Advertisement
Ameriks

Untitled

Jul 30th, 2015
26
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 49.01 KB | None | 0 0
  1. 2bounce_notice_recipient = postmaster
  2. access_map_defer_code = 450
  3. access_map_reject_code = 554
  4. address_verify_cache_cleanup_interval = 12h
  5. address_verify_default_transport = $default_transport
  6. address_verify_local_transport = $local_transport
  7. address_verify_map = btree:$data_directory/verify_cache
  8. address_verify_negative_cache = yes
  9. address_verify_negative_expire_time = 3d
  10. address_verify_negative_refresh_time = 3h
  11. address_verify_poll_count = ${stress?1}${stress:3}
  12. address_verify_poll_delay = 3s
  13. address_verify_positive_expire_time = 31d
  14. address_verify_positive_refresh_time = 7d
  15. address_verify_relay_transport = $relay_transport
  16. address_verify_relayhost = $relayhost
  17. address_verify_sender = $double_bounce_sender
  18. address_verify_sender_dependent_default_transport_maps = $sender_dependent_default_transport_maps
  19. address_verify_sender_dependent_relayhost_maps = $sender_dependent_relayhost_maps
  20. address_verify_sender_ttl = 0s
  21. address_verify_service_name = verify
  22. address_verify_transport_maps = $transport_maps
  23. address_verify_virtual_transport = $virtual_transport
  24. alias_database = hash:/etc/aliases
  25. alias_maps = hash:/etc/aliases
  26. allow_mail_to_commands = alias, forward
  27. allow_mail_to_files = alias, forward
  28. allow_min_user = no
  29. allow_percent_hack = yes
  30. allow_untrusted_routing = no
  31. alternate_config_directories =
  32. always_add_missing_headers = no
  33. always_bcc =
  34. anvil_rate_time_unit = 60s
  35. anvil_status_update_time = 600s
  36. append_at_myorigin = yes
  37. append_dot_mydomain = no
  38. application_event_drain_time = 100s
  39. authorized_flush_users = static:anyone
  40. authorized_mailq_users = static:anyone
  41. authorized_submit_users = static:anyone
  42. backwards_bounce_logfile_compatibility = yes
  43. berkeley_db_create_buffer_size = 16777216
  44. berkeley_db_read_buffer_size = 131072
  45. best_mx_transport =
  46. biff = no
  47. body_checks =
  48. body_checks_size_limit = 51200
  49. bounce_notice_recipient = postmaster
  50. bounce_queue_lifetime = 5d
  51. bounce_service_name = bounce
  52. bounce_size_limit = 50000
  53. bounce_template_file =
  54. broken_sasl_auth_clients = no
  55. bsmtp_delivery_slot_cost = $default_delivery_slot_cost
  56. bsmtp_delivery_slot_discount = $default_delivery_slot_discount
  57. bsmtp_delivery_slot_loan = $default_delivery_slot_loan
  58. bsmtp_destination_concurrency_failed_cohort_limit = $default_destination_concurrency_failed_cohort_limit
  59. bsmtp_destination_concurrency_limit = $default_destination_concurrency_limit
  60. bsmtp_destination_concurrency_negative_feedback = $default_destination_concurrency_negative_feedback
  61. bsmtp_destination_concurrency_positive_feedback = $default_destination_concurrency_positive_feedback
  62. bsmtp_destination_rate_delay = $default_destination_rate_delay
  63. bsmtp_destination_recipient_limit = $default_destination_recipient_limit
  64. bsmtp_extra_recipient_limit = $default_extra_recipient_limit
  65. bsmtp_initial_destination_concurrency = $initial_destination_concurrency
  66. bsmtp_minimum_delivery_slots = $default_minimum_delivery_slots
  67. bsmtp_recipient_limit = $default_recipient_limit
  68. bsmtp_recipient_refill_delay = $default_recipient_refill_delay
  69. bsmtp_recipient_refill_limit = $default_recipient_refill_limit
  70. bsmtp_time_limit = $command_time_limit
  71. canonical_classes = envelope_sender, envelope_recipient, header_sender, header_recipient
  72. canonical_maps =
  73. cleanup_service_name = cleanup
  74. command_directory = /usr/sbin
  75. command_execution_directory =
  76. command_expansion_filter = 1234567890!@%-_=+:,./abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ
  77. command_time_limit = 1000s
  78. config_directory = /etc/postfix
  79. connection_cache_protocol_timeout = 5s
  80. connection_cache_service_name = scache
  81. connection_cache_status_update_time = 600s
  82. connection_cache_ttl_limit = 2s
  83. content_filter = smtp-amavis:[127.0.0.1]:10024
  84. cyrus_sasl_config_path =
  85. daemon_directory = /usr/lib/postfix
  86. daemon_table_open_error_is_fatal = no
  87. daemon_timeout = 18000s
  88. data_directory = /var/lib/postfix
  89. debug_peer_level = 2
  90. debug_peer_list = 7s.lv
  91. debugger_command =
  92. default_database_type = hash
  93. default_delivery_slot_cost = 5
  94. default_delivery_slot_discount = 50
  95. default_delivery_slot_loan = 3
  96. default_destination_concurrency_failed_cohort_limit = 1
  97. default_destination_concurrency_limit = 20
  98. default_destination_concurrency_negative_feedback = 1
  99. default_destination_concurrency_positive_feedback = 1
  100. default_destination_rate_delay = 0s
  101. default_destination_recipient_limit = 50
  102. default_extra_recipient_limit = 1000
  103. default_filter_nexthop =
  104. default_minimum_delivery_slots = 3
  105. default_privs = nobody
  106. default_process_limit = 100
  107. default_rbl_reply = $rbl_code Service unavailable; $rbl_class [$rbl_what] blocked using $rbl_domain${rbl_reason?; $rbl_reason}
  108. default_recipient_limit = 20000
  109. default_recipient_refill_delay = 5s
  110. default_recipient_refill_limit = 100
  111. default_transport = smtp
  112. default_verp_delimiters = +=
  113. defer_code = 450
  114. defer_service_name = defer
  115. defer_transports =
  116. delay_logging_resolution_limit = 2
  117. delay_notice_recipient = postmaster
  118. delay_warning_time = 0h
  119. deliver_lock_attempts = 20
  120. deliver_lock_delay = 1s
  121. destination_concurrency_feedback_debug = no
  122. detect_8bit_encoding_header = yes
  123. disable_dns_lookups = no
  124. disable_mime_input_processing = no
  125. disable_mime_output_conversion = no
  126. disable_verp_bounces = no
  127. disable_vrfy_command = no
  128. dnsblog_reply_delay = 0s
  129. dnsblog_service_name = dnsblog
  130. dont_remove = 0
  131. double_bounce_sender = double-bounce
  132. duplicate_filter_limit = 1000
  133. empty_address_default_transport_maps_lookup_key = <>
  134. empty_address_recipient = MAILER-DAEMON
  135. empty_address_relayhost_maps_lookup_key = <>
  136. enable_long_queue_ids = no
  137. enable_original_recipient = yes
  138. error_delivery_slot_cost = $default_delivery_slot_cost
  139. error_delivery_slot_discount = $default_delivery_slot_discount
  140. error_delivery_slot_loan = $default_delivery_slot_loan
  141. error_destination_concurrency_failed_cohort_limit = $default_destination_concurrency_failed_cohort_limit
  142. error_destination_concurrency_limit = $default_destination_concurrency_limit
