LINUXOR.SK ... open source notes ...

Email - exceptions_encrypt_from.txt (senders never encrypted)

category: solutionz · date: 2019-12-31 · updated: 2026-10-02 · author: LALA

Email Solution · Config document · referenced from Automatic email encryption

The list of envelope sender addresses (MAIL FROM) whose mail the encryption filter sends on as it is. These are the notification mailboxes of the platforms, the second-level support mailboxes and the monitoring sender.

ItemValue
Path on the server/var/spool/postfix/bash-postfix-encrypt-filter/exceptions_encrypt_from.txt
Shown hereDC2-A-VCMSX001
Also onDC2-B-VCMSX001, identical (diff is empty)
Owner and modebash-postfix-encrypt-filter:root, 400
Read bybash-postfix-encrypt-filter.sh, on every message; no reload needed
Formatone address per line, lowercase, compared as a whole string

The file

ini
mailer-daemon@ad-dc2.example.net
notification@ad-dc2.example.net
notification.env3@ad-dc2.example.net
notification.env3-test@ad-dc2.example.net
notification_ad@ad-dc2.example.net
notification.env1@ad-dc2.example.net
notification.env1-test@ad-dc2.example.net
notification.env2@ad-dc2.example.net
notification.env2-test@ad-dc2.example.net
notification-test@ad-dc2.example.net
p1.secondlevel@ad-dc2.example.net
p2.secondlevel@ad-dc2.example.net
p3.secondlevel@ad-dc2.example.net
training.secondlevel@ad-dc2.example.net
sensu_mail@ad-dc2.example.net

Differences between the hosts and the sites

The two servers of site 2 have the same file. It is not covered by the synchronization services, so nothing synchronizes it between them. The site 1 list is known only from the example in the header of the script, and differs like this.

WhereLineValue
Site 2, as archiveddomainad-dc2.example.net
Site 1, script headerdomainad.example.net
Site 2, as archivedextra entriesnotification@… and sensu_mail@…
Site 1, script headertest mailboxesspelled notification.env1-tes@…, notification.env2-tes@…, notification.env3-tes@… (without the final t)

Reading it today

← solutionz