Only sign outgoing messages rules revisited.

Julian Field MailScanner at ecs.soton.ac.uk
Fri Jan 11 22:36:19 GMT 2008


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1



Greg Borders wrote:
> I'm looking into doing this, and I implemented this rule from the 
> examples:
>
> 3. Only sign outgoing messages
> Set "Sign Clean Messages = /opt/MailScanner/etc/rules/signing.rules".
> If your messages come from "yourdomain.com", then try this:
> From: 192.168. yes
> FromOrTo: default no
> where your network is the whole of 192.168.xxx.xxx.
>
> My subnet happens to match nicely with the examples.
> However, it signs *all* outbound messages, even from in-house user to 
> other in-house user.
> I'd like to eliminate the signing for all inhouse person-to person 
> mails.  I've tried several extra rules, but no success yet.  It just 
> keeps tagging all sent mail.
>
> I'd expect something like this to work:
>  From: 192.168. yes
> To:   192.168. no
You can't do "To", only "From" with IP addresses. The MTA doesn't know 
the IP address of the destination address until it has already 
successfully delivered the message, at which point it's a bit late to 
start testing things :-)

To: yourdomain.com no
FromOrTo: default yes

is usually good enough, isn't it?

Jules

- -- 
Julian Field MEng CITP CEng
www.MailScanner.info
Buy the MailScanner book at www.MailScanner.info/store

MailScanner customisation, or any advanced system administration help?
Contact me at Jules at Jules.FM

PGP footprint: EE81 D763 3DB0 0BFD E1DC 7222 11F6 5947 1415 B654
PGP public key: http://www.jules.fm/julesfm.asc


-----BEGIN PGP SIGNATURE-----
Version: PGP Desktop 9.7.0 (Build 1012)
Comment: Use Thunderbird's Enigmail add-on to verify this message
Charset: ISO-8859-1

wj8DBQFHh+9lEfZZRxQVtlQRAsU0AJ9i7diUb16RhE2ZzzbUjybazqoIcwCfT55R
7IeMFUNsFriHnDq4QjxbV9c=
=UYzX
-----END PGP SIGNATURE-----

-- 
This message has been scanned for viruses and
dangerous content by MailScanner, and is
believed to be clean.



More information about the MailScanner mailing list