fetchmail in multidrop-mode, which does work when mail is sent to different [EMAIL PROTECTED] Mail from this list is not delivered to [EMAIL PROTECTED] (aehm, well not directly

Re: anyone done this: one mail domain, but users are split over two internal qmail-servers

1999-01-06 Thread Peter van Dijk
On Wed, Jan 06, 1999 at 07:31:10PM +, Peter Haworth wrote: > Peter van Dijk informed us: > > On Wed, Jan 06, 1999 at 01:32:03PM -, Russell Nelson wrote: > > > I must be showing my age. I remember when 48K of RAM *was* a big > > > machine, and how excited I was to upgrade my development ma

Re: fetchmail and missing delivery-information

1999-01-06 Thread Sam
Mirko Zeibig writes: > Hello, > my provider does collect all mail for [EMAIL PROTECTED] in one single > POP-account. I retrieve mail by the help of fetchmail in multidrop-mode, > which does work when mail is sent to different [EMAIL PROTECTED] > Mail from this list is not delivered to [EMAIL PROT

Re: SV: Tcpserver quiz

1999-01-06 Thread Sam
Roger O. Svenning writes: > Ok .. lets see if I've got this right, .. so if a client makes a smtp connection >trough > tcpserver and it's host (ip) does not exist in the tcp.smtp.cdb it will be passed to > qmail-smtpd without the RELAYCLIENT which compares the recipient to rcpthosts > and denies

Re: fetchmail and missing delivery-information

1999-01-06 Thread John Conover
[EMAIL PROTECTED] writes: > Mirko Zeibig writes: > > > Hello, > > my provider does collect all mail for [EMAIL PROTECTED] in one single > > POP-account. I retrieve mail by the help of fetchmail in multidrop-mode, > > which does work when mail is sent to different [EMAIL PROTECTED] > > Mail from t

Re: alias and automated mail->news

1999-01-06 Thread Sam
Russell Nelson writes: > Mirko Zeibig writes: > > Hello, > > I now use this alias-definition to post every mail to a list to a > > newsgroup as well. Any ideas to do this more efficient? > > Thanx > > Mirko > > ** /var/qmail/alias/.qmail-all ** > > | { echo "Newsgroups: local.announce"; ca

Re: /etc/aliases - fastforward question

1999-01-06 Thread Chris Johnson
On Wed, Jan 06, 1999 at 10:08:14PM -, Russell Nelson wrote: [snip - what are you doing, writing a qmail book? ;-)] > Caution: Once you create a users/assign file, and build the users/cdb > database using qmail-newu, it stops deliveries based on /etc/passwd. > When you add a user, you MUST ad

Re: alias and automated mail->news

1999-01-06 Thread Mate Wierdl
On Wed, Jan 06, 1999 at 11:15:29PM +0100, Mirko Zeibig wrote: > Sam wrote: > > Yuck. Use formail which comes with procmail, or reformail which comes with > > maildrop, to properly twiddle your headers. This is not the right way to > > do it, and it will break sooner or later. > *** > | { echo "N

Re: the IBM Secure Mailer license

1999-01-06 Thread Peter Samuel
On 6 Jan 1999, D. J. Bernstein wrote: > Edward S. Marshall writes: > > because the license sits better with me > > Have you actually read the IBM Secure Mailer license? > > The license demands that you stop using the IBM Secure Mailer upon IBM's > request. You are explicitly required to destroy