Quantcast
Channel: iRedMail — iRedMail Support
Viewing all 12101 articles
Browse latest View live

Move Mail Store

$
0
0

==== Required information ====
- iRedMail version = 0.9.7 + AdminPro:
- Linux/BSD distribution name and version: Centos 7
- Store mail accounts in which backend MySQL:
- Web server Nginx
- Manage mail accounts with iRedAdmin-Pro? YES
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
===
We are new with iRedMail Pro, we have to move the mail store from /var/vmail to /home/vmail, is possible?

Thanks for support

Riccardo


iRedMail support for aarch64

$
0
0

Is there going to be a release for these processors ???  (aarch64)

Thank you.

can't access iredadmin page

$
0
0

======== Required information ====
- iRedMail version (check /etc/iredmail-release): 0.9.7 OPENLDAP edition.
- Linux/BSD distribution name and version: FreeBSD 11.1
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): Mysql
- Web server (Apache or Nginx): nginx
- Manage mail accounts with iRedAdmin-Pro? No
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====
Hello,

After a recent upgrade of the system I have lost access to the /ireadmin page. The server returns internal error.
This is in the log:

mail.server.com [pid: 56275|app: 0|req: 4/4] 192.168.1.63 () {52 vars in 867 bytes} [Wed Feb 14 21:10:06 2018] GET /iredadmin => generated 21 bytes in 68 msecs (HTTP/1.1 500) 2 headers in 155 bytes (2 switches on core 0)
Traceback (most recent call last):
  File "/usr/local/lib/python2.7/site-packages/web/application.py", line 239, in process
    return self.handle()
  File "/usr/local/lib/python2.7/site-packages/web/application.py", line 230, in handle
    return self._delegate(fn, self.fvars, args)
  File "/usr/local/lib/python2.7/site-packages/web/application.py", line 458, in _delegate
    mod = __import__(mod, None, None, [''])
  File "/usr/local/www/iRedAdmin-0.7/controllers/ldap/basic.py", line 11, in <module>
    from libs.ldaplib import auth, decorators, admin as adminlib, ldaputils
  File "/usr/local/www/iRedAdmin-0.7/libs/ldaplib/admin.py", line 7, in <module>
    from libs.ldaplib import core, attrs, ldaputils, iredldif, deltree, connUtils, decorators
  File "/usr/local/www/iRedAdmin-0.7/libs/ldaplib/deltree.py", line 5, in <module>
    class DeleteLeafs(ldap.async.AsyncSearchHandler):
  File "/usr/local/www/iRedAdmin-0.7/libs/ldaplib/deltree.py", line 11, in DeleteLeafs
    _entryResultTypes = ldap.async._entryResultTypes
AttributeError: 'module' object has no attribute '_entryResultTypes

What can be the problem?

Best regards,
Bruno

ref. security thread

$
0
0

==== Required information ====
- iRedMail version (check /etc/iredmail-release):
- Linux/BSD distribution name and version:
- Store mail accounts in which backend (LDAP/MySQL/PGSQL):
- Web server (Apache or Nginx):
- Manage mail accounts with iRedAdmin-Pro?
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

Hello
Ref:  https://forum.iredmail.org/topic13926.html

Don't seem to have these files... 
/etc/nginx/templates/roundcube.tmpl
/etc/nginx/templates/roundcube-subdomain.tmpl
/etc/nginx/sites-available/00-default.conf


That said, did locate these files but have doubt about their use in this directory and examples...
find / -iname "roundcube.tmpl"
/root/iRedMail-0.9.6/samples/nginx/templates/roundcube.tmpl

find / -iname "roundcube-subdomain.tmpl"
/root/iRedMail-0.9.6/samples/nginx/templates/roundcube-subdomain.tmpl

find / -iname "00-default.conf"
/root/iRedMail-0.9.6/samples/nginx/00-default.conf

All on a system that iRedMail team set up and upgraded several times...  Now what?

What do i need to send email from iReadMail

$
0
0

Hello All,

I'm very new on this email stuff and one of my supervisor ask me to set-up a new mail server. Our company already have an email system and would like to migrate to new one.

I have successfully installed iredmail on ubuntu 16.04 with FQDN mail.myacompany.com (this is the same as my previous server FQDN name). I user MariaDB as DB and RoundCube as web mail interface. I haven't change MX record from previous email server to this new one.

Question :

1. I cant send email from this server to gmail, what is my mistake ? Where do i can see the log of this email sending process ?
2. Do i need to set-up MX record for this server to work properly ?
3. Does this error have any correlation with my previous FQDN mail server name which exactly same as this new one ?


Thank you.

Fresh install - Unable to recieve emails from external address

$
0
0

==== Required information ====
- iRedMail version (check /etc/iredmail-release): 9.5.7
- Linux/BSD distribution name and version: Debian 8
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): MySQL
- Web server (Apache or Nginx): Apache
- Manage mail accounts with iRedAdmin-Pro? No
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

Hello,

Even with fresh install I am unable to recieve emails from external addresses that ARENT blacklisted by spam filters with error '554 5.7.1 Relay access denied'. Internal send/recieve works, external sending works as well, just not external recieve.

I believe problem is with SMTP authentication but I am unable to find any solution, from what I've read SMTP authentication should be enabled by default but it doesnt work when I try to telnet 25 on my domain with no auth showing up. I've tried NUMEROUS possible fixes and solutions to enable authentication but none seem to fix the issue with external emails, even when telnet is showing auth login.

Tried plenty of other things as well as changing mynetworks stuff but nothing helped at all. I am losing ideas of what might be wrong thats why I resort to this topic in hopes of finding a help here.

Please let me know if you want me to link any logs or confs. But as I said it doesnt work even on fresh install without any changes being done to any confs.

Tested also on Ubuntu 16 and same issue.

Recipient address rejected: User unknown in virtual mailbox table

$
0
0

Dear Support,

For the past few months I’m experiencing  a mail forwarding loop for the new created email ID’s. For reference kindly see the attached mail.
Your urgent response will be highly appreciated.

see the mail below.

inal-Recipient: rfc822; test@ccfzambia.com
Last-Attempt-Date: Sat, 10 Feb 2018 13:01:56 +0200 (CAT)
Action: failed
Status: 5.1.1
Diagnostic-Code: 550 5.1.1 <test@ccfzambia.com>: Recipient address rejected: User unknown in virtual mailbox table

in whitelist, but still marked as spam

$
0
0

==== Required information ====
- iRedMail version (check /etc/iredmail-release): v0.8.4
- Linux/BSD distribution name and version: Ubunutu 14.04
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): Mysql
- Web server (Apache or Nginx): Apache 2
- Manage mail accounts with iRedAdmin-Pro? No
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

I have email from a domain of mine that gets marked as spam. I added the domain to the whitelist, but still gets marked as spam. I recognize that both to/from are the same. How can I change?

* Establishing SQL connection.
* List all inbound whitelist for account: @.
@mydomain.com

To: root@mydomain.com
From: root@mydomain.com
Subject: ***SPAM*** Logwatch for website (Linux)

X-Virus-Scanned: Debian amavisd-new at strawberrybricks.com
X-Spam-Flag: YES
X-Spam-Score: 48.088
X-Spam-Level: ************************************************
X-Spam-Status: Yes, score=48.088 tagged_above=2 required=6.31
    tests=[BAYES_00=-1.9, LOCAL_RETURN=50, SPF_HELO_PASS=-0.001,
    SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01]
    autolearn=no autolearn_force=no

thank you


Problem with access to webmail after full disk

$
0
0

Hi
I have problem with access to web mail interface (roundcubemail)
first login page start OK when I write login account and click to send
I receive server HTTP ERROR

disk is now clean and  20Gb+ free space

in NGINX log is error

2018/02/15 16:34:52 [error] 5045#0: *48 FastCGI sent in stderr: "PHP message: PHP Fatal error:  Call to a member function kill() on a non-object in /var/www/roundcubemail/program/include/rcmail.php on line 774" while reading response header from upstream, client: xxx.248.xxx.36, server: _, request: "POST /mail/?_task=login HTTP/1.1", upstream: "fastcgi://unix:/var/run/php-fpm/php-fpm.socket:", host: "mail.koden.com", referrer: "https://mail.koden.com/mail/?_task=login"

Thank for help

Xakru

==== Required information ====
- iRedMail version (check /etc/iredmail-release): 0.9.5-1
- Linux/BSD distribution name and version: Centos 7
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): MySQL
- Web server (Apache or Nginx): Nginx
- Manage mail accounts with iRedAdmin-Pro? No
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

SQL Backup

$
0
0

==== Required information ====
- iRedMail version (check /etc/iredmail-release): 0.9.7 MARIADB edition
- Linux/BSD distribution name and version: Debian GNU/Linux 9.3 (stretch)
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): MySQL
- Web server (Apache or Nginx): Nginx
- Manage mail accounts with iRedAdmin-Pro? No
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

About backup_mysql.sh (16/09/2007), default install.

for databases we should backup there are:
export DATABASES=" iredadmin mysql vmail mysql vmail amavisd sogo iredadmin"

Above you can find some ripetitions (are they intentional?) and iredapd db seems missing.

Disabling domain verification messages that appear on Roundcube

$
0
0

==== Required information ====
- iRedMail version (check /etc/iredmail-release): 0.9.7 MARIADB edition
- Linux/BSD distribution name and version: Ubuntu 16.04.3 LTS
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): MySQL
- Web server (Apache or Nginx): Apache
- Manage mail accounts with iRedAdmin-Pro? No
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

When Mautic sends its batches of e-mails though the iRedMail server I built, and try to send to a recipient with an invalid domain in the address, the process hangs and I get a "[Swift_TransportException]" message like the one above:

[Swift_TransportException]                                                   
Expected response code 250 but got code "450", with message "450 4.1.2 <whatever.name@whateverdomain.comm>: Recipient address rejected: Domain not found"

Mautic never displays any kind of feedback on the shell if the PHP commands are ran manually, and the outputs on the log files are always completely blank, except in situations like these: invalid domain.

I believe it's caused by that same process that verifies the domain of the recipient in Roundcube: when you try to send an e-mail to a non existent domain or to an alias that doesn't exist in your own organization (the same domain as you) a warning is displayed in your screen and the message is not sent.

