qmail Digest 19 Nov 1999 11:00:01 -0000 Issue 824

Topics (messages 33284 through 33336):

COMPLETE Script SMTP/POP3 - useful for every user
        33284 by: Thomas Foerster
        33304 by: Steve Kapinos

Re: How to log the qmail-pop3d connection
        33285 by: Ari Arantes Filho
        33294 by: farber.admin.f-tech.net
        33316 by: Benjamin de los Angeles Jr.

Re: virtual users
        33286 by: Peter Haworth

Re: can't send mail from outside
        33287 by: H�ffelin Holger
        33309 by: Patrick, Robert

Problem sending mail
        33288 by: Dewald Strauss

DNS restart causes lost mail
        33289 by: Peter Green
        33292 by: Bruno Wolff III
        33293 by: Lorens Kockum
        33296 by: Peter Green
        33297 by: Russell Nelson
        33298 by: Markus Stumpf
        33300 by: Aaron L. Meehan
        33301 by: Adam D . McKenna
        33302 by: John Gonzalez/netMDC admin
        33314 by: Sam
        33315 by: Sam

Re: Serialmail fd 7 error!
        33290 by: Jeff Hayward
        33311 by: Patrick, Robert

Re: dot-qmail files and running programs
        33291 by: Geoff Roberts

Re: Archiving all incoming and outgoing mail... Quite an unusual problem.
        33295 by: Timothy L. Mayo

I'm Done!
        33299 by: Jon Rust

where can I get modules?
        33303 by: Stephan Pfeiffer

Re: Serialmail fd 7 error! && Qmail support
        33305 by: Rok Papez

Root messages form other daemons.
        33306 by: G. Ryan Fawcett
        33307 by: eric
        33308 by: Steve Kapinos

don't worry about this DNS error
        33310 by: Peeter Pirn

BIND upgrade causes qmail wierdness... ???? HELP!
        33312 by: A.L.Lambert

LWQ translators wanted
        33313 by: Dave Sill
        33326 by: Andy Bradford
        33328 by: H�ffelin Holger
        33333 by: Alexander Jernejcic

Slightly OT: Remotely Storing User Mail
        33317 by: Damien Croarken
        33318 by: Michael Boman
        33319 by: Sam
        33320 by: Denis Voitenko
        33321 by: Russ Allbery

Virtual hosting
        33322 by: Michael Boman
        33324 by: Denis Voitenko
        33325 by: Tong

disk mirroring
        33323 by: Michael Boyiazis
        33336 by: John White

Open RelayinG
        33327 by: Michael Richardson (Tech Support - Big.net.au)
        33329 by: H�ffelin Holger
        33330 by: H�ffelin Holger

Re: TCPServer gives slow response - what is identd
        33331 by: Geoff Roberts

From: and To: - Headers with SMTP-Messages
        33332 by: Ekker, Heinz

ezmlm response
        33334 by: Mark Powell
        33335 by: Petr Novotny

Administrivia:

To subscribe to the digest, e-mail:
        [EMAIL PROTECTED]

To unsubscribe from the digest, e-mail:
        [EMAIL PROTECTED]

To bug my human owner, e-mail:
        [EMAIL PROTECTED]

To post to the list, e-mail:
        [EMAIL PROTECTED]


----------------------------------------------------------------------


Hi there,

my qmail is working fine for 2 months now, but i'd like to have 2 *complete*
scripts with *complete* logging! One for SMTP and one for POP3.

I'd like to start qmail-smtp with ./qmail-smtp and qmail-pop3 with ./qmail-pop3 
(from /etc/rc.d/init.d Redhat 6.0) :-)
AND i want to log every output from qmail-send and qmail-pop3d ! 
AND i want to be able to stop POP3 via the qmail-pop3 script, which i can't 
do till now .. i always have to do a ps ax and then kill the tcpserver pop3 is running
with.

I used NO RPM, i build qmail from the source.
I'm using RedHat 6.0 , qmail is under /var/qmail

I hope that some of you can help me with this, and, if you need it, i can give
you my current scripts.

Thanks A LOT,
  Thomas







Here is my script for anyone interested.. its a hack of other more
intelligent people's script, but this is written for my rh6.1 system.  Note,
some minor syntax issues may have to be cleared up to run on something
besides rh6.1.  For instance, the service is called pop-3 instead of pop3,
and I didn't want to change the services file.

This assumes you are running tcpserver, and daemontools.  As far as 'full
logging' is concerned, its as full as qmail-send, and tcpserver dump
with -v.  If you want more from pop3d, read the current thread about
logging.  I've decided its not worth the extra effort.

I like this script the best out of the ones I've seen because it cleanly
gives you all the daemontool services right in your init script.

-Steve

-----Original Message-----
From: Thomas Foerster [mailto:[EMAIL PROTECTED]]
Sent: Thursday, November 18, 1999 6:11 AM
To: [EMAIL PROTECTED]
Subject: COMPLETE Script SMTP/POP3 - useful for every user


Hi there,

my qmail is working fine for 2 months now, but i'd like to have 2 *complete*
scripts with *complete* logging! One for SMTP and one for POP3.

I'd like to start qmail-smtp with ./qmail-smtp and qmail-pop3 with
./qmail-pop3
(from /etc/rc.d/init.d Redhat 6.0) :-)
AND i want to log every output from qmail-send and qmail-pop3d !
AND i want to be able to stop POP3 via the qmail-pop3 script, which i can't
do till now .. i always have to do a ps ax and then kill the tcpserver pop3
is running
with.

I used NO RPM, i build qmail from the source.
I'm using RedHat 6.0 , qmail is under /var/qmail

I hope that some of you can help me with this, and, if you need it, i can
give
you my current scripts.

Thanks A LOT,
  Thomas



#!/bin/sh

PATH=/var/qmail/bin:/bin:/usr/bin:/usr/local/sbin:/usr/local/bin
export PATH

QMAILDUID=`id -u qmaild`
NOFILESGID=`id -g qmaild`

case "$1" in
  start)
    echo -n "Starting qmail: qmail-send"
    supervise /var/lock/qmail/send /var/qmail/rc | setuser qmaill accustamp | \
        setuser qmaill cyclog /var/log/qmail &

    echo -n " qmail-smtpd"
    supervise /var/lock/qmail/smtpd tcpserver -v -x/etc/tcp.smtp.cdb \
        -u$QMAILDUID -g$NOFILESGID 0 smtp \
        /var/qmail/bin/qmail-smtpd-wrapper 2>&1 | setuser qmaill accustamp | \
        setuser qmaill cyclog /var/log/qmail/qmail-smtpd &

    echo -n " qmail-pop3d"
    supervise /var/lock/qmail/pop3d tcpserver -v 0 pop-3 /var/qmail/bin/qmail-popup 
mail.tandbergapplications.com \
    /bin/checkpassword /var/qmail/bin/qmail-pop3d Maildir &