  143. error_destination_concurrency_negative_feedback = $default_destination_concurrency_negative_feedback
  144. error_destination_concurrency_positive_feedback = $default_destination_concurrency_positive_feedback
  145. error_destination_rate_delay = $default_destination_rate_delay
  146. error_destination_recipient_limit = $default_destination_recipient_limit
  147. error_extra_recipient_limit = $default_extra_recipient_limit
  148. error_initial_destination_concurrency = $initial_destination_concurrency
  149. error_minimum_delivery_slots = $default_minimum_delivery_slots
  150. error_notice_recipient = postmaster
  151. error_recipient_limit = $default_recipient_limit
  152. error_recipient_refill_delay = $default_recipient_refill_delay
  153. error_recipient_refill_limit = $default_recipient_refill_limit
  154. error_service_name = error
  155. execution_directory_expansion_filter = 1234567890!@%-_=+:,./abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ
  156. expand_owner_alias = no
  157. export_environment = TZ MAIL_CONFIG LANG
  158. fallback_transport =
  159. fallback_transport_maps =
  160. fast_flush_domains = $relay_domains
  161. fast_flush_purge_time = 7d
  162. fast_flush_refresh_time = 12h
  163. fault_injection_code = 0
  164. flush_service_name = flush
  165. fork_attempts = 5
  166. fork_delay = 1s
  167. forward_expansion_filter = 1234567890!@%-_=+:,./abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ
  168. forward_path = $home/.forward${recipient_delimiter}${extension}, $home/.forward
  169. frozen_delivered_to = yes
  170. hash_queue_depth = 1
  171. hash_queue_names = deferred, defer
  172. header_address_token_limit = 10240
  173. header_checks =
  174. header_size_limit = 102400
  175. helpful_warnings = yes
  176. home_mailbox =
  177. hopcount_limit = 50
  178. html_directory = no
  179. ifmail_delivery_slot_cost = $default_delivery_slot_cost
  180. ifmail_delivery_slot_discount = $default_delivery_slot_discount
  181. ifmail_delivery_slot_loan = $default_delivery_slot_loan
  182. ifmail_destination_concurrency_failed_cohort_limit = $default_destination_concurrency_failed_cohort_limit
  183. ifmail_destination_concurrency_limit = $default_destination_concurrency_limit
  184. ifmail_destination_concurrency_negative_feedback = $default_destination_concurrency_negative_feedback
  185. ifmail_destination_concurrency_positive_feedback = $default_destination_concurrency_positive_feedback
  186. ifmail_destination_rate_delay = $default_destination_rate_delay
  187. ifmail_destination_recipient_limit = $default_destination_recipient_limit
  188. ifmail_extra_recipient_limit = $default_extra_recipient_limit
  189. ifmail_initial_destination_concurrency = $initial_destination_concurrency
  190. ifmail_minimum_delivery_slots = $default_minimum_delivery_slots
  191. ifmail_recipient_limit = $default_recipient_limit
  192. ifmail_recipient_refill_delay = $default_recipient_refill_delay
  193. ifmail_recipient_refill_limit = $default_recipient_refill_limit
  194. ifmail_time_limit = $command_time_limit
  195. ignore_mx_lookup_error = no
  196. import_environment = MAIL_CONFIG MAIL_DEBUG MAIL_LOGTAG TZ XAUTHORITY DISPLAY LANG=C
  197. in_flow_delay = 1s
  198. inet_interfaces = all
  199. inet_protocols = all
  200. initial_destination_concurrency = 5
  201. internal_mail_filter_classes =
  202. invalid_hostname_reject_code = 501
  203. ipc_idle = 5s
  204. ipc_timeout = 3600s
  205. ipc_ttl = 1000s
  206. line_length_limit = 2048
  207. lmdb_map_size = 16777216
  208. lmtp_address_preference = any
  209. lmtp_assume_final = no
  210. lmtp_bind_address =
  211. lmtp_bind_address6 =
  212. lmtp_body_checks =
  213. lmtp_cname_overrides_servername = no
  214. lmtp_connect_timeout = 0s
  215. lmtp_connection_cache_destinations =
  216. lmtp_connection_cache_on_demand = yes
  217. lmtp_connection_cache_time_limit = 2s
  218. lmtp_connection_reuse_count_limit = 0
  219. lmtp_connection_reuse_time_limit = 300s
  220. lmtp_data_done_timeout = 600s
  221. lmtp_data_init_timeout = 120s
  222. lmtp_data_xfer_timeout = 180s
  223. lmtp_defer_if_no_mx_address_found = no
  224. lmtp_delivery_slot_cost = $default_delivery_slot_cost
  225. lmtp_delivery_slot_discount = $default_delivery_slot_discount
  226. lmtp_delivery_slot_loan = $default_delivery_slot_loan
  227. lmtp_destination_concurrency_failed_cohort_limit = $default_destination_concurrency_failed_cohort_limit
  228. lmtp_destination_concurrency_limit = $default_destination_concurrency_limit
  229. lmtp_destination_concurrency_negative_feedback = $default_destination_concurrency_negative_feedback
  230. lmtp_destination_concurrency_positive_feedback = $default_destination_concurrency_positive_feedback
  231. lmtp_destination_rate_delay = $default_destination_rate_delay
  232. lmtp_destination_recipient_limit = $default_destination_recipient_limit
  233. lmtp_discard_lhlo_keyword_address_maps =
  234. lmtp_discard_lhlo_keywords =
  235. lmtp_dns_resolver_options =
  236. lmtp_dns_support_level =
  237. lmtp_enforce_tls = no
  238. lmtp_extra_recipient_limit = $default_extra_recipient_limit
  239. lmtp_generic_maps =
  240. lmtp_header_checks =
  241. lmtp_host_lookup = dns
  242. lmtp_initial_destination_concurrency = $initial_destination_concurrency
  243. lmtp_lhlo_name = $myhostname
  244. lmtp_lhlo_timeout = 300s
  245. lmtp_line_length_limit = 998
  246. lmtp_mail_timeout = 300s
  247. lmtp_mime_header_checks =
  248. lmtp_minimum_delivery_slots = $default_minimum_delivery_slots
  249. lmtp_mx_address_limit = 5
  250. lmtp_mx_session_limit = 2
  251. lmtp_nested_header_checks =
  252. lmtp_per_record_deadline = no
  253. lmtp_pix_workaround_delay_time = 10s
  254. lmtp_pix_workaround_maps =
  255. lmtp_pix_workaround_threshold_time = 500s
  256. lmtp_pix_workarounds = disable_esmtp,delay_dotcrlf
  257. lmtp_quit_timeout = 300s
  258. lmtp_quote_rfc821_envelope = yes
  259. lmtp_randomize_addresses = yes
  260. lmtp_rcpt_timeout = 300s
  261. lmtp_recipient_limit = $default_recipient_limit
  262. lmtp_recipient_refill_delay = $default_recipient_refill_delay
  263. lmtp_recipient_refill_limit = $default_recipient_refill_limit
  264. lmtp_reply_filter =
  265. lmtp_rset_timeout = 20s
  266. lmtp_sasl_auth_cache_name =
  267. lmtp_sasl_auth_cache_time = 90d
  268. lmtp_sasl_auth_enable = no
  269. lmtp_sasl_auth_soft_bounce = yes
  270. lmtp_sasl_mechanism_filter =
  271. lmtp_sasl_password_maps =
  272. lmtp_sasl_path =
  273. lmtp_sasl_security_options = noplaintext, noanonymous
  274. lmtp_sasl_tls_security_options = $lmtp_sasl_security_options
  275. lmtp_sasl_tls_verified_security_options = $lmtp_sasl_tls_security_options
  276. lmtp_sasl_type = cyrus
  277. lmtp_send_dummy_mail_auth = no
  278. lmtp_send_xforward_command = no
  279. lmtp_sender_dependent_authentication = no
  280. lmtp_skip_5xx_greeting = yes
  281. lmtp_skip_quit_response = no
