Yahoo Groups archive

Milter-greylist

Index last updated: 2026-04-28 23:32 UTC

Message

Re: [milter-greylist] How do you configure p0f?

2010-03-16 by manu@netbsd.org

Michael Mansour <mic@...> wrote:

> I've compiled milter-greylist with p0f support and I have installed the p0f
> software, but I don't know at this point how milter-greylist communicates with
> the p0f software (or if it even needs it - I guess it does).

I have this in greylist.conf:
p0fsock "/var/run/p0f"

> I'm running the p0f software and it is seeing the OS of connecting machines,
> but I'm hoping there's some help somewhere which tells me how mgl uses this
> and whether there's some example ACL's I could base rules on in greylist.conf?

I use it with the stat statement, to log the remote OS. This is the %Fx
substitution string. You can also build ACL like this:

racl greylist p0f /Windows/ delay 12h

-- 
Emmanuel Dreyfus
http://hcpnet.free.fr/pubz
manu@...

Attachments

Move to quarantaine

This moves the raw source file on disk only. The archive index is not changed automatically, so you still need to run a manual refresh afterward.