Mailing List Archive

Exim bouncing to exchange
It would be nice, in general, if incoming SRS addresses were also
validated in the ACL in this way.

S.

--
Shevek http://www.anarres.org/
I am the Borg. http://www.gothnicity.org/

---------- Forwarded message ----------
From: Peter Bowyer <peter@bowyer.org>
To: spf-discuss@v2.listbox.com
Cc: spf-discuss@v2.listbox.com
Date: Tue, 1 Jun 2004 16:49:56 -0100 (BST)
Subject: Re: [spf-discuss] RCPT TO: rejecting (OT)
Reply-To: spf-discuss@v2.listbox.com
X-Spam-Status: No, hits=2.3 required=5.0 tests=PRIORITY_NO_NAME,TO_NOT_SHEVEK
autolearn=no version=2.61

> On Tue, 1 Jun 2004, Daniel Taylor wrote:
>
>> Option 1:
>> Live forward. Attempt delivery to the Exchange server before reporting
>> acceptance back to the originating server.
>>
>> Option 2:
>> Use a directory service. Validate the recipient address through
>> your internal directory service before accepting it in Exim.
>
> Thanks. Both are excellent ideas, but I'm not sure yet if Exim can do
> them. I don't think Exim 3.x could, but we recently upgraded to 4.x and I
> haven't had time to really pour over the documentation in depth yet. 4.x
> added support for ACLs that can be evaluated during the SMTP dialog, so I
> suspect I might be able to have it talk to Exchange's LDAP service that
> way.
>
> If anyone has done this, please share. :)

From the Exim 4 FAQ:
``Attached is an Exim 4 config file which is designed for an Exim server
that is put in front of an Exchange 5.5 system but which verifies the
valid addresses that are stored in Exchange via LDAP lookups against the
Exchange server.''

http://www.exim.org/exim-html-4.30/doc/html/C043.txt

Peter

-------
Sender Policy Framework: http://spf.pobox.com/

The Inbox Event at the Marriott San Jose features SPF.
June 2: Email Accountability Symposium (free)
June 3: SPF Strategy BOF (free) where industry will coordinate deployment timeline
Times: 6:30pm - 8pm, both sessions. http://www.inboxevent.com/

Archives at http://archives.listbox.com/spf-discuss/current/
To unsubscribe, change your address, or temporarily deactivate your subscription,
please go to http://v2.listbox.com/member/?listname=spf-discuss@v2.listbox.com
Re: Exim bouncing to exchange [ In reply to ]
>It would be nice, in general, if incoming SRS addresses were also
>validated in the ACL in this way.

If you set the 'verify = recipient' in your acl exim does validate it as it verifies the recipient by attempting to route it.

For 'srs = reverse', if the message is in the SRS format but the hash is invalid or timestamp expired it will reject the message.

Miles.