I think this verification is what is causing the problems with Mautic: maybe the warning messages on Roundcube come from Postfix or Dovecot, and aren't exclusive to the webmail's interface, and that feature of the mail server is trying to interact with a system that wasn't prepared for such situations (to receive a message intended to be displayed on the screen of the webmail or maybe other client).

I would like to be able to disable this verification, so the messages to be sent are accepted by my iRedMail server and I receive an "Undelivered Mail Returned to Sender" message, just like what is happening with other messages.

It's the first run, in Mautic, of a list with more than 65.000 recipients, that was never verified by the customer before: all those invalid recipients with invalid domains are going to be blocked and then corrected or deleted, so this behavior won't be a real issue with this customer anymore, but I want to be prepared for a future similar situation, and I'm very curious right now.

Thank you in advance.

How to change example.com/SOGo to use only example.com

$
0
0

i'm trying to change the Document root however i got forbidden error
may you please help how to change mydomain.com or to save my old users's experience mydomain.com/owa

Mail sending span like open relay.

$
0
0

==== Required information ====
- iRedMail version (check /etc/iredmail-release):
- Linux/BSD distribution name and version:
- Store mail accounts in which backend (LDAP/MySQL/PGSQL):
- Web server (Apache or Nginx):
- Manage mail accounts with iRedAdmin-Pro?
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
======== Required information ====
- iRedMail version (check /etc/iredmail-release): 0.9.6 (0.9.4 update to 0.96)
- Linux/BSD distribution name and version: Debian 8
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): MySQL
- Web server (Apache or Nginx): Apache
- Manage mail accounts with iRedAdmin-Pro? No
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====
Hello Guys, could you help me with some doubts?
My email server is sending spam for unknown domains.

Ex: email@unknown.com to email@unknown.com

And sending emails of all my email accounts (my domain) to other domain, sending alot of spam (200k mails per day).
I made the change of the passwords of all the emails, but it did not solve.
Anyone have any ideas?

My postconf -f:

postconf: warning: /etc/postfix/master.cf: undefined parameter: mua_sender_restrictions
postconf: warning: /etc/postfix/master.cf: undefined parameter: mua_client_restrictions
postconf: warning: /etc/postfix/master.cf: undefined parameter: mua_helo_restrictions
2bounce_notice_recipient = postmaster
access_map_defer_code = 450
access_map_reject_code = 554
address_verify_cache_cleanup_interval = 12h
address_verify_default_transport = $default_transport
address_verify_local_transport = $local_transport
address_verify_map = btree:$data_directory/verify_cache
address_verify_negative_cache = yes
address_verify_negative_expire_time = 3d
address_verify_negative_refresh_time = 3h
address_verify_poll_count = ${stress?1}${stress:3}
address_verify_poll_delay = 3s
address_verify_positive_expire_time = 31d
address_verify_positive_refresh_time = 7d
address_verify_relay_transport = $relay_transport
address_verify_relayhost = $relayhost
address_verify_sender = $double_bounce_sender
address_verify_sender_dependent_default_transport_maps =
    $sender_dependent_default_transport_maps
address_verify_sender_dependent_relayhost_maps =
    $sender_dependent_relayhost_maps
address_verify_sender_ttl = 0s
address_verify_service_name = verify
address_verify_transport_maps = $transport_maps
address_verify_virtual_transport = $virtual_transport
alias_database = hash:/etc/postfix/aliases
alias_maps = hash:/etc/postfix/aliases
allow_mail_to_commands = alias, forward
allow_mail_to_files = alias, forward
allow_min_user = no
allow_percent_hack = no
allow_untrusted_routing = no
alternate_config_directories =
always_add_missing_headers = no
always_bcc =
anvil_rate_time_unit = 60s
anvil_status_update_time = 600s
append_at_myorigin = yes
append_dot_mydomain = yes
application_event_drain_time = 100s
authorized_flush_users = static:anyone
authorized_mailq_users = static:anyone
authorized_submit_users = static:anyone
backwards_bounce_logfile_compatibility = yes
berkeley_db_create_buffer_size = 16777216
berkeley_db_read_buffer_size = 131072
best_mx_transport =
biff = no
body_checks = pcre:/etc/postfix/body_checks.pcre
body_checks_size_limit = 51200
bounce_notice_recipient = postmaster
bounce_queue_lifetime = 5d
bounce_service_name = bounce
bounce_size_limit = 50000
bounce_template_file =
broken_sasl_auth_clients = no
bsmtp_delivery_slot_cost = $default_delivery_slot_cost
bsmtp_delivery_slot_discount = $default_delivery_slot_discount
bsmtp_delivery_slot_loan = $default_delivery_slot_loan
bsmtp_destination_concurrency_failed_cohort_limit =
    $default_destination_concurrency_failed_cohort_limit
bsmtp_destination_concurrency_limit = $default_destination_concurrency_limit
bsmtp_destination_concurrency_negative_feedback =
    $default_destination_concurrency_negative_feedback
bsmtp_destination_concurrency_positive_feedback =
    $default_destination_concurrency_positive_feedback
bsmtp_destination_rate_delay = $default_destination_rate_delay
bsmtp_destination_recipient_limit = $default_destination_recipient_limit
bsmtp_extra_recipient_limit = $default_extra_recipient_limit
bsmtp_initial_destination_concurrency = $initial_destination_concurrency
bsmtp_minimum_delivery_slots = $default_minimum_delivery_slots
bsmtp_recipient_limit = $default_recipient_limit
bsmtp_recipient_refill_delay = $default_recipient_refill_delay
bsmtp_recipient_refill_limit = $default_recipient_refill_limit
bsmtp_time_limit = $command_time_limit
canonical_classes = envelope_sender, envelope_recipient, header_sender,
    header_recipient
canonical_maps =
cleanup_service_name = cleanup
command_directory = /usr/sbin
command_execution_directory =
command_expansion_filter =
    1234567890!@%-_=+:,./abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ
command_time_limit = 1000s
config_directory = /etc/postfix
connection_cache_protocol_timeout = 5s
connection_cache_service_name = scache
connection_cache_status_update_time = 600s
connection_cache_ttl_limit = 2s
content_filter = smtp-amavis:[127.0.0.1]:10024
cyrus_sasl_config_path =
daemon_directory = /usr/lib/postfix
daemon_table_open_error_is_fatal = no
daemon_timeout = 18000s
data_directory = /var/lib/postfix
debug_peer_level = 2
debug_peer_list =
debugger_command = PATH=/bin:/usr/bin:/usr/local/bin:/usr/X11R6/bin ddd
    $daemon_directory/$process_name $process_id & sleep 5
default_database_type = hash
default_delivery_slot_cost = 5
default_delivery_slot_discount = 50
default_delivery_slot_loan = 3
default_destination_concurrency_failed_cohort_limit = 1
default_destination_concurrency_limit = 20
default_destination_concurrency_negative_feedback = 1
default_destination_concurrency_positive_feedback = 1
default_destination_rate_delay = 0s
default_destination_recipient_limit = 50
default_extra_recipient_limit = 1000
default_filter_nexthop =
default_minimum_delivery_slots = 3
default_privs = nobody
default_process_limit = 100
default_rbl_reply = $rbl_code Service unavailable; $rbl_class [$rbl_what]
    blocked using $rbl_domain${rbl_reason?; $rbl_reason}
default_recipient_limit = 20000
default_recipient_refill_delay = 5s
default_recipient_refill_limit = 100
default_transport = smtp
default_verp_delimiters = +=
defer_code = 450
defer_service_name = defer
defer_transports =
delay_logging_resolution_limit = 2
delay_notice_recipient = postmaster
delay_warning_time = 0h
deliver_lock_attempts = 20
deliver_lock_delay = 1s
destination_concurrency_feedback_debug = no
detect_8bit_encoding_header = yes
disable_dns_lookups = no
disable_mime_input_processing = no
disable_mime_output_conversion = no
disable_verp_bounces = no
disable_vrfy_command = yes
dnsblog_reply_delay = 0s
dnsblog_service_name = dnsblog
dont_remove = 0
double_bounce_sender = double-bounce
dovecot_delivery_slot_cost = $default_delivery_slot_cost
dovecot_delivery_slot_discount = $default_delivery_slot_discount
dovecot_delivery_slot_loan = $default_delivery_slot_loan
dovecot_destination_concurrency_failed_cohort_limit =
    $default_destination_concurrency_failed_cohort_limit
dovecot_destination_concurrency_limit = $default_destination_concurrency_limit
dovecot_destination_concurrency_negative_feedback =
    $default_destination_concurrency_negative_feedback
dovecot_destination_concurrency_positive_feedback =
    $default_destination_concurrency_positive_feedback
dovecot_destination_rate_delay = $default_destination_rate_delay
dovecot_destination_recipient_limit = 1
dovecot_extra_recipient_limit = $default_extra_recipient_limit
dovecot_initial_destination_concurrency = $initial_destination_concurrency
dovecot_minimum_delivery_slots = $default_minimum_delivery_slots
dovecot_recipient_limit = $default_recipient_limit
dovecot_recipient_refill_delay = $default_recipient_refill_delay
dovecot_recipient_refill_limit = $default_recipient_refill_limit
dovecot_time_limit = $command_time_limit
duplicate_filter_limit = 1000
empty_address_default_transport_maps_lookup_key = <>
empty_address_recipient = MAILER-DAEMON
empty_address_relayhost_maps_lookup_key = <>
enable_long_queue_ids = no
enable_original_recipient = no
error_delivery_slot_cost = $default_delivery_slot_cost
error_delivery_slot_discount = $default_delivery_slot_discount
error_delivery_slot_loan = $default_delivery_slot_loan
error_destination_concurrency_failed_cohort_limit =
    $default_destination_concurrency_failed_cohort_limit
error_destination_concurrency_limit = $default_destination_concurrency_limit
error_destination_concurrency_negative_feedback =
    $default_destination_concurrency_negative_feedback
error_destination_concurrency_positive_feedback =
    $default_destination_concurrency_positive_feedback
error_destination_rate_delay = $default_destination_rate_delay
error_destination_recipient_limit = $default_destination_recipient_limit
error_extra_recipient_limit = $default_extra_recipient_limit
error_initial_destination_concurrency = $initial_destination_concurrency
error_minimum_delivery_slots = $default_minimum_delivery_slots
error_notice_recipient = postmaster
error_recipient_limit = $default_recipient_limit
error_recipient_refill_delay = $default_recipient_refill_delay
error_recipient_refill_limit = $default_recipient_refill_limit
error_service_name = error
execution_directory_expansion_filter =
    1234567890!@%-_=+:,./abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ
expand_owner_alias = no
export_environment = TZ MAIL_CONFIG LANG
fallback_transport =
fallback_transport_maps =
fast_flush_domains = $relay_domains
fast_flush_purge_time = 7d
fast_flush_refresh_time = 12h
fault_injection_code = 0
flush_service_name = flush
fork_attempts = 5
fork_delay = 1s
forward_expansion_filter =
    1234567890!@%-_=+:,./abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ
forward_path = $home/.forward${recipient_delimiter}${extension}, $home/.forward
frozen_delivered_to = yes
hash_queue_depth = 1
hash_queue_names = deferred, defer
header_address_token_limit = 10240
header_checks = pcre:/etc/postfix/header_checks
header_size_limit = 102400
helpful_warnings = yes
home_mailbox =
hopcount_limit = 50
html_directory = no
ifmail_delivery_slot_cost = $default_delivery_slot_cost
ifmail_delivery_slot_discount = $default_delivery_slot_discount
ifmail_delivery_slot_loan = $default_delivery_slot_loan
ifmail_destination_concurrency_failed_cohort_limit =
    $default_destination_concurrency_failed_cohort_limit
ifmail_destination_concurrency_limit = $default_destination_concurrency_limit
ifmail_destination_concurrency_negative_feedback =
    $default_destination_concurrency_negative_feedback
ifmail_destination_concurrency_positive_feedback =
    $default_destination_concurrency_positive_feedback
ifmail_destination_rate_delay = $default_destination_rate_delay
ifmail_destination_recipient_limit = $default_destination_recipient_limit
ifmail_extra_recipient_limit = $default_extra_recipient_limit
ifmail_initial_destination_concurrency = $initial_destination_concurrency
ifmail_minimum_delivery_slots = $default_minimum_delivery_slots
ifmail_recipient_limit = $default_recipient_limit
ifmail_recipient_refill_delay = $default_recipient_refill_delay
ifmail_recipient_refill_limit = $default_recipient_refill_limit
ifmail_time_limit = $command_time_limit
ignore_mx_lookup_error = no
import_environment = MAIL_CONFIG MAIL_DEBUG MAIL_LOGTAG TZ XAUTHORITY DISPLAY
    LANG=C
in_flow_delay = 1s
inet_interfaces = all
inet_protocols = ipv4
initial_destination_concurrency = 5
internal_mail_filter_classes =
invalid_hostname_reject_code = 501
ipc_idle = 5s
ipc_timeout = 3600s
ipc_ttl = 1000s
line_length_limit = 2048
lmdb_map_size = 16777216
lmtp_address_preference = any
lmtp_assume_final = no
lmtp_bind_address =
lmtp_bind_address6 =
lmtp_body_checks =
lmtp_cname_overrides_servername = no
lmtp_connect_timeout = 0s
lmtp_connection_cache_destinations =
lmtp_connection_cache_on_demand = yes
lmtp_connection_cache_time_limit = 2s
lmtp_connection_reuse_count_limit = 0
lmtp_connection_reuse_time_limit = 300s
lmtp_data_done_timeout = 600s
lmtp_data_init_timeout = 120s
lmtp_data_xfer_timeout = 180s
lmtp_defer_if_no_mx_address_found = no
lmtp_delivery_slot_cost = $default_delivery_slot_cost
lmtp_delivery_slot_discount = $default_delivery_slot_discount
lmtp_delivery_slot_loan = $default_delivery_slot_loan
