Re: Identifying used patches
Kristen <[email protected]>
| Newsgroups | gmane.mail.qmail.general |
|---|---|
| Message-ID | <[email protected]> |
On 3/26/16 12:52 AM, ed wrote: > On Sat, Mar 26, 2016 at 03:26:57AM +0100, Jens Bauer wrote: >> "SMTP Protocol Error: 553 sorry, that domain isn't in my list of >> allowed rcpthosts; no valid cert for gatewaying (#5.7.1)" > >> I am denying any authorization/authentication on port 25. >> I require secure authorization/authentication on port 587. > >> My actual question is: >> Which patch(es) use "ALLOW_INSECURE_AUTH", "DENY_TLS" and "REQUIRE_AUTH" ? >> >> Normally, I would only apply a minimum set of patches, which means I'm not likely to use a "combined patch". >> Is it *only* the patches from John M. Simpson, or are there others too ? >> -A lot of arrows point in that direction, which means that I might have stopped rolling my own recipe and used John's patches with my own RCPTCHECK added (I would expect that John's patch would include the "ANY DNS" patch, though). > > From what you've said above, I would suggest you get the latest (7.10) > combined patch[1] and install from his instructions using the various > run scripts[2]. > > 1: <https://qmail.jms1.net/patches/combined-details.shtml> > 2: <https://qmail.jms1.net/scripts/> > > Surprisingly (or not so) that combined set has served me well. The only > change I've added is some TLS options to prevent SSL2[3]. > > 3: <https://www.usenix.org.uk/content/qmail.html> > > Using John's patches will at least get you a good stable system with > minimal effort. > Jens, I will voice my support of Jim Simpson's patches. I use these alone and I have an almost spam free server. The system is solid and is easy to build. I know you want to repair your system first. I did send an email to the debian list as requested. First it was greylisted, then accepted. I am on some debian mail list (Debian-PPC, Debian-Women) but not the one you are subscribe to. Best of luck Kristen
signature.asc
(application/pgp-signature, 204 B)
-----BEGIN PGP SIGNATURE----- Comment: GPGTools - https://gpgtools.org iEYEARECAAYFAlb3CfcACgkQF1wXlvLxlNgnbwCgn5o9Dg/5qX56nt572v8aoO1d 7n0AnRti+/tdHB9qgoMt2jJSWzmmZQQk =wmnG -----END PGP SIGNATURE-----