SMF - Just Installed!
/ip firewall natunset 0 dst-address/ip firewall nat unset 0 dst-addressprintset 0 dst-address=192.168.88.32/ip firewall nat unset 0 dst-address
>/ip firewall filter add chain=input psd=21,3s,3,1 action=add-src-to-address-list address-list=psd/ip firewall raw add chain=prerouting src-address-list=psd action=drop/ip firewall address-listadd list=ddos-attackersadd list=ddos-target/ip settings set tcp-syncookies=yes/ip firewall filteradd chain=forward connection-state=new action=jump jump-target=detect-ddosadd action=return chain=detect-ddos dst-limit=32,32,src-and-dst-addresses/10sadd action=return chain=detect-ddos dst-limit=32,32,src-and-dst-addresses/10s protocol=tcp tcp-flags=syn,ackadd action=add-dst-to-address-list address-list=ddos-target address-list-timeout=10m chain=detect-ddosadd action=add-src-to-address-list address-list=ddos-attackers address-list-timeout=10m chain=detect-ddos/ip firewall rawadd action=drop chain=prerouting dst-address-list=ddos-target src-address-list=ddos-attackerssudo vi /etc/haproxy/haprxy.cfgbackend Apache2_Server
mode http
http-request add-header X-Forwarded-For %[src]
http-request set-header X-Forwarded-Port %[dst_port]sudo a2enmod remoteipsudo vi /etc/apache2/apache2.confRemoteIPHeader X-Forwarded-Forsudo apache2ctl configtestsudo systemctl apache2 restartxfs_growfs /dev/centos/rootsudo -u www-data php8.2 occ upgradesudo -u www-data php8.2 occ maintenance:mode --offopenssl s_client -starttls smtp -connect smtp.yandex.ru:587openssl s_client -connect smtp.yandex.ru:465ehloЦитировать250-relay.im-cloud.site Hello [192.168.0.15]
250-SIZE 10485760
250-PIPELINING
250-DSN
250-ENHANCEDSTATUSCODES
250-X-ANONYMOUSTLS
250-AUTH LOGIN PLAINT
250-X-EXPS GSSAPI NTLM
250-8BITMIME
250-BINARYMIME
250-CHUNKING
250-XEXCH50
250-XRDST
250 XSHADOW
echo -ne "текст" | base64[System.Convert]::ToBase64String([System.Text.Encoding]::UTF8.GetBytes("текст"))perl -MMIME::Base64 -e "print encode_base64('текст');"AUTH LOGINЦитировать334 VXNlcm5hbWU6
ZG1vc2s=Цитировать334 UGFzc3dvcmQ6
cGFzc3dvcmQ=Цитировать235 2.0.0 Authentication successful
echo -ne "\0username\0password" | base64[System.Convert]::ToBase64String([System.Text.Encoding]::UTF8.GetBytes("\0username\0password"))AUTH PLAINЦитировать334 VXNlcm5hbWU6
cd /var/www/nextcloud/sudo -u www-data php8.2 updater/updater.phar --no-interactionphp -vpostconf -n smtpd_bannerpostconf -n myhostnameЦитироватьhostname
mkdir -p /var/lib/dkimDOMAIN=$(hostname -d)$inet_socket_port = [10024,10026];$forward_method = 'smtp:[127.0.0.1]:10025';
$notify_method = $forward_method;
$interface_policy{'10026'} = 'ORIGINATING';
$policy_bank{'ORIGINATING'} = {
originating => 1,
smtpd_discard_ehlo_keywords => ['8BITMIME'],
os_fingerprint_method => undef,
bypass_banned_checks_maps => [1],
bypass_header_checks_maps => [1],
bypass_banned_checks_maps => [1],
virus_admin_maps => ["virusalert\@$mydomain"],
};
vi /etc/amavis/conf.d/50-user$enable_dkim_verification = 1;
$enable_dkim_signing = 1;
dkim_key('im-cloud.site', "dkim", "/var/lib/dkim/im-cloud.site.pem");
@dkim_signature_options_bysender_maps = ( {
"im-cloud.site" => { d => "im-cloud.site", a => 'rsa-sha256', ttl => 10*24*3600 },
});systemctl restart amavisamavisd-new showkeysamavisd-new testkeysvi /etc/postfix/master.cfsmtp inet n - y - - smtpd
-o content_filter=scan:[127.0.0.1]:10026submission inet n - n - - smtpd
-o content_filter=scan:[127.0.0.1]:10026smtps inet n - n - - smtpd
-o content_filter=scan:[127.0.0.1]:10026127.0.0.1:10027 inet n - n - 16 smtpd
-o content_filter=
-o receive_override_options=no_unknown_recipient_checks,no_header_body_checks
-o smtpd_helo_restrictions=
-o smtpd_client_restrictions=
-o smtpd_sender_restrictions=
-o smtpd_recipient_restrictions=permit_mynetworks,reject
-o mynetworks_style=host
-o smtpd_authorized_xforward_hosts=127.0.0.0/8systemctl restart postfixvi /var/www/html/webmail/config/config.inc.php$config['smtp_server'] = 'tls://localhost';
...
$config['smtp_port'] = 587;