Включение smtp auth (SASL) в postfix (mail sasl ssl security postfix smtp auth)
Ключевые слова: mail, sasl, ssl, security, postfix, smtp, auth, (найти похожие документы)
Date: Thu, 24 Oct 2002 14:33:37 +0600
From: "Andrey N. Oktyabrski" <ano@bankir.ru>
Newsgroups: ftn.ru.unix.bsd
Subject: Включение smtp auth (SASL) в postfix
> Стоит postfix 1.1.10, был прочитан фак по авторизации smtp - но однако ж
> фиг, без авторизации (хотя и с разрешенной сетки) - легко.
> конфиг:
>
> transport_maps = mysql:/usr/local/etc/postfix/transport.cf
> virtual_mailbox_base = /
> virtual_uid_maps = mysql:/usr/local/etc/postfix/uids.cf
> virtual_gid_maps = mysql:/usr/local/etc/postfix/gids.cf
> virtual_mailbox_maps = mysql:/usr/local/etc/postfix/mysql_virt.cf
> virtual_maps = mysql:/usr/local/etc/postfix/virtual.cf
> queue_directory = /var/spool/postfix
> command_directory = /usr/local/sbin
> daemon_directory = /usr/local/libexec/postfix
> mail_owner = postfix
> myhostname = mail.domain.ru
> myorigin = mail.$mydomain
> mydestination = $myhostname, $mydomain, mail.$mydomain, $transport_maps
> mynetworks_style = subnet
> mynetworks = 192.168.33.0/24, 127.0.0.0/8, 62.33.65.0/24
> broken_sasl_auth_clients = yes
> mailbox_transport = cyrus
> relay_domains = $mydestination
> smtpd_client_restrictions = permit_sasl_authenticated
> smtpd_recipient_restrictions =
> permit_sasl_authenticated,permit_mynetworks,check_relay_do
> smtpd_restriction_classes =
> smtpd_sasl_auth_enable = yes
> smtpd_sasl_local_domain = $mydomain
> smtpd_sasl_security_options = noanonymous
Я у себя сделал так:
- --- cut ---
smtpd_sasl_auth_enable = yes
smtpd_sasl_security_options = noanonymous
smtpd_sasl_local_domain = $mydestination
smtpd_client_restrictions = permit_sasl_authenticated
smtpd_sender_restrictions = permit_sasl_authenticated
smtpd_recipient_restrictions = permit_mynetworks, permit_sasl_authenticated,
permit_auth_destination, reject_unauth_destination
- --- cut ---
Работает...
1, djsound (?), 19:28, 23/08/2003 [ответить]
| +/– |
по идее так должно быть в main.cf:
enable_sasl_authentication = yes
smtpd_recipient_restrictions = permit_sasl_authenticated, permit_mynetworks, check_relay_domains
smtpd_sasl_auth_enable = yes
smtpd_sasl_security_options = noanonymous
smtpd_sasl_local_domain =
broken_sasl_auth_clients = yes
у меня все работает | |
2, вася (??), 23:47, 18/07/2007 [ответить]
| +/– |
check_relay_domains уже не существует | |
|