lmtp_destination_concurrency_failed_cohort_limit =
    $default_destination_concurrency_failed_cohort_limit
lmtp_destination_concurrency_limit = $default_destination_concurrency_limit
lmtp_destination_concurrency_negative_feedback =
    $default_destination_concurrency_negative_feedback
lmtp_destination_concurrency_positive_feedback =
    $default_destination_concurrency_positive_feedback
lmtp_destination_rate_delay = $default_destination_rate_delay
lmtp_destination_recipient_limit = $default_destination_recipient_limit
lmtp_discard_lhlo_keyword_address_maps =
lmtp_discard_lhlo_keywords =
lmtp_dns_resolver_options =
lmtp_dns_support_level =
lmtp_enforce_tls = no
lmtp_extra_recipient_limit = $default_extra_recipient_limit
lmtp_generic_maps =
lmtp_header_checks =
lmtp_host_lookup = dns
lmtp_initial_destination_concurrency = $initial_destination_concurrency
lmtp_lhlo_name = $myhostname
lmtp_lhlo_timeout = 300s
lmtp_line_length_limit = 998
lmtp_mail_timeout = 300s
lmtp_mime_header_checks =
lmtp_minimum_delivery_slots = $default_minimum_delivery_slots
lmtp_mx_address_limit = 5
lmtp_mx_session_limit = 2
lmtp_nested_header_checks =
lmtp_per_record_deadline = no
lmtp_pix_workaround_delay_time = 10s
lmtp_pix_workaround_maps =
lmtp_pix_workaround_threshold_time = 500s
lmtp_pix_workarounds = disable_esmtp,delay_dotcrlf
lmtp_quit_timeout = 300s
lmtp_quote_rfc821_envelope = yes
lmtp_randomize_addresses = yes
lmtp_rcpt_timeout = 300s
lmtp_recipient_limit = $default_recipient_limit
lmtp_recipient_refill_delay = $default_recipient_refill_delay
lmtp_recipient_refill_limit = $default_recipient_refill_limit
lmtp_reply_filter =
lmtp_rset_timeout = 20s
lmtp_sasl_auth_cache_name =
lmtp_sasl_auth_cache_time = 90d
lmtp_sasl_auth_enable = no
lmtp_sasl_auth_soft_bounce = yes
lmtp_sasl_mechanism_filter =
lmtp_sasl_password_maps =
lmtp_sasl_path =
lmtp_sasl_security_options = noplaintext, noanonymous
lmtp_sasl_tls_security_options = $lmtp_sasl_security_options
lmtp_sasl_tls_verified_security_options = $lmtp_sasl_tls_security_options
lmtp_sasl_type = cyrus
lmtp_send_dummy_mail_auth = no
lmtp_send_xforward_command = no
lmtp_sender_dependent_authentication = no
lmtp_skip_5xx_greeting = yes
lmtp_skip_quit_response = no
lmtp_starttls_timeout = 300s
lmtp_tcp_port = 24
lmtp_tls_CAfile =
lmtp_tls_CApath =
lmtp_tls_block_early_mail_reply = no
lmtp_tls_cert_file =
lmtp_tls_ciphers = export
lmtp_tls_dcert_file =
lmtp_tls_dkey_file = $lmtp_tls_dcert_file
lmtp_tls_eccert_file =
lmtp_tls_eckey_file = $lmtp_tls_eccert_file
lmtp_tls_enforce_peername = yes
lmtp_tls_exclude_ciphers =
lmtp_tls_fingerprint_cert_match =
lmtp_tls_fingerprint_digest = md5
lmtp_tls_force_insecure_host_tlsa_lookup = no
lmtp_tls_key_file = $lmtp_tls_cert_file
lmtp_tls_loglevel = 0
lmtp_tls_mandatory_ciphers = medium
lmtp_tls_mandatory_exclude_ciphers =
lmtp_tls_mandatory_protocols = !SSLv2 !SSLv3
lmtp_tls_note_starttls_offer = no
lmtp_tls_per_site =
lmtp_tls_policy_maps =
lmtp_tls_protocols = !SSLv2 !SSLv3
lmtp_tls_scert_verifydepth = 9
lmtp_tls_secure_cert_match = nexthop
lmtp_tls_security_level =
lmtp_tls_session_cache_database =
lmtp_tls_session_cache_timeout = 3600s
lmtp_tls_trust_anchor_file =
lmtp_tls_verify_cert_match = hostname
lmtp_use_tls = no
lmtp_xforward_timeout = 300s
local_command_shell =
local_delivery_slot_cost = $default_delivery_slot_cost
local_delivery_slot_discount = $default_delivery_slot_discount
local_delivery_slot_loan = $default_delivery_slot_loan
local_destination_concurrency_failed_cohort_limit =
    $default_destination_concurrency_failed_cohort_limit
local_destination_concurrency_limit = 2
local_destination_concurrency_negative_feedback =
    $default_destination_concurrency_negative_feedback
local_destination_concurrency_positive_feedback =
    $default_destination_concurrency_positive_feedback
local_destination_rate_delay = $default_destination_rate_delay
local_destination_recipient_limit = 1
local_extra_recipient_limit = $default_extra_recipient_limit
local_header_rewrite_clients = permit_inet_interfaces
local_initial_destination_concurrency = $initial_destination_concurrency
local_minimum_delivery_slots = $default_minimum_delivery_slots
local_recipient_limit = $default_recipient_limit
local_recipient_maps = proxy:unix:passwd.byname $alias_maps
local_recipient_refill_delay = $default_recipient_refill_delay
local_recipient_refill_limit = $default_recipient_refill_limit
local_transport = local:$myhostname
luser_relay =
mail_name = Postfix
mail_owner = postfix
mail_release_date = 20141019
mail_spool_directory = /var/mail
mail_version = 2.11.3
mailbox_command =
mailbox_command_maps =
mailbox_delivery_lock = fcntl, dotlock
mailbox_size_limit = 157286400
mailbox_transport =
mailbox_transport_maps =
maildrop_delivery_slot_cost = $default_delivery_slot_cost
maildrop_delivery_slot_discount = $default_delivery_slot_discount
maildrop_delivery_slot_loan = $default_delivery_slot_loan
maildrop_destination_concurrency_failed_cohort_limit =
    $default_destination_concurrency_failed_cohort_limit
maildrop_destination_concurrency_limit = $default_destination_concurrency_limit
maildrop_destination_concurrency_negative_feedback =
    $default_destination_concurrency_negative_feedback
maildrop_destination_concurrency_positive_feedback =
    $default_destination_concurrency_positive_feedback
maildrop_destination_rate_delay = $default_destination_rate_delay
maildrop_destination_recipient_limit = $default_destination_recipient_limit
maildrop_extra_recipient_limit = $default_extra_recipient_limit
maildrop_initial_destination_concurrency = $initial_destination_concurrency
maildrop_minimum_delivery_slots = $default_minimum_delivery_slots
maildrop_recipient_limit = $default_recipient_limit
maildrop_recipient_refill_delay = $default_recipient_refill_delay
maildrop_recipient_refill_limit = $default_recipient_refill_limit
maildrop_time_limit = $command_time_limit
mailman_delivery_slot_cost = $default_delivery_slot_cost
mailman_delivery_slot_discount = $default_delivery_slot_discount
mailman_delivery_slot_loan = $default_delivery_slot_loan
mailman_destination_concurrency_failed_cohort_limit =
    $default_destination_concurrency_failed_cohort_limit
mailman_destination_concurrency_limit = $default_destination_concurrency_limit
mailman_destination_concurrency_negative_feedback =
    $default_destination_concurrency_negative_feedback
mailman_destination_concurrency_positive_feedback =
    $default_destination_concurrency_positive_feedback
mailman_destination_rate_delay = $default_destination_rate_delay
mailman_destination_recipient_limit = $default_destination_recipient_limit
mailman_extra_recipient_limit = $default_extra_recipient_limit
mailman_initial_destination_concurrency = $initial_destination_concurrency
mailman_minimum_delivery_slots = $default_minimum_delivery_slots
mailman_recipient_limit = $default_recipient_limit
mailman_recipient_refill_delay = $default_recipient_refill_delay
mailman_recipient_refill_limit = $default_recipient_refill_limit
mailman_time_limit = $command_time_limit
mailq_path = /usr/bin/mailq
manpage_directory = /usr/share/man
maps_rbl_domains =
maps_rbl_reject_code = 554
masquerade_classes = envelope_sender, header_sender, header_recipient
masquerade_domains =
masquerade_exceptions =
master_service_disable =
max_idle = 100s
max_use = 100
maximal_backoff_time = 4000s
maximal_queue_lifetime = 1d
message_reject_characters =
message_size_limit = 157286400
message_strip_characters =
milter_command_timeout = 30s
milter_connect_macros = j {daemon_name} v
milter_connect_timeout = 30s
milter_content_timeout = 300s
milter_data_macros = i
milter_default_action = tempfail
milter_end_of_data_macros = i
milter_end_of_header_macros = i
milter_header_checks =
milter_helo_macros = {tls_version} {cipher} {cipher_bits} {cert_subject}
    {cert_issuer}
milter_macro_daemon_name = $myhostname
milter_macro_v = $mail_name $mail_version
milter_mail_macros = i {auth_type} {auth_authen} {auth_author} {mail_addr}
    {mail_host} {mail_mailer}
milter_protocol = 6
milter_rcpt_macros = i {rcpt_addr} {rcpt_host} {rcpt_mailer}
milter_unknown_command_macros =
mime_boundary_length_limit = 2048
mime_header_checks = $header_checks
mime_nesting_limit = 100
minimal_backoff_time = 300s
multi_instance_directories =
multi_instance_enable = no
multi_instance_group =
multi_instance_name =
multi_instance_wrapper =
multi_recipient_bounce_reject_code = 550
mydestination = $myhostname, localhost, localhost.localdomain
mydomain = mail.macae.rj.gov.br
myhostname = mail.macae.rj.gov.br
mynetworks = 127.0.0.1, 177.223.198.246
mynetworks_style = subnet
myorigin = MACAEMAIL01
nested_header_checks = $header_checks
newaliases_path = /usr/bin/newaliases
non_fqdn_reject_code = 504
non_smtpd_milters =
notify_classes = resource, software
owner_request_special = yes
parent_domain_matches_subdomains =
    debug_peer_list,fast_flush_domains,mynetworks,permit_mx_backup_networks,qmqpd_authorized_clients,relay_domains,smtpd_access_maps
permit_mx_backup_networks =
pickup_service_name = pickup
plaintext_reject_code = 450
policyd-spf_time_limit = 3600
postmulti_control_commands = reload flush
postmulti_start_commands = start
postmulti_stop_commands = stop abort drain quick-stop
postscreen_access_list = permit_mynetworks,
    cidr:/etc/postfix/postscreen_access.cidr
postscreen_bare_newline_action = ignore
postscreen_bare_newline_enable = no
postscreen_bare_newline_ttl = 30d
postscreen_blacklist_action = enforce
postscreen_cache_cleanup_interval = 12h
postscreen_cache_map = btree:$data_directory/postscreen_cache
postscreen_cache_retention_time = 7d
postscreen_client_connection_count_limit = $smtpd_client_connection_count_limit
postscreen_command_count_limit = 20
postscreen_command_filter =
postscreen_command_time_limit = ${stress?10}${stress:300}s
postscreen_disable_vrfy_command = $disable_vrfy_command
postscreen_discard_ehlo_keyword_address_maps =
    $smtpd_discard_ehlo_keyword_address_maps
postscreen_discard_ehlo_keywords = $smtpd_discard_ehlo_keywords
postscreen_dnsbl_action = enforce
postscreen_dnsbl_reply_map = texthash:/etc/postfix/postscreen_dnsbl_reply
postscreen_dnsbl_sites = zen.spamhaus.org=127.0.0.[2..11]*3
    b.barracudacentral.org=127.0.0.2*2
postscreen_dnsbl_threshold = 2
postscreen_dnsbl_ttl = 1h
postscreen_dnsbl_whitelist_threshold = -2
postscreen_enforce_tls = $smtpd_enforce_tls
postscreen_expansion_filter = $smtpd_expansion_filter
postscreen_forbidden_commands = $smtpd_forbidden_commands
postscreen_greet_action = enforce
postscreen_greet_banner = $smtpd_banner
postscreen_greet_ttl = 1d
postscreen_greet_wait = ${stress?2}${stress:6}s
postscreen_helo_required = $smtpd_helo_required
postscreen_non_smtp_command_action = drop
postscreen_non_smtp_command_enable = no
postscreen_non_smtp_command_ttl = 30d
postscreen_pipelining_action = enforce
postscreen_pipelining_enable = no
postscreen_pipelining_ttl = 30d
postscreen_post_queue_limit = $default_process_limit
postscreen_pre_queue_limit = $default_process_limit
postscreen_reject_footer = $smtpd_reject_footer
postscreen_tls_security_level = $smtpd_tls_security_level
postscreen_upstream_proxy_protocol =
postscreen_upstream_proxy_timeout = 5s
postscreen_use_tls = $smtpd_use_tls
postscreen_watchdog_timeout = 10s
