What is Pitbull Secure Gateway?
Pitbull Secure Gateway is a modern Mail Security Gateway that protects SMTP traffic, manages inbound and outbound mail flows, and delivers quarantine, reporting, audit, firewall, NOC and customer portal capabilities. It is designed for hosting providers, enterprise IT teams and mail operations teams.
Security Engine
- SMTP inbound mail gateway and outbound relay / smarthost support
- Multi-tenant customer and domain management
- Rspamd integration; ClamAV and Avast REST antivirus providers
- Selectable antivirus:
clamav, avast_rest or off - Spam, malware, phishing and policy decisions — SMTP hot path performance-focused
- Domain-based TLS policies, STARTTLS fallback control
- DSN / backscatter suppression, BATV / Backscatter Guard
- SMTP DATA abort guard, message size and DATA line limit policies
Quarantine & Policy
- Quarantine management, mail preview and Turkish charset decode (Windows-1254 / ISO-8859-9)
- Score, threshold, SPF/DKIM/DMARC and symbol breakdown
- Attachment / risk signal visibility
- False positive marking, admin-approved quarantine release
- False positive reporting via customer portal
Operations & NOC
- Queue / spool management, retry, bounce and delivery status visibility
- SMTP trace and message lifecycle tracking
- Advanced / forensic log profiles
- Dashboard: daily traffic, delivery, reject, quarantine, queue statistics
- SMTP Abuse Radar, GeoIP Radar, Country / ASN visibility (observe-only by default)
- Emergency Outbound Lockdown, quick outbound sender block from NOC
- Outbound rate limit, daily limit and relay IP / customer synchronization
Customer portal & reporting
- Customer scoped mail log, audit and reports
- Admin and customer reporting, CSV export, PDF report export
- Executive-style customer PDF reports
Firewall, Alerts & Audit
- CIDR blacklist / whitelist, timed bans (permanent, 1 day, 48 hours, 1 week, 1 month)
- Blacklist hit counters, last hit time and IP visibility
- Sender blacklist, firewall logs and archiving
- Telegram, email and webhook alerts; Alert Policy Engine and Alert Center
- Alarm system with cooldown / recovery / acknowledgement
- Audit log: admin users, roles, sessions; recovery/support API key structure
Deployment & infrastructure
- Redis / Valkey compatible data layer, Redis 8 / RedisSearch log search
- Fallback log indexes, retention and archiving, backup / restore (phase 1)
- Security policy clone, DNS/MX cache flush
- Secure root/system helper architecture — panel does not run root commands directly
- SSH port open/close panel helper
Security principles
Heavy analysis does not slow the mail acceptance path. Radar screens run observe-only by default; auto ban/reject/quarantine activates only with explicit policy. Sensitive data is masked; tokens, API keys and passwords are not logged. KVKK/GDPR compliant log separation is targeted.