Advertisement
Guest User

Untitled

a guest
Jun 13th, 2017
95
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 24.99 KB | None | 0 0
  1. [root@yourface sbin]# cat /usr/lib64/sasl
  2. sasl/ sasl2/
  3. [root@yourface sbin]# cat /usr/lib64/sasl2/smtpd.conf
  4. pwcheck_method: authdaemond
  5. log_level: 3
  6. mech_list: PLAIN LOGIN
  7. authdaemond_path:/usr/local/courier-authlib/var/spool/authdaemon/socket
  8. [root@yourface sbin]# ls -la /usr/local/courier-authlib/var/spool/authdaemon/socket
  9. srwxrwxrwx 1 root root 0 Sep 3 23:21 /usr/local/courier-authlib/var/spool/authdaemon/socket
  10. [root@yourface sbin]# grep -i mysql /usr/local/courier-authlib/etc/authlib/authdaemonrc
  11. # can use are: authuserdb authpam authpgsql authldap authmysql authcustom authpipe
  12. authmodulelist="authmysql"
  13. #authmodulelist="authuserdb authpam authpgsql authldap authmysql authcustom authpipe"
  14. [root@yourface sbin]# ./postconf -c /usr/local/postfix/etc/postfix/
  15. 2bounce_notice_recipient = postmaster
  16. access_map_defer_code = 450
  17. access_map_reject_code = 554
  18. address_verify_cache_cleanup_interval = 12h
  19. address_verify_default_transport = $default_transport
  20. address_verify_local_transport = $local_transport
  21. address_verify_map = btree:$data_directory/verify_cache
  22. address_verify_negative_cache = yes
  23. address_verify_negative_expire_time = 3d
  24. address_verify_negative_refresh_time = 3h
  25. address_verify_poll_count = ${stress?1}${stress:3}
  26. address_verify_poll_delay = 3s
  27. address_verify_positive_expire_time = 31d
  28. address_verify_positive_refresh_time = 7d
  29. address_verify_relay_transport = $relay_transport
  30. address_verify_relayhost = $relayhost
  31. address_verify_sender = $double_bounce_sender
  32. address_verify_sender_dependent_default_transport_maps = $sender_dependent_default_transport_maps
  33. address_verify_sender_dependent_relayhost_maps = $sender_dependent_relayhost_maps
  34. address_verify_service_name = verify
  35. address_verify_transport_maps = $transport_maps
  36. address_verify_virtual_transport = $virtual_transport
  37. alias_database = hash:/etc/aliases
  38. alias_maps = hash:/etc/aliases, nis:mail.aliases
  39. allow_mail_to_commands = alias, forward
  40. allow_mail_to_files = alias, forward
  41. allow_min_user = no
  42. allow_percent_hack = yes
  43. allow_untrusted_routing = no
  44. alternate_config_directories =
  45. always_add_missing_headers = no
  46. always_bcc =
  47. anvil_rate_time_unit = 60s
  48. anvil_status_update_time = 600s
  49. append_at_myorigin = yes
  50. append_dot_mydomain = yes
  51. application_event_drain_time = 100s
  52. authorized_flush_users = static:anyone
  53. authorized_mailq_users = static:anyone
  54. authorized_submit_users = static:anyone
  55. backwards_bounce_logfile_compatibility = yes
  56. berkeley_db_create_buffer_size = 16777216
  57. berkeley_db_read_buffer_size = 131072
  58. best_mx_transport =
  59. biff = yes
  60. body_checks =
  61. body_checks_size_limit = 51200
  62. bounce_notice_recipient = postmaster
  63. bounce_queue_lifetime = 5d
  64. bounce_service_name = bounce
  65. bounce_size_limit = 50000
  66. bounce_template_file =
  67. broken_sasl_auth_clients = yes
  68. canonical_classes = envelope_sender, envelope_recipient, header_sender, header_recipient
  69. canonical_maps =
  70. cleanup_service_name = cleanup
  71. command_directory = /usr/local/postfix/usr/sbin
  72. command_execution_directory =
  73. command_expansion_filter = 1234567890!@%-_=+:,./abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ
  74. command_time_limit = 1000s
