Yahoo Groups archive

Milter-greylist

Index last updated: 2026-04-28 23:32 UTC

Message

Re: [milter-greylist] All sender headers show "Sender IP Whitelisted"

2009-07-13 by Rick Knight

Yes, the firewall is between the mail server and the internet and does 
port forwarding. Looks just like you've illustrated.

I did change my firewall. I had been using a Slackware box with IPTables 
in the same setup, Internet -> Firewall -> SMTP Server and port 
forwarding. Milter-greylist was working fine. Now I'm using a router 
with a NAT and SPI firewall (linux OS). I didn't connect the greylist 
problem with the firewall change. I guess this could be the problem. If 
so, is there a way around it?

Thanks,
Rick

Bill Levering wrote:
>
> ---------------
> |  internet   |
> _______________
>       ||
>       ||
> ---------------
> |  internal   |
> |  firewall   |
> | 172.16.88.2 |
> _______________
>       ||
>       ||
> ---------------
> | smtp server |
> | 172.16.88.3 |
> _______________
>       ||
>       ||
> ---------------
> |  internal   |
> |  machines   |
> | 172.16.88.x |
> _______________
>
>
> If the firewall is between the mail server and the internet, then you 
> should remove the whitelisting for the firewall but this would break 
> all mail since the firewall is (probably) doing port forwarding and 
> all connections will appear to be from the firewall. Hmmm...
>
> Bill Levering
> idbill@...
> KFP: 6C0A 067C 7E03 58C3 C2F7  8278 6DFD 55A8 108B ED2F
>
>
>
> On Jul 13, 2009, at 9:26 AM, Rick Knight wrote:
>
>> Emmanuel Dreyfus wrote:
>>>
>>>
>>> On Sun, Jul 12, 2009 at 01:55:33PM -0700, Rick Knight wrote:
>>>> 172.16.88.3 is the internal address of my mail server.
>>>
>>> Um, sorry, I overlooked that one, my answer was meaningless.
>>>
>>> Can you send your greylist.conf and the Received: headers of the 
>>> message
>>> that passed through?
>>>
>>> -- 
>>> Emmanuel Dreyfus
>>> manu@... <mailto:manu%40netbsd.org>
>>>
>>>
>> Forgot to mention, 172.16.88.2 is the internal IP of my firewall,
>> 172.16.88.3 is the mail server.
>>
>> Thanks,
>> Rick
>>
>>
>>
>> ------------------------------------
>>
>> Yahoo! Groups Links
>>
>>
>>

Attachments

Move to quarantaine

This moves the raw source file on disk only. The archive index is not changed automatically, so you still need to run a manual refresh afterward.