Subjects |
Postings by Wietse VenemaPostfix 2.7.0 stable release available[An on-line version of this announcement will be available at Postfix stable release 2.7.0 is available. For the past several - Improved before-queue content filter performance. With
Postfix 2.7 release candidate 2Postfix 2.7 is being readied for final release. You can find release Postfix 2.7 brings performance improvements for before-queue content The postscreen daemon is still to rough for a stable release and Wietse
sender policies (filter, sender_dependent_xxx)As the result of repeated requests to make Postfix routing dependent First there are sender_dependent_xxx_maps where xxx is relayhost, Second there is "FILTER transport:". In practice this feature is
Whitelisting made easy (was: The method behind the madness)The following solution solves 99% of the problem: - IF mail is from a local (or authenticated) client - AND the sender has already passed "reject_unlisted_sender" - THEN store the (sender, recipient) pair in a whitelist. This can be done with trivial modification of an existing greylisting Occasionally, a sender or recipient address will become invalid,
Postfix sender reputation support in snapshot 20100117postfix-2.7-20100117 changes the meaning of content filters of the According to discussions on the Postfix list there is a legitimate The change introduces one minor incompatibility.
PATCH: bogus Berkeley DB warnings (was: smtpd crashes)Ralf Hildebrandt: New errors, bogus or not, happen after a program is changed so that I am going to take a very pragmatic decision.
Berkeley DB warnings (was: smtpd crashes)Does not reproduce on Ubuntu 9.10-server with the default Berkeley DB 4.7. Can you check if this warning (and the warning for postscreen) goes address_verify_cache_cleanup_interval = 0 This can't be the same bug as discussed last month with "close
Code burn-in: postscreen/verify cache cleanupI'm burning in some new code that I wrote over the past week to If you're courageous you can try postfix-2.7-20091227-nonprod.
PATCH: smtpd_proxy logging (was: Snapshot 20091109, queue disk partition ...)Like this? Dec 5 20:15:25 server postfix/smtpd[16712]: proxy-accept: (with the same form for proxy-reject at END-OF-MESSAGE; the format Wietse diff --exclude=man --exclude=html --exclude=README_FILES --exclude=.indent.pro --exclude=Makefile.in -r -cr /var/tmp/postfix-2.7-20091115/src/smtpd/smtpd.c ./smtpd.c
Design: sender-dependent default_transportRecently there have been requests for sending mail with source IP Current solution
Impact of SSL renegotiation attacks on SMTP mailLast week there was big news about a security hole in the TLS That is, the server certificate verifies, and therefore no-one can http://www.ietf.org/mail-archive/web/tls/current/msg03928.html This hole was already known and a consortium of industry partners
PATCH: Postfix non-production snapshot 20091104Wietse Venema: Attached is a patch that fixes a segfault due to an incomplete API
Postfix non-production snapshot 20091104Postfix 2.7-20091104-nonprod introduces a "speed adjust" feature This addresses a concern of people in Europe who want to reject With "smtpd_proxy_options = speed_adjust", the SMTP server will
One-on-one mappings (was: Accept null HELO/EHLO)Geert Hendrickx: To avoid becoming a backscatter source, 1) The Postfix SMTP server needs a table that matches all recipient 2) The Postfix SMTP server needs a table that matches all recipient Both tables can be generated from the same source, either with Your suggested "rewrite olddomain to newdomain" feature does not If you can provide 1) and 2), then you can also provide the one-on-o
Non-persistent queues, speed-matching and fall-backWork on Postfix continues to make it more scalable, after the system
Postfix snapshot 20091008 with postscreenPostfix snapshot 20091008 includes an updated version of the To make postscreen safe to deploy, it has a permanent whitelist
majordomo troublesThere are some problems with one Cloud9 majordomo server as the Meanwhile, if mail bounces, just resend it until it hits one of Wietse
Postfix stable release 2.6.5, 2.5.9, 2.4.13 and 2.3.19The stable release Postfix 2.6.5 addresses the defects described Do not use Postfix 2.6.4, 2.5.8, 2.4.12, 2.3.18, 2.7-20090807, and
bad 200908xx postscreen versionsThe postscreen versions in non-production snapshots 20090803 and Wietse
Some early postscreen resultsPostscreen is the code name for a new daemon that sits in front of Early results for seven days of spam were presented at the 2009 * Anomalies in spammer SMTP client implementations. Spammers
TERMINATED: Bounce / NDR messages - how to stop themMail systems may send the occasional bounce, but that is not the Wietse
cross-reference (was: documentation for owner-* companion aliases)Matthias Andree: I have a trivial tool that gropes the sources of individual Postfix And once parameters are read in one place, even these tricks will In addition, the mapping is not fixed; parameters have moved from Wietse
milter_header_checks (was: problem with smtpd_milter and header_checks)Jiri Veselsky: I have added header checks for Milter-generated mail headers. It is available from Postfix mirrors as postfix-2.7-20090607, and Wietse milter_header_checks (default: empty) Optional lookup tables for content inspection of message headers that
Postfix 2.6.2 available (SASL)Postfix stable release 2.6.2 fixes one defect in SASL support. With plaintext SMTP sessions AND smtpd_tls_auth_only=yes AND You can find Postfix version 2.6.2 at the mirrors listed at The same fix is also available in Postfix snapshot 2.7-20090528. Wietse
domain-in-a-box statisticsWietse Venema: I'll post some numbers today, based on domain names found in open Wietse
Postfix 2.6.1 available (file corruption)Postfix stable release 2.6.1 fixes one defect in Milter support. - Queue file corruption under very specific conditions: (smtpd_milters The queue file would be corrupted when the delay_warning_time
Postfix legacy releases 2.5.7, 2.4.11 and 2.3.17Postfix legacy releases 2.5.7, 2.4.11 and 2.3.17 contain fixes that Postfix 2.5.7: - (low) The installation/upgrade procedure did not automatically - (medium) In the "new queue manager", the _destination_rate_delay - (low) The queue manager used _concurrency_failed_cohort_limit
always_add_missing_headers (was: Postfix version 2.6.0 available)Reinaldo de Carvalho: Specify "always_add_missing_headers=yes" to always add (Resent-) Wietse
Postfix version 2.6.0 availablePostfix stable release 2.6.0 is available. After Postfix was declared - Multi-instance support introduces a new postmulti(1) command to
Postfix 2.6.0-RC3 and 2.7-20090428 availablePostfix 2.6 stable release candidate 3 is available. If this has Wietse TLS changes since release candidate 2: The Postfix SMTP client(!) no longer tries to use the obsolete SSLv2
|