Greylisting: exlude domain or sender

i1h9lu

New Member
Nov 29, 2005
14
0
1
Germany
Hi,

we have activated Greylisting today. It's a very good feature and we want to use it.

As i understand, it uses a triplet, which contains "IP of the sending server, sender-address and recipient-address" (and a timestamp). Incomming mails are compared to the triplet, if the triplet exists, the mail is accepted, if not the PROXMOX gives a "450 Please try again later" message to the sending server.
The sending server, if well configured, tries to send the mail again (after up to 4 hours).

Now i have two questions:
1) We use a backup MX-Server from our Provider, which doesn't use SAPM-controls or greylisting. Is it possible, that a sending server tries to send the message to the backup MX, if our MTA gives him a 450 message?

2) There are a few companies, with which we work together. Their MTAs seems not to be well configured. Some mails (deliverd at ~9:00 o'clock, after we have activated greylisting) haven't reached our companie yet.
I can see them in the greylist log, but it seems that the sending MTA haven't tried to send the mails again, till now. It's important for us, to get the message nearly just in time (our users can't wait up to 4 hours). So, can i explude a sender or a domain from greylisting? Can i use the whitelist for this?

Thanks and
 
ad 1.) I guess thats possible, but all MTAs I know does not. The SMTP specification clearly states that a sending MTA must wait at least 30 minutes before sending again.

btw. MTAs usually tries 1 Week to deliver a mails (they send out delay warnings after 4 hours thought)

ad 2.) There is an extra configuration page for that: "Configuration/Mail Proxy/Greylist excl.". Best way is to add the IP address of hosts you want to exclude.


- Dietmar
 
Hi,

and thanks again for reply.
Our backup MX is already excluded there. I'll now try to find out the MTA-IPs of our companies, with which we work together and add them to the "Greylist excl.".

At moment, it will work for us, but isn't it possible to exclude domains/sender from greylisting or to make some greylist triplets permanent (maybe in a future release of PROMOX)? Because at least one of our companies uses a hosted SMTP-Service (mgi.de). If have seen already 3 MTAs from MGI which delivers mails to us. If they setup new MTAs or changes the IPs of the existing MTAs (why ever), i'll notice that only if our users say "I wait for urgent email".

I'm sorry to bother you so often at the moment.
 
You can also add a domain or email address to the greylist exclusion, thats no problem.

- Dietmar
 
aaaarrrgggghhh, sorry my mistake. Sometimes it helps to open the eyes!

Thank you very much.
 

About

The Proxmox community has been around for many years and offers help and support for Proxmox VE, Proxmox Backup Server, and Proxmox Mail Gateway.
We think our community is one of the best thanks to people like you!

Get your subscription!

The Proxmox team works very hard to make sure you are running the best software and getting stable updates and security enhancements, as well as quick enterprise support. Tens of thousands of happy customers have a Proxmox subscription. Get yours easily in our online shop.

Buy now!