# http://www.amavis.org/download.php3
# amavis je mailovy skener, ktory pouziva rozne programy, napr spamassassin, aleb clamav… # amavisd je ako spamd # amavis-new je to iste co amavisd… dobra haluz # je rozhranie medzi MTA (postfix) a skenermi typu spamassassin (amavisd-new nepotrebuje amavis(d)) # najlepsie nainstalit len amavisd-new # #inak velmi dobry clanok v cestine je: http://www.telnet.cz/index.php?ID=267
# Potrebuje niektore Perlove moduly, daju sa stiahnut z http://www.cpan.org/modules/01modules.index.html
# Poradie instalacie Tar Zlib Zip Mail Syslog Stringy MIMETools TNEF UUlib Net-Server
# instalacia jedneho: # stiahnut, rozpakovat, vojst, perl Makefile.PL make make test make install
# dalej to este chce unzip, unrar, arc # ok tak pome instalit
groupadd amavis useradd amavis -g amavis -s /bin/false -d /var/amavis # amavisov homedir mkdir /var/amavis chown amavis:amavis /var/amavis chmod 750 /var/amavis
# instalacia… cp amavisd /usr/local/sbin/ chown root /usr/local/sbin/amavisd chmod 755 /usr/local/sbin/amavisd
# konfigurak cp amavisd.conf /etc/ chown root /etc/amavisd.conf chmod 644 /etc/amavisd.conf
# karantena mkdir /var/virusmails chown amavis:amavis /var/virusmails chmod 750 /var/virusmails
vim /etc/amavisd.conf # nastavit # $mydomain # $daemon_user = 'amavis' # $daemon_group = 'amavis' # $TEMPBASE = '/var/amavis' # # $unix_socketname = undef; # $inet_socket_bind = '127.0.0.1'; # v sekcii @av_scanners odkomentovat antiviry co chceme pouzit # ak pouzivame clamav, tak treba nastavit socket subor na taky ako je nastaveny v /etc/clamav.conf (ja mam /tmp/clamd)
# do /etc/postfix/main.cf pridat: content_filter = smtp-amavis:127.0.0.1:10024
# do /etc/postfix/master.cf prodat: smtp-amavis unix - - n - 2 lmtp -o smtp_data_done_timeout=1200 -o disable_dns_lookups=yes
127.0.0.1:10025 inet n - n - - smtpd -o content_filter= -o local_recipient_maps= -o relay_recipient_maps= -o smtpd_restriction_classes= -o smtpd_client_restrictions= -o smtpd_helo_restrictions= -o smtpd_sender_restrictions= -o smtpd_recipient_restrictions=permit_mynetworks,reject -o mynetworks=127.0.0.0/8 -o strict_rfc821_envelopes=yes