Email issues, relay failure

Bender, Chris chris_bender at cellularatsea.com
Mon Feb 27 17:00:46 UTC 2012


How would I whitelist SMTP speakers?

I am thinking it would be ok to reload the rules, would that clear the
issue with SMTP users for now?
Whats the harm?
Thanks


-----Original Message-----
From: Jon Radel [mailto:jon at radel.com] 
Sent: Monday, February 27, 2012 11:58 AM
To: Bender, Chris
Cc: freebsd-questions at freebsd.org
Subject: Re: Email issues, relay failure

On 2/27/12 11:45 AM, Bender, Chris wrote:

> I was thinking about just reloading the pf.conf but I have never
worked
> with pf so
> I am worried other things might break. My thought was by doing that
the
> Adaptive part of the pfctl would be restarted?

Any pf.conf file I've ever seen does something sensible  after reload. 
I suspect one could write something perverse that blows up on restart, 
but that would making rebooting the machine problematic....

>
> Does that make sense would reloading the rules wash the adaptive
> behavior away or
> Would all that still be in some sort of bruteforce file to protect the
> firewall?

pf can load data from files when it starts or just manage things in a 
fashion that is transient upon restart.  Hard to say what's happening in

your case w/o a clue as to what's in pf.conf.

I'd suggest that you at the very least whitelist internal SMTP speakers 
that you expect to get e-mail from on a regular basis, even if you do 
throttling of SMTP connections in general.  Much less messy....

-- 
--Jon Radel
jon at radel.com



More information about the freebsd-questions mailing list