[afnog] Postfix relay

Antonio Godinho antonio at uem.mz
Wed Sep 17 12:48:10 UTC 2008


Hi,

I am trying to get rid of problem arising with the infection of some 
machines on the local network that sometimes start sending 1000's of 
messages with invalid FROM addresses. Actually the domain part is simple to 
solve, apparently the option reject_unlisted_sender is supposed to reject 
any user that is not in the unix users or virtual users according to the 
documentation but it does not seem to work. It would probably work with your 
solution but only if I could use the virtual user table as the senders 
access file. This would be a problem because of the format I assume. 

Cheers,

AG

On Wed, 17 Sep 2008 13:15:57 +0200, Stephane Bortzmeyer wrote
> On Wed, Sep 17, 2008 at 12:45:50PM +0200,
>  Antonio Godinho <antonio at uem.mz> wrote 
>  a message of 32 lines which said:
> 
> > I have a postfix mail server version 2.3 and I am trying to setup
> > the mail relay control in order not to allow MAIL FROM addresses
> > that are not part of the valid mail users for the server.
> 
> First, I suggest to think twice about it. Is it really what you want?
> What problem are you trying to solve?
> 
> Second, why not (Warning: untested):
> 
> smtpd_sender_restrictions = check_sender_access 
> hash:/etc/postfix/senders, reject
> 
> With /etc/postfix/senders containing:
> 
> uem.mz OK
> 
> An even better solution (again: speaking cheaply, because I did not
> actually test it) would be to require login and to play with
> reject_sender_login_mismatch.


--
Antonio Godinho
B.Sc., MCP+I, MCSE, CCNA, CCNP
CIUEM
Maputo
Mozambique





More information about the afnog mailing list