Hallo,
leider wurde mein Server zum Spamversenden missbraucht.
Wahrscheinlich die postfix Einstellungen zu unsicher (bin noch dran):
Aber folgende Einstellung ist zu hart:
Könnte mir einer helfen wie die Einstellung für den normal Betrieb aussehen müsste.
Darüber hinaus frag ich mich, welche Möglichkeiten es noch gibt Spam zu versenden außer über ssh Zugang und falsche Webapplikationen.
Interessant ist auch wie man von AntiSpam-Listen gelöscht werden kann.
Bitte um Aufklärung (ausser google) danke euch.
PS: Server ist natürlich vom Netz!
leider wurde mein Server zum Spamversenden missbraucht.
Wahrscheinlich die postfix Einstellungen zu unsicher (bin noch dran):
Code:
eadme_directory = /usr/share/doc/packages/postfix/README_FILES
inet_protocols = all
biff = no
mail_spool_directory = /var/mail
canonical_maps = hash:/etc/postfix/canonical
relocated_maps = hash:/etc/postfix/relocated
transport_maps = hash:/etc/postfix/transport
sender_canonical_maps = hash:/etc/postfix/sender_canonical
masquerade_exceptions = root
masquerade_classes = envelope_sender, header_sender, header_recipient
myhostname = p043.purple.fastwebserver.de
program_directory = /usr/lib/postfix
masquerade_domains =
mydestination = $myhostname, localhost.$mydomain
defer_transports =
mynetworks_style = subnet
disable_dns_lookups = no
relayhost =
mailbox_command = /usr/bin/procmail
mailbox_transport =
strict_8bitmime = no
disable_mime_output_conversion = no
smtpd_sender_restrictions = hash:/etc/postfix/access
smtpd_client_restrictions =
smtpd_helo_required = no
smtpd_helo_restrictions =
strict_rfc821_envelopes = no
smtpd_recipient_restrictions = permit_sasl_authenticated,reject_unauth_destination
smtp_sasl_auth_enable = no
smtpd_sasl_auth_enable = yes
smtpd_use_tls = no
smtp_use_tls = no
alias_maps = hash:/etc/aliases
mailbox_size_limit = 0
message_size_limit = 10240000
disable_vrfy_command = yes
smtpd_delay_reject = yes
smtpd_sasl_local_domain =
smtpd_sasl_security_options = noanonymous
broken_sasl_auth_clients = yes
inet_interfaces = all
Aber folgende Einstellung ist zu hart:
Code:
readme_directory = /usr/share/doc/packages/postfix/README_FILES
inet_protocols = all
biff = no
mail_spool_directory = /var/mail
canonical_maps = hash:/etc/postfix/canonical
relocated_maps = hash:/etc/postfix/relocated
transport_maps = hash:/etc/postfix/transport
sender_canonical_maps = hash:/etc/postfix/sender_canonical
masquerade_exceptions = root
masquerade_classes = envelope_sender, header_sender, header_recipient
myhostname = p043.purple.fastwebserver.de
program_directory = /usr/lib/postfix
masquerade_domains =
mydestination = $myhostname, localhost.$mydomain
defer_transports =
mynetworks_style = subnet
disable_dns_lookups = no
relayhost =
mailbox_command = /usr/bin/procmail
mailbox_transport =
strict_8bitmime = no
disable_mime_output_conversion = no
smtpd_sender_restrictions = permit_sasl_authenticated,permit_mynetworks, reject_unauth_destination,reject_rhsbl_client rhsbl.sorbs.net,reject_rhsbl_sender rhsbl.sorbs.net,reject_rbl_client relays.ordb.org,reject_rbl_client list.dsbl.org,reject_rbl_client sbl.spamhaus.org,reject_rbl_client unconfirmed.dsbl.org,reject_rbl_client list.dsbl.org,reject_rbl_client dynablock.njabl.org,reject_rbl_client dialup.blacklist.jippg.org,reject_rbl_client multihop.dsbl.org,reject_rbl_client dialup.rbl.kropka.net,reject_rbl_client opm.blitzed.org, reject_rbl_client cbl.abuseat.org,reject_non_fqdn_sender,reject_non_fqdn_recipient, reject_unknown_recipient_domain,reject_unauth_pipelining
smtpd_client_restrictions =
smtpd_helo_required = yes
smtpd_helo_restrictions = permit_sasl_authenticated,permit_mynetworks,reject_unauth_destination,reject_non_fqdn_sender,reject_non_fqdn_recipient,reject_unknown_recipient_domain,reject_non_fqdn_hostname,reject_invalid_hostname,reject_rhsbl_client rhsbl.sorbs.net,reject_rhsbl_sender rhsbl.sorbs.net,reject_rbl_client opm.blitzed.org,reject_rbl_client cbl.abuseat.org,reject_rbl_client relays.ordb.org,reject_rbl_client list.dsbl.org,reject_rbl_client sbl.spamhaus.org,reject_rbl_client unconfirmed.dsbl.org,reject_rbl_client list.dsbl.org,reject_rbl_client dynablock.njabl.org,reject_rbl_client dialup.blacklist.jippg.org,reject_rbl_client opm.blitzed.org,reject_rbl_client cbl.abuseat.org,reject_rbl_client multihop.dsbl.org,reject_rbl_client dialup.rbl.kropka.net,reject_unauth_pipelining
strict_rfc821_envelopes = no
smtpd_recipient_restrictions = permit_sasl_authenticated,reject_unauth_destination, reject_invalid_hostname,reject_non_fqdn_hostname,reject_non_fqdn_sender,reject_non_fqdn_recipient,reject_unknown_sender_domain,reject_unknown_recipient_domain,reject_unauth_pipelining,reject_rbl_client zombie.dnsbl.sorbs.net,reject_rbl_client relays.ordb.org,reject_rbl_client opm.blitzed.org,reject_rbl_client list.dsbl.org,reject_rbl_client sbl.spamhaus.org,reject_rbl_client blackholes.easynet.nl,reject_rbl_client unconfirmed.dsbl.org,reject_rbl_client dynablock.njabl.org,reject_rbl_client dialup.blacklist.jippg.org,reject_rbl_client cbl.abuseat.org
smtp_sasl_auth_enable = no
smtpd_sasl_auth_enable = yes
smtpd_use_tls = no
smtp_use_tls = no
alias_maps = hash:/etc/aliases
mailbox_size_limit = 0
message_size_limit = 1024000000
disable_vrfy_command = yes
default_rbl_reply = $rbl_code RBLTRAP: You can't send us a E-mail today!!! Pls send an E-Mail to SimonLudwigs@gmail.com
smtpd_delay_reject = yes
smtpd_sasl_local_domain =
smtpd_sasl_security_options = noanonymous
broken_sasl_auth_clients = yes
inet_interfaces = all
Könnte mir einer helfen wie die Einstellung für den normal Betrieb aussehen müsste.
Darüber hinaus frag ich mich, welche Möglichkeiten es noch gibt Spam zu versenden außer über ssh Zugang und falsche Webapplikationen.
Interessant ist auch wie man von AntiSpam-Listen gelöscht werden kann.
Bitte um Aufklärung (ausser google) danke euch.
PS: Server ist natürlich vom Netz!