  282. lmtp_starttls_timeout = 300s
  283. lmtp_tcp_port = 24
  284. lmtp_tls_CAfile =
  285. lmtp_tls_CApath =
  286. lmtp_tls_block_early_mail_reply = no
  287. lmtp_tls_cert_file =
  288. lmtp_tls_ciphers = export
  289. lmtp_tls_dcert_file =
  290. lmtp_tls_dkey_file = $lmtp_tls_dcert_file
  291. lmtp_tls_eccert_file =
  292. lmtp_tls_eckey_file = $lmtp_tls_eccert_file
  293. lmtp_tls_enforce_peername = yes
  294. lmtp_tls_exclude_ciphers =
  295. lmtp_tls_fingerprint_cert_match =
  296. lmtp_tls_fingerprint_digest = md5
  297. lmtp_tls_force_insecure_host_tlsa_lookup = no
  298. lmtp_tls_key_file = $lmtp_tls_cert_file
  299. lmtp_tls_loglevel = 0
  300. lmtp_tls_mandatory_ciphers = medium
  301. lmtp_tls_mandatory_exclude_ciphers =
  302. lmtp_tls_mandatory_protocols = !SSLv2
  303. lmtp_tls_note_starttls_offer = no
  304. lmtp_tls_per_site =
  305. lmtp_tls_policy_maps =
  306. lmtp_tls_protocols = !SSLv2
  307. lmtp_tls_scert_verifydepth = 9
  308. lmtp_tls_secure_cert_match = nexthop
  309. lmtp_tls_security_level =
  310. lmtp_tls_session_cache_database =
  311. lmtp_tls_session_cache_timeout = 3600s
  312. lmtp_tls_trust_anchor_file =
  313. lmtp_tls_verify_cert_match = hostname
  314. lmtp_use_tls = no
  315. lmtp_xforward_timeout = 300s
  316. local_command_shell =
  317. local_delivery_slot_cost = $default_delivery_slot_cost
  318. local_delivery_slot_discount = $default_delivery_slot_discount
  319. local_delivery_slot_loan = $default_delivery_slot_loan
  320. local_destination_concurrency_failed_cohort_limit = $default_destination_concurrency_failed_cohort_limit
  321. local_destination_concurrency_limit = 2
  322. local_destination_concurrency_negative_feedback = $default_destination_concurrency_negative_feedback
  323. local_destination_concurrency_positive_feedback = $default_destination_concurrency_positive_feedback
  324. local_destination_rate_delay = $default_destination_rate_delay
  325. local_destination_recipient_limit = 1
  326. local_extra_recipient_limit = $default_extra_recipient_limit
  327. local_header_rewrite_clients = permit_inet_interfaces
  328. local_initial_destination_concurrency = $initial_destination_concurrency
  329. local_minimum_delivery_slots = $default_minimum_delivery_slots
  330. local_recipient_limit = $default_recipient_limit
  331. local_recipient_maps = $virtual_mailbox_maps
  332. local_recipient_refill_delay = $default_recipient_refill_delay
  333. local_recipient_refill_limit = $default_recipient_refill_limit
  334. local_transport = local:$myhostname
  335. luser_relay =
  336. mail_name = Postfix
  337. mail_owner = postfix
  338. mail_release_date = 20140115
  339. mail_spool_directory = /var/mail
  340. mail_version = 2.11.0
  341. mailbox_command =
  342. mailbox_command_maps =
  343. mailbox_delivery_lock = fcntl, dotlock
  344. mailbox_size_limit = 0
  345. mailbox_transport =
  346. mailbox_transport_maps =
  347. maildrop_delivery_slot_cost = $default_delivery_slot_cost
  348. maildrop_delivery_slot_discount = $default_delivery_slot_discount
  349. maildrop_delivery_slot_loan = $default_delivery_slot_loan
  350. maildrop_destination_concurrency_failed_cohort_limit = $default_destination_concurrency_failed_cohort_limit
  351. maildrop_destination_concurrency_limit = $default_destination_concurrency_limit
  352. maildrop_destination_concurrency_negative_feedback = $default_destination_concurrency_negative_feedback
  353. maildrop_destination_concurrency_positive_feedback = $default_destination_concurrency_positive_feedback
  354. maildrop_destination_rate_delay = $default_destination_rate_delay
  355. maildrop_destination_recipient_limit = $default_destination_recipient_limit
  356. maildrop_extra_recipient_limit = $default_extra_recipient_limit
  357. maildrop_initial_destination_concurrency = $initial_destination_concurrency
  358. maildrop_minimum_delivery_slots = $default_minimum_delivery_slots
  359. maildrop_recipient_limit = $default_recipient_limit
  360. maildrop_recipient_refill_delay = $default_recipient_refill_delay
  361. maildrop_recipient_refill_limit = $default_recipient_refill_limit
  362. maildrop_time_limit = $command_time_limit
  363. mailman_delivery_slot_cost = $default_delivery_slot_cost
  364. mailman_delivery_slot_discount = $default_delivery_slot_discount
  365. mailman_delivery_slot_loan = $default_delivery_slot_loan
  366. mailman_destination_concurrency_failed_cohort_limit = $default_destination_concurrency_failed_cohort_limit
  367. mailman_destination_concurrency_limit = $default_destination_concurrency_limit
  368. mailman_destination_concurrency_negative_feedback = $default_destination_concurrency_negative_feedback
  369. mailman_destination_concurrency_positive_feedback = $default_destination_concurrency_positive_feedback
  370. mailman_destination_rate_delay = $default_destination_rate_delay
  371. mailman_destination_recipient_limit = $default_destination_recipient_limit
  372. mailman_extra_recipient_limit = $default_extra_recipient_limit
  373. mailman_initial_destination_concurrency = $initial_destination_concurrency
  374. mailman_minimum_delivery_slots = $default_minimum_delivery_slots
  375. mailman_recipient_limit = $default_recipient_limit
  376. mailman_recipient_refill_delay = $default_recipient_refill_delay
  377. mailman_recipient_refill_limit = $default_recipient_refill_limit
  378. mailman_time_limit = $command_time_limit
  379. mailq_path = /usr/bin/mailq
  380. manpage_directory = /usr/share/man
  381. maps_rbl_domains =
  382. maps_rbl_reject_code = 554
  383. masquerade_classes = envelope_sender, header_sender, header_recipient
  384. masquerade_domains =
  385. masquerade_exceptions =
  386. master_service_disable =
  387. max_idle = 100s
  388. max_use = 100
  389. maximal_backoff_time = 4000s
  390. maximal_queue_lifetime = 5d
  391. message_reject_characters =
  392. message_size_limit = 134217728
  393. message_strip_characters =
  394. milter_command_timeout = 30s
  395. milter_connect_macros = j {daemon_name} v
  396. milter_connect_timeout = 30s
  397. milter_content_timeout = 300s
  398. milter_data_macros = i
  399. milter_default_action = accept
  400. milter_end_of_data_macros = i
  401. milter_end_of_header_macros = i
  402. milter_header_checks =
  403. milter_helo_macros = {tls_version} {cipher} {cipher_bits} {cert_subject} {cert_issuer}
  404. milter_macro_daemon_name = $myhostname
  405. milter_macro_v = $mail_name $mail_version
  406. milter_mail_macros = i {auth_type} {auth_authen} {auth_author} {mail_addr} {mail_host} {mail_mailer}
  407. milter_protocol = 6
  408. milter_rcpt_macros = i {rcpt_addr} {rcpt_host} {rcpt_mailer}
  409. milter_unknown_command_macros =
  410. mime_boundary_length_limit = 2048
  411. mime_header_checks = $header_checks
  412. mime_nesting_limit = 100
  413. minimal_backoff_time = 300s
  414. multi_instance_directories =
