Zimbra offers Open Source email server software and shared calendar for Linux and the Mac
Go Back   Zimbra :: Forums > Zimbra Collaboration Suite > Installation

Welcome to the Zimbra :: Forums!
Welcome, if you would like to post a comment please register. We also encourage you to explore all things Zimbra with our team and members of the community.

Reply
 
LinkBack Thread Tools Search this Thread Display Modes
  #1 (permalink)  
Old 09-09-2009, 07:04 PM
Loyal Member
 
Posts: 85
Default Policyd activated but Server still receiving nonexistent user

Hi.

this is my setup

MX (Zimbra MTA+AS) ---> Ext. Anti Virus ---> MTA --> Mailbox

I modified postfix transport on MX so it sends to only one IP address all the time.

The question is, even I activated policyd, my MX is still accepting nonexistent users and they will be rejected only at MTA level, which means I'm wasting AV scan resources.

Is there any extra step after activate policyd+restart services?

Any clue/hint how to troubleshoot this?
Reply With Quote
  #2 (permalink)  
Old 09-09-2009, 10:17 PM
y@w y@w is offline
Moderator
 
Posts: 658
Default

After you enabled policyd did you add the mta restriction? Check out:

Zimbra MTA

and search for "policyd".
__________________
What a n00b!
Reply With Quote
  #3 (permalink)  
Old 09-09-2009, 11:36 PM
Loyal Member
 
Posts: 85
Default

Hi y@w,

That restriction was already added
Quote:
reject_non_fqdn_recipient
permit_sasl_authenticated
permit_mynetworks
reject_unauth_destination
reject_unlisted_recipient
check_policy_service inet:127.0.0.1:60000
%%contains VAR:zimbraMtaRestriction reject_invalid_hostname%%
%%contains VAR:zimbraMtaRestriction reject_non_fqdn_hostname%%
%%contains VAR:zimbraMtaRestriction reject_non_fqdn_sender%%
%%contains VAR:zimbraMtaRestriction reject_unknown_client%%
%%contains VAR:zimbraMtaRestriction reject_unknown_hostname%%
%%contains VAR:zimbraMtaRestriction reject_unknown_sender_domain%%
%%explode reject_rbl_client VAR:zimbraMtaRestrictionRBLs%%
%%contains VAR:zimbraMtaRestriction check_policy_service unixrivate/policy%%
permit
Reply With Quote
  #4 (permalink)  
Old 01-06-2010, 11:54 AM
Junior Member
 
Posts: 8
Default

Hi

I also try to get this running.. zmpostfixpolicyd is enabled and running - i added several debug output statements.

My conclusion so far: After the first LDAP query, it does not get a result (where it searches for (&(zimbraDomainName=$domain)(objectClass=zimbraDomai n)) )

Because of the empty result, the script answers with dunno..

- Yes, we have alias domains that should match the query..

Anyone else?
Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes


Similar Threads

Why Join?

Registering let's you ask questions, makes it easier to search, displays any files attached to posts, and notifies you about replies.

blog.zimbra.com




 

SEO by vBSEO ©2011, Crawlability, Inc.