  75. config_directory = /usr/local/postfix/etc/postfix/
  76. connection_cache_protocol_timeout = 5s
  77. connection_cache_service_name = scache
  78. connection_cache_status_update_time = 600s
  79. connection_cache_ttl_limit = 2s
  80. content_filter =
  81. cyrus_sasl_config_path =
  82. daemon_directory = /usr/local/postfix/usr/libexec/postfix
  83. daemon_timeout = 18000s
  84. data_directory = /usr/local/postfix/var/lib/postfix
  85. debug_peer_level = 2
  86. debug_peer_list =
  87. default_database_type = hash
  88. default_delivery_slot_cost = 5
  89. default_delivery_slot_discount = 50
  90. default_delivery_slot_loan = 3
  91. default_destination_concurrency_failed_cohort_limit = 1
  92. default_destination_concurrency_limit = 20
  93. default_destination_concurrency_negative_feedback = 1
  94. default_destination_concurrency_positive_feedback = 1
  95. default_destination_rate_delay = 0s
  96. default_destination_recipient_limit = 50
  97. default_extra_recipient_limit = 1000
  98. default_filter_nexthop =
  99. default_minimum_delivery_slots = 3
  100. default_privs = nobody
  101. default_process_limit = 100
  102. default_rbl_reply = $rbl_code Service unavailable; $rbl_class [$rbl_what] blocked using $rbl_domain${rbl_reason?; $rbl_reason}
  103. default_recipient_limit = 20000
  104. default_recipient_refill_delay = 5s
  105. default_recipient_refill_limit = 100
  106. default_transport = smtp
  107. default_verp_delimiters = +=
  108. defer_code = 450
  109. defer_service_name = defer
  110. defer_transports =
  111. delay_logging_resolution_limit = 2
  112. delay_notice_recipient = postmaster
  113. delay_warning_time = 0h
  114. deliver_lock_attempts = 20
  115. deliver_lock_delay = 1s
  116. destination_concurrency_feedback_debug = no
  117. detect_8bit_encoding_header = yes
  118. disable_dns_lookups = no
  119. disable_mime_input_processing = no
  120. disable_mime_output_conversion = no
  121. disable_verp_bounces = no
  122. disable_vrfy_command = yes
  123. dont_remove = 0
  124. double_bounce_sender = double-bounce
  125. duplicate_filter_limit = 1000
  126. empty_address_default_transport_maps_lookup_key = <>
  127. empty_address_recipient = MAILER-DAEMON
  128. empty_address_relayhost_maps_lookup_key = <>
  129. enable_original_recipient = yes
  130. error_notice_recipient = postmaster
  131. error_service_name = error
  132. execution_directory_expansion_filter = 1234567890!@%-_=+:,./abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ
  133. expand_owner_alias = no
  134. export_environment = TZ MAIL_CONFIG LANG
  135. fallback_transport =
  136. fallback_transport_maps =
  137. fast_flush_domains = $relay_domains
  138. fast_flush_purge_time = 7d
  139. fast_flush_refresh_time = 12h
  140. fault_injection_code = 0
  141. flush_service_name = flush
  142. fork_attempts = 5
  143. fork_delay = 1s
  144. forward_expansion_filter = 1234567890!@%-_=+:,./abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ
  145. forward_path = $home/.forward${recipient_delimiter}${extension}, $home/.forward
  146. frozen_delivered_to = yes
  147. hash_queue_depth = 1
  148. hash_queue_names = deferred, defer
  149. header_address_token_limit = 10240
  150. header_checks =
  151. header_size_limit = 102400
  152. helpful_warnings = yes
  153. home_mailbox =
  154. hopcount_limit = 50
  155. html_directory = no
  156. ignore_mx_lookup_error = no
  157. import_environment = MAIL_CONFIG MAIL_DEBUG MAIL_LOGTAG TZ XAUTHORITY DISPLAY LANG=C
  158. in_flow_delay = 1s
  159. inet_interfaces = 174.138.166.196, 127.0.0.1
  160. inet_protocols = ipv4
  161. initial_destination_concurrency = 5
  162. internal_mail_filter_classes =
