Quantcast
Channel: iRedMail — iRedMail Support
Viewing all 12123 articles
Browse latest View live

Helo command rejected: Host not found

$
0
0

==== REQUIRED BASIC INFO OF YOUR IREDMAIL SERVER ====
- iRedMail version (check /etc/iredmail-release): 0.9.7 Mysql Edition
- Deployed with iRedMail Easy or the downloadable installer? downloaded
- Linux/BSD distribution name and version: Ubuntu 16.04
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): Mysql
- Web server (Apache or Nginx): Apache
- Manage mail accounts with iRedAdmin-Pro? no
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

I know this was discussed already but non of the fixes I could find work.

So the problem is I receive messages from my bank but they are blocked. This is the log example:

Jun  6 08:00:56 mail postfix/smtpd[12828]: NOQUEUE: reject: RCPT from mail14.bbva.net[89.107.181.156]: 450 4.7.1 <lpmta188.igrupobbva>: Helo command rejected: Host not found; from=<infobbvaresponde@bbva.com> to=<kornel@core45.com> proto=ESMTP helo=<lpmta188.igrupobbva>

Jun  6 07:27:19 mail postfix/smtpd[12589]: NOQUEUE: reject: RCPT from mail22.bbva.net[89.107.181.58]: 450 4.7.1 <lpmta095.igrupobbva>: Helo command rejected: Host not found; from=<BBVA_banca_online@bbva.com> to=<GESTION@CLICATOUR.COM> proto=ESMTP helo=<lpmta095.igrupobbva>

As you can see the host change (one time is mail14.bbva.net then mail22.bbva.net and there is more of course)
Also change the false host in helo: lpmta188.igrupobbva or lpmta095.igrupobbva or whatever else....

As suggested here (https://docs.iredmail.org/errors.html#h … -not-found) I've put at the very beginning of the /etc/postfix/helo_access.pcre file as follow:

/^bbva\.com$/ OK
/^bbva\.net$/ OK
/^igrupobbva$/ OK
/^\.igrupobbva$/ OK

I have also added to whitelist this:
@.bbva.com
@.bbva.net
@.igrupobbva
using the command:
python wblist_admin.py --add --whitelist @.igrupobbva

I've checked my /etc/postfix/main.cf and it looks OK:

# HELO restriction
smtpd_helo_required = yes
smtpd_helo_restrictions =
    permit_mynetworks
    permit_sasl_authenticated
    check_helo_access pcre:/etc/postfix/helo_access.pcre
    reject_non_fqdn_helo_hostname
    reject_unknown_helo_hostname


Of course I restarted Postfix.
I even restarted the whole the whole server just in case.
Nothing works I still have those messages rejected. Please help.


Postfix Address Verification

$
0
0

==== REQUIRED BASIC INFO OF YOUR IREDMAIL SERVER ====
- iRedMail version (check /etc/iredmail-release):
0.9.9 MARIADB edition.

- Deployed with iRedMail Easy or the downloadable installer?
Installer

- Linux/BSD distribution name and version:
Debian 9.8

- Store mail accounts in which backend (LDAP/MySQL/PGSQL):
MySQL

- Web server (Apache or Nginx):
Nginx

- Manage mail accounts with iRedAdmin-Pro?
Yes

- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

We are using the server with local mailboxes but also as an outgoing relay server for some customers. So we activated postfix address verification for recipients (reject_unverified_recipient) in main.cf:

# Recipient restrictions
smtpd_recipient_restrictions =
    reject_non_fqdn_recipient
    reject_unlisted_recipient
    reject_unverified_recipient
    check_policy_service inet:127.0.0.1:7777
    permit_mynetworks
    permit_sasl_authenticated
    reject_unauth_destination

address_verify_map = btree:/var/lib/postfix/postfix_address_verify_map
unverified_recipient_reject_code = 550

This works fine for external mailhosts an even with the internal mailboxes. But if a mail is send to a local mail alias, the log states something like this:

Jun  6 11:45:32 mail postfix/smtpd[13998]: NOQUEUE: reject: RCPT from gw1.imagearts.de[80.82.217.141]: 450 4.1.1 <mailtest@lilabaer.de>: Recipient address rejected: unverified address: Address verification in progress; from=<nils.bernhardt@imagearts.de> to=<mailtest@lilabaer.de> proto=ESMTP helo=<gw1.imagearts.de>

The sending mail server keeps trying to deliver the mail, but iredmail always sais "Address verification in progress".

We also noticed that under normal cicumstances, nothing is logged in mail.log when a mail is delivered to a local alias.

Any ideas?

Delete incoming mails to certain address

$
0
0

==== REQUIRED BASIC INFO OF YOUR IREDMAIL SERVER ====
- iRedMail version (check /etc/iredmail-release): 0.9.8
- Deployed with iRedMail Easy or the downloadable installer? download
- Linux/BSD distribution name and version: ubuntu 16 lts latest
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): mysql
- Web server (Apache or Nginx): apache
- Manage mail accounts with iRedAdmin-Pro? no
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

Hello!

I've got one domain with catchall *@domain.com to 1@domain.com and 3 real imap addresses 1@domain.com 2@domain.com 3@domain.com

How can I delete automatically all incoming mails to 4@domain.com at server level ? And maybe add auto reply, But that's not important.

-ted

Logwatch postfix unmatched entries very long

$
0
0

==== REQUIRED BASIC INFO OF YOUR IREDMAIL SERVER ====
- iRedMail version (check /etc/iredmail-release): 0.9.9 MARIADB edition
- Deployed with iRedMail Easy or the downloadable installer? installer
- Linux/BSD distribution name and version: Debian 9.9.0
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): MySql (mariadb)
- Web server (Apache or Nginx): Nginx
- Manage mail accounts with iRedAdmin-Pro? No
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

Did a brand new installation, and from day 1 the unmatched entries part of Postfix section in the logwatch mail is very, very large.
And large is around 37000 lines yesterday. About half the number of total lines in the logfile.