postscreen_whitelist_interfaces = static:all
prepend_delivered_header = command, file, forward
process_id = 2844
process_id_directory = pid
process_name = postconf
propagate_unmatched_extensions = canonical, virtual
proxy_interfaces =
proxy_read_maps = $canonical_maps $lmtp_generic_maps $local_recipient_maps
    $mydestination $mynetworks $recipient_bcc_maps $recipient_canonical_maps
    $relay_domains $relay_recipient_maps $relocated_maps $sender_bcc_maps
    $sender_canonical_maps $smtp_generic_maps $smtpd_sender_login_maps
    $transport_maps $virtual_alias_domains $virtual_alias_maps
    $virtual_mailbox_domains $virtual_mailbox_maps $smtpd_sender_restrictions
    $sender_dependent_relayhost_maps
proxy_write_maps = $smtp_sasl_auth_cache_name $lmtp_sasl_auth_cache_name
    $address_verify_map $postscreen_cache_map
proxymap_service_name = proxymap
proxywrite_service_name = proxywrite
qmgr_clog_warn_time = 300s
qmgr_daemon_timeout = 1000s
qmgr_fudge_factor = 100
qmgr_ipc_timeout = 60s
qmgr_message_active_limit = 20000
qmgr_message_recipient_limit = 20000
qmgr_message_recipient_minimum = 10
qmqpd_authorized_clients =
qmqpd_client_port_logging = no
qmqpd_error_delay = 1s
qmqpd_timeout = 300s
queue_directory = /var/spool/postfix
queue_file_attribute_count_limit = 100
queue_minfree = 0
queue_run_delay = 300s
queue_service_name = qmgr
rbl_reply_maps =
readme_directory = /usr/share/doc/postfix
receive_override_options =
recipient_bcc_maps = proxy:mysql:/etc/postfix/mysql/recipient_bcc_maps_user.cf
    proxy:mysql:/etc/postfix/mysql/recipient_bcc_maps_domain.cf
recipient_canonical_classes = envelope_recipient, header_recipient
recipient_canonical_maps =
recipient_delimiter = +
reject_code = 554
reject_tempfail_action = defer_if_permit
relay_clientcerts =
relay_delivery_slot_cost = $default_delivery_slot_cost
relay_delivery_slot_discount = $default_delivery_slot_discount
relay_delivery_slot_loan = $default_delivery_slot_loan
relay_destination_concurrency_failed_cohort_limit =
    $default_destination_concurrency_failed_cohort_limit
relay_destination_concurrency_limit = $default_destination_concurrency_limit
relay_destination_concurrency_negative_feedback =
    $default_destination_concurrency_negative_feedback
relay_destination_concurrency_positive_feedback =
    $default_destination_concurrency_positive_feedback
relay_destination_rate_delay = $default_destination_rate_delay
relay_destination_recipient_limit = $default_destination_recipient_limit
relay_domains = $mydestination proxy:mysql:/etc/postfix/mysql/relay_domains.cf
relay_domains_reject_code = 554
relay_extra_recipient_limit = $default_extra_recipient_limit
relay_initial_destination_concurrency = $initial_destination_concurrency
relay_minimum_delivery_slots = $default_minimum_delivery_slots
relay_recipient_limit = $default_recipient_limit
relay_recipient_maps =
relay_recipient_refill_delay = $default_recipient_refill_delay
relay_recipient_refill_limit = $default_recipient_refill_limit
relay_transport = relay
relayhost =
relocated_maps =
remote_header_rewrite_domain =
require_home_directory = no
reset_owner_alias = no
resolve_dequoted_address = yes
resolve_null_domain = no
resolve_numeric_domain = no
retry_delivery_slot_cost = $default_delivery_slot_cost
retry_delivery_slot_discount = $default_delivery_slot_discount
retry_delivery_slot_loan = $default_delivery_slot_loan
retry_destination_concurrency_failed_cohort_limit =
    $default_destination_concurrency_failed_cohort_limit
retry_destination_concurrency_limit = $default_destination_concurrency_limit
retry_destination_concurrency_negative_feedback =
    $default_destination_concurrency_negative_feedback
retry_destination_concurrency_positive_feedback =
    $default_destination_concurrency_positive_feedback
retry_destination_rate_delay = $default_destination_rate_delay
retry_destination_recipient_limit = $default_destination_recipient_limit
retry_extra_recipient_limit = $default_extra_recipient_limit
retry_initial_destination_concurrency = $initial_destination_concurrency
retry_minimum_delivery_slots = $default_minimum_delivery_slots
retry_recipient_limit = $default_recipient_limit
retry_recipient_refill_delay = $default_recipient_refill_delay
retry_recipient_refill_limit = $default_recipient_refill_limit
rewrite_service_name = rewrite
sample_directory = /usr/share/doc/postfix/examples
scalemail-backend_delivery_slot_cost = $default_delivery_slot_cost
scalemail-backend_delivery_slot_discount = $default_delivery_slot_discount
scalemail-backend_delivery_slot_loan = $default_delivery_slot_loan
scalemail-backend_destination_concurrency_failed_cohort_limit =
    $default_destination_concurrency_failed_cohort_limit
scalemail-backend_destination_concurrency_limit =
    $default_destination_concurrency_limit
scalemail-backend_destination_concurrency_negative_feedback =
    $default_destination_concurrency_negative_feedback
scalemail-backend_destination_concurrency_positive_feedback =
    $default_destination_concurrency_positive_feedback
scalemail-backend_destination_rate_delay = $default_destination_rate_delay
scalemail-backend_destination_recipient_limit =
    $default_destination_recipient_limit
scalemail-backend_extra_recipient_limit = $default_extra_recipient_limit
scalemail-backend_initial_destination_concurrency =
    $initial_destination_concurrency
scalemail-backend_minimum_delivery_slots = $default_minimum_delivery_slots
scalemail-backend_recipient_limit = $default_recipient_limit
scalemail-backend_recipient_refill_delay = $default_recipient_refill_delay
scalemail-backend_recipient_refill_limit = $default_recipient_refill_limit
scalemail-backend_time_limit = $command_time_limit
send_cyrus_sasl_authzid = no
sender_bcc_maps = proxy:mysql:/etc/postfix/mysql/sender_bcc_maps_user.cf
    proxy:mysql:/etc/postfix/mysql/sender_bcc_maps_domain.cf
sender_canonical_classes = envelope_sender, header_sender
sender_canonical_maps =
sender_dependent_default_transport_maps =
sender_dependent_relayhost_maps =
    proxy:mysql:/etc/postfix/mysql/sender_dependent_relayhost_maps.cf
sendmail_fix_line_endings = always
sendmail_path = /usr/sbin/sendmail
service_throttle_time = 60s
setgid_group = postdrop
show_user_unknown_table_name = yes
showq_service_name = showq
smtp-amavis_delivery_slot_cost = $default_delivery_slot_cost
smtp-amavis_delivery_slot_discount = $default_delivery_slot_discount
smtp-amavis_delivery_slot_loan = $default_delivery_slot_loan
smtp-amavis_destination_concurrency_failed_cohort_limit =
    $default_destination_concurrency_failed_cohort_limit
smtp-amavis_destination_concurrency_limit =
    $default_destination_concurrency_limit
smtp-amavis_destination_concurrency_negative_feedback =
    $default_destination_concurrency_negative_feedback
smtp-amavis_destination_concurrency_positive_feedback =
    $default_destination_concurrency_positive_feedback
smtp-amavis_destination_rate_delay = $default_destination_rate_delay
smtp-amavis_destination_recipient_limit = 1
smtp-amavis_extra_recipient_limit = $default_extra_recipient_limit
smtp-amavis_initial_destination_concurrency = $initial_destination_concurrency
smtp-amavis_minimum_delivery_slots = $default_minimum_delivery_slots
smtp-amavis_recipient_limit = $default_recipient_limit
smtp-amavis_recipient_refill_delay = $default_recipient_refill_delay
smtp-amavis_recipient_refill_limit = $default_recipient_refill_limit
smtp_address_preference = any
smtp_always_send_ehlo = yes
smtp_bind_address =
smtp_bind_address6 =
smtp_body_checks =
smtp_cname_overrides_servername = no
smtp_connect_timeout = 30s
smtp_connection_cache_destinations =
smtp_connection_cache_on_demand = yes
smtp_connection_cache_time_limit = 2s
smtp_connection_reuse_count_limit = 0
smtp_connection_reuse_time_limit = 300s
smtp_data_done_timeout = 600s
smtp_data_init_timeout = 120s
smtp_data_xfer_timeout = 180s
smtp_defer_if_no_mx_address_found = no
smtp_delivery_slot_cost = $default_delivery_slot_cost
smtp_delivery_slot_discount = $default_delivery_slot_discount
smtp_delivery_slot_loan = $default_delivery_slot_loan
smtp_destination_concurrency_failed_cohort_limit =
    $default_destination_concurrency_failed_cohort_limit
smtp_destination_concurrency_limit = $default_destination_concurrency_limit
smtp_destination_concurrency_negative_feedback =
    $default_destination_concurrency_negative_feedback
smtp_destination_concurrency_positive_feedback =
    $default_destination_concurrency_positive_feedback
smtp_destination_rate_delay = $default_destination_rate_delay
smtp_destination_recipient_limit = $default_destination_recipient_limit
smtp_discard_ehlo_keyword_address_maps =
smtp_discard_ehlo_keywords =
smtp_dns_resolver_options =
smtp_dns_support_level =
smtp_enforce_tls = no
smtp_extra_recipient_limit = $default_extra_recipient_limit
smtp_fallback_relay = $fallback_relay
smtp_generic_maps =
smtp_header_checks =
smtp_helo_name = $myhostname
smtp_helo_timeout = 300s
smtp_host_lookup = dns
smtp_initial_destination_concurrency = $initial_destination_concurrency
smtp_line_length_limit = 998
smtp_mail_timeout = 300s
smtp_mime_header_checks =
smtp_minimum_delivery_slots = $default_minimum_delivery_slots
smtp_mx_address_limit = 5
smtp_mx_session_limit = 2
smtp_nested_header_checks =
smtp_never_send_ehlo = no
smtp_per_record_deadline = no
smtp_pix_workaround_delay_time = 10s
smtp_pix_workaround_maps =
smtp_pix_workaround_threshold_time = 500s
smtp_pix_workarounds = disable_esmtp,delay_dotcrlf
smtp_quit_timeout = 300s
smtp_quote_rfc821_envelope = yes
smtp_randomize_addresses = yes
smtp_rcpt_timeout = 300s
smtp_recipient_limit = $default_recipient_limit
smtp_recipient_refill_delay = $default_recipient_refill_delay
smtp_recipient_refill_limit = $default_recipient_refill_limit
smtp_reply_filter =
smtp_rset_timeout = 20s
smtp_sasl_auth_cache_name =
smtp_sasl_auth_cache_time = 90d
smtp_sasl_auth_enable = no
smtp_sasl_auth_soft_bounce = yes
smtp_sasl_mechanism_filter =
smtp_sasl_password_maps =
smtp_sasl_path =
smtp_sasl_security_options = noplaintext, noanonymous
smtp_sasl_tls_security_options = $smtp_sasl_security_options
smtp_sasl_tls_verified_security_options = $smtp_sasl_tls_security_options
smtp_sasl_type = cyrus
smtp_send_dummy_mail_auth = no
smtp_send_xforward_command = no
smtp_sender_dependent_authentication = no
smtp_skip_5xx_greeting = yes
smtp_skip_quit_response = yes
smtp_starttls_timeout = 300s
smtp_tls_CAfile = $smtpd_tls_CAfile
smtp_tls_CApath =
smtp_tls_block_early_mail_reply = no
smtp_tls_cert_file =
smtp_tls_ciphers = export
smtp_tls_dcert_file =
smtp_tls_dkey_file = $smtp_tls_dcert_file
smtp_tls_eccert_file =
smtp_tls_eckey_file = $smtp_tls_eccert_file
smtp_tls_enforce_peername = yes
smtp_tls_exclude_ciphers =
smtp_tls_fingerprint_cert_match =
smtp_tls_fingerprint_digest = md5
smtp_tls_force_insecure_host_tlsa_lookup = no
smtp_tls_key_file = $smtp_tls_cert_file
smtp_tls_loglevel = 1
smtp_tls_mandatory_ciphers = medium
smtp_tls_mandatory_exclude_ciphers =
smtp_tls_mandatory_protocols = !SSLv2 !SSLv3
smtp_tls_note_starttls_offer = yes
smtp_tls_per_site =
smtp_tls_policy_maps =
smtp_tls_protocols = !SSLv2 !SSLv3
smtp_tls_scert_verifydepth = 9
smtp_tls_secure_cert_match = nexthop, dot-nexthop
smtp_tls_security_level = may
smtp_tls_session_cache_database =
