postfix: default conf should only listen on lo

Bug #29741 reported by Corey Burger
6
Affects Status Importance Assigned to Milestone
postfix (Ubuntu)
Invalid
Medium
Unassigned

Bug Description

---------- Forwarded message ----------
From: benoit <email address hidden>
To: Ubuntu Bug Tracking System <email address hidden>
Date: Mon, 23 Jan 2006 23:34:43 +0100
Subject: postfix: default conf should only listen on lo
Package: postfix
Version: 2.2.8-4
Severity: normal

Postfix is great and should be well configured. Default configuration makes it
allow only local mail delivery. Then no need to listen on every inteface. lo is
just fine. Please consider setting inet_interfaces = loopback-only as default.

mynetworks = 127.0.0.0/8
[...]
inet_interfaces = loopback-only

Thanks.

-- System Information:
Debian Release: testing/unstable
 APT prefers dapper
 APT policy: (500, 'dapper')
Architecture: i386 (i686)
Shell: /bin/sh linked to /bin/bash
Kernel: Linux 2.6.12-9-386
Locale: LANG=fr_FR.UTF-8, LC_CTYPE=fr_FR.UTF-8 (charmap=UTF-8)

Versions of packages postfix depends on:
ii adduser 3.80 Add and remove users and groups
ii debconf [debconf-2.0] 1.4.67ubuntu1 Debian configuration management sy
ii dpkg 1.13.10ubuntu4 Package maintenance system for Deb
ii libc6 2.3.5-1ubuntu12 GNU C Library: Shared libraries an
ii libdb4.3 4.3.28-1ubuntu3 Berkeley v4.3 Database Libraries [
ii libsasl2 2.1.19-1.5ubuntu4 Authentication abstraction library
ii libssl0.9.8 0.9.8a-5 SSL shared libraries
ii lsb-base 3.0-12ubuntu1 Linux Standard Base 3.0 init scrip
ii netbase 4.23ubuntu3 Basic TCP/IP networking system

Versions of packages postfix recommends:
ii emacs21 [ 21.4a-3 The GNU Emacs editor
ii evolution 2.4.1-0ubuntu7 The groupware suite
ii mailx [ma 1:8.1.2-0.20050715cvs-1ubuntu1 A simple mail user agent
pn resolvcon <none> (no description available)

-- debconf information:
 postfix/master_upgrade_warning:
 postfix/db_upgrade_warning: true
* postfix/mailname: localhost.localdomain
 postfix/tlsmgr_upgrade_warning:
 postfix/dynamicmaps_upgrade_warning:
 postfix/recipient_delim: +
* postfix/main_mailer_type: Internet Site
 postfix/transport_map_warning:
 postfix/relayhost:
 postfix/procmail: true
 postfix/bad_recipient_delimiter:
 postfix/chattr: Faux
 postfix/root_address: NONE
 postfix/rfc1035_violation: false
 postfix/mynetworks: 127.0.0.0/8
 postfix/destinations: localhost.localdomain, localhost.localdomain, , localhost
 postfix/nqmgr_upgrade_warning:
 postfix/not_configured:
 postfix/mailbox_limit: 0
 postfix/protocols: all

Revision history for this message
Corey Burger (corey.burger) wrote :

Reported via reportbug by:
benoit <email address hidden>

Revision history for this message
Martin Pitt (pitti) wrote :

Please don't. Postfix is not installed by default any more precisely because we do not want to ship a crippled postfix. And yes, not listening to the network is a serious crippling for an MTA, since it is almost useless then. Nowadays postfix asks some debconf questions which is much more appropriate IMHO.

Revision history for this message
LaMont Jones (lamont) wrote :

As Martin said, postfix was specifically removed from the standard install so that, like every other network daemon, it could be fully installed by the admin, rather than being restricted to just listening on loopback.

Changed in postfix:
status: Unconfirmed → Rejected
Revision history for this message
Corey Burger (corey.burger) wrote :

I am emailed the writer of this bug with this information.

To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.