Line 87: |
Line 87: |
| {| class="wikitable mw-collapsible" | | {| class="wikitable mw-collapsible" |
| |+ | | |+ |
− | |property
| + | x: use the value of qpsmtpd key property for this key too. |
− | |qpsmtpd
| + | !property |
− | | sqpsmtpd
| + | !qpsmtpd |
− | |uqpsmtpd
| + | ! sqpsmtpd |
− | | information
| + | !uqpsmtpd |
| + | !information |
| |- | | |- |
| |Authentication | | |Authentication |
| |enabled | | |enabled |
| |enabled | | |enabled |
− | | | + | |enabled |
| | | | | |
| |- | | |- |
− | | Bcc | + | |Bcc |
| |disabled | | |disabled |
− | | | + | |x |
− | | | + | |x |
| | | | | |
| |- | | |- |
| |BccMode | | |BccMode |
| |cc | | |cc |
− | | | + | |x |
− | | | + | |x |
| | | | | |
| |- | | |- |
| |BccUser | | |BccUser |
| |maillog | | |maillog |
− | | | + | |x |
− | | | + | |x |
| | | | | |
| |- | | |- |
| |DNSBL | | |DNSBL |
| |disabled | | |disabled |
− | | | + | |x |
− | | | + | |x |
| | | | | |
| |- | | |- |
Line 126: |
Line 127: |
| |40 | | |40 |
| |10 | | |10 |
− | | | + | |10 |
| | | | | |
| |- | | |- |
Line 132: |
Line 133: |
| |5 | | |5 |
| |5 | | |5 |
− | | | + | |5 |
| | | | | |
| |- | | |- |
| |LogLevel | | |LogLevel |
| |6 | | |6 |
− | | | + | |x |
− | | | + | |x |
| | | | | |
| |- | | |- |
| |MaxScannerSize | | |MaxScannerSize |
| |25000000 | | |25000000 |
− | | | + | |x |
− | | | + | |x |
| | | | | |
| |- | | |- |
| |MaximumDateOffset | | |MaximumDateOffset |
| |0 | | |0 |
− | | | + | |x |
− | | | + | |x |
| | | | | |
| |- | | |- |
| |PatternsScan | | |PatternsScan |
| |disabled | | |disabled |
− | | | + | |x |
− | | | + | |x |
| | | | | |
| |- | | |- |
| |Proxy | | |Proxy |
| |blocked | | |blocked |
− | | | + | |x |
− | | | + | |x |
| | | | | |
| |- | | |- |
| |RBLList | | |RBLList |
| |bl.spamcop.net,dnsbl-1.uceprotect.net,dnsbl-2.uceprotect.net,psbl.surriel.com,zen.spamhaus.org | | |bl.spamcop.net,dnsbl-1.uceprotect.net,dnsbl-2.uceprotect.net,psbl.surriel.com,zen.spamhaus.org |
− | | | + | |x |
− | | | + | |x |
| | | | | |
| |- | | |- |
| |RHSBL | | |RHSBL |
| |disabled | | |disabled |
− | | | + | |x |
− | | | + | |x |
| | | | | |
| |- | | |- |
| |RelayRequiresAuth | | |RelayRequiresAuth |
| |enabled | | |enabled |
| + | |x |
| + | |x |
| | | | | |
− | | | + | |- |
| + | |SoftLimit |
| + | |150000000 |
| + | |150000000 |
| + | |150000000 |
| | | | | |
| |- | | |- |
| |SBLList | | |SBLList |
| |multi.surbl.org,black.uribl.com,rhsbl.sorbs.net | | |multi.surbl.org,black.uribl.com,rhsbl.sorbs.net |
− | | | + | |x |
− | | | + | |x |
| | | | | |
| |- | | |- |
Line 197: |
Line 204: |
| |TCPProxyPort | | |TCPProxyPort |
| |25 | | |25 |
− | | | + | |x |
− | | | + | |x |
| | | | | |
| |- | | |- |
| |TlsBeforeAuth | | |TlsBeforeAuth |
| |1 | | |1 |
− | | | + | |1 (hardcoded) |
− | | | + | |1 (hardcoded) |
| | | | | |
| |- | | |- |
| |UBLList | | |UBLList |
| |multi.surbl.org:8-16-64-128,black.uribl.com,rhsbl.sorbs.net | | |multi.surbl.org:8-16-64-128,black.uribl.com,rhsbl.sorbs.net |
− | | | + | |x |
− | | | + | |x |
| | | | | |
| |- | | |- |
| |URIBL | | |URIBL |
| |disabled | | |disabled |
− | | | + | |x |
− | | | + | |x |
| | | | | |
| |- | | |- |
| |VirusScan | | |VirusScan |
| |enabled | | |enabled |
− | | | + | |x |
− | | | + | |x |
| | | | | |
| |- | | |- |
Line 233: |
Line 240: |
| |qplogsumm | | |qplogsumm |
| |disabled | | |disabled |
− | | | + | |x |
− | | | + | |x |
| | | | | |
| |- | | |- |
Line 245: |
Line 252: |
| |tnef2mime | | |tnef2mime |
