Re: Postfix smtpd DNS lookup delay



On Thu, 27 Sep 2007, in the Usenet newsgroup alt.os.linux.suse, in article
<785us4-9br.ln1@xxxxxxxxxxxxxxxxxxxxxxxx>, Bob Bob wrote:

One of course wonders whether this old guy is older than the other
old guy! <grin>

Old is a function of natural age (I'm over 0x41), mileage and rough
service. See the owners manual for recommended service intervals (not
that it matters, as you're probably long out of warranty anyway) ;-)

These sites are a private business that is only authoritive for the
private subnet (192.168 etc). They cant be connected to on the public
side at all. The DNS/postfix box is in fact only on a private subnet,
masquerading out for pop3 and smtp to the ISP as a relayhost.

If it's offering no services to the world, it's less of a risk, but
if it can connect out, there has to be a route "back in" to complete
the connection. Small risk, but still a risk.

Never thought of it either - the logging I was referring to is that
done by the mail server (if your system is using xinetd instead of
inetd, it may want to do logging based on the service configuration
file - look for the 'log_on_*' lines).

Err am not running an mail system under inetd. Its postfix.

Poorly worded on my part. Many servers want to (or can be configured
to) log the IP of remote systems that connect to them. An example of
this would be seen in [x]inetd. Stand-alone stuff - especially mail
servers - tend to have this logging on their own, as it's needed for
the 'Received:' header, never mind any logging that the administrator
may have required, or any hoops (example - connecting box must have
a PTR record, or must have matching PTR and A records, not be on any
blocklist, and must be in a country with an 'r' in the ISO3166 name
except on Tuesdays, when the magic letter is 's') that might be set
up as an anti-spam measure.

Old guy
.



Relevant Pages

  • Re: Outbound to one domain wont flow
    ... I did the logging, but I don't see where an outbound connection is made to ... servers and thus their IP address is different. ... In the Default SMTP Virtual Server Properties dialog box, ... Now force the connection in the queue. ...
    (microsoft.public.exchange.admin)
  • TS 2003 License question
    ... people will be logging in to will I have enough licenses? ... and only one CAL will be consumed for a connection to ANY of the three ... servers IN THE SAME DOMAIN. ...
    (microsoft.public.windows.terminal_services)
  • authentication between servers over the internet?
    ... I have two servers at separate locations--both in the same domain, ... What connection do I need for someone logging in to server A to be ... authenticated by domain controller B? ...
    (microsoft.public.windows.server.security)
  • Re: Help me with shared XP Prof.
    ... >Ethernet adapter Local Area Connection: ... > Master browser name is: ... > 2 backup servers retrieved from master COMP_3 ... Let's see what we know from these 3 computers. ...
    (microsoft.public.windowsxp.network_web)
  • Re: Network Connectivity Problem
    ... I am having a network connectivity problem with a number of Windows ... All servers are virtualised on VMWare ESX 2.5 ... I could not figure out why the network connection was ...
    (microsoft.public.windows.server.networking)