  415. multi_instance_enable = no
  416. multi_instance_group =
  417. multi_instance_name =
  418. multi_instance_wrapper =
  419. multi_recipient_bounce_reject_code = 550
  420. mydestination = localhost
  421. mydomain = senderexample.com
  422. myhostname = box.example.com
  423. mynetworks = 127.0.0.0/8 [::ffff:127.0.0.0]/104 [::1]/128
  424. mynetworks_style = subnet
  425. myorigin = /etc/mailname
  426. nested_header_checks = $header_checks
  427. newaliases_path = /usr/bin/newaliases
  428. non_fqdn_reject_code = 504
  429. non_smtpd_milters = $smtpd_milters
  430. notify_classes = bounce, delay, resource, software
  431. owner_request_special = yes
  432. parent_domain_matches_subdomains = debug_peer_list,fast_flush_domains,mynetworks,permit_mx_backup_networks,qmqpd_authorized_clients,relay_domains,smtpd_access_maps
  433. permit_mx_backup_networks =
  434. pickup_service_name = pickup
  435. plaintext_reject_code = 450
  436. postmulti_control_commands = reload flush
  437. postmulti_start_commands = start
  438. postmulti_stop_commands = stop abort drain quick-stop
  439. postscreen_access_list = permit_mynetworks
  440. postscreen_bare_newline_action = ignore
  441. postscreen_bare_newline_enable = no
  442. postscreen_bare_newline_ttl = 30d
  443. postscreen_blacklist_action = ignore
  444. postscreen_cache_cleanup_interval = 12h
  445. postscreen_cache_map = btree:$data_directory/postscreen_cache
  446. postscreen_cache_retention_time = 7d
  447. postscreen_client_connection_count_limit = $smtpd_client_connection_count_limit
  448. postscreen_command_count_limit = 20
  449. postscreen_command_filter =
  450. postscreen_command_time_limit = ${stress?10}${stress:300}s
  451. postscreen_disable_vrfy_command = $disable_vrfy_command
  452. postscreen_discard_ehlo_keyword_address_maps = $smtpd_discard_ehlo_keyword_address_maps
  453. postscreen_discard_ehlo_keywords = $smtpd_discard_ehlo_keywords
  454. postscreen_dnsbl_action = ignore
  455. postscreen_dnsbl_reply_map =
  456. postscreen_dnsbl_sites =
  457. postscreen_dnsbl_threshold = 1
  458. postscreen_dnsbl_ttl = 1h
  459. postscreen_dnsbl_whitelist_threshold = 0
  460. postscreen_enforce_tls = $smtpd_enforce_tls
  461. postscreen_expansion_filter = $smtpd_expansion_filter
  462. postscreen_forbidden_commands = $smtpd_forbidden_commands
  463. postscreen_greet_action = ignore
  464. postscreen_greet_banner = $smtpd_banner
  465. postscreen_greet_ttl = 1d
  466. postscreen_greet_wait = ${stress?2}${stress:6}s
  467. postscreen_helo_required = $smtpd_helo_required
  468. postscreen_non_smtp_command_action = drop
  469. postscreen_non_smtp_command_enable = no
  470. postscreen_non_smtp_command_ttl = 30d
  471. postscreen_pipelining_action = enforce
  472. postscreen_pipelining_enable = no
  473. postscreen_pipelining_ttl = 30d
  474. postscreen_post_queue_limit = $default_process_limit
  475. postscreen_pre_queue_limit = $default_process_limit
  476. postscreen_reject_footer = $smtpd_reject_footer
  477. postscreen_tls_security_level = $smtpd_tls_security_level
  478. postscreen_upstream_proxy_protocol =
  479. postscreen_upstream_proxy_timeout = 5s
  480. postscreen_use_tls = $smtpd_use_tls
  481. postscreen_watchdog_timeout = 10s
  482. postscreen_whitelist_interfaces = static:all
  483. prepend_delivered_header = command, file, forward
  484. process_id = 19516
  485. process_id_directory = pid
  486. process_name = postconf
  487. propagate_unmatched_extensions = canonical, virtual
  488. proxy_interfaces =
  489. proxy_read_maps = $local_recipient_maps $mydestination $virtual_alias_maps $virtual_alias_domains $virtual_mailbox_maps $virtual_mailbox_domains $relay_recipient_maps $relay_domains $canonical_maps $sender_canonical_maps $recipient_canonical_maps $relocated_maps $transport_maps $mynetworks $smtpd_sender_login_maps $sender_bcc_maps $recipient_bcc_maps $smtp_generic_maps $lmtp_generic_maps $alias_maps
  490. proxy_write_maps = $smtp_sasl_auth_cache_name $lmtp_sasl_auth_cache_name $address_verify_map $postscreen_cache_map
  491. proxymap_service_name = proxymap
  492. proxywrite_service_name = proxywrite
  493. qmgr_clog_warn_time = 300s
  494. qmgr_daemon_timeout = 1000s
  495. qmgr_fudge_factor = 100
  496. qmgr_ipc_timeout = 60s
  497. qmgr_message_active_limit = 20000
  498. qmgr_message_recipient_limit = 20000
  499. qmgr_message_recipient_minimum = 10
  500. qmqpd_authorized_clients =
  501. qmqpd_client_port_logging = no
  502. qmqpd_error_delay = 1s
  503. qmqpd_timeout = 300s
  504. queue_directory = /var/spool/postfix
  505. queue_file_attribute_count_limit = 100
  506. queue_minfree = 0
  507. queue_run_delay = 300s
  508. queue_service_name = qmgr
  509. rbl_reply_maps =
  510. readme_directory = no
  511. receive_override_options =
  512. recipient_bcc_maps =
  513. recipient_canonical_classes = envelope_recipient, header_recipient
  514. recipient_canonical_maps =
  515. recipient_delimiter = +
  516. reject_code = 554
  517. reject_tempfail_action = defer_if_permit
  518. relay_clientcerts =
  519. relay_delivery_slot_cost = $default_delivery_slot_cost
  520. relay_delivery_slot_discount = $default_delivery_slot_discount
  521. relay_delivery_slot_loan = $default_delivery_slot_loan
  522. relay_destination_concurrency_failed_cohort_limit = $default_destination_concurrency_failed_cohort_limit
  523. relay_destination_concurrency_limit = $default_destination_concurrency_limit
  524. relay_destination_concurrency_negative_feedback = $default_destination_concurrency_negative_feedback
  525. relay_destination_concurrency_positive_feedback = $default_destination_concurrency_positive_feedback
  526. relay_destination_rate_delay = $default_destination_rate_delay
  527. relay_destination_recipient_limit = $default_destination_recipient_limit
  528. relay_domains = $mydestination
  529. relay_domains_reject_code = 554
  530. relay_extra_recipient_limit = $default_extra_recipient_limit
  531. relay_initial_destination_concurrency = $initial_destination_concurrency
  532. relay_minimum_delivery_slots = $default_minimum_delivery_slots
  533. relay_recipient_limit = $default_recipient_limit
  534. relay_recipient_maps =
  535. relay_recipient_refill_delay = $default_recipient_refill_delay
  536. relay_recipient_refill_limit = $default_recipient_refill_limit
  537. relay_transport = relay
  538. relayhost =
  539. relocated_maps =
  540. remote_header_rewrite_domain =
  541. require_home_directory = no
  542. reset_owner_alias = no
  543. resolve_dequoted_address = yes
  544. resolve_null_domain = no
  545. resolve_numeric_domain = no
  546. retry_delivery_slot_cost = $default_delivery_slot_cost
  547. retry_delivery_slot_discount = $default_delivery_slot_discount
  548. retry_delivery_slot_loan = $default_delivery_slot_loan
  549. retry_destination_concurrency_failed_cohort_limit = $default_destination_concurrency_failed_cohort_limit