  163. invalid_hostname_reject_code = 501
  164. ipc_idle = 5s
  165. ipc_timeout = 3600s
  166. ipc_ttl = 1000s
  167. line_length_limit = 2048
  168. lmtp_assume_final = no
  169. lmtp_bind_address =
  170. lmtp_bind_address6 =
  171. lmtp_body_checks =
  172. lmtp_cname_overrides_servername = no
  173. lmtp_connect_timeout = 0s
  174. lmtp_connection_cache_destinations =
  175. lmtp_connection_cache_on_demand = yes
  176. lmtp_connection_cache_time_limit = 2s
  177. lmtp_connection_reuse_time_limit = 300s
  178. lmtp_data_done_timeout = 600s
  179. lmtp_data_init_timeout = 120s
  180. lmtp_data_xfer_timeout = 180s
  181. lmtp_defer_if_no_mx_address_found = no
  182. lmtp_destination_concurrency_failed_cohort_limit = $default_destination_concurrency_failed_cohort_limit
  183. lmtp_destination_concurrency_limit = $default_destination_concurrency_limit
  184. lmtp_destination_concurrency_negative_feedback = $default_destination_concurrency_negative_feedback
  185. lmtp_destination_concurrency_positive_feedback = $default_destination_concurrency_positive_feedback
  186. lmtp_destination_rate_delay = $default_destination_rate_delay
  187. lmtp_destination_recipient_limit = $default_destination_recipient_limit
  188. lmtp_discard_lhlo_keyword_address_maps =
  189. lmtp_discard_lhlo_keywords =
  190. lmtp_enforce_tls = no
  191. lmtp_generic_maps =
  192. lmtp_header_checks =
  193. lmtp_host_lookup = dns
  194. lmtp_initial_destination_concurrency = $initial_destination_concurrency
  195. lmtp_lhlo_name = $myhostname
  196. lmtp_lhlo_timeout = 300s
  197. lmtp_line_length_limit = 990
  198. lmtp_mail_timeout = 300s
  199. lmtp_mime_header_checks =
  200. lmtp_mx_address_limit = 5
  201. lmtp_mx_session_limit = 2
  202. lmtp_nested_header_checks =
  203. lmtp_pix_workaround_delay_time = 10s
  204. lmtp_pix_workaround_maps =
  205. lmtp_pix_workaround_threshold_time = 500s
  206. lmtp_pix_workarounds = disable_esmtp,delay_dotcrlf
  207. lmtp_quit_timeout = 300s
  208. lmtp_quote_rfc821_envelope = yes
  209. lmtp_randomize_addresses = yes
  210. lmtp_rcpt_timeout = 300s
  211. lmtp_reply_filter =
  212. lmtp_rset_timeout = 20s
  213. lmtp_sasl_auth_cache_name =
  214. lmtp_sasl_auth_cache_time = 90d
  215. lmtp_sasl_auth_enable = no
  216. lmtp_sasl_auth_soft_bounce = yes
  217. lmtp_sasl_mechanism_filter =
  218. lmtp_sasl_password_maps =
  219. lmtp_sasl_path =
  220. lmtp_sasl_security_options = noplaintext, noanonymous
  221. lmtp_sasl_tls_security_options = $lmtp_sasl_security_options
  222. lmtp_sasl_tls_verified_security_options = $lmtp_sasl_tls_security_options
  223. lmtp_sasl_type = cyrus
  224. lmtp_send_xforward_command = no
  225. lmtp_sender_dependent_authentication = no
  226. lmtp_skip_5xx_greeting = yes
  227. lmtp_skip_quit_response = no
  228. lmtp_starttls_timeout = 300s
  229. lmtp_tcp_port = 24
  230. lmtp_tls_CAfile =
  231. lmtp_tls_CApath =
  232. lmtp_tls_block_early_mail_reply = no
  233. lmtp_tls_cert_file =
  234. lmtp_tls_ciphers = export
  235. lmtp_tls_dcert_file =
  236. lmtp_tls_dkey_file = $lmtp_tls_dcert_file
  237. lmtp_tls_eccert_file =
  238. lmtp_tls_eckey_file = $lmtp_tls_eccert_file
  239. lmtp_tls_enforce_peername = yes
  240. lmtp_tls_exclude_ciphers =
  241. lmtp_tls_fingerprint_cert_match =
  242. lmtp_tls_fingerprint_digest = md5
  243. lmtp_tls_key_file = $lmtp_tls_cert_file
  244. lmtp_tls_loglevel = 0
  245. lmtp_tls_mandatory_ciphers = medium
  246. lmtp_tls_mandatory_exclude_ciphers =
  247. lmtp_tls_mandatory_protocols = SSLv3, TLSv1
  248. lmtp_tls_note_starttls_offer = no
  249. lmtp_tls_per_site =
  250. lmtp_tls_policy_maps =
  251. lmtp_tls_protocols = !SSLv2
  252. lmtp_tls_scert_verifydepth = 9
