OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
failover for check_policy_service

From: Alex (alexzengers.de)
Date: Wed Mar 05 2008 - 07:42:03 CST


Hi,

i've a question related to the "check_policy_service".
We use greylisting to get rid of junk mails.
But we have problems when some bot nets are sending mass mails to our
gateways. The postfix handles this all very well, but the sqlgrey
is to slow for so much new connections.
So it would comfortable if the postfix accepts all mails when
the sqlgrey is ot of order.

At the moment the config looks like this:

 smtpd_recipient_restrictions = permit_mynetworks,
                                 reject_unauth_destination,
                                 check_policy_service inet:127.0.0.1:6701

Is there any way to do this?

greetz
alex

--
We're sysadmins. To us, data is a protocol-overhead.