Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- myhostname = mail.pleskan.co.ua
- myorigin = mail.pleskan.co.ua
- mynetworks = 127.0.0.0/8 91.214.114.117/32
- mydestination = $myhostname, localhost.$mydomain, localhost
- mailbox_size_limit = 0
- message_size_limit = 15728640
- inet_interfaces = all
- inet_protocols = ipv4
- # Текст приветственного баннера, который отображается после кода состояния 220 в SMTP
- smtpd_banner = $myhostname ESMTP $mail_name (Debian/GNU)
- # Не использовать biff программу доставки новх сообщений
- biff = no
- # Запрет автоматического дополнения неполного доменного имени в адресе письма
- append_dot_mydomain = no
- # Meханизм поиска SMTP клиента.
- # dns - через dns (умолчание)
- # native - использование the native naming service only (nsswitch.conf, or equivalent mechanism)..
- # dns, native - Use the native service for hosts not found in the DNS.
- # smtp_host_lookup = native
- # SMTP server response code when recipient or domain not found.
- unknown_local_recipient_reject_code = 550
- debugger_command =
- PATH=/bin:/usr/bin:/usr/local/bin:/usr/X11R6/bin
- ddd $daemon_directory/$process_name $process_id & sleep 5
- debug_peer_level = 2
- # Тип почтового ящика
- home_mailbox = Maildir/
- recipient_bcc_maps = hash:/etc/postfix/recipient_bcc
- # TLS конфигурация
- smtpd_tls_security_level = may
- smtpd_tls_cert_file=/etc/ssl/certs/postfixcert.pem
- smtpd_tls_key_file=/etc/postfix/certificate/smtpd.key
- smtpd_tls_session_cache_database = btree:${data_directory}/smtpd_scache
- smtpd_tls_session_cache_database = btree:${data_directory}/smtp_scache
- smtpd_tls_loglevel = 1
- smtpd_tls_received_header = yes
- # MySQL конфигурация
- virtual_alias_domains =
- virtual_alias_maps = proxy:mysql:/etc/postfix/mysqlconf/virtual_forwardings.cf, mysql:/etc/postfix/mysqlconf/virtual_email2email.cf
- virtual_mailbox_domains = proxy:mysql:/etc/postfix/mysqlconf/virtual_domains.cf
- virtual_mailbox_maps = proxy:mysql:/etc/postfix/mysqlconf/virtual_mailboxes.cf
- virtual_mailbox_base = /var/vmail
- virtual_uid_maps = static:5000
- virtual_gid_maps = static:5000
- # SASL конфигурация
- smtpd_sasl_auth_enable = yes
- smtpd_sasl_authenticated_header = yes
- smtpd_sasl_local_domain = $myhostname
- smtpd_sasl_security_options = noanonymous
- smtpd_sasl_type = dovecot
- smtpd_sasl_path = private/auth
- broken_sasl_auth_clients = yes
- # Чтение карт через прокси (разделение для многих пользователей).
- # ! Перед предикатами mysql: для разделения указывется proxy:
- # Пример: virtual_mailbox_maps = proxy:mysql:/etc/postfix/mysqlconf/virtual_mailboxes.cf
- proxy_read_maps = $local_recipient_maps $mydestination $virtual_alias_maps $virtual_alias_domains $virtual_mailbox_maps $virtual_mailbox_domains $relay_recipient_maps $relay_domains $canonical_maps $sender_canonical_maps $recipient_canonical_maps $relocated_maps $transport_maps $mynetworks $virtual_mailbox_limit_maps
- # Доставка почты
- virtual_transport = dovecot
- # Алиасы
- alias_maps = hash:/etc/aliases
- alias_database = hash:/etc/aliases
- # Настройка ограничений SMTPD (получить полную информацию о клиенте)
- # потом начинать разбирать ограничения.
- smtpd_delay_reject = yes
- smtpd_client_restrictions =
- permit_mynetworks,
- permit_sasl_authenticated,
- permit
- smtpd_helo_restrictions =
- permit_mynetworks,
- permit_sasl_authenticated,
- reject_invalid_helo_hostname,
- reject_non_fqdn_helo_hostname,
- reject_unknown_helo_hostname,
- permit
- smtpd_sender_restrictions =
- permit_mynetworks,
- reject_non_fqdn_sender,
- permit_sasl_authenticated,
- permit
- smtpd_recipient_restrictions =
- reject_non_fqdn_recipient,
- reject_unknown_recipient_domain,
- reject_unlisted_recipient,
- permit_mynetworks,
- permit_sasl_authenticated,
- reject_unknown_sender_domain,
- reject_rbl_client sbl.spamhaus.org,
- reject_rbl_client dnsbl-1.uceprotect.net,
- reject_rbl_client ix.dnsbl.manitu.net,
- reject_rbl_client bl.spamcop.net,
- reject_rbl_client access.redhawk.org,
- reject_rbl_client bl.deadbeef.com,
- reject_rbl_client dnsbl.cyberlogic.net,
- reject_rbl_client dul.ru,
- reject_rbl_client korea.services.net,
- reject_unknown_client_hostname,
- reject_unauth_pipelining,
- reject_unauth_destination,
- permit
- smtpd_data_restrictions =
- permit_mynetworks,
- permit_sasl_authenticated,
- reject_unauth_pipelining,
- permit
- smtpd_end_of_data_restrictions =
- permit_mynetworks,
- permit_sasl_authenticated,
- reject_multi_recipient_bounce,
- permit
- milter_default_action = accept
- milter_protocol = 2
- smtpd_milters = inet:localhost:12301
- non_smtpd_milters = inet:localhost:12301
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement