Hardening Postfix For ISPConfig 3 - Blocks legit email

Discussion in 'Server Operation' started by Nomis, Aug 16, 2016.

  Nomis

    Nomis Member

    I recently found Hardening Postfix for ISPConfig 3 after receiving large amounts of spam.

    I followed the installation steps for:
    Reverse DNS, (DNS PTR Record)
    SPF For Your Domain (DNS TXT Record)
    SPF Check For Postfix (Debian And Ubuntu)
    DNSBL (DNS Based Blacklist/Blocklist)

    And my spam dropped of nicely, but on investigating the mail warn:
    I found the following:
    warning: hostname mirojhbfgt.miro.co.za does not resolve to address
    This is in fact a domain that I do need to accept mail from.
    I know that is stems from the following settings, but wondered if there was a wihitelist somewhere I could make an exception list?
    smtpd_helo_required = yes
    smtpd_helo_restrictions = permit_mynetworks, permit_sasl_authenticated, reject_non_fqdn_helo_hostname, reject_invalid_helo_hostname