Did another fresh install to test, and it looks like it has the same problem.

this is the top part of the unmatched section (e-mail addresses deleted for anonimity and ip-addresses changed to 0.0.0.0)

  **Unmatched Entries**
        1   Jun  5 22:59:38 mailserver02 postfix/cleanup[16628]: 45K1Pk0jR0z412v: message-id=<45K1Pk0jR0z412v@[deleted for anonimity]>
        1   Jun  5 17:57:27 mailserver02 postfix/qmgr[9454]: 45Jthx63scz40BG: removed
        1   Jun  5 20:06:13 mailserver02 postfix/pipe[6636]: 45JxYd1pRYz40bY: to=<[deleted for anonimity]>, relay=dovecot, delay=0.19, delays=0.05/0/0/0.14, dsn=2.0.0, status=sent (delivered via dovecot service)
        1   Jun  5 21:46:49 mailserver02 postfix/qmgr[9454]: 45Jznh033Dz40rW: removed
        1   Jun  5 17:07:52 mailserver02 postfix/cleanup[27216]: 45Jsbr6yQ9z4064: message-id=<45Jsbr6yQ9z4064@[deleted for anonimity]>
        1   Jun  5 15:25:16 mailserver02 postfix/qmgr[9454]: 45JqKP4HcLz3yl8: removed
        1   Jun  5 16:40:51 mailserver02 postfix/cleanup[20016]: 45Js0g6jXPz401H: message-id=<>
        1   Jun  5 15:06:33 mailserver02 postfix/cleanup[27679]: 45Jpvs5dMWz3ydV: message-id=<45Jpvs5dMWz3ydV@[deleted for anonimity]>
        1   Jun  5 12:30:10 mailserver02 postfix/qmgr[1929]: 45JlRQ3NY6z3yHk: from=<[deleted for anonimity]>, size=5496, nrcpt=1 (queue active)
        1   Jun  5 21:53:28 mailserver02 postfix/pipe[11911]: 45JzxN1Gghz40vj: to=<[deleted for anonimity]>, relay=dovecot, delay=0.27, delays=0.04/0.01/0/0.22, dsn=2.0.0, status=sent (delivered via dovecot service)
        1   Jun  5 22:14:39 mailserver02 postfix/cleanup[14366]: 45K0Pq6gdrz40yM: message-id=<45K0Pq6gdrz40yM@[deleted for anonimity]>
        1   Jun  5 13:31:04 mailserver02 postfix/smtpd[6116]: 45Jmnh4Wftz3y38: client=[deleted for anonimity][0.0.0.0]
        1   Jun  5 14:29:35 mailserver02 postfix/smtpd[19309]: 45Jp5C3bt8z3ybN: client=unknown[0.0.0.0]
        1   Jun  5 16:52:05 mailserver02 postfix/qmgr[9454]: 45JsFc6sq8z3yKb: removed
        1   Jun  5 21:47:22 mailserver02 postfix/qmgr[9454]: 45JzpL4Qlkz40rw: from=<[deleted for anonimity]>, size=8769, nrcpt=1 (queue active)
        1   Jun  5 15:50:52 mailserver02 postfix/qmgr[9454]: 45Jqtz5k4Tz3yqG: removed
        1   Jun  5 18:19:09 mailserver02 postfix/qmgr[9454]: 45JvB52B84z40G1: removed
        1   Jun  5 16:33:23 mailserver02 postfix/pipe[16637]: 45Jrr32hcTz3ywW: to=<[deleted for anonimity]>, relay=dovecot, delay=0.21, delays=0.06/0/0/0.14, dsn=2.0.0, status=sent (delivered via dovecot service)
        1   Jun  5 17:02:43 mailserver02 postfix/qmgr[9454]: 45JsTv0bVWz405S: removed
        1   Jun  5 16:12:20 mailserver02 postfix/smtpd[13281]: 45JrMm3rs8z3ysj: client=unknown[0.0.0.0]
        1   Jun  5 13:44:50 mailserver02 postfix/qmgr[4217]: 45Jn5Z5Cr1z3y4B: removed
        1   Jun  5 13:48:41 mailserver02 postfix/pipe[8561]: 45JnB06gdlz3y60: to=<[deleted for anonimity]>, relay=dovecot, delay=0.26, delays=0.04/0.01/0/0.21, dsn=2.0.0, status=sent (delivered via dovecot service)
        1   Jun  5 15:57:43 mailserver02 postfix/qmgr[9454]: 45Jr2t6NWBz3ygS: removed
        1   Jun  5 22:59:57 mailserver02 postfix/smtpd[16618]: 45K1Q56yghz412p: client=unknown[0.0.0.0]
        1   Jun  5 19:03:47 mailserver02 postfix/smtpd[2509]: 45Jw9b2F2gz40RQ: client=[deleted for anonimity][0.0.0.0]
        1   Jun  5 15:23:49 mailserver02 postfix/qmgr[9454]: 45JqHn5zTXz3yhN: from=<[deleted for anonimity]>, size=8731, nrcpt=1 (queue active)
        1   Jun  5 17:06:22 mailserver02 postfix/qmgr[9454]: 45JsZ60M80z403J: from=<[deleted for anonimity]>, size=6498, nrcpt=1 (queue active)
        1   Jun  5 21:48:52 mailserver02 postfix/qmgr[9454]: 45Jzr02n2Cz40sq: removed
        1   Jun  5 20:44:37 mailserver02 postfix/qmgr[9454]: 45JyPx6gkhz40kB: from=<[deleted for anonimity]>, size=3185, nrcpt=1 (queue active)
        1   Jun  5 16:07:37 mailserver02 postfix/qmgr[9454]: 45JrGJ6pZ2z3ysJ: removed
        1   Jun  5 22:59:06 mailserver02 postfix/qmgr[9454]: 45K1P619cWz4129: from=<[deleted for anonimity]>, size=8741, nrcpt=1 (queue active)
        1   Jun  5 15:47:24 mailserver02 postfix/smtpd[5624]: 45Jqq02gLPz3yns: client=unknown[0.0.0.0]
        1   Jun  5 22:14:56 mailserver02 postfix/cleanup[14367]: 45K0Q84LVlz40yc: message-id=<45K0Q84LVlz40yc@[deleted for anonimity]>
        1   Jun  5 21:43:32 mailserver02 postfix/qmgr[9454]: 45Jzjw4l77z40nx: from=<[deleted for anonimity]>, size=2721, nrcpt=1 (queue active)
        1   Jun  5 23:57:25 mailserver02 postfix/qmgr[9454]: 45K2hN6sp3z4160: from=<[deleted for anonimity]>, size=2721, nrcpt=1 (queue active)
        1   Jun  5 14:05:38 mailserver02 postfix/qmgr[9454]: 45JnYZ2W04z3yXb: from=<[deleted for anonimity]>, size=6471, nrcpt=1 (queue active)
        1   Jun  5 17:57:22 mailserver02 postfix/pipe[30110]: 45Jthx5RdXz40Bl: to=<[deleted for anonimity]>, relay=dovecot, delay=0.38, delays=0.04/0.06/0/0.28, dsn=2.0.0, status=sent (delivered via dovecot service)
        1   Jun  5 17:40:50 mailserver02 postfix/cleanup[28800]: 45JtKt1N5tz409Q: message-id=<45JtKt1N5tz409Q@[deleted for anonimity]>
        1   Jun  5 15:25:09 mailserver02 postfix/qmgr[9454]: 45JqKK00wqz3yky: removed
        1   Jun  5 21:48:58 mailserver02 postfix/qmgr[9454]: 45JzrB1K2lz40t3: removed
        1   Jun  5 18:40:39 mailserver02 postfix/cleanup[306]: 45Jvfv2GRzz40NR: message-id=<45Jvfv2GRzz40NR@[deleted for anonimity]>
        1   Jun  5 13:49:15 mailserver02 postfix/cleanup[8554]: 45JnBg2PhDz3y6x: message-id=<45JnBg2PhDz3y6x@[deleted for anonimity]>
        1   Jun  5 14:06:31 mailserver02 postfix/cleanup[13315]: 45JnZb4dRKz3yXs: message-id=<>
        1   Jun  5 18:18:40 mailserver02 postfix/cleanup[31523]: 45Jv9X4Xzgz40FT: message-id=<45Jv9X4Xzgz40FT@[deleted for anonimity]>
        1   Jun  5 16:32:32 mailserver02 postfix/qmgr[9454]: 45Jrq4058mz3ywc: from=<[deleted for anonimity]>, size=2721, nrcpt=1 (queue active)
        1   Jun  5 15:24:50 mailserver02 postfix/qmgr[9454]: 45JqJy29pvz3ykQ: from=<[deleted for anonimity]>, size=8855, nrcpt=1 (queue active)
        1   Jun  5 16:34:00 mailserver02 postfix/qmgr[9454]: 45Jrrd5fMbz3yyV: removed


