請教一個設定Clamav的問題 - BBS
By Isla
at 2005-09-06T03:11
at 2005-09-06T03:11
Table of Contents
※ 引述《[email protected] (貓部)》之銘言:
: ※ 引述《[email protected] (中正資管93級 摸摸頭)》之銘言:
: : 我在 [/usr/local/etc/postfix/main.cf]
: : 加入下面這行後
: : #ClamAV
: : content_filter = smtp-amavis:[127.0.0.1]:10024
: : 收發信都不會通過...
: : grep maillog 後發現如下訊息
: : Sep 5 05:17:51 xxxxxx postfix/smtp[333]: C34BFA72C:
: : to=<[email protected]>, relay=none, delay=1, status=deferred (connect to
: : 127.0.0.1[127.0.0.1]: Connection refused)
: : 但mark掉後就又一切正常了
: : 請問有先進 知道該如何解決這問題嗎? <(_ _)>
: /usr/ports/security/amavisd-new
: 裝好看一下 /usr/local/etc/amavisd.conf
: 改一下 clamav 的部分
小弟之前參考的網頁
http://freebsd.ntut.idv.tw/document/postfix_amavisd-new_spamassassin_clamav.ht
ml (兩行連在一起)
我覺得寫得蠻詳盡的 (雖然有的設定還不是太知道為什麼^^;)
在此問一下問題
我在/usr/local/etc/postfix/aliases 裡面
加入
virusalert: root
spamalert: root
之後 root 會收到奇怪的信
Sep 4 dhkoqdgnmzsdr (1601) ashurwqnmkocdvw
Sep 4 dkiwqgkptrxbmah (1595) zniehpqtkdgfjuwe
Sep 4 ohkrokdmw (1588) khdxtwfdfcadcj
Sep 4 sgfhyfdkiosggdgx (1563) oadfwgvjdfbngduw
Sep 4 irfcujvwsjolds (1614) sxjnoewjgsdjuqa
Sep 4 prekfdokdqamc (1618) teqhfsdkivfceiguiqd
Sep 4 xmshurcmwsovfd (1582) oewgfdkacimw
內容大同小異
--------------------------------------------------------------------
Date: Sun, 4 Sep 2005 19:36:33 +0800 (CST)
From: dhkoqdgnmzsdr
To: rfgjdbnkvxni
Subject: ashurwqnmkocdvw
From To 都無法辨識^^;
請問 這樣正常嗎?
=============================================================================
不太知道該po什麼設定上來
amavisd.conf 裡面=========================(我只po我覺得可能有關的^^;)
$daemon_user = 'vscan';
$daemon_group = 'vscan';
$MYHOME = '/var/amavis';
$QUARANTINEDIR = '/var/virusmails';
$sa_tag_level_deflt = 2.0;
$sa_tag2_level_deflt = 6.31;
$sa_kill_level_deflt = 6.31;
$sa_dsn_cutoff_level = 9;
$sa_mail_body_size_limit = 200*1024;
$sa_local_tests_only = 0;
$sa_auto_whitelist = 1;
$virus_admin = "virusalert\@$mydomain";
$spam_admin = "spamalert\@$mydomain";
$mailfrom_notify_admin = "virusalert\@$mydomain";
$mailfrom_notify_recip = "virusalert\@$mydomain";
$mailfrom_notify_spamadmin = "spamalert\@$mydomain";
@addr_extension_virus_maps = ('virus');
@addr_extension_spam_maps = ('spam');
@addr_extension_banned_maps = ('banned');
@addr_extension_bad_header_maps = ('badh');
$sa_spam_subject_tag = '***SPAM*** ';
$sa_spam_modifies_subj = 1;
$final_virus_destiny = D_BOUNCE;
$final_banned_destiny = D_BOUNCE;
$final_spam_destiny = D_BOUNCE;
$final_bad_header_destiny = D_PASS;
$inet_socket_bind = '127.0.0.1';
$forward_method = 'smtp:[127.0.0.1]:10025';
$notify_method = $forward_method;
$inet_socket_port = 10024;
在 @av_scanners = (
裡面
有
['ClamAV-clamd',
\&ask_daemon, ["CONTSCAN {}\n", "/var/run/clamav/clamd"],
qr/\bOK$/, qr/\bFOUND$/,
qr/^.*?: (?!Infected Archive)(.*) FOUND$/ ],
postfix的master.cf===================================================
smtp-amavis unix - - n - 2 smtp
-o smtp_data_done_timeout=1200
-o disable_dns_lookups=yes
127.0.0.1:10025 inet n - n - - smtpd
-o content_filter=
-o local_recipient_maps=
-o relay_recipient_maps=
-o smtpd_restriction_classes=
-o smtpd_client_restrictions=
-o smtpd_helo_restrictions=
-o smtpd_sender_restrictions=
-o smtpd_recipient_restrictions=permit_mynetworks,reject
-o mynetworks=127.0.0.0/8
-o strict_rfc821_envelopes=yes
postfix的main.cf======================================================
content_filter = smtp-amavis:[127.0.0.1]:10024
--
真33LV10達成
吳: 孫堅 孫尚香 周泰 小喬 大喬 孫策 孫權 甘寧 黃蓋 陸遜 呂蒙 周瑜 太史慈 (終)
蜀: 關羽 張飛 魏延 劉備 馬超 趙雲 月英 龐統 姜維 黃忠 塔矢亮 (終)
魏: 張遼 夏侯惇 甄姬 曹操 徐晃 張郃 司馬懿 曹仁 典韋
他: 呂布 袁紹 孟獲 祝融 董肥 髒腳
剩三個 但是 抓回家裡 發現家裡顯卡只有mx400.....差了40就跑不動了
--
: ※ 引述《[email protected] (中正資管93級 摸摸頭)》之銘言:
: : 我在 [/usr/local/etc/postfix/main.cf]
: : 加入下面這行後
: : #ClamAV
: : content_filter = smtp-amavis:[127.0.0.1]:10024
: : 收發信都不會通過...
: : grep maillog 後發現如下訊息
: : Sep 5 05:17:51 xxxxxx postfix/smtp[333]: C34BFA72C:
: : to=<[email protected]>, relay=none, delay=1, status=deferred (connect to
: : 127.0.0.1[127.0.0.1]: Connection refused)
: : 但mark掉後就又一切正常了
: : 請問有先進 知道該如何解決這問題嗎? <(_ _)>
: /usr/ports/security/amavisd-new
: 裝好看一下 /usr/local/etc/amavisd.conf
: 改一下 clamav 的部分
小弟之前參考的網頁
http://freebsd.ntut.idv.tw/document/postfix_amavisd-new_spamassassin_clamav.ht
ml (兩行連在一起)
我覺得寫得蠻詳盡的 (雖然有的設定還不是太知道為什麼^^;)
在此問一下問題
我在/usr/local/etc/postfix/aliases 裡面
加入
virusalert: root
spamalert: root
之後 root 會收到奇怪的信
Sep 4 dhkoqdgnmzsdr (1601) ashurwqnmkocdvw
Sep 4 dkiwqgkptrxbmah (1595) zniehpqtkdgfjuwe
Sep 4 ohkrokdmw (1588) khdxtwfdfcadcj
Sep 4 sgfhyfdkiosggdgx (1563) oadfwgvjdfbngduw
Sep 4 irfcujvwsjolds (1614) sxjnoewjgsdjuqa
Sep 4 prekfdokdqamc (1618) teqhfsdkivfceiguiqd
Sep 4 xmshurcmwsovfd (1582) oewgfdkacimw
內容大同小異
--------------------------------------------------------------------
Date: Sun, 4 Sep 2005 19:36:33 +0800 (CST)
From: dhkoqdgnmzsdr
To: rfgjdbnkvxni
Subject: ashurwqnmkocdvw
From To 都無法辨識^^;
請問 這樣正常嗎?