  550. retry_destination_concurrency_limit = $default_destination_concurrency_limit
  551. retry_destination_concurrency_negative_feedback = $default_destination_concurrency_negative_feedback
  552. retry_destination_concurrency_positive_feedback = $default_destination_concurrency_positive_feedback
  553. retry_destination_rate_delay = $default_destination_rate_delay
  554. retry_destination_recipient_limit = $default_destination_recipient_limit
  555. retry_extra_recipient_limit = $default_extra_recipient_limit
  556. retry_initial_destination_concurrency = $initial_destination_concurrency
  557. retry_minimum_delivery_slots = $default_minimum_delivery_slots
  558. retry_recipient_limit = $default_recipient_limit
  559. retry_recipient_refill_delay = $default_recipient_refill_delay
  560. retry_recipient_refill_limit = $default_recipient_refill_limit
  561. rewrite_service_name = rewrite
  562. sample_directory = /usr/share/doc/postfix/examples
  563. scalemail-backend_delivery_slot_cost = $default_delivery_slot_cost
  564. scalemail-backend_delivery_slot_discount = $default_delivery_slot_discount
  565. scalemail-backend_delivery_slot_loan = $default_delivery_slot_loan
  566. scalemail-backend_destination_concurrency_failed_cohort_limit = $default_destination_concurrency_failed_cohort_limit
  567. scalemail-backend_destination_concurrency_limit = $default_destination_concurrency_limit
  568. scalemail-backend_destination_concurrency_negative_feedback = $default_destination_concurrency_negative_feedback
  569. scalemail-backend_destination_concurrency_positive_feedback = $default_destination_concurrency_positive_feedback
  570. scalemail-backend_destination_rate_delay = $default_destination_rate_delay
  571. scalemail-backend_destination_recipient_limit = $default_destination_recipient_limit
  572. scalemail-backend_extra_recipient_limit = $default_extra_recipient_limit
  573. scalemail-backend_initial_destination_concurrency = $initial_destination_concurrency
  574. scalemail-backend_minimum_delivery_slots = $default_minimum_delivery_slots
  575. scalemail-backend_recipient_limit = $default_recipient_limit
  576. scalemail-backend_recipient_refill_delay = $default_recipient_refill_delay
  577. scalemail-backend_recipient_refill_limit = $default_recipient_refill_limit
  578. scalemail-backend_time_limit = $command_time_limit
  579. send_cyrus_sasl_authzid = no
  580. sender_bcc_maps =
  581. sender_canonical_classes = envelope_sender, header_sender
  582. sender_canonical_maps =
  583. sender_dependent_default_transport_maps =
  584. sender_dependent_relayhost_maps =
  585. sendmail_fix_line_endings = always
  586. sendmail_path = /usr/sbin/sendmail
  587. service_throttle_time = 60s
  588. setgid_group = postdrop
  589. show_user_unknown_table_name = yes
  590. showq_service_name = showq
  591. smtp-amavis_delivery_slot_cost = $default_delivery_slot_cost
  592. smtp-amavis_delivery_slot_discount = $default_delivery_slot_discount
  593. smtp-amavis_delivery_slot_loan = $default_delivery_slot_loan
  594. smtp-amavis_destination_concurrency_failed_cohort_limit = $default_destination_concurrency_failed_cohort_limit
  595. smtp-amavis_destination_concurrency_limit = $default_destination_concurrency_limit
  596. smtp-amavis_destination_concurrency_negative_feedback = $default_destination_concurrency_negative_feedback
  597. smtp-amavis_destination_concurrency_positive_feedback = $default_destination_concurrency_positive_feedback
  598. smtp-amavis_destination_rate_delay = $default_destination_rate_delay
  599. smtp-amavis_destination_recipient_limit = $default_destination_recipient_limit
  600. smtp-amavis_extra_recipient_limit = $default_extra_recipient_limit
  601. smtp-amavis_initial_destination_concurrency = $initial_destination_concurrency
  602. smtp-amavis_minimum_delivery_slots = $default_minimum_delivery_slots
  603. smtp-amavis_recipient_limit = $default_recipient_limit
  604. smtp-amavis_recipient_refill_delay = $default_recipient_refill_delay
  605. smtp-amavis_recipient_refill_limit = $default_recipient_refill_limit
  606. smtp_address_preference = any
  607. smtp_always_send_ehlo = yes
  608. smtp_bind_address =
  609. smtp_bind_address6 =
  610. smtp_body_checks =
  611. smtp_cname_overrides_servername = no
  612. smtp_connect_timeout = 30s
  613. smtp_connection_cache_destinations =
  614. smtp_connection_cache_on_demand = yes
  615. smtp_connection_cache_time_limit = 2s
  616. smtp_connection_reuse_count_limit = 0
  617. smtp_connection_reuse_time_limit = 300s
  618. smtp_data_done_timeout = 600s
  619. smtp_data_init_timeout = 120s
  620. smtp_data_xfer_timeout = 180s
  621. smtp_defer_if_no_mx_address_found = no
  622. smtp_delivery_slot_cost = $default_delivery_slot_cost
  623. smtp_delivery_slot_discount = $default_delivery_slot_discount
  624. smtp_delivery_slot_loan = $default_delivery_slot_loan
  625. smtp_destination_concurrency_failed_cohort_limit = $default_destination_concurrency_failed_cohort_limit
  626. smtp_destination_concurrency_limit = $default_destination_concurrency_limit
  627. smtp_destination_concurrency_negative_feedback = $default_destination_concurrency_negative_feedback
  628. smtp_destination_concurrency_positive_feedback = $default_destination_concurrency_positive_feedback
  629. smtp_destination_rate_delay = $default_destination_rate_delay
  630. smtp_destination_recipient_limit = $default_destination_recipient_limit
  631. smtp_discard_ehlo_keyword_address_maps =
  632. smtp_discard_ehlo_keywords =
  633. smtp_dns_resolver_options =
  634. smtp_dns_support_level = dnssec
  635. smtp_enforce_tls = no
  636. smtp_extra_recipient_limit = $default_extra_recipient_limit
  637. smtp_fallback_relay = $fallback_relay
  638. smtp_generic_maps =
  639. smtp_header_checks =
  640. smtp_helo_name = $myhostname
  641. smtp_helo_timeout = 300s
  642. smtp_host_lookup = dns
  643. smtp_initial_destination_concurrency = $initial_destination_concurrency
  644. smtp_line_length_limit = 998
  645. smtp_mail_timeout = 300s
  646. smtp_mime_header_checks =
  647. smtp_minimum_delivery_slots = $default_minimum_delivery_slots
  648. smtp_mx_address_limit = 5
  649. smtp_mx_session_limit = 2
  650. smtp_nested_header_checks =
  651. smtp_never_send_ehlo = no
  652. smtp_per_record_deadline = no
  653. smtp_pix_workaround_delay_time = 10s
  654. smtp_pix_workaround_maps =
  655. smtp_pix_workaround_threshold_time = 500s
  656. smtp_pix_workarounds = disable_esmtp,delay_dotcrlf
  657. smtp_quit_timeout = 300s
  658. smtp_quote_rfc821_envelope = yes
  659. smtp_randomize_addresses = yes
  660. smtp_rcpt_timeout = 300s
  661. smtp_recipient_limit = $default_recipient_limit
  662. smtp_recipient_refill_delay = $default_recipient_refill_delay
  663. smtp_recipient_refill_limit = $default_recipient_refill_limit
  664. smtp_reply_filter =