Older installations never had this problem and i can't seem to figure out what this problem is.
Please assist me with this issue smile

Installation error:There were unauthenticated packages and -y was used

$
0
0

- iRedMail version:0.99
- Deployed with the downloadable installer
-Ubuntu 16.04
-Mysql
-Apache
-without IRedAdmin-Pro
-Error Msg:

WARNING: The following packages cannot be authenticated!
  php7.3-zip php7.3-json php7.3-opcache php7.3-fpm php7.3-readline
  php7.3-mysql php7.3-gd php7.3-xml php7.3-curl php7.3-mbstring php7.3-cli
  libapache2-mod-php7.3 php7.3-common libicu64 libmemcached11 libnorm1
  libpgm-5.2-0 libzmq5 php-cli php-curl php-fpm php-gd php7.3-intl php-intl
  php-json php-mbstring php7.0-common php7.0-mcrypt php-mysql php-xml
E: There were unauthenticated packages and -y was used without --allow-unauthenticated
<< ERROR >> Installation failed, please check the terminal output.
<< ERROR >> If you're not sure what the problem is, try to get help in iRedMail
<< ERROR >> forum: https://forum.iredmail.org/

Is anyone can help?
Thanks.

One IP for every Domain

$
0
0

==== REQUIRED BASIC INFO OF YOUR IREDMAIL SERVER ====
- iRedMail version (check /etc/iredmail-release): 0.9.8
- Deployed with iRedMail Easy or the downloadable installer? Downloadable Installer
- Linux/BSD distribution name and version: Debian 9
- Store mail accounts in which backend (LDAP/MySQL/PGSQL):  MySQL
- Web server (Apache or Nginx): Nginx
- Manage mail accounts with iRedAdmin-Pro? No
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

Fast cuestion ...
I have a Droplet in Digital Ocean and I can adquired aditionals IP for my VPS ... so ...
Is it possible to configure one IP for every domain I have configured in my IredMail Installation ???

Thanks for your help ! Regards from Malaga / Spain

Using Gmail as Client

$
0
0

==== REQUIRED BASIC INFO OF YOUR IREDMAIL SERVER ====
- iRedMail version (check /etc/iredmail-release):
- Deployed with iRedMail Easy or the downloadable installer?
- Linux/BSD distribution name and version:
- Store mail accounts in which backend (LDAP/MySQL/PGSQL):
- Web server (Apache or Nginx):
- Manage mail accounts with iRedAdmin-Pro?
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

I am facing trouble when using gmail as a client, I already tried using port 993 with SSL and port 143 with TLS and both gave me error. I was trying to add the account to gmail so I can send mail from it but haven't been able to add it to receive mail.

clamd wont start and use 100% cpu

$
0
0

==== REQUIRED BASIC INFO OF YOUR IREDMAIL SERVER ====
- iRedMail version (check /etc/iredmail-release): 0.9.9
- Deployed with iRedMail Easy or the downloadable installer? downloadable
- Linux/BSD distribution name and version: Centos 7.6
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): MariaDB
- Web server (Apache or Nginx): Nginx
- Manage mail accounts with iRedAdmin-Pro? no
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

Hey folks,

I've reinstalled my mail server from scratch a few days ago.

After the install i noticed that a process "clamd" ran by user "amavid" was taking 100% cpu. So i disabled amavis alltogether in postfix.

But i noticed today that since amavis also manages DKIM i can't disable it big_smile

So i enabled amavis back in postfix and found out that the problem was caused by the clamd@amavisd service.

If I run systemctl start clamd@amavisd the ssh command hangs forever, using another ssh windows systemctl status clamd@amavisd shows:

juin 07 08:00:34 smtp.ah1z.com systemd[1]: Starting Generic clamav scanner daemon...
juin 07 08:00:34 smtp.ah1z.com clamd[22034]: WARNING: Ignoring deprecated option AllowSupplementaryGroups at /etc/clamd.d/amavisd.conf:21
juin 07 08:00:34 smtp.ah1z.com clamd[22034]: Received 0 file descriptor(s) from systemd.
juin 07 08:00:34 smtp.ah1z.com clamd[22034]: clamd daemon 0.101.2 (OS: linux-gnu, ARCH: x86_64, CPU: x86_64)
juin 07 08:00:34 smtp.ah1z.com clamd[22034]: Running as user amavis (UID 990, GID 987)
juin 07 08:00:34 smtp.ah1z.com clamd[22034]: Log file size limited to 1048576 bytes.
juin 07 08:00:34 smtp.ah1z.com clamd[22034]: Reading databases from /var/lib/clamav
juin 07 08:00:34 smtp.ah1z.com clamd[22034]: Not loading PUA signatures.
juin 07 08:00:34 smtp.ah1z.com clamd[22034]: Bytecode: Security mode set to "TrustSigned".

While it's trying to start, it eats up all CPU as shown in "top":

  PID    USER      PR  NI    VIRT       RES       SHR   S    %CPU     %MEM     TIME+    COMMAND
22334  amavis    20   0  364672   254996   3240   R      96,4      13,5    0:24.45       clamd
Jun  7 08:00:34 smtp clamd[22034]: Received 0 file descriptor(s) from systemd.
Jun  7 08:00:34 smtp clamd[22034]: clamd daemon 0.101.2 (OS: linux-gnu, ARCH: x86_64, CPU: x86_64)
Jun  7 08:00:34 smtp clamd[22034]: Running as user amavis (UID 990, GID 987)
Jun  7 08:00:34 smtp clamd[22034]: Log file size limited to 1048576 bytes.
Jun  7 08:00:34 smtp clamd[22034]: Reading databases from /var/lib/clamav
Jun  7 08:00:34 smtp clamd[22034]: Not loading PUA signatures.
Jun  7 08:00:34 smtp clamd[22034]: Bytecode: Security mode set to "TrustSigned".
Jun  7 08:02:05 smtp clamd[22334]: Received 0 file descriptor(s) from systemd.
Jun  7 08:02:05 smtp clamd[22334]: clamd daemon 0.101.2 (OS: linux-gnu, ARCH: x86_64, CPU: x86_64)
Jun  7 08:02:05 smtp clamd[22334]: Running as user amavis (UID 990, GID 987)
Jun  7 08:02:05 smtp clamd[22334]: Log file size limited to 1048576 bytes.
Jun  7 08:02:05 smtp clamd[22334]: Reading databases from /var/lib/clamav
Jun  7 08:02:05 smtp clamd[22334]: Not loading PUA signatures.
Jun  7 08:02:05 smtp clamd[22334]: Bytecode: Security mode set to "TrustSigned".
Jun  7 08:03:35 smtp clamd[22606]: Received 0 file descriptor(s) from systemd.
Jun  7 08:03:35 smtp clamd[22606]: clamd daemon 0.101.2 (OS: linux-gnu, ARCH: x86_64, CPU: x86_64)
Jun  7 08:03:35 smtp clamd[22606]: Running as user amavis (UID 990, GID 987)
Jun  7 08:03:35 smtp clamd[22606]: Log file size limited to 1048576 bytes.
Jun  7 08:03:35 smtp clamd[22606]: Reading databases from /var/lib/clamav
Jun  7 08:03:35 smtp clamd[22606]: Not loading PUA signatures.
Jun  7 08:03:35 smtp clamd[22606]: Bytecode: Security mode set to "TrustSigned".
Jun  7 08:05:06 smtp clamd[23505]: Received 0 file descriptor(s) from systemd.
Jun  7 08:05:06 smtp clamd[23505]: clamd daemon 0.101.2 (OS: linux-gnu, ARCH: x86_64, CPU: x86_64)
Jun  7 08:05:06 smtp clamd[23505]: Running as user amavis (UID 990, GID 987)
Jun  7 08:05:06 smtp clamd[23505]: Log file size limited to 1048576 bytes.
Jun  7 08:05:06 smtp clamd[23505]: Reading databases from /var/lib/clamav
Jun  7 08:05:06 smtp clamd[23505]: Not loading PUA signatures.
Jun  7 08:05:06 smtp clamd[23505]: Bytecode: Security mode set to "TrustSigned".