smtp_tls_session_cache_timeout = 3600s
smtp_tls_trust_anchor_file =
smtp_tls_verify_cert_match = hostname
smtp_use_tls = no
smtp_xforward_timeout = 300s
smtpd_authorized_verp_clients = $authorized_verp_clients
smtpd_authorized_xclient_hosts =
smtpd_authorized_xforward_hosts =
smtpd_banner = $myhostname ESMTP $mail_name
smtpd_client_connection_count_limit = 50
smtpd_client_connection_rate_limit = 0
smtpd_client_event_limit_exceptions =
    ${smtpd_client_connection_limit_exceptions:$mynetworks}
smtpd_client_message_rate_limit = 0
smtpd_client_new_tls_session_rate_limit = 0
smtpd_client_port_logging = no
smtpd_client_recipient_rate_limit = 0
smtpd_client_restrictions =
smtpd_command_filter =
smtpd_data_restrictions = reject_unauth_pipelining
smtpd_delay_open_until_valid_rcpt = yes
smtpd_delay_reject = yes
smtpd_discard_ehlo_keyword_address_maps =
smtpd_discard_ehlo_keywords =
smtpd_end_of_data_restrictions = check_policy_service inet:127.0.0.1:7777
smtpd_enforce_tls = no
smtpd_error_sleep_time = 1s
smtpd_etrn_restrictions =
smtpd_expansion_filter =
    \t\40!"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~
smtpd_forbidden_commands = CONNECT GET POST
smtpd_hard_error_limit = ${stress?1}${stress:20}
smtpd_helo_required = yes
smtpd_helo_restrictions = permit_mynetworks permit_sasl_authenticated
    reject_non_fqdn_helo_hostname reject_invalid_helo_hostname check_helo_access
    pcre:/etc/postfix/helo_access.pcre
smtpd_history_flush_threshold = 100
smtpd_junk_command_limit = ${stress?1}${stress:100}
smtpd_log_access_permit_actions =
smtpd_milters =
smtpd_noop_commands =
smtpd_null_access_lookup_key = <>
smtpd_peername_lookup = yes
smtpd_per_record_deadline = ${stress?yes}${stress:no}
smtpd_policy_service_max_idle = 300s
smtpd_policy_service_max_ttl = 1000s
smtpd_policy_service_timeout = 100s
smtpd_proxy_ehlo = $myhostname
smtpd_proxy_filter =
smtpd_proxy_options =
smtpd_proxy_timeout = 100s
smtpd_recipient_limit = 1000
smtpd_recipient_overshoot_limit = 1000
smtpd_recipient_restrictions = reject_unknown_recipient_domain
    reject_non_fqdn_recipient reject_unlisted_recipient check_client_access
    hash:/etc/postfix/rbl_blacklist check_policy_service inet:127.0.0.1:7777
    permit_mynetworks permit_sasl_authenticated reject_unauth_destination
    check_policy_service unix:private/policyd-spf reject_rbl_client
    zen.spamhaus.org=127.0.0.[2..11]
smtpd_reject_footer =
smtpd_reject_unlisted_recipient = yes
smtpd_reject_unlisted_sender = yes
smtpd_relay_restrictions = permit_mynetworks permit_sasl_authenticated
    defer_unauth_destination reject_unauth_destination
smtpd_restriction_classes =
smtpd_sasl_auth_enable = no
smtpd_sasl_authenticated_header = no
smtpd_sasl_exceptions_networks =
smtpd_sasl_local_domain =
smtpd_sasl_path = private/dovecot-auth
smtpd_sasl_security_options = noanonymous
smtpd_sasl_service = smtp
smtpd_sasl_tls_security_options = $smtpd_sasl_security_options
smtpd_sasl_type = dovecot
smtpd_sender_login_maps = proxy:mysql:/etc/postfix/mysql/sender_login_maps.cf
smtpd_sender_restrictions = reject_unknown_sender_domain reject_non_fqdn_sender
    reject_unlisted_sender permit_mynetworks permit_sasl_authenticated
    check_sender_access pcre:/etc/postfix/sender_access.pcre
smtpd_service_name = smtpd
smtpd_soft_error_limit = 10
smtpd_starttls_timeout = ${stress?10}${stress:300}s
smtpd_timeout = ${stress?10}${stress:300}s
smtpd_tls_CAfile = /etc/ssl/webmail/server.crt
smtpd_tls_CApath =
smtpd_tls_always_issue_session_ids = yes
smtpd_tls_ask_ccert = no
smtpd_tls_auth_only = no
smtpd_tls_ccert_verifydepth = 9
smtpd_tls_cert_file = /etc/ssl/webmail/server.crt
smtpd_tls_ciphers = export
smtpd_tls_dcert_file =
smtpd_tls_dh1024_param_file = /etc/ssl/dhparams.pem
smtpd_tls_dh512_param_file =
smtpd_tls_dkey_file = $smtpd_tls_dcert_file
smtpd_tls_eccert_file =
smtpd_tls_eckey_file = $smtpd_tls_eccert_file
smtpd_tls_eecdh_grade = strong
smtpd_tls_exclude_ciphers = aNULL, eNULL, EXPORT, DES, RC4, MD5, PSK, aECDH,
    EDH-DSS-DES-CBC3-SHA, EDH-RSA-DES-CDC3-SHA, KRB5-DE5, CBC3-SHA
smtpd_tls_fingerprint_digest = md5
smtpd_tls_key_file = /etc/ssl/webmail/server.key
smtpd_tls_loglevel = 1
smtpd_tls_mandatory_ciphers = medium
smtpd_tls_mandatory_exclude_ciphers =
smtpd_tls_mandatory_protocols = !SSLv2 !SSLv3
smtpd_tls_protocols = !SSLv2 !SSLv3
smtpd_tls_received_header = no
smtpd_tls_req_ccert = no
smtpd_tls_security_level = may
smtpd_tls_session_cache_database =
smtpd_tls_session_cache_timeout = 3600s
smtpd_tls_wrappermode = no
smtpd_upstream_proxy_protocol =
smtpd_upstream_proxy_timeout = 5s
smtpd_use_tls = no
soft_bounce = no
stale_lock_time = 500s
stress =
strict_7bit_headers = no
strict_8bitmime = no
strict_8bitmime_body = no
strict_mailbox_ownership = yes
strict_mime_encoding_domain = no
strict_rfc821_envelopes = no
sun_mailtool_compatibility = no
swap_bangpath = no
syslog_facility = mail
syslog_name =
    ${multi_instance_name:postfix}${multi_instance_name?$multi_instance_name}
tcp_windowsize = 0
tls_append_default_CA = no
tls_daemon_random_bytes = 32
tls_dane_digest_agility = on
tls_dane_digests = sha512 sha256
tls_dane_trust_anchor_digest_enable = yes
tls_disable_workarounds =
tls_eecdh_strong_curve = prime256v1
tls_eecdh_ultra_curve = secp384r1
tls_export_cipherlist = aNULL:-aNULL:ALL:+RC4:@STRENGTH
tls_high_cipherlist = aNULL:-aNULL:ALL:!EXPORT:!LOW:!MEDIUM:+RC4:@STRENGTH
tls_legacy_public_key_fingerprints = no
tls_low_cipherlist = aNULL:-aNULL:ALL:!EXPORT:+RC4:@STRENGTH
tls_medium_cipherlist = aNULL:-aNULL:ALL:!EXPORT:!LOW:+RC4:@STRENGTH
tls_null_cipherlist = eNULL:!aNULL
tls_preempt_cipherlist = no
tls_random_bytes = 32
tls_random_exchange_name = ${data_directory}/prng_exch
tls_random_prng_update_period = 3600s
tls_random_reseed_period = 3600s
tls_random_source = dev:/dev/urandom
tls_ssl_options =
tls_wildcard_matches_multiple_labels = yes
tlsmgr_service_name = tlsmgr
tlsproxy_enforce_tls = $smtpd_enforce_tls
tlsproxy_service_name = tlsproxy
tlsproxy_tls_CAfile = $smtpd_tls_CAfile
tlsproxy_tls_CApath = $smtpd_tls_CApath
tlsproxy_tls_always_issue_session_ids = $smtpd_tls_always_issue_session_ids
tlsproxy_tls_ask_ccert = $smtpd_tls_ask_ccert
tlsproxy_tls_ccert_verifydepth = $smtpd_tls_ccert_verifydepth
tlsproxy_tls_cert_file = $smtpd_tls_cert_file
tlsproxy_tls_ciphers = $smtpd_tls_ciphers
tlsproxy_tls_dcert_file = $smtpd_tls_dcert_file
tlsproxy_tls_dh1024_param_file = $smtpd_tls_dh1024_param_file
tlsproxy_tls_dh512_param_file = $smtpd_tls_dh512_param_file
tlsproxy_tls_dkey_file = $smtpd_tls_dkey_file
tlsproxy_tls_eccert_file = $smtpd_tls_eccert_file
tlsproxy_tls_eckey_file = $smtpd_tls_eckey_file
tlsproxy_tls_eecdh_grade = $smtpd_tls_eecdh_grade
tlsproxy_tls_exclude_ciphers = $smtpd_tls_exclude_ciphers
tlsproxy_tls_fingerprint_digest = $smtpd_tls_fingerprint_digest
tlsproxy_tls_key_file = $smtpd_tls_key_file
tlsproxy_tls_loglevel = $smtpd_tls_loglevel
tlsproxy_tls_mandatory_ciphers = $smtpd_tls_mandatory_ciphers
tlsproxy_tls_mandatory_exclude_ciphers = $smtpd_tls_mandatory_exclude_ciphers
tlsproxy_tls_mandatory_protocols = $smtpd_tls_mandatory_protocols
tlsproxy_tls_protocols = $smtpd_tls_protocols
tlsproxy_tls_req_ccert = $smtpd_tls_req_ccert
tlsproxy_tls_security_level = $smtpd_tls_security_level
tlsproxy_use_tls = $smtpd_use_tls
tlsproxy_watchdog_timeout = 10s
trace_service_name = trace
transport_maps = proxy:mysql:/etc/postfix/mysql/transport_maps_user.cf
    proxy:mysql:/etc/postfix/mysql/transport_maps_domain.cf
transport_retry_time = 60s
trigger_timeout = 10s
undisclosed_recipients_header =
unknown_address_reject_code = 450
unknown_address_tempfail_action = $reject_tempfail_action
unknown_client_reject_code = 450
unknown_helo_hostname_tempfail_action = $reject_tempfail_action
unknown_hostname_reject_code = 450
unknown_local_recipient_reject_code = 550
unknown_relay_recipient_reject_code = 550
unknown_virtual_alias_reject_code = 550
unknown_virtual_mailbox_reject_code = 550
unverified_recipient_defer_code = 450
unverified_recipient_reject_code = 450
unverified_recipient_reject_reason =
unverified_recipient_tempfail_action = $reject_tempfail_action
unverified_sender_defer_code = 450
unverified_sender_reject_code = 450
unverified_sender_reject_reason =
unverified_sender_tempfail_action = $reject_tempfail_action
uucp_delivery_slot_cost = $default_delivery_slot_cost
uucp_delivery_slot_discount = $default_delivery_slot_discount
uucp_delivery_slot_loan = $default_delivery_slot_loan
uucp_destination_concurrency_failed_cohort_limit =
    $default_destination_concurrency_failed_cohort_limit
uucp_destination_concurrency_limit = $default_destination_concurrency_limit
uucp_destination_concurrency_negative_feedback =
    $default_destination_concurrency_negative_feedback
uucp_destination_concurrency_positive_feedback =
    $default_destination_concurrency_positive_feedback
uucp_destination_rate_delay = $default_destination_rate_delay
uucp_destination_recipient_limit = $default_destination_recipient_limit
uucp_extra_recipient_limit = $default_extra_recipient_limit
uucp_initial_destination_concurrency = $initial_destination_concurrency
uucp_minimum_delivery_slots = $default_minimum_delivery_slots
uucp_recipient_limit = $default_recipient_limit
uucp_recipient_refill_delay = $default_recipient_refill_delay
uucp_recipient_refill_limit = $default_recipient_refill_limit
uucp_time_limit = $command_time_limit
verp_delimiter_filter = -=+
virtual_alias_domains =
virtual_alias_expansion_limit = 1000
virtual_alias_maps = proxy:mysql:/etc/postfix/mysql/virtual_alias_maps.cf
    proxy:mysql:/etc/postfix/mysql/domain_alias_maps.cf
    proxy:mysql:/etc/postfix/mysql/catchall_maps.cf
    proxy:mysql:/etc/postfix/mysql/domain_alias_catchall_maps.cf
virtual_alias_recursion_limit = 1000
virtual_delivery_slot_cost = $default_delivery_slot_cost
virtual_delivery_slot_discount = $default_delivery_slot_discount
virtual_delivery_slot_loan = $default_delivery_slot_loan
virtual_destination_concurrency_failed_cohort_limit =
    $default_destination_concurrency_failed_cohort_limit
virtual_destination_concurrency_limit = $default_destination_concurrency_limit
virtual_destination_concurrency_negative_feedback =
    $default_destination_concurrency_negative_feedback
virtual_destination_concurrency_positive_feedback =
    $default_destination_concurrency_positive_feedback
virtual_destination_rate_delay = $default_destination_rate_delay
virtual_destination_recipient_limit = $default_destination_recipient_limit
virtual_extra_recipient_limit = $default_extra_recipient_limit
virtual_gid_maps = static:2000
virtual_initial_destination_concurrency = $initial_destination_concurrency
virtual_mailbox_base = /var/vmail
virtual_mailbox_domains =
    proxy:mysql:/etc/postfix/mysql/virtual_mailbox_domains.cf
virtual_mailbox_limit = 51200000
virtual_mailbox_lock = fcntl, dotlock
virtual_mailbox_maps = proxy:mysql:/etc/postfix/mysql/virtual_mailbox_maps.cf
virtual_minimum_delivery_slots = $default_minimum_delivery_slots
virtual_minimum_uid = 2000
virtual_recipient_limit = $default_recipient_limit
virtual_recipient_refill_delay = $default_recipient_refill_delay
virtual_recipient_refill_limit = $default_recipient_refill_limit
virtual_transport = dovecot
virtual_uid_maps = static:2000