  665. smtp_rset_timeout = 20s
  666. smtp_sasl_auth_cache_name =
  667. smtp_sasl_auth_cache_time = 90d
  668. smtp_sasl_auth_enable = no
  669. smtp_sasl_auth_soft_bounce = yes
  670. smtp_sasl_mechanism_filter =
  671. smtp_sasl_password_maps =
  672. smtp_sasl_path =
  673. smtp_sasl_security_options = noplaintext, noanonymous
  674. smtp_sasl_tls_security_options = $smtp_sasl_security_options
  675. smtp_sasl_tls_verified_security_options = $smtp_sasl_tls_security_options
  676. smtp_sasl_type = cyrus
  677. smtp_send_dummy_mail_auth = no
  678. smtp_send_xforward_command = no
  679. smtp_sender_dependent_authentication = no
  680. smtp_skip_5xx_greeting = yes
  681. smtp_skip_quit_response = yes
  682. smtp_starttls_timeout = 300s
  683. smtp_tls_CAfile = /etc/ssl/certs/ca-certificates.crt
  684. smtp_tls_CApath =
  685. smtp_tls_block_early_mail_reply = no
  686. smtp_tls_cert_file =
  687. smtp_tls_ciphers = export
  688. smtp_tls_dcert_file =
  689. smtp_tls_dkey_file = $smtp_tls_dcert_file
  690. smtp_tls_eccert_file =
  691. smtp_tls_eckey_file = $smtp_tls_eccert_file
  692. smtp_tls_enforce_peername = yes
  693. smtp_tls_exclude_ciphers =
  694. smtp_tls_fingerprint_cert_match =
  695. smtp_tls_fingerprint_digest = md5
  696. smtp_tls_force_insecure_host_tlsa_lookup = no
  697. smtp_tls_key_file = $smtp_tls_cert_file
  698. smtp_tls_loglevel = 2
  699. smtp_tls_mandatory_ciphers = medium
  700. smtp_tls_mandatory_exclude_ciphers =
  701. smtp_tls_mandatory_protocols = !SSLv2
  702. smtp_tls_note_starttls_offer = no
  703. smtp_tls_per_site =
  704. smtp_tls_policy_maps =
  705. smtp_tls_protocols = !SSLv2
  706. smtp_tls_scert_verifydepth = 9
  707. smtp_tls_secure_cert_match = nexthop, dot-nexthop
  708. smtp_tls_security_level = dane
  709. smtp_tls_session_cache_database =
  710. smtp_tls_session_cache_timeout = 3600s
  711. smtp_tls_trust_anchor_file =
  712. smtp_tls_verify_cert_match = hostname
  713. smtp_use_tls = no
  714. smtp_xforward_timeout = 300s
  715. smtpd_authorized_verp_clients = $authorized_verp_clients
  716. smtpd_authorized_xclient_hosts =
  717. smtpd_authorized_xforward_hosts =
  718. smtpd_banner = ESMTP $mail_name
  719. smtpd_client_connection_count_limit = 50
  720. smtpd_client_connection_rate_limit = 0
  721. smtpd_client_event_limit_exceptions = ${smtpd_client_connection_limit_exceptions:$mynetworks}
  722. smtpd_client_message_rate_limit = 0
  723. smtpd_client_new_tls_session_rate_limit = 0
  724. smtpd_client_port_logging = no
  725. smtpd_client_recipient_rate_limit = 0
  726. smtpd_client_restrictions =
  727. smtpd_command_filter =
  728. smtpd_data_restrictions =
  729. smtpd_delay_open_until_valid_rcpt = yes
  730. smtpd_delay_reject = yes
  731. smtpd_discard_ehlo_keyword_address_maps =
  732. smtpd_discard_ehlo_keywords =
  733. smtpd_end_of_data_restrictions =
  734. smtpd_enforce_tls = no
  735. smtpd_error_sleep_time = 1s
  736. smtpd_etrn_restrictions =
  737. smtpd_expansion_filter = \t\40!"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~
  738. smtpd_forbidden_commands = CONNECT GET POST
  739. smtpd_hard_error_limit = ${stress?1}${stress:20}
  740. smtpd_helo_required = no
  741. smtpd_helo_restrictions =
  742. smtpd_history_flush_threshold = 100
  743. smtpd_junk_command_limit = ${stress?1}${stress:100}
  744. smtpd_log_access_permit_actions =
  745. smtpd_milters = inet:127.0.0.1:8891 inet:127.0.0.1:8893
  746. smtpd_noop_commands =
  747. smtpd_null_access_lookup_key = <>
  748. smtpd_peername_lookup = yes
  749. smtpd_per_record_deadline = ${stress?yes}${stress:no}
  750. smtpd_policy_service_max_idle = 300s
  751. smtpd_policy_service_max_ttl = 1000s
  752. smtpd_policy_service_timeout = 100s
  753. smtpd_proxy_ehlo = $myhostname
  754. smtpd_proxy_filter =
  755. smtpd_proxy_options =
  756. smtpd_proxy_timeout = 100s
  757. smtpd_recipient_limit = 1000
  758. smtpd_recipient_overshoot_limit = 1000
  759. smtpd_recipient_restrictions = permit_sasl_authenticated, permit_mynetworks, reject_rbl_client zen.spamhaus.org, reject_unlisted_recipient, check_policy_service inet:127.0.0.1:10023
  760. smtpd_reject_footer =
  761. smtpd_reject_unlisted_recipient = yes
  762. smtpd_reject_unlisted_sender = no
  763. smtpd_relay_restrictions = permit_sasl_authenticated,permit_mynetworks,reject_unauth_destination
  764. smtpd_restriction_classes =
  765. smtpd_sasl_auth_enable = yes
  766. smtpd_sasl_authenticated_header = no
  767. smtpd_sasl_exceptions_networks =
  768. smtpd_sasl_local_domain =
  769. smtpd_sasl_path = private/auth
  770. smtpd_sasl_security_options = noanonymous
  771. smtpd_sasl_service = smtp
  772. smtpd_sasl_tls_security_options = $smtpd_sasl_security_options
  773. smtpd_sasl_type = dovecot
  774. smtpd_sender_login_maps = pgsql:/etc/postfix/pgsql/sender-login-maps.cf
  775. smtpd_sender_restrictions = reject_non_fqdn_sender, reject_unknown_sender_domain, reject_authenticated_sender_login_mismatch, reject_rhsbl_sender dbl.spamhaus.org
  776. smtpd_service_name = smtpd
  777. smtpd_soft_error_limit = 10
  778. smtpd_starttls_timeout = ${stress?10}${stress:300}s
  779. smtpd_timeout = ${stress?10}${stress:300}s
  780. smtpd_tls_CAfile =
  781. smtpd_tls_CApath =
  782. smtpd_tls_always_issue_session_ids = yes
  783. smtpd_tls_ask_ccert = no
  784. smtpd_tls_auth_only = yes
  785. smtpd_tls_ccert_verifydepth = 9
  786. smtpd_tls_cert_file = /etc/nginx/ssl/pdlv.crt
  787. smtpd_tls_ciphers = medium
  788. smtpd_tls_dcert_file =
  789. smtpd_tls_dh1024_param_file = /etc/nginx/ssl/dh2048.pem
  790. smtpd_tls_dh512_param_file =
  791. smtpd_tls_dkey_file = $smtpd_tls_dcert_file
  792. smtpd_tls_eccert_file =
  793. smtpd_tls_eckey_file = $smtpd_tls_eccert_file
  794. smtpd_tls_eecdh_grade = strong
  795. smtpd_tls_exclude_ciphers = aNULL
  796. smtpd_tls_fingerprint_digest = md5
  797. smtpd_tls_key_file = /etc/nginx/ssl/pdlv.key
  798. smtpd_tls_loglevel = 0
  799. smtpd_tls_mandatory_ciphers = medium
  800. smtpd_tls_mandatory_exclude_ciphers =
  801. smtpd_tls_mandatory_protocols = !SSLv2
  802. smtpd_tls_protocols =
  803. smtpd_tls_received_header = yes
  804. smtpd_tls_req_ccert = no
  805. smtpd_tls_security_level = may
  806. smtpd_tls_session_cache_database =
  807. smtpd_tls_session_cache_timeout = 3600s
  808. smtpd_tls_wrappermode = no
  809. smtpd_upstream_proxy_protocol =
  810. smtpd_upstream_proxy_timeout = 5s
  811. smtpd_use_tls = yes
  812. soft_bounce = no
  813. stale_lock_time = 500s
  814. stress =
  815. strict_7bit_headers = no
  816. strict_8bitmime = no
  817. strict_8bitmime_body = no
  818. strict_mailbox_ownership = yes
  819. strict_mime_encoding_domain = no
  820. strict_rfc821_envelopes = no
  821. sun_mailtool_compatibility = no
  822. swap_bangpath = yes
  823. syslog_facility = mail
  824. syslog_name = ${multi_instance_name:postfix}${multi_instance_name?$multi_instance_name}