I've noticed i had several lines of this kind in my maillog file:

Jun  7 06:36:44 smtp amavis[11355]: (11355-01) (!)connect to /var/run/clamd.amavisd/clamd.socket failed, attempt #1: Can't connect to a UNIX socket /var/run/clamd.amavisd/clamd.socket: Aucun fichier ou dossier de ce type
Jun  7 06:36:44 smtp amavis[11355]: (11355-01) (!)clamav-socket: All attempts (1) failed connecting to /var/run/clamd.amavisd/clamd.socket, retrying (2)
Jun  7 06:36:50 smtp amavis[11355]: (11355-01) (!)connect to /var/run/clamd.amavisd/clamd.socket failed, attempt #1: Can't connect to a UNIX socket /var/run/clamd.amavisd/clamd.socket: Aucun fichier ou dossier de ce type
Jun  7 06:36:50 smtp amavis[11355]: (11355-01) (!)clamav-socket av-scanner FAILED: run_av error: Too many retries to talk to /var/run/clamd.amavisd/clamd.socket (All attempts (1) failed connecting to /var/run/clamd.amavisd/clamd.socket) at (eval 134) line 659.\n

But i don't know where they come from since they dont show when i try to start the clamd@amavisd service

This is my amavisd.conf in /etc/clamd.d:

# Use system logger.
LogSyslog yes

# Specify the type of syslog messages - please refer to 'man syslog'
# for facility names.
LogFacility LOG_MAIL

# This option allows you to save a process identifier of the listening
# daemon (main thread).
PidFile /var/run/clamd.amavisd/clamd.pid

# Remove stale socket after unclean shutdown.
# Default: disabled
FixStaleSocket yes

# Run as a selected user (clamd must be started by root).
User amavis

# Path to a local socket file the daemon will listen on.
LocalSocket /var/run/clamd.amavisd/clamd.sock

These are the packages installed on my server:

clamav.x86_64                         0.101.2-1.el7                    @epel
clamav-filesystem.noarch              0.101.2-1.el7                    @epel
clamav-lib.x86_64                     0.101.2-1.el7                    @epel
clamav-scanner-systemd.x86_64         0.101.2-1.el7                    @epel
clamav-server-systemd.x86_64          0.101.2-1.el7                    @epel
clamav-update.x86_64                  0.101.2-1.el7                    @epel
clamd.x86_64                          0.101.2-1.el7                    @epel

I've searched on the forum and found out that some people had the same problem because they were running only 1GB RAM but my server is running 2GB ram (it's a vmware virtual machine running on ESXI 6.7).

So i've disabled the service clamd@amavisd for now and my mail server is running fine with dkim but without clamav scan.

Would appreciate if anyone got an idea of why this is happening?

Thanks!


Could not get a valid IMAP connection after upgrade

$
0
0

==== REQUIRED BASIC INFO OF YOUR IREDMAIL SERVER ====
- iRedMail version (check /etc/iredmail-release): 0.9.8 MYSQL edition
- Deployed with iRedMail Easy or the downloadable installer? installer
- Linux/BSD distribution name and version: Ubuntu 18.0.4 LTS (kernel 4.15.0-51)
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): MySQL
- Web server (Apache or Nginx): Nginx
- Manage mail accounts with iRedAdmin-Pro? No
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

After last update yesterday, I have IMAP connection broken for all users (about 50, mostly Exchange-ActiveSync).

/var/log/sogo/sogo.log:

Jun 07 12:32:04 sogod [4416]: [ERROR] <0x55a66605cc30[SOGoMailFolder]:folderINBOX> Could not get a valid IMAP connection
Jun 07 12:32:04 sogod [4416]: [WARN] <0x55a665cc68a0[SOGoMailAccount]:0> IMAP connection is broken, trying to reconnect...

/var/log/dovecot/imap.log:

Jun  7 12:35:39 mx dovecot: imap-login: Login: user=<john.doe@example.com>, method=PLAIN, rip=127.0.0.1, lip=127.0.0.1, mpid=23891, secured, session=<DbpHZLmKEtJ/AAAB>
Jun  7 12:35:39 mx dovecot: imap(john.doe@example.com): Connection closed (status finished 0.003 secs ago) in=63 out=865

Somehow, system works, sending and receving mails works, but CPU is close to 100% all the time, both a.m. logs are filling up extremely fast, and all users are experienced very slow response, and occasionally lost connection from their Outlook clients.

Is there anyone else with the same issue ?

Any advice how to solve this ?
Is it possible to rollback to previous sogo & sogoactivesync upgrade ?

This is production server, any help will be highly appreciated !

easy deployment / rewritten config files / concise list

$
0
0

==== REQUIRED BASIC INFO OF YOUR IREDMAIL SERVER ====
- iRedMail version (check /etc/iredmail-release): 0.9.9
- Deployed with iRedMail Easy or the downloadable installer? downloadable
- Linux/BSD distribution name and version: ubuntu 18.04
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): mysql
- Web server (Apache or Nginx): nginx
- Manage mail accounts with iRedAdmin-Pro? no
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

checking out your downloadable installer to easy deployment migration doc:

https://docs.iredmail.org/migrate.to.iredmail.easy.html

and in regards to this paragraph:

"Post-installation setup

iRedMail Easy will re-generate most config files, custom settings will be loaded from files under /opt/iredmail/custom/, so if you have any customizations, you may need to copy your custom settings to files under /opt/iredmail/custom/."

can you provide a list of all files you actually touch / create / would be rewritten, so that i can verify what needs to be copied to the custom files folder? Thanks.

Email received in spam folder

$
0
0

* Info: v0.9.9, iRedMail Easy install, Debian9, MYSQL, NGINX

Hello, Sometimes my email are received in the spam folder of the people.
I have these records: spf. dmark & dkim. For my email domain and server domain.

I'm I missing something?

Best

IMAP connection is broken?

$
0
0

==== REQUIRED BASIC INFO OF YOUR IREDMAIL SERVER ====
- iRedMail version (check /etc/iredmail-release): 0.99
- Deployed with iRedMail Easy or the downloadable installer? downloadable installer
- Linux/BSD distribution name and version: Centos 7.5
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): LDAP
- Web server (Apache or Nginx): Nginx
- Manage mail accounts with iRedAdmin-Pro? 3.6
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

Within the sogo.log file I'm seeing the following error repeatedly:
Jun 08 10:24:47 sogod [8173]: [ERROR] <0x55a8e72a3c80[SOGoMailAccount]:0> Could not get a valid IMAP connection
Jun 08 10:24:47 sogod [8173]: [WARN] <0x55a8e72a3c80[SOGoMailAccount]:0> IMAP connection is broken, trying to reconnect...

