Is Smart Host TLS SSL supported?

Feb 21, 2023
34
0
6
Today I am using Mail Gateway for all incoming email... to my Exchange Server. For ouotgoing smtp-mail I have an smart host via TLS SSL that I have to use.
Can I use Proxmox Mail Gateway as my "Smarthost"?

1678744025932.png
What version of TLS is this? Is it for outgoing, incoming or both? The SSL-certificate should this be installed here;

1678744123240.png
 
Did an small test and I can see that the TLS-setting above is for incoming emal.

but... connection/transaction time??? is this normal?

1678745246997.png

I can also see teh av. prcoessing time... is this normal? close to 13 secs...

1678745284267.png
1678745371723.png
 

Mar 15 20:11:51 mail postfix/smtpd[44647]: connect from localhost.localdomain[127.0.0.1]
Mar 15 20:11:51 mail postfix/smtpd[44647]: 251BD812DF: client=localhost.localdomain[127.0.0.1], orig_client=mail-vi1eur05olkn2034.outbound.protection.outlook.com[40.92.90.34]
Mar 15 20:11:51 mail postfix/cleanup[44641]: 251BD812DF: message-id=<DB8P189MB060102A71C177020D84F1461B9BF9@DB8P189MB0601.EURP189.PROD.OUTLOOK.COM>
Mar 15 20:11:51 mail postfix/qmgr[34419]: 251BD812DF: from=<zjediah6kiqapz4oa@outlook.com>, size=69795, nrcpt=1 (queue active)
Mar 15 20:11:51 mail postfix/smtpd[44647]: disconnect from localhost.localdomain[127.0.0.1] ehlo=1 xforward=1 mail=1 rcpt=1 data=1 commands=5
Mar 15 20:12:21 mail postfix/smtp[44648]: 251BD812DF: to=<tomas@dmz.se>, relay=none, delay=30, delays=0.06/0.02/30/0, dsn=4.4.1, status=deferred (connect to 192.168.1.2[192.168.1.2]:25: Connection timed out)
Mar 15 20:17:38 mail postfix/qmgr[44864]: 251BD812DF: from=<zjediah6kiqapz4oa@outlook.com>, size=69795, nrcpt=1 (queue active)
Mar 15 20:17:39 mail postfix/smtp[44867]: 251BD812DF: to=<tomas@dmz.se>, relay=192.168.1.2[192.168.1.2]:25, delay=348, delays=347/0.12/0/0.46, dsn=2.6.0, status=sent (250 2.6.0 <DB8P189MB060102A71C177020D84F1461B9BF9@DB8P189MB0601.EURP189.PROD.OUTLOOK.COM> [InternalId=7] Queued mail for delivery)
Mar 15 20:17:39 mail postfix/qmgr[44864]: 251BD812DF: removed

This is spam/porn but it was "queued/delivered"... why?
 
Mar 15 20:19:25 mail postfix/postscreen[44965]: NOQUEUE: reject: RCPT from [209.85.167.48]:39657: 550 5.7.1 Service unavailable; client [209.85.167.48] blocked using zen.spamhaus.org;
No this says that 209.85.167.48 is listed on zen.spamhaus.org (which you have configured as dnsbl_site in the mail proxy options) - and is an indicator that DNS is working

This is spam/porn but it was "queued/delivered"... why?
a) it seems there was a timeout at the first attempt of contacting 192.168.1.2 (since this is a private IP I would check why things time out in your local network)
b) without the logs from pmg-smtp-filter for this mail it's not really possible to say why the mail did not get recognized as spam...