  825. tcp_windowsize = 0
  826. tls_append_default_CA = no
  827. tls_daemon_random_bytes = 32
  828. tls_dane_digest_agility = on
  829. tls_dane_digests = sha512 sha256
  830. tls_dane_trust_anchor_digest_enable = yes
  831. tls_disable_workarounds =
  832. tls_eecdh_strong_curve = prime256v1
  833. tls_eecdh_ultra_curve = secp384r1
  834. tls_export_cipherlist = aNULL:-aNULL:ALL:+RC4:@STRENGTH
  835. tls_high_cipherlist = aNULL:-aNULL:ALL:!EXPORT:!LOW:!MEDIUM:+RC4:@STRENGTH
  836. tls_legacy_public_key_fingerprints = no
  837. tls_low_cipherlist = aNULL:-aNULL:ALL:!EXPORT:+RC4:@STRENGTH
  838. tls_medium_cipherlist = aNULL:-aNULL:ALL:!EXPORT:!LOW:+RC4:@STRENGTH
  839. tls_null_cipherlist = eNULL:!aNULL
  840. tls_preempt_cipherlist = no
  841. tls_random_bytes = 32
  842. tls_random_exchange_name = ${data_directory}/prng_exch
  843. tls_random_prng_update_period = 3600s
  844. tls_random_reseed_period = 3600s
  845. tls_random_source = dev:/dev/urandom
  846. tls_ssl_options =
  847. tls_wildcard_matches_multiple_labels = yes
  848. tlsmgr_service_name = tlsmgr
  849. tlsproxy_enforce_tls = $smtpd_enforce_tls
  850. tlsproxy_service_name = tlsproxy
  851. tlsproxy_tls_CAfile = $smtpd_tls_CAfile
  852. tlsproxy_tls_CApath = $smtpd_tls_CApath
  853. tlsproxy_tls_always_issue_session_ids = $smtpd_tls_always_issue_session_ids
  854. tlsproxy_tls_ask_ccert = $smtpd_tls_ask_ccert
  855. tlsproxy_tls_ccert_verifydepth = $smtpd_tls_ccert_verifydepth
  856. tlsproxy_tls_cert_file = $smtpd_tls_cert_file
  857. tlsproxy_tls_ciphers = $smtpd_tls_ciphers
  858. tlsproxy_tls_dcert_file = $smtpd_tls_dcert_file
  859. tlsproxy_tls_dh1024_param_file = $smtpd_tls_dh1024_param_file
  860. tlsproxy_tls_dh512_param_file = $smtpd_tls_dh512_param_file
  861. tlsproxy_tls_dkey_file = $smtpd_tls_dkey_file
  862. tlsproxy_tls_eccert_file = $smtpd_tls_eccert_file
  863. tlsproxy_tls_eckey_file = $smtpd_tls_eckey_file
  864. tlsproxy_tls_eecdh_grade = $smtpd_tls_eecdh_grade
  865. tlsproxy_tls_exclude_ciphers = $smtpd_tls_exclude_ciphers
  866. tlsproxy_tls_fingerprint_digest = $smtpd_tls_fingerprint_digest
  867. tlsproxy_tls_key_file = $smtpd_tls_key_file
  868. tlsproxy_tls_loglevel = $smtpd_tls_loglevel
  869. tlsproxy_tls_mandatory_ciphers = $smtpd_tls_mandatory_ciphers
  870. tlsproxy_tls_mandatory_exclude_ciphers = $smtpd_tls_mandatory_exclude_ciphers
  871. tlsproxy_tls_mandatory_protocols = $smtpd_tls_mandatory_protocols
  872. tlsproxy_tls_protocols = $smtpd_tls_protocols
  873. tlsproxy_tls_req_ccert = $smtpd_tls_req_ccert
  874. tlsproxy_tls_security_level = $smtpd_tls_security_level
  875. tlsproxy_use_tls = $smtpd_use_tls
  876. tlsproxy_watchdog_timeout = 10s
  877. trace_service_name = trace
  878. transport_maps =
  879. transport_retry_time = 60s
  880. trigger_timeout = 10s
  881. undisclosed_recipients_header =
  882. unknown_address_reject_code = 450
  883. unknown_address_tempfail_action = $reject_tempfail_action
  884. unknown_client_reject_code = 450
  885. unknown_helo_hostname_tempfail_action = $reject_tempfail_action
  886. unknown_hostname_reject_code = 450
  887. unknown_local_recipient_reject_code = 550
  888. unknown_relay_recipient_reject_code = 550
  889. unknown_virtual_alias_reject_code = 550
  890. unknown_virtual_mailbox_reject_code = 550
  891. unverified_recipient_defer_code = 450
  892. unverified_recipient_reject_code = 450
  893. unverified_recipient_reject_reason =
  894. unverified_recipient_tempfail_action = $reject_tempfail_action
  895. unverified_sender_defer_code = 450
  896. unverified_sender_reject_code = 450
  897. unverified_sender_reject_reason =
  898. unverified_sender_tempfail_action = $reject_tempfail_action
  899. uucp_delivery_slot_cost = $default_delivery_slot_cost
  900. uucp_delivery_slot_discount = $default_delivery_slot_discount
  901. uucp_delivery_slot_loan = $default_delivery_slot_loan
  902. uucp_destination_concurrency_failed_cohort_limit = $default_destination_concurrency_failed_cohort_limit
  903. uucp_destination_concurrency_limit = $default_destination_concurrency_limit
  904. uucp_destination_concurrency_negative_feedback = $default_destination_concurrency_negative_feedback
  905. uucp_destination_concurrency_positive_feedback = $default_destination_concurrency_positive_feedback
  906. uucp_destination_rate_delay = $default_destination_rate_delay
  907. uucp_destination_recipient_limit = $default_destination_recipient_limit
  908. uucp_extra_recipient_limit = $default_extra_recipient_limit
  909. uucp_initial_destination_concurrency = $initial_destination_concurrency
  910. uucp_minimum_delivery_slots = $default_minimum_delivery_slots
  911. uucp_recipient_limit = $default_recipient_limit
  912. uucp_recipient_refill_delay = $default_recipient_refill_delay
  913. uucp_recipient_refill_limit = $default_recipient_refill_limit
  914. uucp_time_limit = $command_time_limit
  915. verp_delimiter_filter = -=+
  916. virtual_alias_domains = $virtual_alias_maps
  917. virtual_alias_expansion_limit = 1000
  918. virtual_alias_maps = pgsql:/etc/postfix/pgsql/virtual_alias_maps.cf
  919. virtual_alias_recursion_limit = 1000
  920. virtual_delivery_slot_cost = $default_delivery_slot_cost
  921. virtual_delivery_slot_discount = $default_delivery_slot_discount
  922. virtual_delivery_slot_loan = $default_delivery_slot_loan
  923. virtual_destination_concurrency_failed_cohort_limit = $default_destination_concurrency_failed_cohort_limit
  924. virtual_destination_concurrency_limit = $default_destination_concurrency_limit
  925. virtual_destination_concurrency_negative_feedback = $default_destination_concurrency_negative_feedback
  926. virtual_destination_concurrency_positive_feedback = $default_destination_concurrency_positive_feedback
  927. virtual_destination_rate_delay = $default_destination_rate_delay
  928. virtual_destination_recipient_limit = $default_destination_recipient_limit
  929. virtual_extra_recipient_limit = $default_extra_recipient_limit
  930. virtual_gid_maps = static:5000
  931. virtual_initial_destination_concurrency = $initial_destination_concurrency
  932. virtual_mailbox_base =
  933. virtual_mailbox_domains = pgsql:/etc/postfix/pgsql/virtual_domains_maps.cf
  934. virtual_mailbox_limit = 51200000
  935. virtual_mailbox_lock = fcntl, dotlock
  936. virtual_mailbox_maps = pgsql:/etc/postfix/pgsql/virtual_mailbox_maps.cf
  937. virtual_minimum_delivery_slots = $default_minimum_delivery_slots
  938. virtual_minimum_uid = 100
  939. virtual_recipient_limit = $default_recipient_limit
  940. virtual_recipient_refill_delay = $default_recipient_refill_delay
  941. virtual_recipient_refill_limit = $default_recipient_refill_limit
  942. virtual_transport = lmtp:[127.0.0.1]:10026
  943. virtual_uid_maps = static:5000
  944.  
  945.  
  946.  
  947.  
  948.  
  949. master.cf:
  950.  
  951.  
  952.  
