Restricting SMTP Relay (To) Domains #393
-
I am using Stalwart as a SMTP relay, with LDAP authentication. I believe this can be done via the settings for the RECP TO Stage -
I would appreciate some examples, that can help me get started with writing the correct syntax for the above settings. |
Beta Was this translation helpful? Give feedback.
Replies: 1 comment
-
I couldn't find any way to make use of the memberOf LDAP attribute. For the requirement to "require authentication for senders from any domain, except XYZ.com domain" - I instead had to disable
|
Beta Was this translation helpful? Give feedback.
I couldn't find any way to make use of the memberOf LDAP attribute.
However, I no longer needed to do this, so I gave up on it.
For the requirement to "require authentication for senders from any domain, except XYZ.com domain" -
this was tricky, as it was not possible to read the sender_domain before the AUTH stage is completed.
i.e. in order for senders using XYZ.com to be exempted from authentication, they first had to authenticate in order for the server check the sender's domain
I instead had to disable
authentication == required
at the AUTH stageand during the next stage, MAIL, I added a script which then checks the envelope:to:domain, and exempts authentication if it is XYZ.com domain