On Wed, May 29, 2024 at 07:26:10AM -0400, John Hill via Postfix-users wrote:
> > > The wrapper-mode TLS "smtps" rejects are naturally after the TLS
> > > handshake.
> > >
> >
> > 465 inet n - n - - smtpd
> > -o smtpd_delay_reject=no
> > -o {smtpd_client_restrictions=reject_rbl_client
> > zen.spamhaus.org=127.0.0.4}
> > -o smtpd_relay_restrictions=permit_sasl_authenticated,reject
> > ...
> >
> > submission inet n - n - - smtpd
> > -o smtpd_delay_reject=no
> > -o {smtpd_client_restrictions=reject_rbl_client
> > zen.spamhaus.org=127.0.0.4}
> > -o
> > smtpd_relay_restrictions=permit_sasl_authenticated,permit_mynetworks,reject
> >
> > All set up this way.
> > I will let it run overnight and see what hits.
>
> Works like a charm.
>
> 1 SASL authentication failed ---
>
> Only one.
Perhaps a bit of luck? For me, the XBL only catches around 10% of the
SASL probes. May your luck hold up.
--
Viktor.
_______________________________________________
Postfix-users mailing list -- [email protected]
To unsubscribe send an email to [email protected]