  953. #
  954. # Postfix master process configuration file. For details on the format
  955. # of the file, see the master(5) manual page (command: "man 5 master" or
  956. # on-line: http://www.postfix.org/master.5.html).
  957. #
  958. # Do not forget to execute "postfix reload" after editing this file.
  959. #
  960. # ==========================================================================
  961. # service type private unpriv chroot wakeup maxproc command + args
  962. # (yes) (yes) (yes) (never) (100)
  963. # ==========================================================================
  964. smtp inet n - - - - smtpd
  965. # -o mime_header_checks =
  966. # -o header_checks =
  967.  
  968. #smtp inet n - - - 1 postscreen
  969. #smtpd pass - - - - - smtpd
  970. #dnsblog unix - - - - 0 dnsblog
  971. #tlsproxy unix - - - - 0 tlsproxy
  972. submission inet n - - - - smtpd
  973. -o content_filter=
  974. -o syslog_name=postfix/submission
  975. -o smtpd_milters=inet:127.0.0.1:8891
  976. -o smtpd_tls_security_level=encrypt
  977. -o smtpd_tls_ciphers=high -o smtpd_tls_exclude_ciphers=aNULL,DES,3DES,MD5,DES+MD5,RC4 -o smtpd_tls_mandatory_protocols=!SSLv2,!SSLv3
  978. -o cleanup_service_name=authclean
  979. authclean unix n - - - 0 cleanup
  980. -o header_checks=regexp:/etc/postfix/header_checks
  981. -o mime_header_checks=regexp:/etc/postfix/header_checks
  982. smtps inet n - - - - smtpd
  983. # -o mime_header_checks =
  984. # -o header_checks =
  985.  
  986. # -o syslog_name=postfix/smtps
  987. # -o smtpd_tls_wrappermode=yes
  988. # -o smtpd_sasl_auth_enable=yes
  989. # -o smtpd_reject_unlisted_recipient=no
  990. # -o smtpd_client_restrictions=$mua_client_restrictions
  991. # -o smtpd_helo_restrictions=$mua_helo_restrictions
  992. # -o smtpd_sender_restrictions=$mua_sender_restrictions
  993. # -o smtpd_recipient_restrictions=
  994. # -o smtpd_relay_restrictions=permit_sasl_authenticated,reject
  995. # -o milter_macro_daemon_name=ORIGINATING
  996. #628 inet n - - - - qmqpd
  997. pickup unix n - - 60 1 pickup
  998. -o content_filter=
  999. -o receive_override_options=no_header_body_checks
  1000. cleanup unix n - - - 0 cleanup
  1001. qmgr unix n - n 300 1 qmgr
  1002. #qmgr unix n - n 300 1 oqmgr
  1003. tlsmgr unix - - - 1000? 1 tlsmgr
  1004. rewrite unix - - - - - trivial-rewrite
  1005. bounce unix - - - - 0 bounce
  1006. defer unix - - - - 0 bounce
  1007. trace unix - - - - 0 bounce
  1008. verify unix - - - - 1 verify
  1009. flush unix n - - 1000? 0 flush
  1010. proxymap unix - - n - - proxymap
  1011. proxywrite unix - - n - 1 proxymap
  1012. smtp unix - - - - - smtp
  1013. relay unix - - - - - smtp
  1014. # -o smtp_helo_timeout=5 -o smtp_connect_timeout=5
  1015. showq unix n - - - - showq
  1016. error unix - - - - - error
  1017. retry unix - - - - - error
  1018. discard unix - - - - - discard
  1019. local unix - n n - - local
  1020. virtual unix - n n - - virtual
  1021. lmtp unix - - - - - lmtp
  1022. anvil unix - - - - 1 anvil
  1023. scache unix - - - - 1 scache
  1024. #
  1025. # ====================================================================
  1026. # Interfaces to non-Postfix software. Be sure to examine the manual
  1027. # pages of the non-Postfix software to find out what options it wants.
  1028. #
  1029. # Many of the following services use the Postfix pipe(8) delivery
  1030. # agent. See the pipe(8) man page for information about ${recipient}
  1031. # and other message envelope options.
  1032. # ====================================================================
  1033. #
  1034. # maildrop. See the Postfix MAILDROP_README file for details.
  1035. # Also specify in main.cf: maildrop_destination_recipient_limit=1
  1036. #
  1037. maildrop unix - n n - - pipe
  1038. flags=DRhu user=vmail argv=/usr/bin/maildrop -d ${recipient}
  1039. #
  1040. # ====================================================================
  1041. #
  1042. # Recent Cyrus versions can use the existing "lmtp" master.cf entry.
  1043. #
  1044. # Specify in cyrus.conf:
  1045. # lmtp cmd="lmtpd -a" listen="localhost:lmtp" proto=tcp4
  1046. #
  1047. # Specify in main.cf one or more of the following:
  1048. # mailbox_transport = lmtp:inet:localhost
  1049. # virtual_transport = lmtp:inet:localhost
  1050. #
  1051. # ====================================================================
  1052. #
  1053. # Cyrus 2.1.5 (Amos Gouaux)
  1054. # Also specify in main.cf: cyrus_destination_recipient_limit=1
  1055. #
  1056. #cyrus unix - n n - - pipe
  1057. # user=cyrus argv=/cyrus/bin/deliver -e -r ${sender} -m ${extension} ${user}
  1058. #
  1059. # ====================================================================
  1060. # Old example of delivery via Cyrus.
  1061. #
  1062. #old-cyrus unix - n n - - pipe
  1063. # flags=R user=cyrus argv=/cyrus/bin/deliver -e -m ${extension} ${user}
  1064. #
  1065. # ====================================================================
  1066. #
  1067. # See the Postfix UUCP_README file for configuration details.
  1068. #
  1069. uucp unix - n n - - pipe
  1070. flags=Fqhu user=uucp argv=uux -r -n -z -a$sender - $nexthop!rmail ($recipient)
  1071. #
  1072. # Other external delivery methods.
  1073. #
  1074. ifmail unix - n n - - pipe
  1075. flags=F user=ftn argv=/usr/lib/ifmail/ifmail -r $nexthop ($recipient)
  1076. bsmtp unix - n n - - pipe
  1077. flags=Fq. user=bsmtp argv=/usr/lib/bsmtp/bsmtp -t$nexthop -f$sender $recipient
  1078. scalemail-backend unix - n n - 2 pipe
  1079. flags=R user=scalemail argv=/usr/lib/scalemail/bin/scalemail-store ${nexthop} ${user} ${extension}
  1080. mailman unix - n n - - pipe
  1081. flags=FR user=list argv=/usr/lib/mailman/bin/postfix-to-mailman.py
  1082. ${nexthop} ${user}
  1083. smtp-amavis unix - - - - 2 smtp
  1084. -o smtp_data_done_timeout=1200
  1085. -o smtp_send_xforward_command=yes
  1086. -o disable_dns_lookups=yes
  1087. -o max_use=20
  1088.  
  1089. 127.0.0.1:10025 inet n - - - - smtpd
  1090. -o content_filter=
  1091. -o local_recipient_maps=
  1092. -o relay_recipient_maps=
  1093. -o smtpd_restriction_classes=
  1094. -o smtpd_delay_reject=no
  1095. -o smtpd_client_restrictions=permit_mynetworks,reject
  1096. -o smtpd_helo_restrictions=
  1097. -o smtpd_sender_restrictions=
  1098. -o smtpd_recipient_restrictions=permit_mynetworks,reject
  1099. -o smtpd_data_restrictions=reject_unauth_pipelining
  1100. -o smtpd_end_of_data_restrictions=
  1101. -o mynetworks=127.0.0.0/8
  1102. -o smtpd_error_sleep_time=0
  1103. -o smtpd_soft_error_limit=1001
  1104. -o smtpd_hard_error_limit=1000
  1105. -o smtpd_client_connection_count_limit=0
  1106. -o smtpd_client_connection_rate_limit=0
  1107. -o receive_override_options=no_header_body_checks,no_unknown_recipient_checks,no_milters
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement