Nie jesteś zalogowany.
Jeśli nie posiadasz konta, zarejestruj je już teraz! Pozwoli Ci ono w pełni korzystać z naszego serwisu. Spamerom dziękujemy!

Ogłoszenie

Prosimy o pomoc dla małej Julki — przekaż 1% podatku na Fundacji Dzieciom zdazyć z Pomocą.
Więcej informacji na dug.net.pl/pomagamy/.

#1  2007-02-19 09:46:52

  vicool - Użytkownik

vicool
Użytkownik
Skąd: Szczecin
Zarejestrowany: 2005-12-05

smtp-gated + spamassassin + clamd problem

Witam

Od jakiegos czasu zauwazylem ze moj adres notorycznie trafia na blakliste, myslalem na poczatku ze to wina mojego serwera smtp ale jednak nie okazalo sie ze to userzy sieja spamem i wirusami ze swoich maszyn, postanowilem wiec zainteresowac sie smtp-gated.
Tak wiec przekompilowalem skonfigorowalemi taki efekt otrzymalem:

#config
proxy_name              smtp-proxy.eltrix.pl
abuse                   vicool@eltrix.pl
port                    9199
bind_address            192.168.0.1

set_user                smtpgw
set_group               smtpgw
priority                2
max_load                8
mode                    nat

antivirus_type          clamd
antivirus_path          127.0.0.1:3310
scan_max_size           256000

antispam_type           spamassassin
antispam_path           127.0.0.1:783
spam_max_size           256000
spam_max_load           8
spam_threshold          7

spool_path              /var/spool/smtp-gated/msg
spool_perm              0666
#spool_leave_on         error,spam

max_connections         8
max_per_host            5
lock_on                 virus,spam,maxhost

# blokada na 1 tydzien
lock_duration           604800
lock_path               /var/spool/smtp-gated/lock
lock_perm               0660

ignore_errors           yes

#action_script           /etc/info/smtp-gated

log_helo                yes
log_mail_from           accepted,rejected
log_rcpt_to             accepted,rejected
#log_level              debug
nat_header_type         full

Efekt dzialania(nieciekawy)

#logi
Feb 16 14:06:43 localhost smtp-gated[1558]: NEW (1/0) src=192.168.0.94:1963, ident=, dst=193.17.41.99:25, id=1171631203.1558
Feb 16 14:06:44 localhost smtp-gated[1558]: ESMTP AUTH support dst=193.17.41.99:25
Feb 16 14:06:44 localhost smtp-gated[1558]: EHLO src=192.168.0.94, ident=, helo=[127.0.0.1]
Feb 16 14:06:52 localhost smtp-gated[1558]: AUTH:ACCEPT src=192.168.0.94, ident=
Feb 16 14:06:52 localhost smtp-gated[1558]: MAIL FROM <krompisko@tlen.pl> RCPT TO: 250<anetar1@yahoo.it>
Feb 16 14:06:52 localhost smtp-gated[1558]: DATA:REQUEST
Feb 16 14:06:52 localhost smtp-gated[1558]: DATA:GOING
Feb 16 14:06:57 localhost smtp-gated[1558]: DATA:SCANNING size=1013, src=192.168.0.94, ident=
Feb 16 14:06:57 localhost smtp-gated[1558]: clamd:connect_path(127.0.0.1:3310) error: Connection refused
Feb 16 14:06:57 localhost smtp-gated[1558]: SCAN:FAILED size=1013, time=0, src=192.168.0.94, ident=, result=(null)
Feb 16 14:06:57 localhost spamd[20171]: connection from localhost.localdomain [127.0.0.1] at port 48630
Feb 16 14:06:57 localhost spamd[20171]: Still running as root: user not specified with -u, not found, or set to root.  Fall back to nobody.
Feb 16 14:06:57 localhost spamd[20171]: checking message <45D30AC0.60101@tlen.pl> for (unknown):65534.
Feb 16 14:07:01 localhost spamd[20171]: clean message (0.0/5.0) for (unknown):65534 in 4.0 seconds, 1093 bytes.
Feb 16 14:07:01 localhost spamd[20171]: result: .  0 -  scantime=4.0,size=1093,mid=<45D30AC0.60101@tlen.pl>,autolearn=failed
Feb 16 14:07:01 localhost smtp-gated[1558]: SPAM:CLEAN size=1013, time=4, src=192.168.0.94, ident=, score=0.000000
Feb 16 14:07:01 localhost smtp-gated[1558]: DATA:FINISHED [250]
Feb 16 14:07:01 localhost smtp-gated[1558]: CLOSE by=server, rcv=1151/298, trns=1, rcpts=1, auth=3, time=18, src=192.168.0.94, ident=

Problem w tym ze cos z smtp-gated nie dryga, dzialac dziala widze ze  nawet wylapuje i blokuje ale i tak trafiem na blakliste.

#logi
Dump time:    Mon Feb 19 09:32:21 2007
Start time:   Fri Feb 16 21:33:24 2007
Restart time: Fri Feb 16 21:33:24 2007
Version:      1.4.14-rc1
Uptime:   2d 11h 58m 57s
Resource: 0/0/0/0 (maxrss/ixrss/idrss/isrss)
Found:    0/0/0 (viruses/spam/no-auth)
Children: 0/5 (current/max)
Requests: 46141/6/237 (total/direct/empty)
Rejects:  112/0/45720/0 (host/ident/lock/other)

slot pid   state    time  source          target          trns   cli_rx   srv_rx    kbps ident

Prosze o pomoc, spamassassin i clamd jest skonfigurowany z http://forum.dug.net.pl/viewtopic.php?t=6331

Pozdrawiam


Debian

Offline

 

#2  2007-02-24 14:31:15

  vicool - Użytkownik

vicool
Użytkownik
Skąd: Szczecin
Zarejestrowany: 2005-12-05

Re: smtp-gated + spamassassin + clamd problem

Wiatm
Jakis czas bylo git ale znowu to samo "czarna lista".
Jak zmusic spamassassina i clamd do wspolpracy z smtp-gated.
Prosze o jakies wskazowki lub nakreslenie co robie nie tak.
Z gory dzieki.
Pozdrawiam


Debian

Offline

 

#3  2007-02-25 03:47:35

  vicool - Użytkownik

vicool
Użytkownik
Skąd: Szczecin
Zarejestrowany: 2005-12-05

Re: smtp-gated + spamassassin + clamd problem

Witam
Problem z smtp-gated rozwiazany.
Jak zwykle banalna sprawa dziala swietnie z clamav i spamassassinem.
Pozdrawiam


Debian

Offline

 

Stopka forum

Powered by PunBB
© Copyright 2002–2005 Rickard Andersson
Możesz wyłączyć AdBlock — tu nie ma reklam ;-)

[ Generated in 0.010 seconds, 14 queries executed ]

Informacje debugowania

Time (s) Query
0.00010 SET CHARSET latin2
0.00005 SET NAMES latin2
0.00104 SELECT u.*, g.*, o.logged FROM punbb_users AS u INNER JOIN punbb_groups AS g ON u.group_id=g.g_id LEFT JOIN punbb_online AS o ON o.ident='3.129.67.248' WHERE u.id=1
0.00072 UPDATE punbb_online SET logged=1732351499 WHERE ident='3.129.67.248'
0.00043 SELECT * FROM punbb_online WHERE logged<1732351199
0.00090 DELETE FROM punbb_online WHERE ident='3.145.102.18'
0.00076 DELETE FROM punbb_online WHERE ident='3.149.235.171'
0.00075 DELETE FROM punbb_online WHERE ident='52.14.100.101'
0.00098 SELECT topic_id FROM punbb_posts WHERE id=52945
0.00009 SELECT id FROM punbb_posts WHERE topic_id=6904 ORDER BY posted
0.00051 SELECT t.subject, t.closed, t.num_replies, t.sticky, f.id AS forum_id, f.forum_name, f.moderators, fp.post_replies, 0 FROM punbb_topics AS t INNER JOIN punbb_forums AS f ON f.id=t.forum_id LEFT JOIN punbb_forum_perms AS fp ON (fp.forum_id=f.id AND fp.group_id=3) WHERE (fp.read_forum IS NULL OR fp.read_forum=1) AND t.id=6904 AND t.moved_to IS NULL
0.00005 SELECT search_for, replace_with FROM punbb_censoring
0.00139 SELECT u.email, u.title, u.url, u.location, u.use_avatar, u.signature, u.email_setting, u.num_posts, u.registered, u.admin_note, p.id, p.poster AS username, p.poster_id, p.poster_ip, p.poster_email, p.message, p.hide_smilies, p.posted, p.edited, p.edited_by, g.g_id, g.g_user_title, o.user_id AS is_online FROM punbb_posts AS p INNER JOIN punbb_users AS u ON u.id=p.poster_id INNER JOIN punbb_groups AS g ON g.g_id=u.group_id LEFT JOIN punbb_online AS o ON (o.user_id=u.id AND o.user_id!=1 AND o.idle=0) WHERE p.topic_id=6904 ORDER BY p.id LIMIT 0,25
0.00086 UPDATE punbb_topics SET num_views=num_views+1 WHERE id=6904
Total query time: 0.00863 s