Имеется почтовый сервер с Postfix 2.5.5 на debian lenny. Проблема в том, что open relay остается открытым для списка access. Как его закрыть для них? Конфигурировал почтовик не я и пока postfix.org не помог разобраться.postconf -n:
alias_database = hash:/etc/postfix/aliases, hash:/etc/postfix/vse
alias_maps = hash:/etc/postfix/aliases
command_directory = /usr/sbin
config_directory = /etc/postfix
content_filter = scan:127.0.0.1:8025
daemon_directory = /usr/lib/postfix
debug_peer_level = 2
disable_vrfy_command = yes
header_checks = regexp:/etc/postfix/header_checks
html_directory = no
inet_interfaces = all
local_recipient_maps = unix:passwd.byname $alias_maps
mail_owner = postfix
mailbox_size_limit = 0
mailq_path = /usr/local/bin/mailq
manpage_directory = /usr/local/man
maps_rbl_reject_code = 550
maximal_queue_lifetime = 3d
message_size_limit = 26000000
mydestination = $myhostname, localhost.$mydomain, $mydomain, mail.$mydomain, www.$mydomain, ftp.$mydomain,
mydomain = mydomain.ru
myhostname = myhostname
mynetworks = xxx.xxx.xxx.0/24, xxx.xxx.rrrr.0/24, 127.0.0.0/8
myorigin = $mydomain
newaliases_path = /usr/local/bin/newaliases
queue_directory = /var/spool/postfix
readme_directory = no
receive_override_options = no_address_mappings
sample_directory = /usr/local/etc/postfix
sender_bcc_maps = hash:/etc/postfix/sender_bcc
sendmail_path = /usr/local/sbin/sendmail
smtpd_client_restrictions = permit_mynetworks,
check_client_access hash:/etc/postfix/access,
check_client_access hash:/etc/postfix/spamersip,
check_client_access pcre:/etc/postfix/client_checks.pcre,
reject_rbl_client zen.spamhaus.org,
reject_rbl_client cbl.abuseat.org,
reject_rbl_client dul.ru,
reject_rbl_client dnsbl.sorbs.net
smtpd_etrn_restrictions = permit_mynetworks,
check_client_access hash:/etc/postfix/access,
check_sender_access hash:/etc/postfix/access
smtpd_helo_required = yes
smtpd_helo_restrictions = permit_mynetworks,
check_client_access hash:/etc/postfix/access,
check_helo_access regexp:/etc/postfix/access_smtpd,
check_helo_access pcre:/etc/postfix/helo_checks.pcre,
reject_non_fqdn_hostname,
reject_unknown_hostname,
reject_invalid_hostname
smtpd_recipient_limit = 35
smtpd_recipient_restrictions = permit_mynetworks,
check_client_access hash:/etc/postfi/access,
check_recipient_access hash:/etc/postfix/recipient_access,
reject_unauth_pipelining,
reject_unauth_destination,
reject_non_fqdn_recipient
smtpd_sender_restrictions = permit_mynetworks,
check_sender_access hash:/etc/postfix/sender_access,
check_client_access hash:/etc/postfix/access,
reject_unknown_sender_domain,
strict_rfc821_envelopes = yes