IMAP isn't broken.   I currently have 308 IMAP connections in a ESTABLISHED state.   SOGo sessions are working perfectly.   E-Mail is being read.

I am seeing a little over 5000 IMAP connections in TIME_WAIT state.   I'm considering decreasing the fin timeout to decrease the number of TIME_WAIT connections.   Most of these connections are local (from SOGo and RoundCube) so a lower timeout shouldn't be a problem.

Any thoughts on why the "broken" messages are appearing in the logs?

Thanks,
Bob

Cron daily job failed message

$
0
0

==== REQUIRED BASIC INFO OF YOUR IREDMAIL SERVER ====
- iRedMail version (check /etc/iredmail-release): 0.9.9
- Deployed with iRedMail Easy or the downloadable installer? Downloaded
- Linux/BSD distribution name and version: ubuntu 18.04.2
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): pgsql
- Web server (Apache or Nginx): nginx
- Manage mail accounts with iRedAdmin-Pro? No
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====
Good day, i got cron mail which indicates something went wrong and totally different than earlier cron mails i got.

Mail subject exactly this

Cron <root@mail> test -x /usr/sbin/anacron || ( cd / && run-parts --report /etc/cron.daily )

And the message :

/etc/cron.daily/logrotate:
Job for rsyslog.service failed.
See "systemctl status rsyslog.service" and "journalctl -xe" for details.
error: error running non-shared postrotate script for /var/log/php-fpm/php-fpm.log of '/var/log/php-fpm/*.log '
run-parts: /etc/cron.daily/logrotate exited with return code 1

DKIM on managesieve filtered messages

$
0
0

==== REQUIRED BASIC INFO OF YOUR IREDMAIL SERVER ====
- iRedMail version (check /etc/iredmail-release): 0.9.5-1
- Deployed with iRedMail Easy or the downloadable installer?  Don't remember
- Linux/BSD distribution name and version: CentOS 7
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): LDAP
- Web server (Apache or Nginx): Apache
- Manage mail accounts with iRedAdmin-Pro?  Yes
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

Hello iRedMail users!

I'm encountering issues where email sent as a result of a roundcube managesieve filter is not being DKIM signed.  For example, vacation notices, email notifications, etc. all go unsigned.

All other outgoing mail is correctly DKIM signed.

Is there a simple fix for this?

Some errors in logwatch mail

$
0
0

==== REQUIRED BASIC INFO OF YOUR IREDMAIL SERVER ====
- iRedMail version (check /etc/iredmail-release): 0.9.9
- Deployed with iRedMail Easy or the downloadable  ? Downloaded
- Linux/BSD distribution name and version: ubuntu 18.04.2
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): pgsql
- Web server (Apache or  nginx
- Manage mail accounts with iRedAdmin-Pro? No
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

Hi again, in logwatch mail there are some errors. Are they correactable

--------------------- Kernel Begin ------------------------


WARNING:  Kernel Errors Present
    RAS: Correctable Errors collector initi ...:  2 Time(s)

---------------------- Kernel End -------------------------


--------------------- PostgreSQL Begin ------------------------

Fatals:
-------

1 times:
[2019-06-09 03:01:05]  database "sogo" does not exist


E: Package 'Ripole' + 'Python-webpy' no installation candidate?

$
0
0

Newbie to Linux simply trying to install

iRedMail-0.9.9

on

Ubuntu Desktop 19.04

returns this error ...ideas to fix around?

@mx:~/iRedMail-0.9.9$ sudo bash iRedMail.sh
awk: cannot open /etc/ssh/sshd_config (No such file or directory)
awk: cannot open /etc/ssh/sshd_config (No such file or directory)
'universe' distribution component is already enabled for all sources.
[ INFO ] Checking configuration file: /home/*****/iRedMail-0.9.9/config ... [FOUND]
< Question > Use it for mail server setting? [y|N]y
[ INFO ] Use config file: /home/*****/iRedMail-0.9.9/config for mail server setting.
[ INFO ] Import installation process status from file: /home/****/iRedMail-0.9.9/runtime/install.status.
[ INFO ] Installing package(s): postfix postfix-pcre libsasl2-modules mysql-client mysql-server postfix-mysql libdbd-mysql-perl php-cli php-fpm php-json php-gd php-curl mcrypt php-intl php-xml php-mbstring php-mysql nginx-full dovecot-imapd dovecot-pop3d dovecot-lmtpd dovecot-managesieved dovecot-sieve dovecot-mysql amavisd-new libcrypt-openssl-rsa-perl libmail-dkim-perl clamav-freshclam clamav-daemon spamassassin altermime arj nomarch cpio lzop cabextract p7zip-full rpm ripole libmail-spf-perl unrar-free pax lrzip mlmmj python-sqlalchemy python-dnspython python-mysqldb python-pymysql python-jinja2 python-netifaces python-webpy python-beautifulsoup python-lxml python-pycurl python-requests uwsgi uwsgi-plugin-python python-bcrypt fail2ban zlib1g libuuid1 libmnl0 curl lm-sensors netcat bzip2 acl patch cron tofrodos logwatch unzip bsdutils liblz4-tool
Reading package lists...
Building dependency tree...
Reading state information...
Package ripole is not available, but is referred to by another package.
This may mean that the package is missing, has been obsoleted, or
is only available from another source

Package python-webpy is not available, but is referred to by another package.
This may mean that the package is missing, has been obsoleted, or
is only available from another source

E: Package 'ripole' has no installation candidate
E: Package 'python-webpy' has no installation candidate
<< ERROR >> Installation failed, please check the terminal output.
<< ERROR >> If you're not sure what the problem is, try to get help in iRedMail
<< ERROR >> forum: https://forum.iredmail.org/

Activesync connection fail and web mail bad gateway after upgrade SOGo

$
0
0

==== REQUIRED BASIC INFO OF YOUR IREDMAIL SERVER ====
- iRedMail version (check /etc/iredmail-release): 0.9.9
- Deployed with iRedMail Easy or the downloadable installer? downloadable
- Linux/BSD distribution name and version: CentOS 7
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): LDAP
- Web server (Apache or Nginx): Nginx
- Manage mail accounts with iRedAdmin-Pro? Yes
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

After recently (May 2019) upgrade to SOGo 4.0.7, the Activesync will always fail after running for few hours to 1-2 days. Outlook and iPhone users will lost connection to mail server. When the issue occurs, the web mail page also cannot display and will show Bad Gateway. Restart server or sogo service will resolve the issue, but it will come back again after several hours.