    echo "."
    ;;
  stop)
    echo -n "Stopping qmail: qmail-smtpd"
    svc -dx /var/lock/qmail/smtpd
    echo -n " qmail-send"
    svc -dx /var/lock/qmail/send
    echo -n " qmail-pop3d"
    svc -dx /var/lock/qmail/pop3d
    echo "."
    ;;
  stat)
    echo "Checking qmail-send"
    svstat /var/lock/qmail/send
    echo "Checking qmail-smtpd"
    svstat /var/lock/qmail/smtpd
    echo "Checking qmail-pop3d"
    svstat /var/lock/qmail/pop3d
    echo "Checking queue"
    qmail-qstat
    ;;
  doqueue|alrm)
    echo "Sending ALRM signal to qmail-send."
    svc -a /var/lock/qmail/send
    ;;
  queue)
    qmail-qstat
    qmail-qread
    ;;
  reload|hup)
    echo "Sending HUP signal to qmail-send."
    svc -h /var/lock/qmail/send
    ;;
  pause)
    echo "Pausing qmail-send"
    svc -p /var/lock/qmail/send
    echo "Pausing qmail-smtpd"
    svc -p /var/lock/qmail/smtpd
    echo "Pausing qmail-pop3d"
    svc -p /var/lock/qmail/pop3d
    ;;
  cont)
    echo "Continuing qmail-send"
    svc -c /var/lock/qmail/send
    echo "Continuing qmail-smtpd"
    svc -c /var/lock/qmail/smtpd
    echo "Continuing qmail-pop3d"
    svc -c /var/lock/qmail/pop3d
    ;;
  restart)
    echo "Restarting qmail:"
    echo "* Stopping qmail-smtpd."
    svc -d /var/lock/qmail/smtpd
    echo "* Sending qmail-send SIGTERM and restarting."
    svc -t /var/lock/qmail/send
    echo "* Restarting qmail-smtpd."
    svc -u /var/lock/qmail/smtpd
    ;;
  cdb)
    tcprules /etc/tcp.smtp.cdb /etc/tcp.smtp.tmp < /etc/tcp.smtp
    chmod 644 /etc/tcp.smtp*
    echo "Reloaded /etc/tcp.smtp."
    ;;
  help)
    cat <<HELP
   stop -- stops mail service (smtp connections refused, nothing goes out)
  start -- starts mail service (smtp connection accepted, mail can go out)
  pause -- temporarily stops mail service (connections accepted, nothing leaves)
   cont -- continues paused mail service
   stat -- displays status of mail service
    cdb -- rebuild the tcpcontrol cdb file for smtp
restart -- stops and restarts smtp, sends qmail-send a TERM & restarts it
doqueue -- sends qmail-send ALRM, scheduling queued messages for delivery
 reload -- sends qmail-send HUP, rereading locals and virtualdomains
  queue -- shows status of queue
   alrm -- same as doqueue
    hup -- same as reload
HELP
    ;;
  *)
    echo "Usage: $0 {start|stop|restart|doqueue|reload|stat|pause|cont|cdb|queue|help}"
    exit 1
    ;;
esac

exit 0




My /etc/syslog.conf

mail.*                    /var/log/maillog

Here goes just a sample of my /var/log/maillog:

Nov 17 19:45:45 ns pop: 942885945.091510 tcpserver: status: 1/40
Nov 17 19:45:45 ns pop: 942885945.094341 tcpserver: pid 588 from 127.0.0.1
Nov 17 19:45:45 ns pop: 942885945.119300 tcpserver: ok 588
localhost:127.0.0.1:110 localhost:127.0.0.1:root:1052
Nov 17 19:45:57 ns pop: 942885957.535890 tcpserver: end 588 status 256
Nov 17 19:45:57 ns pop: 942885957.537061 tcpserver: status: 0/40
Nov 17 19:46:06 ns pop: 942885966.613409 tcpserver: status: 1/40
Nov 17 19:46:06 ns pop: 942885966.614792 tcpserver: pid 592 from
200.197.172.4
Nov 17 19:46:06 ns pop: 942885966.620009 tcpserver: ok 592
mail.drmail.com.br:200.197.172.30:110
stat.doctordata.com.br:200.197.172.4::2334
Nov 17 19:46:06 ns pop: 942885966.679013 tcpserver: end 592 status 256
Nov 17 19:46:06 ns pop: 942885966.680360 tcpserver: status: 0/40
Nov 17 19:46:31 ns pop: 942885991.247627 tcpserver: status: 1/40
Nov 17 19:46:31 ns pop: 942885991.249950 tcpserver: pid 595 from 127.0.0.1
Nov 17 19:46:31 ns pop: 942885991.277216 tcpserver: ok 595
localhost:127.0.0.1:110 localhost:127.0.0.1:root:1057
Nov 17 19:46:38 ns pop: 942885998.331207 tcpserver: end 595 status 256
Nov 17 19:46:38 ns pop: 942885998.332241 tcpserver: status: 0/40

Best regards,

Ari


----- Original Message -----
From: eric <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Cc: Ari Arantes Filho <[EMAIL PROTECTED]>; <[EMAIL PROTECTED]>
Sent: Wednesday, November 17, 1999 8:19 PM
Subject: Re: How to log the qmail-pop3d connection


> On Wed, 17 Nov 1999 [EMAIL PROTECTED] wrote:
>
> ; Tcpserver only handles the connection part of the process.
> ;
> ; neither man page for qmail-pop3d or qmail-popup listed any
> ; debugging/logging options.
>
> That is because they log to syslog.
>
> # grep mail.debug /etc/syslog.conf
> mail.debug /var/log/mail.log
>
> check there.
>





That's just the normal tcpserver -v chatter.  The original post wanted to
capture the user, pass, list, apop commands sent to the pop3 server.  You
are not even looking at the pop deamons output... just the normal startup
of tcpserver and it's handeling of the connection.  Not the conversation
between the client MUA and the pop3 daemon.

I get the same stuff if I use -v.  If you want to speed things up and keep
the logs files down, use -q and tcpserver shuts up.

Paul Farber
Farber Technology
[EMAIL PROTECTED]
Ph  570-628-5303
Fax 570-628-5545

On Thu, 18 Nov 1999, Ari Arantes Filho wrote:

> My /etc/syslog.conf
> 
> mail.*                    /var/log/maillog
> 
> Here goes just a sample of my /var/log/maillog:
> 
> Nov 17 19:45:45 ns pop: 942885945.091510 tcpserver: status: 1/40
> Nov 17 19:45:45 ns pop: 942885945.094341 tcpserver: pid 588 from 127.0.0.1
> Nov 17 19:45:45 ns pop: 942885945.119300 tcpserver: ok 588
> localhost:127.0.0.1:110 localhost:127.0.0.1:root:1052
> Nov 17 19:45:57 ns pop: 942885957.535890 tcpserver: end 588 status 256
> Nov 17 19:45:57 ns pop: 942885957.537061 tcpserver: status: 0/40
> Nov 17 19:46:06 ns pop: 942885966.613409 tcpserver: status: 1/40
> Nov 17 19:46:06 ns pop: 942885966.614792 tcpserver: pid 592 from
> 200.197.172.4
> Nov 17 19:46:06 ns pop: 942885966.620009 tcpserver: ok 592
> mail.drmail.com.br:200.197.172.30:110
> stat.doctordata.com.br:200.197.172.4::2334
> Nov 17 19:46:06 ns pop: 942885966.679013 tcpserver: end 592 status 256
> Nov 17 19:46:06 ns pop: 942885966.680360 tcpserver: status: 0/40
> Nov 17 19:46:31 ns pop: 942885991.247627 tcpserver: status: 1/40
> Nov 17 19:46:31 ns pop: 942885991.249950 tcpserver: pid 595 from 127.0.0.1
> Nov 17 19:46:31 ns pop: 942885991.277216 tcpserver: ok 595
> localhost:127.0.0.1:110 localhost:127.0.0.1:root:1057
> Nov 17 19:46:38 ns pop: 942885998.331207 tcpserver: end 595 status 256
> Nov 17 19:46:38 ns pop: 942885998.332241 tcpserver: status: 0/40
> 
> Best regards,
> 
> Ari
> 
> 
> ----- Original Message -----
> From: eric <[EMAIL PROTECTED]>
> To: <[EMAIL PROTECTED]>
> Cc: Ari Arantes Filho <[EMAIL PROTECTED]>; <[EMAIL PROTECTED]>
> Sent: Wednesday, November 17, 1999 8:19 PM
> Subject: Re: How to log the qmail-pop3d connection
> 
> 
> > On Wed, 17 Nov 1999 [EMAIL PROTECTED] wrote:
> >
> > ; Tcpserver only handles the connection part of the process.
> > ;
> > ; neither man page for qmail-pop3d or qmail-popup listed any
> > ; debugging/logging options.
> >
> > That is because they log to syslog.
> >
> > # grep mail.debug /etc/syslog.conf
> > mail.debug /var/log/mail.log
> >
> > check there.
> >
> 
> 






I already updated my qmail page for the patches: 

http://members.surfshop.net.ph/~bench/qmail

It also includes sample logs.

On Wed, 17 Nov 1999, Doug Lumpkin wrote:

> Interested...
> 
> --
> Doug Lumpkin
> [EMAIL PROTECTED]
> ----- Original Message -----
> From: Benjamin de los Angeles Jr. <[EMAIL PROTECTED]>
> To: Jon Rust <[EMAIL PROTECTED]>
> Cc: <[EMAIL PROTECTED]>
> Sent: Wednesday, November 17, 1999 5:48 PM
> Subject: Re: How to log the qmail-pop3d connection
> 
> 
> >
> > I have a patch that additionally logs the number of e-mails and
> > their total size, this happens just before you download/view/delete
> > your e-mails.  Message me if anyone is interested.
> >





Edward Castillo-Jakosalem wrote:
> I have first.last@<vdomain>:ecj in my /var/qmail/control/virtualdomains
> file.
> I have vdomain in my rcpthosts file.
> I also have .qmail-first-last in ~ecj which contains /var/spool/mail/ecj.
> ( the "." should be replaced by "-" right?)

No, replace '.' with ':'


-- 
        Peter Haworth   [EMAIL PROTECTED]
"Who needs horror movies when we have Microsoft"?
                -- Christine Comaford, PC Week, 27/9/95





Looks like a problem with your DNS-configuration. Check this or try to send
a mail to user@ip-number.

Holger

> -----Urspr�ngliche Nachricht-----
> Von: Jonathan Lyons [mailto:[EMAIL PROTECTED]]
> Gesendet am: Mittwoch, 17. November 1999 22:42
> An: [EMAIL PROTECTED]
> Betreff: can't send mail from outside
> 
> Ok. I have qmail set up for one domain on a box called 
> visarium.com. Its
> supposed to handle all mail for visarium.com.
> 
> 
> I have pop3d setup and smtpd set up both under tcpserver.
> in /etc/tcp.smtp(yes, i have tcprules set) i have:
> 
> 
> 204.60.:allow,RELAYCLIENT=""
> 192.168.:allow,ReLAYCLIENT=""
> 130.:allow,RELAYCLIENT=""
> :allow
> 
> 
> 204.60. are my dialup isp's addresses(for sending mail through
> mail.visarium.com)
> 
> 192.168. is of course for the internal network routed through 
> that machine
> 
> 130. is for my friend's isp
> 
> 
> here is the problem:
> 
> the visarium.com qmail setup delivers mail from ONLY my isp's smtp
> server(204.60.*) to a user on visarium.com(such as 
> [EMAIL PROTECTED],
> my account) but not from anywhere else. in the log, i get the 
> following
> error in the visarium.com smtp log file when trying to send mail from
> another domain, such as hotmail.com(but any other domain does the same
> thing, so its not that hotmail blacklisted or anything):
> 
> Nov 17 17:32:13 visarium qmail: 942877933.066364 delivery 
> 120: deferral:
> Sorry, _I_couldn't_find_any_host_by_that_name._(#4.1.2)/
> 
> 
> Obviously there's something wrong with my configuration, but 
> im not sure
> what...
> 
> Also, not only can i not recieve email from say, hotmail.com, 
> i can't send
> mail to hotmail.com either...
> 
> 
> can somebody, anybody, help? Thanks.
> 
> 
> 
> 
> Jonathan Lyons
> Visarium & Computer Builders Anonymous
> [EMAIL PROTECTED]
> 
> 
> "The vitality of thought is an adventure.  Ideas won't keep.
> Something must be done about them.  When the idea is new, its
> custodians have fervor, live for it, and if need be, die for it."
> 
> Jonathan Lyons
> Visarium & Computer Builders Anonymous
> [EMAIL PROTECTED]
> 
> 
> "The vitality of thought is an adventure.  Ideas won't keep.
> Something must be done about them.  When the idea is new, its
> custodians have fervor, live for it, and if need be, die for it."
> 
> 




Just FYI:

Those access privs for your tcpserver are really wide.
130 is not just your friend's ISP...
An example, 130.114.x.y is a military network at APG, MD, with several
thousand hosts that have nothing to do with anybody's ISP.
I'd clamp those ranges down, to say 130.x.y. for that ISP you want to allow,
and I'd recommend the same for the 204.60 subnets - best solution is to cut
it down as far as possible, not leave it wide open.
I'm sure you can limit the 192.168.x also.

Not that this has anything to do with your problem, but if you're going to
use access lists, mind as well use them to provide as much protection as
possible.

-----Original Message-----
From: Jonathan Lyons [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, November 17, 1999 4:42 PM
To: [EMAIL PROTECTED]
Subject: can't send mail from outside


Ok. I have qmail set up for one domain on a box called visarium.com. Its
supposed to handle all mail for visarium.com.


I have pop3d setup and smtpd set up both under tcpserver.
in /etc/tcp.smtp(yes, i have tcprules set) i have:


204.60.:allow,RELAYCLIENT=""
192.168.:allow,ReLAYCLIENT=""
130.:allow,RELAYCLIENT=""
:allow


204.60. are my dialup isp's addresses(for sending mail through
mail.visarium.com)

192.168. is of course for the internal network routed through that machine

130. is for my friend's isp


here is the problem:

the visarium.com qmail setup delivers mail from ONLY my isp's smtp
server(204.60.*) to a user on visarium.com(such as [EMAIL PROTECTED],
my account) but not from anywhere else. in the log, i get the following
error in the visarium.com smtp log file when trying to send mail from
another domain, such as hotmail.com(but any other domain does the same
thing, so its not that hotmail blacklisted or anything):

Nov 17 17:32:13 visarium qmail: 942877933.066364 delivery 120: deferral:
Sorry, _I_couldn't_find_any_host_by_that_name._(#4.1.2)/


Obviously there's something wrong with my configuration, but im not sure
what...

Also, not only can i not recieve email from say, hotmail.com, i can't send
mail to hotmail.com either...


can somebody, anybody, help? Thanks.




Hi everybody,

First of all, I quite a newbie to Linux/qmail etc
I Hope someone can help me out here.
Have a server with RedHat 6 and qmail 1.03

All of the clients that connect to this server for email 
are using Outlook Express.
None of them can send mail from this server, 
everytime you try to send mail, the Outlook client 
responds with the following error:
"Your server has unexpectedly terminated the connection"

Sending mail used to work, but I must have stuffed up 
something/somewhere.
I read the FAQ's but could not find anything about this error.
Has anybody encountered this problem before/
Is this a mistake on my side ?

I hope someone can help me out with this

cheers




Perhaps I'm just being really boneheaded about this, but we're having some
trouble with qmail when we restart (not reload) named.

When a new zone is added to the named server, it needs to be restarted to
actually read that zone file. During the time that it is down and restarting
(usually about 15-30 seconds), some qmail errors may get generated. In our
/var/log/maillog:

  Nov 17 17:00:05 joppa qmail-smtpd: MAIL FROM: DNS check failed
  (accounts@wingnet) -> () [206.30.215.2] (HELO agape.wingnet.net)

which looks to the client like this:

  ----- Transcript of session follows -----
  ... while talking to smtp.gospelcom.net.:
  >>> MAIL From:<[EMAIL PROTECTED]>
  <<< 553 sorry, envelope sender must have a valid domain name (#5.7.1)

Is there a better way to avoid these kinds of errors? The named server is on
the same machine as the qmail server, if that helps.

Thanks for any thoughts.

/pg
-- 
Peter Green
Gospel Communications Network, SysAdmin
[EMAIL PROTECTED]




On Thu, Nov 18, 1999 at 09:13:21AM -0500,
  Peter Green <[EMAIL PROTECTED]> wrote:
>   ----- Transcript of session follows -----
>   ... while talking to smtp.gospelcom.net.:
>   >>> MAIL From:<[EMAIL PROTECTED]>
>   <<< 553 sorry, envelope sender must have a valid domain name (#5.7.1)
> 
> Is there a better way to avoid these kinds of errors? The named server is on
> the same machine as the qmail server, if that helps.

This looks like a problem with the antispam patch. Maybe it needs a way to
be turned off in a config file so that it can be disabled while the DNS
server is unavailable.

Another choice would be to shut down the qmail smtp daemon during this
period.




On the qmail list [EMAIL PROTECTED] wrote:
>  <<< 553 sorry, envelope sender must have a valid domain name (#5.7.1)

In my opinion and according to my experience, making that test a
4xx error is highly recommended.





On Thu, Nov 18, 1999 at 02:23:57PM -0000, Lorens Kockum wrote:
> On the qmail list [EMAIL PROTECTED] wrote:
> >  <<< 553 sorry, envelope sender must have a valid domain name (#5.7.1)
> 
> In my opinion and according to my experience, making that test a
> 4xx error is highly recommended.

This is the approach I'd prefer as well. Is it just a matter of changing 553
to 453 or does something else need to be touched as well?

/pg
-- 
Peter Green
Gospel Communications Network, SysAdmin
[EMAIL PROTECTED]




Peter Green writes:
 > Perhaps I'm just being really boneheaded about this, but we're having some
 > trouble with qmail when we restart (not reload) named.

wingnet.net's zone file only lists ns.wingnet.net, even though the
Internet knows about two name servers.  Try fixing that and see if
life isn't better.

-- 
-russ nelson <[EMAIL PROTECTED]>  http://russnelson.com
Crynwr sells support for free software  | PGPok | Government schools are so
521 Pleasant Valley Rd. | +1 315 268 1925 voice | bad that any rank amateur
Potsdam, NY 13676-3213  | +1 315 268 9201 FAX   | can outdo them. Homeschool!




On Thu, Nov 18, 1999 at 09:13:21AM -0500, Peter Green wrote:
> When a new zone is added to the named server, it needs to be restarted to
> actually read that zone file.

This is NOT true. We manage a few thousand domains and the bind process
has typical uptime of 2-3 month. If we had to restart our binds for every
domain we add we'd do nothing else.
Just add it to the named.conf file and reload.

> During the time that it is down and restarting
> (usually about 15-30 seconds), some qmail errors may get generated. In our
> /var/log/maillog:

You only have *one* DNS server in /etc/resolv.conf on your machine? Why?
Add two others and your problems should be gone.

        \Maex

-- 
SpaceNet GmbH             |   http://www.Space.Net/   | Yeah, yo mama dresses
Research & Development    | mailto:[EMAIL PROTECTED] | you funny and you need
Joseph-Dollinger-Bogen 14 |  Tel: +49 (89) 32356-0    | a mouse to delete files
D-80807 Muenchen          |  Fax: +49 (89) 32356-299  |




Quoting Peter Green ([EMAIL PROTECTED]):
> On Thu, Nov 18, 1999 at 02:23:57PM -0000, Lorens Kockum wrote:
> > On the qmail list [EMAIL PROTECTED] wrote:
> > >  <<< 553 sorry, envelope sender must have a valid domain name (#5.7.1)
> > 
> > In my opinion and according to my experience, making that test a
> > 4xx error is highly recommended.
> 
> This is the approach I'd prefer as well. Is it just a matter of changing 553
> to 453 or does something else need to be touched as well?

Honestly I'm confused why it's returning 553 when it should be
deferring the connection with a temp dns error if a nameserver isn't
reachable.  What patch are you using?  I've not seen this behavior
with our mail server.

Using bind?  Try "ndc reload" instead of restarting the server.
Latest version has a nifty "reconfig" command that only checks for
new/removed zones.

Aaron




On Thu, Nov 18, 1999 at 04:45:29PM +0100, Markus Stumpf wrote:
> On Thu, Nov 18, 1999 at 09:13:21AM -0500, Peter Green wrote:
> > When a new zone is added to the named server, it needs to be restarted to
> > actually read that zone file.
> 
> This is NOT true. We manage a few thousand domains and the bind process
> has typical uptime of 2-3 month. If we had to restart our binds for every
> domain we add we'd do nothing else.
> Just add it to the named.conf file and reload.

In fact, bind 8.2 has the ability to do a reload on *individual* zones.  Just
type "ndc reload <zone>".

--Adam




Which brings me to some important bit of info, just in case people out
there havent heard.

There is a possible hole in Bind 8.2 and 4.9.X trees, either remote root
exploits, or DOS attacks.

The current patch level is pl5, available at www.isc.org -- as well as
info regarding the potential exploit.

(sorry, some may not be on bugtraq, etc. i've found alot of people havent
heard about this yet)

On Thu, 18 Nov 1999, Adam D . McKenna wrote:

>On Thu, Nov 18, 1999 at 04:45:29PM +0100, Markus Stumpf wrote:
>> On Thu, Nov 18, 1999 at 09:13:21AM -0500, Peter Green wrote:
>> > When a new zone is added to the named server, it needs to be restarted to
>> > actually read that zone file.
>> 
>> This is NOT true. We manage a few thousand domains and the bind process
>> has typical uptime of 2-3 month. If we had to restart our binds for every
>> domain we add we'd do nothing else.
>> Just add it to the named.conf file and reload.
>
>In fact, bind 8.2 has the ability to do a reload on *individual* zones.  Just
>type "ndc reload <zone>".
>
>--Adam
>

  _    __   _____      __   _________      
______________  /_______ ___  ____  /______  John Gonzalez/Net.Tech
__  __ \ __ \  __/_  __ `__ \/ __  /_  ___/ MDC Computers/netMDC!
_  / / / `__/ /_  / / / / / / /_/ / / /__ (505)437-7600/fax-437-3052
/_/ /_/\___/\__/ /_/ /_/ /_/\__,_/  \___/ http://www.netmdc.com
[---------------------------------------------[system info]-----------]
 10:05am  up 118 days, 20:24,  3 users,  load average: 0.26, 0.36, 0.32





On Thu, 18 Nov 1999, Peter Green wrote:

> Perhaps I'm just being really boneheaded about this, but we're having some
> trouble with qmail when we restart (not reload) named.
> 
> When a new zone is added to the named server, it needs to be restarted to
> actually read that zone file. During the time that it is down and restarting
> (usually about 15-30 seconds), some qmail errors may get generated. In our
> /var/log/maillog:
> 
>   Nov 17 17:00:05 joppa qmail-smtpd: MAIL FROM: DNS check failed
>   (accounts@wingnet) -> () [206.30.215.2] (HELO agape.wingnet.net)
> 
> which looks to the client like this:
> 
>   ----- Transcript of session follows -----
>   ... while talking to smtp.gospelcom.net.:
>   >>> MAIL From:<[EMAIL PROTECTED]>
>   <<< 553 sorry, envelope sender must have a valid domain name (#5.7.1)
> 
> Is there a better way to avoid these kinds of errors? The named server is on
> the same machine as the qmail server, if that helps.

You're using some patch to qmail-smtpd.  The patch does not distinguish
between transitive and authoritative DNS failures.  You need to fix that.

--
Sam






On 18 Nov 1999, (Lorens Kockum) wrote:

> On the qmail list [EMAIL PROTECTED] wrote:
> >  <<< 553 sorry, envelope sender must have a valid domain name (#5.7.1)
> 
> In my opinion and according to my experience, making that test a
> 4xx error is highly recommended.

No. The correct solution is to determine whether your DNS failure is
transitive or permanent.  That's not rocket science, in fact it is trivial
to do so.  If it's a transitive error, return a 453, if it's a permanent
failure, return a 553.

--
Sam






Hey Rok, how's the trolling today?

You checked TFM 'man tcpclient', right?  Perhaps you could describe
the efforts you've made to resolve your trouble.  We already know
about the throwing about of insults, but that's not generally a
success strategy.  What else have you done?

-- Jeff Hayward

On Thu, 18 Nov 1999, Rok Papez wrote:

   Hi Roger, qmail and serialmail m.l.
   
   On Thu, 18 Nov 1999, Roger Wrethman wrote:
   
   > Go and have a look at http://www.e-smith.net
   > They have this all down to a tee.
   
   I was expecting help.... It seems I've got a commercial :-(.
   I guess Qmail/serialmail just isn't up to the job.
   
   Everybody can smart-ass around about Linux support how great the mailing
   list/newsgroup support is and that it's better than commercial.
   My experiance (specialy with qmail/serialmail) shows that this is not the case.
   The people who know don't bother to answer, the people who don't know smart-ass
   around :-((((.
   
   I'm sorry but this is very dissapointing that no-one on qmail nor serialmail
   mailing list is able to just give me a hint (RTFM would do, if I accidently
   missed the docs - I do a lot of RTFM on our local user group m.l.). But it is
   not like I'm the power user who can go in and use the RTSL (Read The Source,
   Luke).
   
   Obviously a step in the right direction would be to dump Qmail/Serialmail
   altogether. Local user group people know only about sendmail and qmail
   users are obviously unwilling to help out.
   
   I'll mail djb personaly.. maybe he will answer altough I doubt
   it... I'll probably get ditched together with SPAM into /dev/null.
   
    -- 
   best regards,
   Rok Papez.
    
   







The guy who sent you to www.e-smith.net was trying to help you.
You can download their package for free, burn it to a CD, and then install
it on one of your systems.

You could opt to pay for a CD and they also offer full support, but this
isn't a requirement.

I wouldn't be so quick to think people on these mailing lists are trying to
be snide in their remarks.

-----Original Message-----
From: Rok Papez [mailto:[EMAIL PROTECTED]]
Sent: Thursday, November 18, 1999 4:14 AM
To: [EMAIL PROTECTED]
Cc: [EMAIL PROTECTED]; [EMAIL PROTECTED]
Subject: RE: Serialmail fd 7 error!


Hi Roger, qmail and serialmail m.l.

On Thu, 18 Nov 1999, Roger Wrethman wrote:

> Go and have a look at http://www.e-smith.net
> They have this all down to a tee.

I was expecting help.... It seems I've got a commercial :-(.
I guess Qmail/serialmail just isn't up to the job.

Everybody can smart-ass around about Linux support how great the mailing
list/newsgroup support is and that it's better than commercial. My
experiance (specialy with qmail/serialmail) shows that this is not the case.
The people who know don't bother to answer, the people who don't know
smart-ass around :-((((.

I'm sorry but this is very dissapointing that no-one on qmail nor serialmail
mailing list is able to just give me a hint (RTFM would do, if I accidently
missed the docs - I do a lot of RTFM on our local user group m.l.). But it
is not like I'm the power user who can go in and use the RTSL (Read The
Source, Luke).

Obviously a step in the right direction would be to dump Qmail/Serialmail
altogether. Local user group people know only about sendmail and qmail users
are obviously unwilling to help out.

I'll mail djb personaly.. maybe he will answer altough I doubt
it... I'll probably get ditched together with SPAM into /dev/null.

 -- 
best regards,
Rok Papez.






>I suppose he tries to do the same things as me : renaming user e mail address
>from internal name to external
>I have tried
>|preline sed "s/local\.intranet\.net/my_company\.com/" |
>/usr/local/bin/safecat
>/var/qmail/alias/pppdir/tmp /var/qmail/alias/pppdir/new
>It is creating  files but maildirsmtp ignores them if I do not put Maildir
>If I add it, I am sending the internal address :(

Yup, that's exactly what I'm trying to do.   Perhaps we need the ability to
pass maildirsmtp a names database similar to the one passed to ofmipd to
modify email addresses.   Does anyone know of any other tool that can be
used in the command line (ie, in a dot-qmail file) that does exactly that?

Geoff






You missed the point of the original message.  This is qmail running on
the customers machine at the customers site.  The machine was set up by
the ISP for the customer.  I assume they were payed for that service.  We
provide this service (server setup and customization) for our customers
and charge them for this.

The original question was not should he, but how. :)

I believe he was already pointed at FAQ 8.2.

On Wed, 17 Nov 1999, Racer X wrote:

> well, if i were you, i'd tell him to bloody archive it himself - i make it
> pretty clear to customers that we don't take responsibility for making sure
> their stuff is secured like that.  at the very least, tell him to pay you
> (up front) for both the time required to implement the solution as well as
> the cost of all associated equipment and media, and make sure you work out a
> contract that limits your liability in case you botch it up.
> 
> but it's not that hard, really.  all you really have to do is CC a copy of
> every message to a maildir (just add a line in the dot-qmail-default).  when
> the maildir gets up around 550-600 mb, copy all the files to another
> directory and offload them to tape/cd/whatever.  there's probably a better
> way to do it, but i'd bet this is the simplest.
> 
> i'd let the customer worry about any archiving/indexing, unless you do that
> sort of thing for a living, in which case i'm sure you already know how to
> do it and how much to bill for it :)
> 
> shag
> =====
> Judd Bourgeois        |   CNM Network      +1 (805) 520-7170
> Software Architect    |   1900 Los Angeles Avenue, 2nd Floor
> [EMAIL PROTECTED]   |   Simi Valley, CA 93065
> 
> Quidquid latine dictum sit, altum viditur.
> 
> ----- Original Message -----
> From: Denis Voitenko <[EMAIL PROTECTED]>
> To: <[EMAIL PROTECTED]>
> Sent: Wed 17 Nov 1999 23.18
> Subject: Archiving all incoming and outgoing mail... Quite an unusual
> problem.
> 
> 
> > My client has demanded a very strange thing. He wants to archive all
> > incoming and outgoing mail that goes thru the qmail server (installed and
> > configured by me). He has a small LAN of 20+ people but the mail traffic
> is
> > pretty heavy since there is a ton of AutoCad 2K documents attached to mail
> > :-) I told him that is was generally not a great idea 'cause the mail
> server
> > has only 6 gigs of space but he said he'd be willing to burn stale stuff
> on
> > CD's. So technically I have no choice but to make it work. Now, how in the
> > world do I do this?
> >
> > Should I create some account like archive and rewrite headers (maybe add
> BCC
> > field) of all mail? The system runs maildir so I think archiving files
> will
> > not be a major problem...
> >
> > Denis Voitenko
> > Mail: [EMAIL PROTECTED]
> >
> >
> >
> >
> 
> 

---------------------------------
Timothy L. Mayo                         mailto:[EMAIL PROTECTED]
Senior Systems Administrator
localconnect(sm)
http://www.localconnect.net/

The National Business Network Inc.      http://www.nb.net/
One Monroeville Center, Suite 850
Monroeville, PA  15146
(412) 810-8888 Phone
(412) 810-8886 Fax





After 3 long months, I've finally completed my switch from 
software.com's post.office (3.1.2) to qmail. 2500 POP3-only accounts 
moved transparently from one system to the other. A big thanks to the 
helpful folks on the list. In particular, Paul Gregg's single UID 
how-to was a huge help. His checkpoppasswd is also great. Using Andre 
Oppermann's LDAP package, I changed Mr Gregg's checkpoppasswd to 
understand post.office encrypted passwords, which made the move a LOT 
easier. Fred Linberg's ezmlm-idx helped to make the mailing list 
change-over a piece of cake, too. And finally, Dave Sill's Life With 
Qmail was invaluable.

It feels _good_ to be open source again. :-)

Thanks!
jon

Single UID how-to:
http://www.tibus.net/pgregg/projects/

LDAP package:
http://www.nrg4u.com

ezmlm-idx patch:
ftp://ftp.id.wustl.edu/pub/patches/

Life With Qmail:
http://Web.InfoAve.Net/~dsill/lwq.html


mail:~{3} $ sudo qmail-ctl stat
pop3d: up (pid 8043)
qmail-send: up (pid 15630)
qmail-smtpd: up (pid 15452)
pop3d/log: up (pid 8042)
qmail-send/log: up (pid 8041)
qmail-smtpd/log: up (pid 8045)






hello lists,

I search the via-thine.o module for kernel 2.0.35, but I can't find
anything (I've looked at www.kernel.org, www.suse.com, www.debian.com,
etc). Where can I get it?

Thanks for help...


mfg     stephan
-- 
----------------------------------------------------------------------
Stephan Pfeiffer                                   planNET Systems GmbH
mailto:[EMAIL PROTECTED]                       Haid-und-Neu-Strasse 7

FON:         (+49) 721 66 36 36                   mailto:[EMAIL PROTECTED]
FAX:         (+49) 721 66 36 30                    http://www.planNET.de
-----------------------------------------------------------------------




Hello Jeff.

On Thu, 18 Nov 1999, Jeff Hayward wrote:

-----------------------------------------------------
> Hey Rok, how's the trolling today?

Great!!! :)). No, realy. I actualy got a *response* (yours).  It is not a
polite one (I didn't expect it to be), but at least it *is* there... it is even
suggesting something.
Was that "RTFM" so hard to say the first time I asked for help ?? :-). It
didn't help much.. but it was a gesture.

You actualy proved that when politeness doesn't get you anywhere
trolling might :).

-----------------------------------------------------
> You checked TFM 'man tcpclient', right?  Perhaps you could describe

Actualy I just did (man 1 tcpclient)... I still don't have a clue why it works
when I telnet and why it doesn't when I fork() and exec() from daemon. Since
daemon environment is a bit different I realy hopped for someone more
experianced to help me out....
And btw.: I didn't check tcpclient *before* becouse I didn't notice maildirsmtp
is a script. I apologize for not knowing everything :-(. I also alopologize
for not checking every executable on my sistem if is is a script or a binary
image - but what can you expect from a simple user.
And about the tcpclient errors... When run from telnet maildirsmtp worked and
when run from a daemon, errors got lost to /dev/null becouse I didn't redirect
error logging correctly (I did "2>&1 >" instead of "> 2>&1" ).

-----------------------------------------------------
> the efforts you've made to resolve your trouble.  We already know
> about the throwing about of insults, but that's not generally a

Throwing insults? Let me check:
Ok one might be here:
-------------
>> Everybody can smart-ass around about Linux support how great the
>> mailinglist/newsgroup support is and that it's better than commercial.
-------------
This one applies only if you claim that linux support is great. And the other
one can apply only if you "don't know":
-------------
>> The people who know don't bother to answer, the people who don't know
>> smart-ass around :-((((.
-------------

I was a bit upset.... I apologize for the later one.. but the smart-assing about
*great* Linux support stays!!! Linux support isn't great and the docs aren't
great (except for some *realy* great HOWTOs in /usr/doc/HOWTO).  And guess
what.. the first time someone actualy had to tell me where to look for them :).
A "RTFM /usr/doc/HOWTO/*" got me "on the track".  Can you please do the same
for qmail+serialmail ?

----------------------------------------------------
> about the throwing about of insults, but that's not generally a
> success strategy.  What else have you done?

Since you obviously know more about success strategies then me, please do help
me and show me how to get help.

-----------------------------------------------------
> success strategy.  What else have you done?

I've searched the Qmail and Serialmail mailing list archives for similar
problems.
I've serached the www.qmail.org site for "serialmail" and "maildirsmtp".
I did "man maildirsmtp".
I did "cat /opt/qmail/doc/* | grep serialmail".
I've read "/opt/serialmail/doc/serialmail/*" files.
And *then* I asked on the Qmail mailing list.


-- 
best regards,
Rok Papez.




In Solaris allot of important mail is sent to root. Like when a cron job
fails etc etc etc. Qmail does deal with roots mail. But I need this mail so.
what is the best resolution to this problem. Let me know if I'm crazy.


"There's a fine line between genius and insanity."
G. Ryan Fawcett
Unix Network Admin.





If you followed the docs you knew to setup ~alias/.qmail-root to go
to a different address.

On Thu, 18 Nov 1999, G. Ryan Fawcett wrote:

; In Solaris allot of important mail is sent to root. Like when a cron job
; fails etc etc etc. Qmail does deal with roots mail. But I need this mail so.
; what is the best resolution to this problem. Let me know if I'm crazy.
; 
; 
; "There's a fine line between genius and insanity."
; G. Ryan Fawcett
; Unix Network Admin.
; 

-- 
 Eric Pancer                   @        "I don't give advice; geniuses don't
 [EMAIL PROTECTED]          !         need it, and amateurs don't want it."
 http://www.catastrophe.net    |                            -- Vida Chenoweth





qmail by itself will treat mail to root the same as mail to all 'non-users'
is treated, it will look in ~alias for a .qmail file.  So if you want all
root mail to be forwarded to [EMAIL PROTECTED]

do
echo "&[EMAIL PROTECTED]" > ~alias/.qmail-root
chmod 644 ~alias/.qmail-root

Read INSTALL.alias

-Steve

-----Original Message-----
From: G. Ryan Fawcett [mailto:[EMAIL PROTECTED]]
Sent: Thursday, November 18, 1999 1:23 PM
To: [EMAIL PROTECTED]
Subject: Root messages form other daemons.


In Solaris allot of important mail is sent to root. Like when a cron job
fails etc etc etc. Qmail does deal with roots mail. But I need this mail so.
what is the best resolution to this problem. Let me know if I'm crazy.


"There's a fine line between genius and insanity."
G. Ryan Fawcett
Unix Network Admin.





I figure it might help to put this one in the archive.

Having applied the AOL DNS patch (According to a previous post, AOL may
have corrected the problem by now.), I'm wary of any DNS error messages
when our customers send mail to AOL.

Here's one not to worry about, other than informing the billing department.

Connected to 198.81.16.101 but sender was rejected.
Remote host said: 550 REQUESTED ACTION NOT TAKEN: DNS FAILURE

The domain from which the mail message was sent hasn't paid their bill to
Network Solutions. They need to pay the bill for their domain. 
 
----
P. Pirn - Sys Admin - see complete headers for more info




        Upgraded bind daemon to fix/cover latest root exploits.  I now
have 30-120 second timeouts for SMTP or POP-3 connections.  ????  
Everything else continues to work as before (all the usual: ftp, nntp,
http, etc., + even some bizare custom stuff I'm using here and there; all
works fine).  I am out of my league at this point, and was hoping some of
the smarter-than-mine minds on the list might be able to lend some
suggestions.  Tecnical details below:

        General setup:

        Linux 2.0.38 (RH 5.2 based), qmail 1.03 (no patches/mods), xinetd
2.1.8.6b7, tcpwrapers 7.6 (used to setenv RELAYCLIENT for qmail-smtpd, not
at all for pop-3), bind 8.2.2P3 (installed from RedHat's posted RPM to fix
overflow problems), and nothing else (other than base Linux distro stuff)
in common betwixt the boxes...  The one and only change made recently was
the bind upgrade (hence my suspicion that it's the root cause).

        What I've done to try and figure it out so far (not in exactly
this order):

1. Checked all logfiles for error messages relating to qmail: found none

2. tail -f'd all related logfiles, and telneted to smtp and pop3 ports:
get instant notification of connection from xinetd; ps axf shows tcp-env +
smtpd or pop3 has started instantly

3.  Timed the timeout to see if there was an exact length of time it
waited for: averages 30-90 seconds, but can range as high as 120 seconds
(and presumably higher, at 120 seconds I gave up on it).

4.  Recompiled/reinstalled qmail on one of the boxes: no noticable
improvements.

5.  Verified that all other services were working properly, without
delays: they are.

6.  Rebooted boxen: no improvements

7.  Cursed loudly: didn't help

8.  Searched through recent qmail mailing list messages (last few days)  
for possibly related problems: didn't see any

9.  Rebuilt from src RPM's of previously used version of bind using the
StackGuard GCC compiler, in hopes that it might restore qmail to service,
and keep out crackers as well: no noticable results.

10.  Repeated test steps outlined above: still broken.

11.  Recompiled/reinstalled qmail again: still broken.

12.  Cursed more loudly than before, and for longer period of time: still
no results.

13.  Repeated steps above: no changes in status

14.  Sent e-mail to qmail mailing list, in hopes that someone smarter than
I will know what the problem is/might be, or at least have some new ideas
of what I might try at this point.

        
        Any help will be GREATELY appreciated.

        --A.L.Lambert






While I was writing LWQ, I had several people ask if they could
translate it. I suggested they wait until version 1.0. I never heard
back from any of them.

I'd really like to get some translations going, so if you're
interested, please let me know. I'll help any way I can.

I did find a couple people interested in working on a German
translation: Roland Pelzer and Markus Stumpf. Roland hasn't been able
reach Markus recently--though he's active on this list. (Markus, drop
a Roland a line when you get a chance, please.)

-Dave




Thus said Dave Sill on Thu, 18 Nov 1999 15:43:43 EST:

> While I was writing LWQ, I had several people ask if they could
> translate it. I suggested they wait until version 1.0. I never heard
> back from any of them.
Looks like you'll be stuck using babelfish... :)
Andy
-- 
        +====== Andy ====== TiK: garbaglio ======+
        |    Linux is about freedom of choice    |
        +== http://www.xmission.com/~bradipo/ ===+






I'm also interested in a german version. So Markus and Roland: contact me.

CU
Holger


> -----Urspr�ngliche Nachricht-----
> Von: Dave Sill [mailto:[EMAIL PROTECTED]]
> Gesendet am: Donnerstag, 18. November 1999 21:44
> An: [EMAIL PROTECTED]
> Betreff: LWQ translators wanted
> 
> While I was writing LWQ, I had several people ask if they could
> translate it. I suggested they wait until version 1.0. I never heard
> back from any of them.
> 
> I'd really like to get some translations going, so if you're
> interested, please let me know. I'll help any way I can.
> 
> I did find a couple people interested in working on a German
> translation: Roland Pelzer and Markus Stumpf. Roland hasn't been able
> reach Markus recently--though he's active on this list. (Markus, drop
> a Roland a line when you get a chance, please.)
> 
> -Dave
> 




if one more hand for german translation is needed, let me know...

-- 
Alexander Jernejcic, E-Mail: [EMAIL PROTECTED], 
[EMAIL PROTECTED]

>>>>>>>>>>>>>>>>>> Urspr�ngliche Nachricht <<<<<<<<<<<<<<<<<<

Am 11/18/99, 9:43:43 PM, schrieb Dave Sill <[EMAIL PROTECTED]> zum 
Thema LWQ translators wanted:


> While I was writing LWQ, I had several people ask if they could
> translate it. I suggested they wait until version 1.0. I never heard
> back from any of them.

> I'd really like to get some translations going, so if you're
> interested, please let me know. I'll help any way I can.

> I did find a couple people interested in working on a German
> translation: Roland Pelzer and Markus Stumpf. Roland hasn't been able
> reach Markus recently--though he's active on this list. (Markus, drop
> a Roland a line when you get a chance, please.)

> -Dave







I know this isnt completely a qmail question, but has anyone come accross a
solution to allow you to remotely store a users mail and addressbook so that
they can roam the network and still view their mail?


Thanks in advance

Damien





I would suggest LDAP for storing a roaming addressbook. The mail should
already be roaming the second you let users connect to it from the network
or other networks (like internet). If you want to be even more accessible
you should concider a web-interface for your users so the only thing they
need is a browser to read/write mail (like hotmail). I am currently looking
into such a solution myself as there is now allot of contacts to keep track
on.

Currently I am serving about 10000 users with qmail using mySQL for storing
the usual important information like username,password and homedirectory.

Best regards
Michael Boman

> -----Original Message-----
> From: Damien Croarken [mailto:[EMAIL PROTECTED]]
> Sent: Friday, 19 November, 1999 9:09 AM
> To: Qmail
> Subject: Slightly OT: Remotely Storing User Mail
>
>
> I know this isnt completely a qmail question, but has anyone come
> accross a
> solution to allow you to remotely store a users mail and
> addressbook so that
> they can roam the network and still view their mail?
>
>
> Thanks in advance
>
> Damien
>
>





Damien Croarken writes:

> I know this isnt completely a qmail question, but has anyone come accross a
> solution to allow you to remotely store a users mail and addressbook so that
> they can roam the network and still view their mail?

An IMAP server will take care of the mail part.  I think Netscape
Communicator has a feature where your addressbook, bookmarks, et. al. can
be stored on a remote web server.  There's even an Apache module for that,
floating somewhere out there.

-- 
Sam





Or you could simply install LDAP :-)

> I think Netscape
> Communicator has a feature where your addressbook, bookmarks, et. al. can
> be stored on a remote web server.  There's even an Apache module for that,
> floating somewhere out there.
>
> --
> Sam
>





Denis Voitenko <[EMAIL PROTECTED]> writes:

> Or you could simply install LDAP :-)

Isn't that sort of like "simply" bringing about world peace?  :)

-- 
Russ Allbery ([EMAIL PROTECTED])         <URL:http://www.eyrie.org/~eagle/>




I am tuning our mailserver and I have following questions:

1) I want that [EMAIL PROTECTED] and [EMAIL PROTECTED] is two
different users. (This should be working with mailinglists as well.)

2) It should use only one account, if possible

3) It should be (my)SQL based, so I dont need to add extra system accounts.

4) Support for quota.

5) If it has a nice WWW GUI to manage the users I wouldnt mind.

I am currently using:

- qmail 1.03 with mySQL patch !!! HEAVILY HACKED !!!
- ezmlm 0.53 (Not hacked *smile*)

I am looking into following solution:

- qmail 1.03
- vpopmail 3.4.10 (has mySQL support, but is beta)
- ezmlm-idx (has mySQL support)
- qmailadmin 0.24

Will that do the trick?
I am looking to serve about 10k users at a start, growing to about 50k in a
year.
The hardware I am currently using is a PIII with 128 Mb of RAM and 6 Gb for
user mail. Hardware SCSI RAID is ordered and will be in place soon, so I
wont run out of discspace.

Any comments would be appriciated.

Best regards
Michael Boman

--
Michael Boman, Systems Engineer
WizOffice.Com Pte Ltd - 16 Tannery Lane, #06-00
Crystal Time Building, Singapore. 347778
Your Online Office Wizard - http://www.wizoffice.com/

BEGIN:VCARD
VERSION:2.1
N:Boman;Michael
FN:Michael Boman
NICKNAME:Michael
ORG:WizOffice.com
TITLE:Systems Engineer
TEL;PAGER;VOICE:(65) 92932949
ADR;WORK:;;;;;;Singapore
LABEL;WORK:Singapore
URL:
URL:http://www.wizoffice.com
EMAIL;PREF;INTERNET:[EMAIL PROTECTED]
REV:19990922T094837Z
END:VCARD




> 2) It should use only one account, if possible
Single UID is your best friend here :-)

> 3) It should be (my)SQL based, so I dont need to add extra system
accounts.
Seems that you have solved that.

> 4) Support for quota.
This is 5 mins of work.

> 5) If it has a nice WWW GUI to manage the users I wouldnt mind.
PHP3 will aid you in the days of darkness. It's not Mother Marry but close.






I have a script in C ( modified from Gregg's checkpoppasswd.c )
that uses PostgreSQL database to do the authentication; 
it uses one system user account and can resolve the case [EMAIL PROTECTED]
and [EMAIL PROTECTED]  If you are interested, you can download it
from
        http://x.csusb.net/free/qmail/index.htm

Tong

At 11:29 AM 11/19/99 +0800, Michael Boman wrote:
>I am tuning our mailserver and I have following questions:
>
>1) I want that [EMAIL PROTECTED] and [EMAIL PROTECTED] is two
>different users. (This should be working with mailinglists as well.)
>
>2) It should use only one account, if possible
>
>3) It should be (my)SQL based, so I dont need to add extra system accounts.
>
>4) Support for quota.
>
>5) If it has a nice WWW GUI to manage the users I wouldnt mind.
>
>I am currently using:
>
>- qmail 1.03 with mySQL patch !!! HEAVILY HACKED !!!
>- ezmlm 0.53 (Not hacked *smile*)
>
>I am looking into following solution:
>
>- qmail 1.03
>- vpopmail 3.4.10 (has mySQL support, but is beta)
>- ezmlm-idx (has mySQL support)
>- qmailadmin 0.24
>
>Will that do the trick?
>I am looking to serve about 10k users at a start, growing to about 50k in a
>year.
>The hardware I am currently using is a PIII with 128 Mb of RAM and 6 Gb for
>user mail. Hardware SCSI RAID is ordered and will be in place soon, so I
>wont run out of discspace.
>
>Any comments would be appriciated.
>
>Best regards
>Michael Boman
>
>--
>Michael Boman, Systems Engineer
>WizOffice.Com Pte Ltd - 16 Tannery Lane, #06-00
>Crystal Time Building, Singapore. 347778
>Your Online Office Wizard - http://www.wizoffice.com/
>
>
>Attachment Converted: E:\APPL\EUDORA\Michael1.vcf
>





Greetings,
    We are thinking of using OpenDiskSuite to 
mirror a disk which contains /var/qmail so that
if the disk dies we have (hopefully) not lost the
mail in the queue.  Will this work?  

Would I  then need to run the queue through the 
queue recovery script or should it be okay without?  

Would it be better to use Veritas or something else?

Thanks,
   mike.

__________________________________________
NetZero - Defenders of the Free World
Get your FREE Internet Access and Email at
http://www.netzero.net/download/index.html




On Thu, Nov 18, 1999 at 07:36:17PM -0800, Michael Boyiazis wrote:
>     We are thinking of using OpenDiskSuite to 
> mirror a disk which contains /var/qmail so that
> if the disk dies we have (hopefully) not lost the
> mail in the queue.  Will this work?  
> 
> Would I  then need to run the queue through the 
> queue recovery script or should it be okay without?  
> 
> Would it be better to use Veritas or something else?
 
IMHO, no software mirroring scheme is going to do the trick.  AND
they're overwhelmingly expensive.

If redundancy is your goal, then get an SCSI to SCSI raid controller
and set up /var/qmail/queue on a RAID 1 partion.

If you're looking for performance with redundancy, then make sure the
controller can do  RAID 1+0 with a write-back cache.

Hot swap is a must in these cases.

Any RAID built on the Infortrend controller will make you a happy guy.

Software RAID is, again IMHO, not suitable for making your queue
redundant or quick.

John




Hey there,
 
    I'm working on removing open relaying on my servers. I've managed to get so far with some usefull documentation, but upon running the abuse.net relaying tester I can get up to relay test 6 and this message appears :
 
    >>> RSET
    <<< 250 Flushed
    >>> MAIL FROM:<[EMAIL PROTECTED]>
    <<< 250 ok
    >>> RCPT TO:<[EMAIL PROTECTED]>
    <<< 250 ok
 
    I've run out of ideas here, is there anybody who can offer any kind of assistance ? I got this far by listing allowed hosts in /var/qmail/control/rcpthosts
 
 
Thanks,
 
Michael.
 




As far as I know, Qmail accepts this mail, but can not deliver it, so it
bounces back.
 
Holger
 

-----Urspr�ngliche Nachricht-----
Von: Michael Richardson (Tech Support - Big.net.au)
[mailto:[EMAIL PROTECTED]]
Gesendet am: Freitag, 19. November 1999 07:23
An: [EMAIL PROTECTED]
Betreff: Open RelayinG


Hey there, 
 
    I'm working on removing open relaying on my servers. I've managed to get
so far with some usefull documentation, but upon running the abuse.net
relaying tester I can get up to relay test 6 and this message appears :
 
    >>> RSET
    <<< 250 Flushed
    >>> MAIL FROM:< [EMAIL PROTECTED]
<mailto:[EMAIL PROTECTED]> >
    <<< 250 ok
    >>> RCPT TO:< [EMAIL PROTECTED]
<mailto:[EMAIL PROTECTED]> >
    <<< 250 ok
 
    I've run out of ideas here, is there anybody who can offer any kind of
assistance ? I got this far by listing allowed hosts in
/var/qmail/control/rcpthosts
 
 
Thanks, 
 
Michael.
 





This thing was discussed in the list about one or two month ago. Have a look
to the archive.
Holger


> -----Urspr�ngliche Nachricht-----
> Von: H�ffelin Holger [mailto:[EMAIL PROTECTED]]
> Gesendet am: Freitag, 19. November 1999 08:22
> An: 'Michael Richardson (Tech Support - Big.net.au)';
> '[EMAIL PROTECTED]'
> Betreff: AW: Open RelayinG
> 
> As far as I know, Qmail accepts this mail, but can not 
> deliver it, so it
> bounces back.
>  
> Holger
>  
> 
> -----Urspr�ngliche Nachricht-----
> Von: Michael Richardson (Tech Support - Big.net.au)
> [mailto:[EMAIL PROTECTED]]
> Gesendet am: Freitag, 19. November 1999 07:23
> An: [EMAIL PROTECTED]
> Betreff: Open RelayinG
> 
> 
> Hey there, 
>  
>     I'm working on removing open relaying on my servers. I've 
> managed to get
> so far with some usefull documentation, but upon running the abuse.net
> relaying tester I can get up to relay test 6 and this message 
> appears :
>  
>     >>> RSET
>     <<< 250 Flushed
>     >>> MAIL FROM:< [EMAIL PROTECTED]
> <mailto:[EMAIL PROTECTED]> >
>     <<< 250 ok
>     >>> RCPT TO:< [EMAIL PROTECTED]
> <mailto:[EMAIL PROTECTED]> >
>     <<< 250 ok
>  
>     I've run out of ideas here, is there anybody who can 
> offer any kind of
> assistance ? I got this far by listing allowed hosts in
> /var/qmail/control/rcpthosts
>  
>  
> Thanks, 
>  
> Michael.
>  
> 





>> I switched over to TCP server yesterday, but today it has been so slow so
>> I been forced to change back to inetd. It takes a minute or so from I am
>> connected to I get the first +OK message. All clients times out before it.
>> This is only true when I am accessing it from the world or the lan. If I
>> am local it works very well.. What can it be?
>
>Defunct reverse DNS, or blocked auth queries on the firewall.


Another problem we were having through a firewall was the use of identd.
By putting a -R (which turns of the identd part of tcpserver) in the
tcpserver line that started qmail-smtpd things speeded up quite a lot.

By the way, could anyone tell me how identd adds more security across a
network?   I have read comments on dejanews that it has its own security
problems.

Geoff






Hi!

I'm currently testing QMail for the ISP I work for, and I stumbled across a
minor problem:

When I tested sending Messages via SMTP, I realized that QMail, unlike
Sendmail, doesn't rewrite Headers in the following manner:
Insert missing From: - Headers from Envelope-Sender
Insert missing To: - Headers from Envelope-Recipients
Insert blank line after last Header-Line

This causes Messages to seem broken in any Email-Client I used. As this
seems to be a minor problem, because any reasonable Mail-Client inserts
these headers, it is still not acceptable. I scanned the FAQ and this
Mailing-List for any suggestions, but was unable to find some. I'm still
very new to QMail, and the solution pointed out in FAQ 5.5 didn't work out,
it got even worse - From: alias@[mailserver] and the like.

I wondered whether anyone of you regards this as problem, and whether anyone
of you has a fixup for this (like a C-Program to feed the messages through
or anything). We don't have any local users on the server, only virtual
users who feed their messages via smtp and get them via pop3 and are
authenticated via radius.

Regards,

--- Heinz Ekker/ mailto:[EMAIL PROTECTED]
-- home: http://www.slatibartfass.org
-- work: mailto:[EMAIL PROTECTED]
--- refutile is sistance - defect of borg




I notice that rcpthosts on our mail servers can be circumvented by using
the machines ip addressx in the recipient, e.g.:

rcpt to:<crap%spam.com@\<hostname-of-mailhost\>>
553 sorry, that domain isn't in my list of allowed rcpthosts (#5.7.1)

but

rcpt to:<crap%spam.com@[\<ip-address-of-mailhost\>]>
250 ok

Why is this? How do I turn it off?
Cheers.

Mark Powell - UNIX System Administrator - Clifford Whitworth Building
A.I.S., University of Salford, Salford, Manchester, UK.
Tel: +44 161 295 5936  Fax: +44 161 295 5888  www.pgp.com for PGP key
[EMAIL PROTECTED] (spell salford correctly to reply to me)





-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 19 Nov 99, at 9:51, Mark Powell wrote:
> rcpt to:<crap%spam.com@\<hostname-of-mailhost\>>
> 553 sorry, that domain isn't in my list of allowed rcpthosts (#5.7.1)
> 
> but
> 
> rcpt to:<crap%spam.com@[\<ip-address-of-mailhost\>]>
> 250 ok
> 
> Why is this? How do I turn it off?

And, like, what makes you think that the mail is being delivered? 
Unless you activated the percenthack, the mail gets delivered to a 
local user "crap%spam.com". Now that user doesn't exist, does 
he? So the mail gets bounced back as undeliverable...

-----BEGIN PGP SIGNATURE-----
Version: PGP 6.0.2 -- QDPGP 2.60 
Comment: http://community.wow.net/grt/qdpgp.html

iQA/AwUBODUsw1MwP8g7qbw/EQIS5gCg0HZxUMJXquubvjetDHDmcDZqxTwAoLLi
V1quEaQ4xs2EmaaulgbxZHEM
=pr99
-----END PGP SIGNATURE-----
--
Petr Novotny, ANTEK CS
[EMAIL PROTECTED]
http://www.antek.cz
PGP key ID: 0x3BA9BC3F
-- Don't you know there ain't no devil there's just God when he's drunk.
                                                             [Tom Waits]


Reply via email to