Add hardware freak's pcre spam blocker in zimbra: Difference between revisions
(Created page with "{{BC|Certified}} __FORCETOC__ <div class="col-md-12 ibox-content"> =Add hardware freak's pcre spam blocker in zimbra= {{KB|{{ZC}}|{{ZCS 8.6}}|{{ZCS 8.5}}||}} {{WIP}} ==Purpose...") |
(No difference)
|
Latest revision as of 15:53, 21 April 2016
Add hardware freak's pcre spam blocker in zimbra
- This article is a Work in Progress, and may be unfinished or missing sections.
Purpose
It is updated frequently and allows the ability to reject at the smtpd layer known spammers.
Resolution
zmprov mcf +zimbraMtaRestriction 'check_reverse_client_hostname_access pcre:/opt/zimbra/conf/fqrdns.pcre'
Now you need to restart the MTA
zimbra@zqa-397:~$ zmmtactl reload
zimbra@zqa-397:~$ zmprov gcf zimbraMtaRestriction zimbraMtaRestriction: reject_invalid_helo_hostname zimbraMtaRestriction: reject_non_fqdn_sender zimbraMtaRestriction: check_reverse_client_hostname_access pcre:/opt/zimbra/conf/fqrdns.pcre
zimbra@zqa-397:~$ zmprov gs `zmhostname` zimbraMtaRestriction # name testserver.raun.com zimbraMtaRestriction: reject_invalid_helo_hostname zimbraMtaRestriction: reject_non_fqdn_sender zimbraMtaRestriction: check_reverse_client_hostname_access pcre:/opt/zimbra/conf/fqrdns.pcre
zimbra@zqa-397:~$ grep -i -r fqrdns.pcre /opt/zimbra/postfix/* /opt/zimbra/postfix/conf/main.cf:smtpd_recipient_restrictions = reject_non_fqdn_recipient, permit_sasl_authenticated, permit_mynetworks, reject_unlisted_recipient, reject_invalid_helo_hostname, reject_non_fqdn_sender, check_reverse_client_hostname_access pcre:/opt/zimbra/conf/fqrdns.pcre, permit
zimbra@zqa-397:~$ postconf -n | egrep restrictions | grep fqrdns smtpd_recipient_restrictions = reject_non_fqdn_recipient, permit_sasl_authenticated, permit_mynetworks, reject_unlisted_recipient, reject_invalid_helo_hostname, reject_non_fqdn_sender, check_reverse_client_hostname_access pcre:/opt/zimbra/conf/fqrdns.pcre, permit
Additional Content
No additional content.