Yes, the firewall is between the mail server and the internet and does port forwarding. Looks just like you've illustrated. I did change my firewall. I had been using a Slackware box with IPTables in the same setup, Internet -> Firewall -> SMTP Server and port forwarding. Milter-greylist was working fine. Now I'm using a router with a NAT and SPI firewall (linux OS). I didn't connect the greylist problem with the firewall change. I guess this could be the problem. If so, is there a way around it? Thanks, Rick Bill Levering wrote: > > --------------- > | internet | > _______________ > || > || > --------------- > | internal | > | firewall | > | 172.16.88.2 | > _______________ > || > || > --------------- > | smtp server | > | 172.16.88.3 | > _______________ > || > || > --------------- > | internal | > | machines | > | 172.16.88.x | > _______________ > > > If the firewall is between the mail server and the internet, then you > should remove the whitelisting for the firewall but this would break > all mail since the firewall is (probably) doing port forwarding and > all connections will appear to be from the firewall. Hmmm... > > Bill Levering > idbill@... > KFP: 6C0A 067C 7E03 58C3 C2F7 8278 6DFD 55A8 108B ED2F > > > > On Jul 13, 2009, at 9:26 AM, Rick Knight wrote: > >> Emmanuel Dreyfus wrote: >>> >>> >>> On Sun, Jul 12, 2009 at 01:55:33PM -0700, Rick Knight wrote: >>>> 172.16.88.3 is the internal address of my mail server. >>> >>> Um, sorry, I overlooked that one, my answer was meaningless. >>> >>> Can you send your greylist.conf and the Received: headers of the >>> message >>> that passed through? >>> >>> -- >>> Emmanuel Dreyfus >>> manu@... <mailto:manu%40netbsd.org> >>> >>> >> Forgot to mention, 172.16.88.2 is the internal IP of my firewall, >> 172.16.88.3 is the mail server. >> >> Thanks, >> Rick >> >> >> >> ------------------------------------ >> >> Yahoo! Groups Links >> >> >>
Message
Re: [milter-greylist] All sender headers show "Sender IP Whitelisted"
2009-07-13 by Rick Knight
Attachments
- No local attachments were found for this message.