Postfix is totally fsck'd...

From: Lorenzo Prince (lorenzo_at_prince.homelinux.org)
Date: 01/31/04

  • Next message: Mike Chepesky: "Re: Random System Crashes"
    To: fedora-list@redhat.com
    Date: Sat, 31 Jan 2004 11:16:05 -0500
    
    
    

    I am guessing this has taken place over the last couple of days. I first saw
    that I was getting fewer messages than usual. This was not a problem, because I
    just thought that fewer people were sending messages. Well, the problem got
    worse. I now stopped receiving messages through fetchmail which I know should
    come every day without fail. Then it started taking a long time to receive my
    cron messages. I didn't receive a message yesterday that I should have gotten in
    the afternoon, and naturally, I thought it was the server that sent it, (maybe
    something to do with this latest virus slowing down the server. So I started
    sending test messages through the local server. I sent about 5 tests and lost
    all of them. I then checked the maillog

    grep postfix /var/log/maillog |less

    and according to the log, someone has found my postfix and is trying to use it as
    a relay to try to send hundreds or possibly thousands of messages to what looks
    like an alphabetical list of AOL users. The problem is that Postfix seems to
    actually be relaying these messages and then picking up the bounces from AOL and
    relaying them back to the sender who has an empty from address. I don't
    understand, however, how or why this is happening, as I have postfix configured
    to only accept local relays, and the log is saying the messages are coming from a
    remote sender. When I do the relay test at mail-abuse.org, it tells me that my
    system appears to reject relay attempts. I ended up having to switch my MTA to
    Sendmail, because Postfix is so backed up to the point that my system takes
    almost 5 minutes to boot, and messages delivered from local users to local users
    aren't even getting through anymore. What can I do to solve the Postfix problem?
    What can I do to stop this relaying even though Postfix is configured not to
    relay from remote connections at all? I started using postfix when I heard that
    sendmail had a history of insecurity. Is this better now? Should I just start
    using sendmail instead of Postfix?

    Thanks for any help
    PRINCE

    
    

    -- 
    fedora-list mailing list
    fedora-list@redhat.com
    To unsubscribe: http://www.redhat.com/mailman/listinfo/fedora-list
    


  • Next message: Mike Chepesky: "Re: Random System Crashes"

    Relevant Pages

    • Re: Mail Transfer Smarthost
      ... For a relay forward to need a 1000 pages? ... Extremely easy configuration. ... At present the usefulness of sendmail is close to zero. ... big providers use postfix or qmail, which means that the extra bells and ...
      (comp.unix.bsd.freebsd.misc)
    • Re: Postfix is totally fsckd...
      ... On Saturday 31 January 2004 10:16, Lorenzo Prince wrote: ... The problem is that Postfix seems to actually be ... > relay test at mail-abuse.org, it tells me that my system appears to ... > local users to local users aren't even getting through anymore. ...
      (Fedora)
    • Re: sendmail wont use relay
      ... sendmail daemon restarted a million times, ... The mailhost (relay) can do that but here, ... closemaps: closing host ... have switched by preference to "postfix" a long time ago: ...
      (comp.os.linux.setup)
    • Re: Odd postfix behavior
      ... | I have postfix running on Woody. ... | can use me as a relay. ... The one connection didn't try to authenticate. ...
      (Debian-User)
    • "securing" postfix (was Re: Did I send that? (reading postfix logs))
      ... If you relay for it then it isn't hosted locally. ... relayhost parameter tells postfix to send all mail via smtp to another ... If on your laptop you never receive mail (via smtp) from the outside ... simply not start the smtpd process. ...
      (Debian-User)