  253. lmtp_tls_secure_cert_match = nexthop
  254. lmtp_tls_security_level =
  255. lmtp_tls_session_cache_database =
  256. lmtp_tls_session_cache_timeout = 3600s
  257. lmtp_tls_verify_cert_match = hostname
  258. lmtp_use_tls = no
  259. lmtp_xforward_timeout = 300s
  260. local_command_shell =
  261. local_destination_concurrency_failed_cohort_limit = $default_destination_concurrency_failed_cohort_limit
  262. local_destination_concurrency_limit = 2
  263. local_destination_concurrency_negative_feedback = $default_destination_concurrency_negative_feedback
  264. local_destination_concurrency_positive_feedback = $default_destination_concurrency_positive_feedback
  265. local_destination_rate_delay = $default_destination_rate_delay
  266. local_destination_recipient_limit = 1
  267. local_header_rewrite_clients = permit_inet_interfaces
  268. local_initial_destination_concurrency = $initial_destination_concurrency
  269. local_recipient_maps = proxy:unix:passwd.byname $alias_maps
  270. local_transport = local:$myhostname
  271. luser_relay =
  272. mail_name = Postfix
  273. mail_owner = postfix
  274. mail_release_date = 20100608
  275. mail_spool_directory = /var/mail
  276. mail_version = 2.7.1
  277. mailbox_command =
  278. mailbox_command_maps =
  279. mailbox_delivery_lock = fcntl, dotlock
  280. mailbox_size_limit = 1048576000
  281. mailbox_transport =
  282. mailbox_transport_maps =
  283. mailq_path = /usr/local/postfix/usr/bin/mailq
  284. manpage_directory = /usr/local/postfix/usr/local/man
  285. maps_rbl_domains =
  286. maps_rbl_reject_code = 554
  287. masquerade_classes = envelope_sender, header_sender, header_recipient
  288. masquerade_domains =
  289. masquerade_exceptions =
  290. master_service_disable =
  291. max_idle = 100s
  292. max_use = 100
  293. maximal_backoff_time = 4000s
  294. maximal_queue_lifetime = 5d
  295. message_reject_characters =
  296. message_size_limit = 1048576000
  297. message_strip_characters =
  298. milter_command_timeout = 30s
  299. milter_connect_macros = j {daemon_name} v
  300. milter_connect_timeout = 30s
  301. milter_content_timeout = 300s
  302. milter_data_macros = i
  303. milter_default_action = tempfail
  304. milter_end_of_data_macros = i
  305. milter_end_of_header_macros = i
  306. milter_header_checks =
  307. milter_helo_macros = {tls_version} {cipher} {cipher_bits} {cert_subject} {cert_issuer}
  308. milter_macro_daemon_name = $myhostname
  309. milter_macro_v = $mail_name $mail_version
  310. milter_mail_macros = i {auth_type} {auth_authen} {auth_author} {mail_addr} {mail_host} {mail_mailer}
  311. milter_protocol = 6
  312. milter_rcpt_macros = i {rcpt_addr} {rcpt_host} {rcpt_mailer}
  313. milter_unknown_command_macros =
  314. mime_boundary_length_limit = 2048
  315. mime_header_checks = $header_checks
  316. mime_nesting_limit = 100
  317. minimal_backoff_time = 300s
  318. multi_instance_directories =
  319. multi_instance_enable = no
  320. multi_instance_group =
  321. multi_instance_name =
  322. multi_instance_wrapper =
  323. multi_recipient_bounce_reject_code = 550
  324. mydestination = $myhostname, localhost.$mydomain, localhost
  325. mydomain = clickstank.com
  326. myhostname = yourface.clickstank.com
  327. mynetworks = 127.0.0.0/8, 174.138.166.0/24
  328. mynetworks_style = subnet
  329. myorigin = $myhostname
  330. nested_header_checks = $header_checks
  331. newaliases_path = /usr/local/postfix/usr/bin/newaliases
  332. non_fqdn_reject_code = 504
  333. non_smtpd_milters =
  334. notify_classes = resource, software
  335. owner_request_special = yes
  336. parent_domain_matches_subdomains = debug_peer_list,fast_flush_domains,mynetworks,permit_mx_backup_networks,qmqpd_authorized_clients,relay_domains,smtpd_access_maps
  337. permit_mx_backup_networks =
  338. pickup_service_name = pickup
  339. plaintext_reject_code = 450
  340. postmulti_control_commands = reload flush
  341. postmulti_start_commands = start
  342. postmulti_stop_commands = stop abort drain quick-stop
  343. prepend_delivered_header = command, file, forward
  344. process_id_directory = pid
  345. propagate_unmatched_extensions = canonical, virtual
  346. proxy_interfaces =
  347. proxy_read_maps = $local_recipient_maps $mydestination $virtual_alias_maps $virtual_alias_domains $virtual_mailbox_domains $relay_recipient_maps $relay_domains $sender_canonical_maps $recipient_canonical_maps $relocated_maps $transport_maps $virtual_mailbox_limit_maps $virtual_mailbox_maps
  348. proxy_write_maps = $smtp_sasl_auth_cache_name $lmtp_sasl_auth_cache_name
  349. proxymap_service_name = proxymap
  350. proxywrite_service_name = proxywrite
  351. qmgr_clog_warn_time = 300s
  352. qmgr_fudge_factor = 100
  353. qmgr_message_active_limit = 20000
  354. qmgr_message_recipient_limit = 20000
  355. qmgr_message_recipient_minimum = 10
  356. qmqpd_authorized_clients =
  357. qmqpd_client_port_logging = no
  358. qmqpd_error_delay = 1s
  359. qmqpd_timeout = 300s
  360. queue_directory = /usr/local/postfix/var/spool/postfix
  361. queue_minfree = 0
  362. queue_run_delay = 300s
  363. queue_service_name = qmgr
  364. rbl_reply_maps =
  365. readme_directory = no
  366. receive_override_options =
  367. recipient_bcc_maps =
  368. recipient_canonical_classes = envelope_recipient, header_recipient
  369. recipient_canonical_maps =
  370. recipient_delimiter =
  371. reject_code = 554
  372. reject_tempfail_action = defer_if_permit
  373. relay_clientcerts =
  374. relay_destination_concurrency_failed_cohort_limit = $default_destination_concurrency_failed_cohort_limit
  375. relay_destination_concurrency_limit = $default_destination_concurrency_limit
  376. relay_destination_concurrency_negative_feedback = $default_destination_concurrency_negative_feedback
  377. relay_destination_concurrency_positive_feedback = $default_destination_concurrency_positive_feedback
  378. relay_destination_rate_delay = $default_destination_rate_delay
  379. relay_destination_recipient_limit = $default_destination_recipient_limit
  380. relay_domains = $mydestination
  381. relay_domains_reject_code = 554
  382. relay_initial_destination_concurrency = $initial_destination_concurrency
  383. relay_recipient_maps =
  384. relay_transport = relay
  385. relayhost =
  386. relocated_maps =
  387. remote_header_rewrite_domain =
  388. require_home_directory = no
  389. resolve_dequoted_address = yes
  390. resolve_null_domain = no
  391. resolve_numeric_domain = no
  392. rewrite_service_name = rewrite
  393. sample_directory = /usr/local/postfix/etc/postfix
  394. send_cyrus_sasl_authzid = no
  395. sender_bcc_maps =
  396. sender_canonical_classes = envelope_sender, header_sender
  397. sender_canonical_maps =
  398. sender_dependent_default_transport_maps =
  399. sender_dependent_relayhost_maps =
  400. sendmail_path = /usr/local/postfix/usr/sbin/sendmail
  401. service_throttle_time = 60s
  402. setgid_group = postdrop
  403. show_user_unknown_table_name = yes
  404. showq_service_name = showq
  405. smtp_always_send_ehlo = yes
  406. smtp_bind_address = 174.138.166.196
  407. smtp_bind_address6 =
  408. smtp_body_checks =
  409. smtp_cname_overrides_servername = no
  410. smtp_connect_timeout = 30s
  411. smtp_connection_cache_destinations =
  412. smtp_connection_cache_on_demand = yes
  413. smtp_connection_cache_time_limit = 2s
  414. smtp_connection_reuse_time_limit = 300s
  415. smtp_data_done_timeout = 600s
  416. smtp_data_init_timeout = 120s
  417. smtp_data_xfer_timeout = 180s
  418. smtp_defer_if_no_mx_address_found = no
  419. smtp_destination_concurrency_failed_cohort_limit = $default_destination_concurrency_failed_cohort_limit
  420. smtp_destination_concurrency_limit = $default_destination_concurrency_limit
  421. smtp_destination_concurrency_negative_feedback = $default_destination_concurrency_negative_feedback
  422. smtp_destination_concurrency_positive_feedback = $default_destination_concurrency_positive_feedback
  423. smtp_destination_rate_delay = $default_destination_rate_delay
  424. smtp_destination_recipient_limit = $default_destination_recipient_limit
  425. smtp_discard_ehlo_keyword_address_maps =
  426. smtp_discard_ehlo_keywords =
  427. smtp_enforce_tls = no
  428. smtp_fallback_relay = $fallback_relay
  429. smtp_generic_maps =
  430. smtp_header_checks =
  431. smtp_helo_name = $myhostname
  432. smtp_helo_timeout = 300s
  433. smtp_host_lookup = dns
  434. smtp_initial_destination_concurrency = $initial_destination_concurrency
  435. smtp_line_length_limit = 990
  436. smtp_mail_timeout = 300s
  437. smtp_mime_header_checks =
  438. smtp_mx_address_limit = 5
  439. smtp_mx_session_limit = 2
  440. smtp_nested_header_checks =
  441. smtp_never_send_ehlo = no
  442. smtp_pix_workaround_delay_time = 10s
  443. smtp_pix_workaround_maps =
  444. smtp_pix_workaround_threshold_time = 500s
  445. smtp_pix_workarounds = disable_esmtp,delay_dotcrlf
  446. smtp_quit_timeout = 300s
  447. smtp_quote_rfc821_envelope = yes
  448. smtp_randomize_addresses = yes
  449. smtp_rcpt_timeout = 300s
  450. smtp_reply_filter =
  451. smtp_rset_timeout = 20s
  452. smtp_sasl_auth_cache_name =
  453. smtp_sasl_auth_cache_time = 90d
  454. smtp_sasl_auth_enable = no
  455. smtp_sasl_auth_soft_bounce = yes
  456. smtp_sasl_mechanism_filter =
  457. smtp_sasl_password_maps =
  458. smtp_sasl_path =
  459. smtp_sasl_security_options = noplaintext, noanonymous
  460. smtp_sasl_tls_security_options = $smtp_sasl_security_options
  461. smtp_sasl_tls_verified_security_options = $smtp_sasl_tls_security_options
  462. smtp_sasl_type = cyrus
  463. smtp_send_xforward_command = no
  464. smtp_sender_dependent_authentication = no
  465. smtp_skip_5xx_greeting = yes
  466. smtp_skip_quit_response = yes
  467. smtp_starttls_timeout = 300s
  468. smtp_tls_CAfile =
  469. smtp_tls_CApath =
  470. smtp_tls_block_early_mail_reply = no
  471. smtp_tls_cert_file =
  472. smtp_tls_ciphers = export
  473. smtp_tls_dcert_file =
  474. smtp_tls_dkey_file = $smtp_tls_dcert_file
  475. smtp_tls_eccert_file =
  476. smtp_tls_eckey_file = $smtp_tls_eccert_file
  477. smtp_tls_enforce_peername = yes
  478. smtp_tls_exclude_ciphers =
  479. smtp_tls_fingerprint_cert_match =
  480. smtp_tls_fingerprint_digest = md5
  481. smtp_tls_key_file = $smtp_tls_cert_file
  482. smtp_tls_loglevel = 0
  483. smtp_tls_mandatory_ciphers = medium
  484. smtp_tls_mandatory_exclude_ciphers =
  485. smtp_tls_mandatory_protocols = SSLv3, TLSv1
  486. smtp_tls_note_starttls_offer = no
  487. smtp_tls_per_site =
  488. smtp_tls_policy_maps =
  489. smtp_tls_protocols = !SSLv2
  490. smtp_tls_scert_verifydepth = 9
  491. smtp_tls_secure_cert_match = nexthop, dot-nexthop
  492. smtp_tls_security_level =
  493. smtp_tls_session_cache_database =
  494. smtp_tls_session_cache_timeout = 3600s
  495. smtp_tls_verify_cert_match = hostname
  496. smtp_use_tls = no
  497. smtp_xforward_timeout = 300s
  498. smtpd_authorized_verp_clients = $authorized_verp_clients
  499. smtpd_authorized_xclient_hosts =