Adding a website leads to non reachable SOGo and iredadmin (Nginx)

$
0
0

======== Required information ====
- iRedMail version (check /etc/iredmail-release): 0.9.7 MARIADB edition.
- Linux/BSD distribution name and version: Ubuntu 16:04
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): MySQL
- Web server (Apache or Nginx): Nginx
- Manage mail accounts with iRedAdmin-Pro? no
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====
I have installed iredmail and everything works fine.
However, as soon as I add my welcome website to Nginx, I will only be redirected to it.

I would like to have example.com call my welcome page and SOGo and iredadmin be reachable under mx.example.com.

nginx/site-enabled/welcome.conf:
server {
    listen 80;
    listen [::]:80;
    server_name example.com;
    return 301 https://$server_name$request_uri;
}
server {
    listen 443 ssl http2;
    listen [::]:443 ssl http2;
    server_name example.com;

    ssl_certificate /etc/letsencrypt/live/example.com/fullchain.pem;
    ssl_certificate_key /etc/letsencrypt/live/example.com/privkey.pem;

    root /var/www/welcome;
    index index.html;
}

I've been trying to edit 00-default.conf and 00-default-sll.conf too something like this:
server {
    server_name mx.example.com;
    include /etc/nginx/sites-conf.d/default/*.conf;
}


But as said, if i enable welcome.conf i can't reach SOGo or iredadmin.


Thanks for your Help!

Randomly Connection Timeout via Thunderbird

$
0
0

==== Required information ====
- iRedMail version (check /etc/iredmail-release): 0.9.7 MARIADB edition.
- Linux/BSD distribution name and version: Centos 7
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): MySQL / MariaDB
- Web server (Apache or Nginx): Apache
- Manage mail accounts with iRedAdmin-Pro? No
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

Good day everyone. I have 5 domains on a single VPS, on my mozilla thunderbird i have 1 account each.
Randomly i see thunderbird error msg saying @maildomain3.com timeout
or
sometime when i send email it give connection error, but if i try again after 2 secs it work.

Same the timeout error after a while resolved alone.
I set thinderbird to check all my 5 domains every minute all IMAP/ SMTP

and during a day it show this error maybe 3 or 4 times only.
How can i slove this plz?


Undelivered mail returned to sender

$
0
0

==== Required information ====
- iRedMail version (check /etc/iredmail-release): 0.9.7
- Linux/BSD distribution name and version: Ubuntu 16.04
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): pgsql
- Web server (Apache or Nginx): Apache
- Manage mail accounts with iRedAdmin-Pro? No
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====
When logged into roundcube with postmaster account, I see mailer daemon notifications by which mail could not be send to root@[myhostname]. This is good behaviour because I have my emails have the form [name]@[domain-name]. Is it possible to configure that mails should be sent to root@[domain-name]

Retry timeout exceeded

$
0
0

==== Required information ====
- iRedMail version (check /etc/iredmail-release):
- Linux/BSD distribution name and version:
- Store mail accounts in which backend (LDAP/MySQL/PGSQL):
- Web server (Apache or Nginx):
- Manage mail accounts with iRedAdmin-Pro?
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

Hi,

I have a couple of partners trying to send me email, but they both get their mails bounced back with the same message:

Action: failed
Final-Recipient: rfc822;me@mydomain.com
Status: 5.0.0
Remote-MTA: dns; mail.mydomain.com
Diagnostic-Code: smtp; 451 4.7.1 <me@mydomain.com>: Recipient address rejected: Intentional policy rejection, please try again later: retry timeout exceeded

Should they check anything on their side to make sure they pass the graylist?

451 4.3.0 temporary lookup failure

$
0
0

======== Required information ====
- iRedMail version (check /etc/iredmail-release): 0.9.6 MySQL Edition
- Linux/BSD distribution name and version: Ubuntu 16.04
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): MySQL
- Web server (Apache or Nginx): Apache
- Manage mail accounts with iRedAdmin-Pro? no
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

Feb 19 18:10:05 rmail postfix/smtpd[13357]: NOQUEUE: reject: RCPT from _gateway_: 451 4.3.0 <Marina.Portnova@myexternaldomain>: Temporary lookup failure; from=<Marina.Portnova@myexternaldomain> to=<kaluga@mydomain> proto=ESMTP helo=<major-express.ru>
Feb 19 18:10:13 rmail postfix/trivial-rewrite[18346]: warning: proxy:mysql:/etc/postfix/mysql/transport_maps_user.cf lookup error for "еzra@shouldexist.org"
Feb 19 18:10:13 rmail postfix/trivial-rewrite[18346]: warning: transport_maps lookup failure
Feb 19 18:10:13 rmail postfix/trivial-rewrite[18346]: warning: proxy:mysql:/etc/postfix/mysql/transport_maps_user.cf lookup error for "tomsk@mydomain"
Feb 19 18:10:13 rmail postfix/trivial-rewrite[18346]: warning: transport_maps lookup failure
Feb 19 18:10:13 rmail postfix/smtpd[18124]: NOQUEUE: reject: RCPT from _gateway_: 451 4.3.0 <еzra@shouldexist.org>: Temporary lookup failure; from=<еzra@shouldexist.org> to=<tomsk@ mydomain > proto=ESMTP helo=<shouldexist.org>
Feb 19 18:10:17 rmail postfix/trivial-rewrite[18346]: warning: proxy:mysql:/etc/postfix/mysql/transport_maps_user.cf lookup error for "donald@somany.org"
Feb 19 18:10:17 rmail postfix/trivial-rewrite[18346]: warning: transport_maps lookup failure
Feb 19 18:10:17 rmail postfix/trivial-rewrite[18346]: warning: proxy:mysql:/etc/postfix/mysql/transport_maps_user.cf lookup error for "tomsk@ mydomain "
Feb 19 18:10:17 rmail postfix/trivial-rewrite[18346]: warning: transport_maps lookup failure
Feb 19 18:10:17 rmail postfix/smtpd[27467]: NOQUEUE: reject: RCPT from _gateway_: 451 4.3.0 <donald@somany.org>: Temporary lookup failure; from=<donald@somany.org> to=<tomsk@ mydomain > proto=ESMTP helo=<somany.org>
Feb 19 18:22:06 rmail postfix/trivial-rewrite[1829]: warning: proxy:mysql:/etc/postfix/mysql/transport_maps_user.cf lookup error for "еzra@goetiamagick.org"
Feb 19 18:22:06 rmail postfix/trivial-rewrite[1829]: warning: transport_maps lookup failure
Feb 19 18:22:06 rmail postfix/trivial-rewrite[1829]: warning: proxy:mysql:/etc/postfix/mysql/transport_maps_user.cf lookup error for "omsk@ mydomain "
Feb 19 18:22:06 rmail postfix/trivial-rewrite[1829]: warning: transport_maps lookup failure
Feb 19 18:22:06 rmail postfix/smtpd[1827]: NOQUEUE: reject: RCPT from _gateway_: 451 4.3.0 <еzra@goetiamagick.org>: Temporary lookup failure; from=<еzra@goetiamagick.org> to=<omsk@ mydomain > proto=ESMTP helo=<goetiamagick.org>
Feb 19 18:31:38 rmail postfix/smtpd[1827]: NOQUEUE: reject: RCPT from _gateway_: 451 4.3.0 <omsk@ mydomain >: Temporary lookup failure; from=<isaac@getsocialmedia.org> to=<omsk@ mydomain > proto=ESMTP helo=<getsocialmedia.org>

also i get

Feb 19 18:43:19 rmail postfix/proxymap[2578]: warning: mysql query failed: Illegal mix of collations (latin1_swedish_ci,IMPLICIT) and (utf8_general_ci,COERCIBLE) for operation '='

===

Hello,

All of a sudden users started to claim for error 4.3.0 temporary lookup failure when sending emails. Also I think they not recieving some emails. I've tried to search via forum and internet, but it only confused me.
For the illegal mix of collations - my sql was set up to use UTF8 and all bases are using UTF8, i dont remember if I saw that error when done configuring.
Server was updated in october from 0.9.5 to 0.9.6, but worked fine up to last week with no issues.
Will appreciate any help on finding a direction to fix.

