ndm
July 16, 2013, 2:06pm
1
Nous avons tester nos envois de mail provenant d’un serveur bluemind via un testeur, un erreur est indiquée qui doit découler du fonctionnement interne de bluemind (peut être la conf postfix ):
-2.398 FSL_HELO_BARE_IP_2 IP used in the HELO request
The hostname should be a domain name, not an IP
Cette erreur n’est présente que sur les mails envoyés à partir de l’interface web.
Auriez vous une idée des méthodes nous permettant de régler ce problème.
Cordialement,
Nicolas
Toony
July 16, 2013, 2:38pm
2
Quelle distribution utilisez-vous ?
Pouvez-vous nous envoyer votre fichier /etc/postfix/main.cf ?
ndm
July 16, 2013, 3:13pm
3
J’utilise une debian squeeze, et voici le contenu du main.cf
#smtpd_banner = $myhostname ESMTP $mail_name (BlueMind)
smtpd_banner = xxxxxxxxxxreverse.dnsxxx ESMTP $mail_name (BlueMind)
biff = no
append_dot_mydomain = no
# Uncomment the next line to generate "delayed mail" warnings
#delay_warning_time = 4h
myhostname = bluemind.pepi.fr
myorigin = $myhostname
relayhost =
# Liste des bases d'alias consultées par l'agent de livraison 'local'
alias_maps = hash:/etc/aliases
# Listes des base d'alias mise à jour par 'newaliases'
alias_database = hash:/etc/aliases
local_recipient_maps = $alias_maps
mydestination = localhost, $myhostname, localhost.[domain]
mynetworks = 127.0.0.0/8, 10.68.0.0/24
mynetworks = 127.0.0.0/8, 10.68.0.0/24
message_size_limit = 104857600
mailbox_size_limit = 104857600
virtual_transport = error:mailbox does not exist
virtual_mailbox_domains = hash:/etc/postfix/virtual_domains
virtual_mailbox_maps = hash:/etc/postfix/virtual_mailbox
virtual_alias_maps = hash:/etc/postfix/virtual_alias
transport_maps = hash:/etc/postfix/transport, hash:/etc/postfix/master_relay_transport
recipient_delimiter = +
### Tarpit until RCPT TO: to reject the email for nagios compatability
smtpd_delay_reject = yes
### Tarpit those bots/clients/spammers who send errors or scan for accounts
smtpd_error_sleep_time = 20
smtpd_soft_error_limit = 1
smtpd_hard_error_limit = 3
smtpd_junk_command_limit = 2
# SMTP/TLS
smtpd_tls_security_level=may
smtpd_tls_cert_file=/etc/ssl/certs/bm_cert.pem
smtpd_tls_key_file=/etc/ssl/certs/bm_cert.pem
smtpd_tls_CAfile=/var/lib/bm-ca/cacert.pem
#SMTP relay restrictions
### SMTP Restrictions
smtpd_client_restrictions = permit_mynetworks,
reject_invalid_hostname,
reject_rbl_client zen.spamhaus.org,
reject_unknown_client,
permit
smtpd_helo_restrictions = permit_mynetworks,
# check_helo_access hash:/etc/postfix/helo_access ,
reject_unauth_pipelining,
reject_non_fqdn_hostname,
reject_invalid_hostname,
warn_if_reject reject_unknown_hostname,
permit
smtpd_recipient_restrictions = reject_non_fqdn_sender,
reject_non_fqdn_recipient,
reject_non_fqdn_hostname,
# reject_invalid_hostname,
permit_mynetworks,
reject_unauth_pipelining,
reject_unknown_sender_domain,
reject_unknown_recipient_domain,
reject_unauth_destination,
# reject_unknown_client,
permit
smtpd_sender_restrictions = permit_mynetworks,
reject_non_fqdn_sender,
reject_unknown_sender_domain,
reject_unknown_address
smtpd_etrn_restrictions = permit_mynetworks,
reject
smtpd_data_restrictions = reject_unauth_pipelining,
reject_multi_recipient_bounce,
permit
# SMTP authentication
smtpd_sasl_auth_enable=yes
broken_sasl_auth_clients=yes
smtpd_sasl_security_options=noanonymous
smtpd_recipient_restrictions=permit_sasl_authenticated,permit_mynetworks,reject_unauth_destination
smtpd_sasl_authenticated_header=yes
ndm
July 17, 2013, 11:23am
4
Peut être le problème provient t’il du fqdn qui n’est pas configuré sur le serveur, il est grisé dans l’interface d’administration
Pourriez vous m’indiquer comment le reconfigurer?
Toony
July 17, 2013, 12:35pm
5
Quel testeur de spam utilisez-vous ?
ndm
July 17, 2013, 12:36pm
6
Toony
July 17, 2013, 12:59pm
7
Nous reproduisons, il semblerait que ce soit un soucis de configuration du webmail.
Nous ouvrons un bug pour fixer ceci.