    I am wondering why the default configuration for postfix is so ...poor. People are persistently asking the same after a perfect server install ...why is my server sending/getting spam?

    Well, I understand that ispconfig must be flexible because each mail server can be set in several ways but must be more secure.

    I'm not talking about spf, greylisting, dkim, rbls , fake mx, policies... just something more simple:

    helo checks, helo restrictions, hostname restrictions,strict rfc.

    With this settings the default config file remains flexible but really more secure.

    Please do not misunderstand this post, I just trying always to help

    Because we would get posts like "Why is my mailserver not working" then instead because a lot of poeple use ispconfig as internal system and when you add helo checks and require a fqdn, then their setups will fail.

    Maybe you might write a tutorial on hardening the postfix setup for ISPConfig as addon tutorial for the perfect setup guides?
    then they aren't using permit_mynetworks correctly... they or the default installation.

    Tutorial? sure why not but it don't solves this issue Till, spam is a serious thing.