Best regards,
Anton.

DKIM on relay server

$
0
0

==== Required information ====
- iRedMail version (check /etc/iredmail-release): 0.9.7
- Linux/BSD distribution name and version: Debian 9
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): MySQL
- Web server (Apache or Nginx): Nginx
- Manage mail accounts with iRedAdmin-Pro?
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

Hi,
We've implemented DKIM on our main system and works nice. But now I want to implement it aswell on our relay server, which is a seperate mail server for our servers to send mail.

So today, I already have a record for dkim._domainkey.mydomain.com which has an public key in it. To also allow the relay server, which has a different private key. Could I set the name for the relay record to relay._domainkey.mydomain.com in amavisd conf? And then add that record to the DNS with it's public key?

Best Regards
Radapompa

AMAVIS - ERROR reading new DKIM keys

$
0
0

======== Required information ====
- iRedMail version 0.9.7
- Linux/BSD distribution name and version:  Ubuntu 16.04
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): MySQL
- Web server (Apache or Nginx): Nginx
- Manage mail accounts with iRedAdmin-Pro? no
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

Following tutorial to create a new dkim key for a second domain in amavis: https://docs.iredmail.org/sign.dkim.sig … il-domains

Trying to add new DKIM domain in amavis.conf file according to manual. Key is generated, I can read it out with cat, changed user and group to amavis:amavis, set rights 0400

amavisd-new genrsa /var/lib/dkim/steyregg.com.pem 1024
chown amavis:amavis /var/lib/dkim/steyregg.com.pem
chmod 0400 /var/lib/dkim/steyregg.com.pem

Restarting amavis. Running

 amavisd-new showkeys

Error given: Error in config file "/etc/amavis/conf.d/50-user": Can't open PEM file var/lib/dkim/steyregg.com.pem: No such file or directory at /usr/sbin/amavisd-new line 636.

I have played around a lot with setting directory rights below to amavis, chmod others to +rx, nothing helps.
However the first dkim key - the one generated automatically during iredmail installation - works perfectly. Only the second one can't be read/whatever by amavis.

 cat /var/log/mail.log | grep amavis

This is Amavis with just the original DKIM key

Feb 19 22:10:22 server amavis[2065]: starting. /usr/sbin/amavisd-new at server.radhuber.eu amavisd-new-2.10.1 (20141025), Unicode aware, LC_ALL="C"
Feb 19 22:10:22 server amavis[2072]: Net::Server: Group Not Defined.  Defaulting to EGID '137 137'
Feb 19 22:10:22 server amavis[2072]: Net::Server: User Not Defined.  Defaulting to EUID '130'
Feb 19 22:10:22 server amavis[2072]: Module Amavis::Conf        2.404
Feb 19 22:10:22 server amavis[2072]: Module Archive::Zip        1.56
Feb 19 22:10:22 server amavis[2072]: Module BerkeleyDB          0.55
Feb 19 22:10:22 server amavis[2072]: Module Compress::Raw::Zlib 2.068
Feb 19 22:10:22 server amavis[2072]: Module Compress::Zlib      2.068
Feb 19 22:10:22 server amavis[2072]: Module Crypt::OpenSSL::RSA 0.28
Feb 19 22:10:22 server amavis[2072]: Module DBD::mysql          4.033
Feb 19 22:10:22 server amavis[2072]: Module DBI                 1.634
Feb 19 22:10:22 server amavis[2072]: Module DB_File             1.835
Feb 19 22:10:22 server amavis[2072]: Module Digest::MD5         2.54
Feb 19 22:10:22 server amavis[2072]: Module Digest::SHA         5.95
Feb 19 22:10:22 server amavis[2072]: Module Encode              2.72
Feb 19 22:10:22 server amavis[2072]: Module File::Temp          0.2304
Feb 19 22:10:22 server amavis[2072]: Module IO::Socket::INET6   2.72
Feb 19 22:10:22 server amavis[2072]: Module IO::Socket::IP      0.37
Feb 19 22:10:22 server amavis[2072]: Module MIME::Entity        5.507
Feb 19 22:10:22 server amavis[2072]: Module MIME::Parser        5.507
Feb 19 22:10:22 server amavis[2072]: Module MIME::Tools         5.507
Feb 19 22:10:22 server amavis[2072]: Module Mail::DKIM::Signer  0.4
Feb 19 22:10:22 server amavis[2072]: Module Mail::DKIM::Verifier 0.4
Feb 19 22:10:22 server amavis[2072]: Module Mail::Header        2.13
Feb 19 22:10:22 server amavis[2072]: Module Mail::Internet      2.13
Feb 19 22:10:22 server amavis[2072]: Module Mail::SPF           v2.009
Feb 19 22:10:22 server amavis[2072]: Module Mail::SpamAssassin  3.004001
Feb 19 22:10:22 server amavis[2072]: Module Net::DNS            0.81
Feb 19 22:10:22 server amavis[2072]: Module Net::LibIDN         0.12
Feb 19 22:10:22 server amavis[2072]: Module Net::Server         2.008
Feb 19 22:10:22 server amavis[2072]: Module NetAddr::IP         4.078
Feb 19 22:10:22 server amavis[2072]: Module Scalar::Util        1.41
Feb 19 22:10:22 server amavis[2072]: Module Socket              2.018
Feb 19 22:10:22 server amavis[2072]: Module Socket6             0.25
Feb 19 22:10:22 server amavis[2072]: Module Time::HiRes         1.9726
Feb 19 22:10:22 server amavis[2072]: Module URI                 1.71
Feb 19 22:10:22 server amavis[2072]: Module Unix::Syslog        1.1
Feb 19 22:10:22 server amavis[2072]: Amavis::ZMQ code     NOT loaded
Feb 19 22:10:22 server amavis[2072]: Amavis::DB code      loaded
Feb 19 22:10:22 server amavis[2072]: SQL base code        loaded
Feb 19 22:10:22 server amavis[2072]: SQL::Log code        loaded
Feb 19 22:10:22 server amavis[2072]: SQL::Quarantine      loaded
Feb 19 22:10:22 server amavis[2072]: Lookup::SQL code     loaded
Feb 19 22:10:22 server amavis[2072]: Lookup::LDAP code    NOT loaded
Feb 19 22:10:22 server amavis[2072]: AM.PDP-in proto code loaded
Feb 19 22:10:22 server amavis[2072]: SMTP-in proto code   loaded
Feb 19 22:10:22 server amavis[2072]: Courier proto code   NOT loaded
Feb 19 22:10:22 server amavis[2072]: SMTP-out proto code  loaded
Feb 19 22:10:22 server amavis[2072]: Pipe-out proto code  NOT loaded
Feb 19 22:10:22 server amavis[2072]: BSMTP-out proto code NOT loaded
Feb 19 22:10:22 server amavis[2072]: Local-out proto code NOT loaded
Feb 19 22:10:22 server amavis[2072]: OS_Fingerprint code  NOT loaded
Feb 19 22:10:22 server amavis[2072]: ANTI-VIRUS code      loaded
Feb 19 22:10:22 server amavis[2072]: ANTI-SPAM code       loaded
Feb 19 22:10:22 server amavis[2072]: ANTI-SPAM-EXT code   NOT loaded
Feb 19 22:10:22 server amavis[2072]: ANTI-SPAM-C code     NOT loaded
Feb 19 22:10:22 server amavis[2072]: ANTI-SPAM-SA code    loaded
Feb 19 22:10:22 server amavis[2072]: Unpackers code       loaded
Feb 19 22:10:22 server amavis[2072]: DKIM code            loaded
Feb 19 22:10:22 server amavis[2072]: Tools code           NOT loaded
Feb 19 22:10:22 server amavis[2072]: Found $file            at /usr/bin/file
Feb 19 22:10:22 server amavis[2072]: Found $altermime       at /usr/bin/altermime
Feb 19 22:10:22 server amavis[2072]: Internal decoder for .mail
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .Z    at /bin/uncompress
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .gz   at /bin/gzip -d
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .bz2  at /bin/bzip2 -d
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .xz   at /usr/bin/xz -dc
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .lzma at /usr/bin/xz -dc --format=lzma
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .lrz  at /usr/bin/lrzip -q -k -d -o -
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .lzo  at /usr/bin/lzop -d
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .lz4  at /usr/bin/lz4c -d
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .rpm  at /usr/bin/rpm2cpio
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .cpio at /bin/pax
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .tar  at /bin/pax
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .deb  at /usr/bin/ar
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .rar  at /usr/bin/unrar-free
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .arj  at /usr/bin/arj
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .arc  at /usr/bin/nomarch
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .zoo  at /usr/bin/zoo
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .doc  at /usr/bin/ripole
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .cab  at /usr/bin/cabextract
Feb 19 22:10:22 server amavis[2072]: Internal decoder for .tnef
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .zip  at /usr/bin/7za
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .kmz  at /usr/bin/7za
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .7z   at /usr/bin/7za
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .jar  at /usr/bin/7z
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .swf  at /usr/bin/7z
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .lha  at /usr/bin/7z
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .iso  at /usr/bin/7z
Feb 19 22:10:22 server amavis[2072]: Found decoder for    .exe  at /usr/bin/unrar-free; /usr/bin/arj
Feb 19 22:10:22 server amavis[2072]: No decoder for       .F
Feb 19 22:10:22 server amavis[2072]: Using primary internal av scanner code for ClamAV-clamd
Feb 19 22:10:22 server amavis[2072]: Found secondary av scanner ClamAV-clamscan at /usr/bin/clamscan
Feb 19 22:10:22 server amavis[2072]: Deleting db files __db.003,snmp.db,__db.001,__db.002,nanny.db in /var/lib/amavis/db
Feb 19 22:10:22 server amavis[2072]: Creating db in /var/lib/amavis/db/; BerkeleyDB 0.55, libdb 5.3

This is amavis with 2 dkim keys

Feb 19 21:43:50 server amavis[1338]: starting. /usr/sbin/amavisd-new at server.radhuber.eu amavisd-new-2.10.1 (20141025), Unicode aware, LC_ALL="C"
Feb 19 21:43:50 server amavis[1345]: (!)Net::Server: 2018/02/19-21:43:50 Can't connect to UNIX socket at file /var/lib/amavis/amavisd.sock [Permission denied]\n  at line 68 in file /usr/share/perl5/Net/Server/Proto/UNIX.pm

Viewing all 12101 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>