=============================================================================
不太知道該po什麼設定上來
amavisd.conf 裡面=========================(我只po我覺得可能有關的^^;)
$daemon_user = 'vscan';
$daemon_group = 'vscan';
$MYHOME = '/var/amavis';
$QUARANTINEDIR = '/var/virusmails';
$sa_tag_level_deflt = 2.0;
$sa_tag2_level_deflt = 6.31;
$sa_kill_level_deflt = 6.31;
$sa_dsn_cutoff_level = 9;
$sa_mail_body_size_limit = 200*1024;
$sa_local_tests_only = 0;
$sa_auto_whitelist = 1;
$virus_admin = "virusalert\@$mydomain";
$spam_admin = "spamalert\@$mydomain";
$mailfrom_notify_admin = "virusalert\@$mydomain";
$mailfrom_notify_recip = "virusalert\@$mydomain";
$mailfrom_notify_spamadmin = "spamalert\@$mydomain";
@addr_extension_virus_maps = ('virus');
@addr_extension_spam_maps = ('spam');
@addr_extension_banned_maps = ('banned');
@addr_extension_bad_header_maps = ('badh');
$sa_spam_subject_tag = '***SPAM*** ';
$sa_spam_modifies_subj = 1;
$final_virus_destiny = D_BOUNCE;
$final_banned_destiny = D_BOUNCE;
$final_spam_destiny = D_BOUNCE;
$final_bad_header_destiny = D_PASS;
$inet_socket_bind = '127.0.0.1';
$forward_method = 'smtp:[127.0.0.1]:10025';
$notify_method = $forward_method;
$inet_socket_port = 10024;
在 @av_scanners = (
裡面
有
['ClamAV-clamd',
\&ask_daemon, ["CONTSCAN {}\n", "/var/run/clamav/clamd"],
qr/\bOK$/, qr/\bFOUND$/,
qr/^.*?: (?!Infected Archive)(.*) FOUND$/ ],
postfix的master.cf===================================================
smtp-amavis unix - - n - 2 smtp
-o smtp_data_done_timeout=1200
-o disable_dns_lookups=yes
127.0.0.1:10025 inet n - n - - smtpd
-o content_filter=
-o local_recipient_maps=
-o relay_recipient_maps=
-o smtpd_restriction_classes=
-o smtpd_client_restrictions=
-o smtpd_helo_restrictions=
-o smtpd_sender_restrictions=
-o smtpd_recipient_restrictions=permit_mynetworks,reject
-o mynetworks=127.0.0.0/8
-o strict_rfc821_envelopes=yes
postfix的main.cf======================================================
content_filter = smtp-amavis:[127.0.0.1]:10024
--
真33LV10達成
吳: 孫堅 孫尚香 周泰 小喬 大喬 孫策 孫權 甘寧 黃蓋 陸遜 呂蒙 周瑜 太史慈 (終)
蜀: 關羽 張飛 魏延 劉備 馬超 趙雲 月英 龐統 姜維 黃忠 塔矢亮 (終)
魏: 張遼 夏侯惇 甄姬 曹操 徐晃 張郃 司馬懿 曹仁 典韋
他: 呂布 袁紹 孟獲 祝融 董肥 髒腳
剩三個 但是 抓回家裡 發現家裡顯卡只有mx400.....差了40就跑不動了
--
Tags:
BBS
All Comments
Related Posts
無法更新Packages...
By Oscar
at 2005-09-05T21:36
at 2005-09-05T21:36
Re: utf-8 的 editor
By Kumar
at 2005-09-05T21:26
at 2005-09-05T21:26
Re: IP 相衝問題
By Caitlin
at 2005-09-05T21:09
at 2005-09-05T21:09
Re: IP 相衝問題
By Irma
at 2005-09-05T20:13
at 2005-09-05T20:13
無法更新Packages...
By Agnes
at 2005-09-05T19:42
at 2005-09-05T19:42