[Postfixbuch-users] restrictions

Ralf Hildebrandt Ralf.Hildebrandt at charite.de
Mi Nov 1 11:11:27 CET 2006


* Patrick Braun <patrick at pbraun.ch>:

> smtpd_recipient_restrictions = check_client_access
> hash:/etc/postfix/ip-block, permit_mynetworks, permit_sasl_authenticated,
> reject_unauth_destination, permit

Das permit am Ende könnte weg.
 
> smtpd_helo_required = yes
OK

> smtpd_helo_restrictions = permit_mynetworks, permit_sasl_authenticated,
> check_client_access hash:/etc/postfix/ip-block, reject_unknown_hostname,
> reject_non_fqdn_hostname, permit

Das permit am Ende könnte weg.

> smtpd_sender_restrictions = permit_mynetworks, permit_sasl_authenticated,
> reject_unknown_hostname, reject_non_fqdn_hostname, reject_rhsbl_sender
> domain.tld, permit

Das permit am Ende könnte weg.
 
> smtpd_client_restrictions = permit_mynetworks, reject_rbl_client
> bl.spamcop.net, reject_rbl_client relays.ordb.org, reject_rbl_client
> opm.blitzed.org, reject_rbl_client list.dsbl.org, reject_rbl_client
> sbl.spamhaus.org, reject_rbl_client bl.spamcop.net, reject_rbl_client
> cbl.abuseat.org, reject_rbl_client dynablock.njabl.org, reject_rbl_client
> combined.rbl.msrbl.net, permit

Es wäre einfacher, alles in smtpd_recipient_restrictions zu packen:

smtpd_recipient_restrictions =
   check_client_access hash:/etc/postfix/ip-block
   permit_mynetworks
   permit_sasl_authenticated
   reject_unauth_destination
   reject_unknown_hostname
   reject_non_fqdn_hostname
   reject_rhsbl_sender domain.tld
   reject_rbl_client bl.spamcop.net
   reject_rbl_client relays.ordb.org
   reject_rbl_client opm.blitzed.org
   reject_rbl_client list.dsbl.org
   reject_rbl_client sbl.spamhaus.org
   reject_rbl_client bl.spamcop.net
   reject_rbl_client cbl.abuseat.org
   reject_rbl_client dynablock.njabl.org
   reject_rbl_client combined.rbl.msrbl.net
   
ist auch gleich VIEL kürzer.

-- 
Ralf Hildebrandt (Ralf.Hildebrandt at charite.de)             plonk at charite.de
Postfix - Einrichtung, Betrieb und Wartung       Tel. +49 (0)30-450 570-155
http://www.postfix-buch.com
Why you can't find your system administrators:
Emptying the bit buckets. -- Michael Shields shields at tembel.org



Mehr Informationen über die Mailingliste Postfixbuch-users