DevHeads.net

Postings by Emanuel

Loggin original ip address in relay connection

Hi,  i use exim locally, with an smarthost through Postfix. It's
possible add in the log the real IP the real client?

Actually i only see the IP of the relay connection.

Nov 27 10:23:59 smarthost01 postfix/cleanup[18611]: 0F4F8180058A1:
warning: header From: Emanuel < ... at ddomain dot com> from
server.backend[172.17.110.155]; from=<> to=< ... at recipient dot com>
proto=ESMTP helo=<c001-dr.dattaweb.com>

Regards.!!

Postfix web interface for log analysis

Hi all,

Is there any web interface exists for postfix email log analysis? What I
need is to see all the logs through web interface, see the reports of
rejection, deferred, bounces, success etc. w.r.t. datetime and/or domain
filter etc.

Thanks in advance for your guidance.

Centos 7 turn on pypolicyd-spf

Hi,

I install via yum pypolicyd-spf in Centos 7.

Paquetes instalados
Nombre        : pypolicyd-spf
Arquitectura        : noarch
Versión     : 1.3.2
Lanzamiento     : 5.el7
Tamaño        : 105 k
Repositorio        : installed
Desde el repositorio   : epel
Resumen     : SPF Policy Server for Postfix (Python implementation)
URL         : <a href="https://launchpad.net/pypolicyd-spf" title="https://launchpad.net/pypolicyd-spf">https://launchpad.net/pypolicyd-spf</a>
Licencia     : ASL 2.0
Descripción :pypolicyd-spf is a Postfix policy engine for Sender Policy
Framework (SPF)
           : checking.

Discard subject UTF8

Hello,

due to email accounts compromised by viruses, I have created filters for
the subject of these malicious emails

/^Subject: Your Amazon\.co\.uk order \#[0-9]*$/    DISCARD

Now, I see that these malicious emails keep coming out but they are not
discarded because the subject is encoded in utf8.

=?UTF-8?B?WW91ciBBbWF6b24uY28udWsgb3JkZXIgIzM2Njg1MDk2Nw==?=

How can I discard these emails if they are encoded? yes or if I need to
create a regular expression for the ID in to the subject.

Regards,

Ignore smtpd_recipient_restrictions list for one sender

Hello, within the postfix configuration I have created a list of blocked
recipients. My question, it is possible to ignore this list for a one
sender.?

smtpd_recipient_restrictions = check_recipient_access
mysql:/etc/postfix/mysql-virtual-recipient-access.cf
regexp:/etc/postfix/regex_destinatarios_bloqueados

reject_unauth_pipelining,

reject_non_fqdn_recipient

permit_mynetworks,

reject_unauth_destination

Regards,

Postfix performance problem (cleanup process)

Hello everyone, I'm representing a performance problem on my server.

I explain in detail the configuration of my server.

I am using postfix with 46 IPs configured as a mta, with round-robin, in
the master.cf file

I think the "cleanup" process is responsible for the excessive use of cpu.

ps fax | grep -c cleanup
181

Is there any way to limit it?

I have modified the maxproc in the master.cf file but the change was not
made.

# ==========================================================================
# service type  private unpriv  chroot  wakeup  maxproc command + args
#               (

Postfix error (warning: problem talking to server 127.0.0.1:20040: Connection timed out)

Hello, i see this error:

Apr 16 13:13:51 host02 postfix/smtpd[32761]: warning: problem talking to
server 127.0.0.1:20040: Connection timed out
Apr 16 13:13:52 host02 postfix/smtpd[32491]: warning: problem talking to
server 127.0.0.1:20040: Connection timed out
Apr 16 13:13:53 host02 postfix/smtpd[355]: warning: problem talking to
server 127.0.0.1:20040: Connection timed out
Apr 16 13:13:54 host02 postfix/smtpd[32584]: warning: problem talking to
server 127.0.0.1:20040: Connection timed out
Apr 16 13:13:54 host02 postfix/smtpd[366]: warning: problem talking to
server 127.0.0.1:20040: Conn

Postfix [Postfwd2 error]

Hello,

In /var/log/maillog i see this error, which produce an excessive cpu usage

postfwd2/policy[4807]: warning: Complex regular subexpression recursion
limit (32766) exceeded at /opt/postfix/postfwd/sbin/postfwd2 line 1168,
<$fh> line 230.?

any ideas?

Regards,

Subject Regular expressión

Hello,

I have a problem when locking with regular expressions

I need match

/^Subject: (Hello there(.*)|Hey man(.*))/ discard

The rule not work.!

the parameter. * is correct?

any ideas?

thanks for your help.

Problema Postfix header from is empty (<>)

Hello, i use exim with relay connection to postfix (postfix is the mta
service).

I use a autoreply in exim:

# Exim filter
if error_message then
  finish
endif

if $message_headers contains ${local_part}\@${domain} then
  mail
  to ${reply_address}
  from "\"=?iso-8859-1?Q?Administraci=F3n_TRIXIE?=\"
<${local_part}\@${domain}>"
  #reply_to $h_to:
  subject "Licencia de Vacaciones.

header_checks UTF8 discard

Hello,

i create this rule to block phishing intent

/^Subject: =?UTF-8?B?U3UgY3VlbnRhIHNlIGVuY3VlbnRyYSBlbiByZXZpc2nDs24u?=/
DISCARD

but not work

any ideas?

Regards,

default_destination_recipient_limit

Hello,

I currently allow to send 100 recipients per email but I would like to
create an exception so that an IP can send to 1000 recipients, is it
possible?

how???

Regards.!!

Deny rcpt alert notification

Hello.!

I have an idea to avoid sending spam from my server, Is it possible to
create a blocking rule so that when it is sent to a recipient, the mail
is discarded and an alert arrives via email?

My question is because I have represented cases where the computer is
infected with virus to my client and send spam from the email account.

Regards.!!

Server with postfix, exim, clamav, spamassin....amavis is recommended??

Hello,

i use this scenario

exim ==> relay to ==> postfix

clamav ==> antivirus

spamassasin ==> antispam

I recommended use amavis??

Does it bring benefits?

Regards,

Emanuel.

Postfix, clamav and Spamassasin - delete high scoring spam

Hello,

I use Postfix, clamav and spamassain to figth the spam in my server.

I my custom_rules from spamassasin i add the following rule to give 100
points to emails that contain infected attachments.

priority CLAMAV -900
shortcircuit CLAMAV spam
score CLAMAV 200

my question is, can be removed automatically through postfix?

Regards,

Emanuel.

Block IP rcpt-to or block MX

Hello,

Is it possible to create a list where the IP of certain recipients can
be blocked?

Here and example:

Oct 19 10:15:09 smtp01 postfix/smtpd[11048]: 5C28C20018459:
client=myserver[172.17.111.242]
Oct 19 10:15:09 smtp01 postfix/cleanup[6836]: 5C28C20018459:
message-id=< ... at domain dot com>
Oct 19 10:15:09 smtp01 postfix/qmgr[3054]: 5C28C20018459:
from=< ... at domain dot com>, size=16981, nrcpt=1 (queue active)
Oct 19 10:15:25 smtp01 smht-101-41/smtp[7698]: 5C28C20018459:
to=< ... at hotmial dot com>, relay=mail.h-email.net[198.133.159.122]:25,
delay=16, delays=0.15/0/9.2/6.3, dsn=2.0.0, st