| |enabled | | |enabled |
− | | | + | |x |
− | | | + | |x |
| | | | | |
| |} | | |} |
| | | |
| ==Templates== | | ==Templates== |
− | ==Upgrade Considerations == | + | ==Upgrade Considerations== |
| ===A-Record DNSBL Services=== | | ===A-Record DNSBL Services=== |
| :Some DNSBL services - notably b.barracudacentral.org - provide their results using a DNS "A" record instead of a DNS TXT record. The dnsbl plugin requires these services to include a colon (":") in dnsbl_zones - however, SME used to use a colon the server separator in the configuration database. In order to support these A-Record DNSBL services, the separator for RBLList, SBLList, and the new UBLList is now a comma. | | :Some DNSBL services - notably b.barracudacentral.org - provide their results using a DNS "A" record instead of a DNS TXT record. The dnsbl plugin requires these services to include a colon (":") in dnsbl_zones - however, SME used to use a colon the server separator in the configuration database. In order to support these A-Record DNSBL services, the separator for RBLList, SBLList, and the new UBLList is now a comma. |
Line 261: |
Line 268: |
| :DKIM & DMARC are now supported natively by SME Server. To enable these you will need to configure appropriate DNS records in your public DNS server. | | :DKIM & DMARC are now supported natively by SME Server. To enable these you will need to configure appropriate DNS records in your public DNS server. |
| :There are forum reports of problems for users who had DKIM enabled using the DKIM contrib. | | :There are forum reports of problems for users who had DKIM enabled using the DKIM contrib. |
− | ===URIBL === | + | ===URIBL=== |
| :qpsmtpd now supports URIBL - the ability to block emails that contain known malicious URLs within the body of the email. This service is disabled by default. | | :qpsmtpd now supports URIBL - the ability to block emails that contain known malicious URLs within the body of the email. This service is disabled by default. |
| | | |
| :Enable URIBL with the default services using: | | :Enable URIBL with the default services using: |
| <nowiki>config setprop qpsmtpd URIBL enabled | | <nowiki>config setprop qpsmtpd URIBL enabled |
− | signal-event email-update</nowiki>
| + | signal-event email-update</nowiki> |
| | | |
| :'''Note:''' If your SME server is using high traffic external DNS forwarders like [https://developers.google.com/speed/public-dns/ google] (8.8.8.8 / 8.8.4.4), [https://www.opendns.com/setupguide/ opendns] (208.67.222.222 / 208.67.220.220), or any large ISP's (Cox, Comcast, Verizon), enabling URIBL may block all incoming email. This will only affect you if you have configured a DNS forwarder in server-manager -- a default SME server installation does its own direct DNS lookups and would not be affected unless you receive over 250,000 emails per day. | | :'''Note:''' If your SME server is using high traffic external DNS forwarders like [https://developers.google.com/speed/public-dns/ google] (8.8.8.8 / 8.8.4.4), [https://www.opendns.com/setupguide/ opendns] (208.67.222.222 / 208.67.220.220), or any large ISP's (Cox, Comcast, Verizon), enabling URIBL may block all incoming email. This will only affect you if you have configured a DNS forwarder in server-manager -- a default SME server installation does its own direct DNS lookups and would not be affected unless you receive over 250,000 emails per day. |