When checking sogo.log, we noticed there will be always error message of resource unavailable prior and during the issue occurs, and one child process will keep changing the process id by terminating and spawning :

Jun 09 22:10:40 sogod [14755]: [ERROR] <0x0x55db8660ac60[WOWatchDogChild]> FAILURE receiving status for child 27238

Jun 09 22:10:40 sogod [14755]: [ERROR] <0x0x55db8660ac60[WOWatchDogChild]>   socket: <NGActiveSocket[0x0x55db8668cd60]: mode=<closed> address=(null) receive-timeout=5.000s>

Jun 09 22:10:40 sogod [14755]: [ERROR] <0x0x55db8660ac60[WOWatchDogChild]>   exception: <NGSocketShutdownDuringReadException: 0x55db8660c680> NAME:NGSocketShutdownDuringReadException REASON:the socket was shutdown INFO:{errno = 11; error = "Resource temporarily unavailable"; stream = "{object = 0x55db8668cd60;}"; }

Jun 09 22:10:40 sogod [14755]: <0x0x55db8660ac60[WOWatchDogChild]> sending terminate signal to pid 27238

Jun 09 22:10:40 sogod [14755]: <0x0x55db8660ac60[WOWatchDogChild]> child 27238 exited

Jun 09 22:10:40 sogod [14755]: <0x0x55db86631ff0[WOWatchDog]> child spawned with pid 27253
Jun 09 22:10:40 sogod [27253]: <0x0x55db86354120[WOHttpAdaptor]> notified the watchdog that we are ready
Jun 09 22:10:50 sogod [14755]: [ERROR] <0x0x55db8660ac60[WOWatchDogChild]> FAILURE receiving status for child 27253

Jun 09 22:10:50 sogod [14755]: [ERROR] <0x0x55db8660ac60[WOWatchDogChild]>   socket: <NGActiveSocket[0x0x55db865fb900]: mode=rw address=(null) connectedTo=<0x0x55db8672bd70[NGLocalSocketAddress]: /tmp/_ngsocket_14755_0x55db8635b290_000> receive-timeout=5.000s>

Jun 09 22:10:50 sogod [14755]: [ERROR] <0x0x55db8660ac60[WOWatchDogChild]>   exception: <NGSocketTimedOutException: 0x55db8662b790> NAME:NGSocketTimedOutException REASON:the socket was shutdown INFO:{errno = 11; error = "Resource temporarily unavailable"; stream = "{object = 0x55db865fb900;}"; }

Jun 09 22:10:50 sogod [14755]: <0x0x55db8660ac60[WOWatchDogChild]> sending terminate signal to pid 27253

Below is Nginx error log when the issue occurs, these lines will continuously show with different users:

2019/06/10 15:14:11 [error] 26028#0: *376 recv() failed (104: Connection reset by peer) while reading response header from upstream, client: 192.168.1.9, server: mail1.cehgroup.com, request: "POST /Microsoft-Server-ActiveSync?User=xxx@cehgroup.com&DeviceId=M899P2LBO92439O3965GVQ7EP0&DeviceType=iPhone&Cmd=Ping HTTP/1.1", upstream: "http://127.0.0.1:20000/SOGo/Microsoft-Server-ActiveSync?User=xxx@cehgroup.com&DeviceId=M899P2LBO92439O3965GVQ7EP0&DeviceType=iPhone&Cmd=Ping", host: "mail1.cehgroup.com"

2019/06/10 15:14:13 [error] 26028#0: *224 recv() failed (104: Connection reset by peer) while reading response header from upstream, client: 36.88.53.251, server: mail1.cehgroup.com, request: "POST /Microsoft-Server-ActiveSync?Cmd=FolderSync&User=yyy@flexindomas.cehgroup.com&DeviceId=A8DED9D0A32C4C0FAAB6DEBE4FACBE8F&DeviceType=WindowsOutlook15 HTTP/1.1", upstream: "http://127.0.0.1:20000/SOGo/Microsoft-Server-ActiveSync?Cmd=FolderSync&User=yyy@flexindomas.cehgroup.com&DeviceId=A8DED9D0A32C4C0FAAB6DEBE4FACBE8F&DeviceType=WindowsOutlook15", host: "mail1.cehgroup.com"

2019/06/10 15:14:13 [error] 26028#0: *216 recv() failed (104: Connection reset by peer) while reading response header from upstream, client: 192.168.1.129, server: mail1.cehgroup.com, request: "PROPFIND /SOGo/dav/zzz%40cehgroup.com/Calendar/personal/ HTTP/1.1", upstream: "http://127.0.0.1:20000/SOGo/dav/zzz%40cehgroup.com/Calendar/personal/", host: "mail1.cehgroup.com"

2019/06/10 15:14:18 [error] 26028#0: *227 recv() failed (104: Connection reset by peer) while reading response header from upstream, client: 192.168.1.156, server: mail1.cehgroup.com, request: "PROPFIND /SOGo/dav/aaa%40cehgroup.com/Calendar/personal/ HTTP/1.1", upstream: "http://127.0.0.1:20000/SOGo/dav/aaa%40cehgroup.com/Calendar/personal/", host: "mail1.cehgroup.com"

2019/06/10 15:14:36 [error] 26028#0: *110 connect() failed (110: Connection timed out) while connecting to upstream, client: 52.125.132.69, server: mail1.cehgroup.com, request: "POST /Microsoft-Server-ActiveSync?User=bbb%40in.cehgroup.com&DeviceId=3D68816F2758A3A0&DeviceType=Outlook&Cmd=Settings HTTP/1.1", upstream: "http://127.0.0.1:20000/SOGo/Microsoft-Server-ActiveSync?User=bbb%40in.cehgroup.com&DeviceId=3D68816F2758A3A0&DeviceType=Outlook&Cmd=Settings", host: "mail1.cehgroup.com"

2019/06/10 15:14:36 [error] 26028#0: *111 connect() failed (110: Connection timed out) while connecting to upstream, client: 52.125.132.69, server: mail1.cehgroup.com, request: "POST /Microsoft-Server-ActiveSync?User=bbb%40in.cehgroup.com&DeviceId=3D68816F2758A3A0&DeviceType=Outlook&Cmd=Sync HTTP/1.1", upstream: "http://127.0.0.1:20000/SOGo/Microsoft-Server-ActiveSync?User=bbb%40in.cehgroup.com&DeviceId=3D68816F2758A3A0&DeviceType=Outlook&Cmd=Sync", host: "mail1.cehgroup.com"

2019/06/10 15:14:38 [error] 26028#0: *119 connect() failed (110: Connection timed out) while connecting to upstream, client: 110.54.200.239, server: mail1.cehgroup.com, request: "POST /Microsoft-Server-ActiveSync?User=ccc@ph.cehgroup.com&DeviceId=ABHR60DPA17SNCHDLRJ254KQ6C&DeviceType=iPhone&Cmd=Ping HTTP/1.1", upstream: "http://127.0.0.1:20000/SOGo/Microsoft-Server-ActiveSync?User=ccc@ph.cehgroup.com&DeviceId=ABHR60DPA17SNCHDLRJ254KQ6C&DeviceType=iPhone&Cmd=Ping", host: "mail1.cehgroup.com"

2019/06/10 15:14:48 [error] 26028#0: *107 connect() failed (110: Connection timed out) while connecting to upstream, client: 52.125.132.69, server: mail1.cehgroup.com, request: "POST /Microsoft-Server-ActiveSync?User=bbb%40in.cehgroup.com&DeviceId=3D68816F2758A3A0&DeviceType=Outlook&Cmd=ResolveRecipients HTTP/1.1", upstream: "http://127.0.0.1:20000/SOGo/Microsoft-Server-ActiveSync?User=bbb%40in.cehgroup.com&DeviceId=3D68816F2758A3A0&DeviceType=Outlook&Cmd=ResolveRecipients", host: "mail1.cehgroup.com"

We tried to adjust sogo and nginx configures but still cannot resolve the issue.
Anyone has the similar issue? Any solutions or suggestion? Thanks!

Whitelist/Intentional Policy Rejection

$
0
0

==== REQUIRED BASIC INFO OF YOUR IREDMAIL SERVER ====
- iRedMail version (check /etc/iredmail-release): v0.9.8
- Deployed with iRedMail Easy or the downloadable installer? Yes
- Linux/BSD distribution name and version:  Unknown
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): MYSQL
- Web server (Apache or Nginx): Nginx
- Manage mail accounts with iRedAdmin-Pro? No
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

I am having a slight issue with whitelisting as in I am not able to figure out how to do it. I am trying to push customer for iredadmin Pro but they have not purchased it yet. I am seeing this error in the logs:

Recipient address rejected: Intentional policy rejection, please try again later;

It looks like it might be related to Greylisting, I attempted this command:

python /opt/iredapd/tools/greylisting_admin.py --disable --from '@knowbe4.com'

but I don't think it actually did anything.

Also, I've tried to use the whitelisting python scripts as well and they never display any domains or IP which I have whitelisted.

Login problems with iOS

$
0
0

==== REQUIRED BASIC INFO OF YOUR IREDMAIL SERVER ====
- iRedMail version (check /etc/iredmail-release):
- Deployed with iRedMail Easy or the downloadable installer?
- Linux/BSD distribution name and version:
- Store mail accounts in which backend (LDAP/MySQL/PGSQL):
- Web server (Apache or Nginx):
- Manage mail accounts with iRedAdmin-Pro?
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====
The following post is showing as closed but I was hoping that the original poster could provide some more details about how they implemented this solution to the very frustrating message on iOS that seems to come up anytime you change networks or otherwise randomly.  The message is Cannot Verify Server Identity.

This is with iOS12 and have emailed the fullchain.pem file as per the instructions.  When I double click it in iOS it then creates a profile request in Settings.

When you select it, it creates a Configuration Profile with the name of the mail server domain at Settings -> General.  I am not sure if this is what is intended by step 3 - Install it - as there is no option for that.

Then under Settings -> General -> About -> Certificate Trust Settings, the certificate is not displayed, so am thinking it has not been installed properly.  The message Cannot Verify Server Identity continues to pop up every 5 seconds rendering the device useless.

Registered: 2018-03-29
Posts: 2
Re: Login problems with iOS
Thanks a lot ZhangHuangbin. Unfortunately, it's just part of the solution. Apple removed "Trust" option from their certificate settings options. Finally, I was able to solve it like this:
1) Install LetsEncrypt certificate ( on other hand it doesn't matter, which free certificate )
2) Send ti to another account on an Apple device with the newest iOS ( fullchain.pem file from LetsEncrypt )
3) Click the certificate in the email on the Apple device => install it -> add it to trust ones
After this, it started to work

forward email to another address within same domain?

$
0
0

Hi all,

Trying to figure out what mysql command line would be to forward email from one user to another within the same domain=

mysql> USE vmail;
Reading table information for completion of table and column names
You can turn off this feature to get a quicker startup with -A

Database changed
mysql> 

I understand to get into the vmail db, but don't quite understand the commands written in the iredmail documentation.

Maybe if someone can write something that I can copy n paste and just change out the email addresses.

Regards

Viewing all 12123 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>