  500. smtpd_authorized_xforward_hosts =
  501. smtpd_banner = $myhostname ESMTP $mail_name
  502. smtpd_client_connection_count_limit = 50
  503. smtpd_client_connection_rate_limit = 0
  504. smtpd_client_event_limit_exceptions = ${smtpd_client_connection_limit_exceptions:$mynetworks}
  505. smtpd_client_message_rate_limit = 0
  506. smtpd_client_new_tls_session_rate_limit = 0
  507. smtpd_client_port_logging = no
  508. smtpd_client_recipient_rate_limit = 0
  509. smtpd_client_restrictions =
  510. smtpd_command_filter =
  511. smtpd_data_restrictions = reject_unauth_pipelining, permit
  512. smtpd_delay_open_until_valid_rcpt = yes
  513. smtpd_delay_reject = yes
  514. smtpd_discard_ehlo_keyword_address_maps =
  515. smtpd_discard_ehlo_keywords =
  516. smtpd_end_of_data_restrictions =
  517. smtpd_enforce_tls = no
  518. smtpd_error_sleep_time = 1s
  519. smtpd_etrn_restrictions =
  520. smtpd_expansion_filter = \t\40!"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~
  521. smtpd_forbidden_commands = CONNECT GET POST
  522. smtpd_hard_error_limit = ${stress?1}${stress:20}
  523. smtpd_helo_required = yes
  524. smtpd_helo_restrictions =
  525. smtpd_history_flush_threshold = 100
  526. smtpd_junk_command_limit = ${stress?1}${stress:100}
  527. smtpd_milters =
  528. smtpd_noop_commands =
  529. smtpd_null_access_lookup_key = <>
  530. smtpd_peername_lookup = yes
  531. smtpd_policy_service_max_idle = 300s
  532. smtpd_policy_service_max_ttl = 1000s
  533. smtpd_policy_service_timeout = 100s
  534. smtpd_proxy_ehlo = $myhostname
  535. smtpd_proxy_filter =
  536. smtpd_proxy_options =
  537. smtpd_proxy_timeout = 100s
  538. smtpd_recipient_limit = 1000
  539. smtpd_recipient_overshoot_limit = 1000
  540. smtpd_recipient_restrictions = permit_mynetworks, permit_sasl_authenticated, reject_unauth_destination
  541. smtpd_reject_unlisted_recipient = yes
  542. smtpd_reject_unlisted_sender = no
  543. smtpd_restriction_classes =
  544. smtpd_sasl_auth_enable = yes
  545. smtpd_sasl_authenticated_header = no
  546. smtpd_sasl_exceptions_networks =
  547. smtpd_sasl_local_domain =
  548. smtpd_sasl_path = smtpd
  549. smtpd_sasl_security_options = noanonymous
  550. smtpd_sasl_tls_security_options = $smtpd_sasl_security_options
  551. smtpd_sasl_type = cyrus
  552. smtpd_sender_login_maps =
  553. smtpd_sender_restrictions =
  554. smtpd_soft_error_limit = 10
  555. smtpd_starttls_timeout = 300s
  556. smtpd_timeout = ${stress?10}${stress:300}s
  557. smtpd_tls_CAfile =
  558. smtpd_tls_CApath =
  559. smtpd_tls_always_issue_session_ids = yes
  560. smtpd_tls_ask_ccert = no
  561. smtpd_tls_auth_only = no
  562. smtpd_tls_ccert_verifydepth = 9
  563. smtpd_tls_cert_file = /usr/local/postfix/etc/postfix/smtpd.cert
  564. smtpd_tls_ciphers = export
  565. smtpd_tls_dcert_file =
  566. smtpd_tls_dh1024_param_file =
  567. smtpd_tls_dh512_param_file =
  568. smtpd_tls_dkey_file = $smtpd_tls_dcert_file
  569. smtpd_tls_eccert_file =
  570. smtpd_tls_eckey_file = $smtpd_tls_eccert_file
  571. smtpd_tls_eecdh_grade = none
  572. smtpd_tls_exclude_ciphers =
  573. smtpd_tls_fingerprint_digest = md5
  574. smtpd_tls_key_file = /usr/local/postfix/etc/postfix/smtpd.key
  575. smtpd_tls_loglevel = 0
  576. smtpd_tls_mandatory_ciphers = medium
  577. smtpd_tls_mandatory_exclude_ciphers =
  578. smtpd_tls_mandatory_protocols = SSLv3, TLSv1
  579. smtpd_tls_protocols =
  580. smtpd_tls_received_header = no
  581. smtpd_tls_req_ccert = no
  582. smtpd_tls_security_level =
  583. smtpd_tls_session_cache_database =
  584. smtpd_tls_session_cache_timeout = 3600s
  585. smtpd_tls_wrappermode = no
  586. smtpd_use_tls = yes
  587. soft_bounce = no
