Code-blue TOOLVOX X3 Manual de usuario Pagina 123

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 132
  • Tabla de contenidos
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 122
Code Blue
259 Hedcor Street
Holland, MI 49423 USA
800.205.7186
www.codeblue.com GU-154-F
page 123 of 132
ToolVox® X3
Administrator Guide
HELO is required
EnablingthisoptioncausesPostxtorequireclientstointroducethemselveswithaHELOheader
atthebeginningofanSMTPsession.ThismaypreventsomeUCEsoftwarepackagesfrom
connecting,althoughitmayalsoimpactotherlegitimateclients.Thisoptioncorrelatestothesmtpd_
helo_requiredanddefaultstoNo.
Allow untrusted routing
ThisoptioncongureswhetherPostxwillforwardmessageswithsender-specied routingfrom
untrustedclientstodestinationswithintheacceptedrelaydomains.Thisfeatureclosesapotential
loopholeinaccesscontrolsthatwouldnormallypreventtheserverfrombeinganopenrelayfor
spammers.Ifthisbehaviorisallowed,amalicioususercouldexploitabackupMXmailhostinto
forwardingjunkmailtoaprimaryMXserverthatbelievesthemailhasoriginatedfromalocal
address.Thisoptioncorrelatestotheallow_untrusted_routingandisdisabledbydefault.Enabling
thisoptionshouldbedonewithextremecautiontopreventturningyourPostxinstallationintoan
open relay.
Restrict ETRN command upon...
TheSMTPETRNcommandisaclumsymeansforclientsthatarenotalwaysconnectedtothe
Internettoretrievemailfromtheserver.Theusageofthiscommandisratheroutdatedandrarely
used,asPOP3andIMAParebettersuitedtosolvethisproblem.Thisoptioncorrelatestothe
smtpd_etrn_restrictionsdirectiveandthedefaultistoallowETRNfromanyhost.Thisoption
acceptsthefollowingdirectives:check_etrn_accessmaptype:mapname,permit_naked_ip_address
,reject_invalid_hostname,check_helo_accessmaptype:mapname,reject_maps_rbl,reject_
unknown_client,permit_mynetworks,check_client_access,permit,reject,warn_if_reject,and
reject_unauth_pipelining.
Thisoption,aswellasthefollowingthreeRestrictions...options,acceptoneorallofthefollowing
valuesinthetexteld.Eachisdescribedonlyoncehereandthespecicentrywillincludethelistof
accepteddirectivesfortheoption.Theimpactofsomeofthesechoicesdependsonconguration
performedelsewhere,andcouldpotentiallyopensecurityholesifnotconguredcarefully.
permit_mynetworks
Permitthemessageiftherelevantaddress(senderorrecipient,dependingontherestriction)is
withinthelocalnetwork.
reject_unknown_client
TherequestwillberefusediftheclientIPhasnoPTRrecordintheDNS.Thismeansaclientwith
anIPaddressthatcannotberesolvedtoahostnamecannotsendmailtothishost.
check_client_accessmaptype:mapname
Thisoptionrequirestheinclusionofanalreadyconguredmap.Thiswillrestrict,basedonthe
contentsofthemap,allowingonlyclientsthatareallowedbythemap.Themapmaycontain
networks,parentdomainsorclientaddresses,andPostxwillstripoffunnecessaryinformationto
matchtheclienttothelevelofspecicityneeded.
check_sender_accessmaptype:mapname
Vista de pagina 122
1 2 ... 118 119 120 121 122 123 124 125 126 127 128 ... 131 132

Comentarios a estos manuales

Sin comentarios