  588. stale_lock_time = 500s
  589. stress =
  590. strict_7bit_headers = no
  591. strict_8bitmime = no
  592. strict_8bitmime_body = no
  593. strict_mailbox_ownership = yes
  594. strict_mime_encoding_domain = no
  595. strict_rfc821_envelopes = no
  596. sun_mailtool_compatibility = no
  597. swap_bangpath = yes
  598. syslog_facility = mail
  599. syslog_name = ${multi_instance_name:postfix}${multi_instance_name?$multi_instance_name}
  600. tcp_windowsize = 0
  601. tls_daemon_random_bytes = 32
  602. tls_eecdh_strong_curve = prime256v1
  603. tls_eecdh_ultra_curve = secp384r1
  604. tls_export_cipherlist = ALL:+RC4:@STRENGTH
  605. tls_high_cipherlist = ALL:!EXPORT:!LOW:!MEDIUM:+RC4:@STRENGTH
  606. tls_low_cipherlist = ALL:!EXPORT:+RC4:@STRENGTH
  607. tls_medium_cipherlist = ALL:!EXPORT:!LOW:+RC4:@STRENGTH
  608. tls_null_cipherlist = eNULL:!aNULL
  609. tls_random_bytes = 32
  610. tls_random_exchange_name = ${data_directory}/prng_exch
  611. tls_random_prng_update_period = 3600s
  612. tls_random_reseed_period = 3600s
  613. tls_random_source = dev:/dev/urandom
  614. trace_service_name = trace
  615. transport_maps = proxy:mysql:/usr/local/postfix/etc/postfix/mysql-virtual_transports.cf
  616. transport_retry_time = 60s
  617. trigger_timeout = 10s
  618. undisclosed_recipients_header = To: undisclosed-recipients:;
  619. unknown_address_reject_code = 450
  620. unknown_address_tempfail_action = $reject_tempfail_action
  621. unknown_client_reject_code = 450
  622. unknown_helo_hostname_tempfail_action = $reject_tempfail_action
  623. unknown_hostname_reject_code = 450
  624. unknown_local_recipient_reject_code = 550
  625. unknown_relay_recipient_reject_code = 550
  626. unknown_virtual_alias_reject_code = 550
  627. unknown_virtual_mailbox_reject_code = 550
  628. unverified_recipient_defer_code = 450
  629. unverified_recipient_reject_code = 450
  630. unverified_recipient_reject_reason =
  631. unverified_recipient_tempfail_action = $reject_tempfail_action
  632. unverified_sender_defer_code = 450
  633. unverified_sender_reject_code = 450
  634. unverified_sender_reject_reason =
  635. unverified_sender_tempfail_action = $reject_tempfail_action
  636. verp_delimiter_filter = -=+
  637. virtual_alias_domains =
  638. virtual_alias_expansion_limit = 1000
  639. virtual_alias_maps = proxy:mysql:/usr/local/postfix/etc/postfix/mysql-virtual_forwardings.cf, mysql:/usr/local/postfix/etc/postfix/mysql-virtual_email2email.cf
  640. virtual_alias_recursion_limit = 1000
  641. virtual_destination_concurrency_failed_cohort_limit = $default_destination_concurrency_failed_cohort_limit
  642. virtual_destination_concurrency_limit = $default_destination_concurrency_limit
  643. virtual_destination_concurrency_negative_feedback = $default_destination_concurrency_negative_feedback
  644. virtual_destination_concurrency_positive_feedback = $default_destination_concurrency_positive_feedback
  645. virtual_destination_rate_delay = $default_destination_rate_delay
  646. virtual_destination_recipient_limit = $default_destination_recipient_limit
  647. virtual_gid_maps = static:5000
  648. virtual_initial_destination_concurrency = $initial_destination_concurrency
  649. virtual_mailbox_base = /home/vmail
  650. virtual_mailbox_domains = proxy:mysql:/usr/local/postfix/etc/postfix/mysql-virtual_domains.cf
  651. virtual_mailbox_limit = 1050576000
  652. virtual_mailbox_lock = fcntl, dotlock
  653. virtual_mailbox_maps = proxy:mysql:/usr/local/postfix/etc/postfix/mysql-virtual_mailboxes.cf
  654. virtual_minimum_uid = 100
  655. virtual_transport = virtual
  656. virtual_uid_maps = static:5000
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement