Re: strange behavior on delivering messages

2015-02-15 Thread kanzer
I have the same problem friend,

you was able to solve this, I would appreciate if someone gives a light

thanks





-- 
You received this mail because you are subscribed to misc@opensmtpd.org
To unsubscribe, send a mail to: misc+unsubscr...@opensmtpd.org



Re: strange behavior on delivering messages

2015-02-15 Thread Gilles Chehade
On Sun, Feb 15, 2015 at 12:27:51PM +, kanzer wrote:
 I have the same problem friend,
 
 you was able to solve this, I would appreciate if someone gives a light
 
 thanks
 

Still happens ?
OpenBSD too ? What version ?


-- 
Gilles Chehade

https://www.poolp.org  @poolpOrg

-- 
You received this mail because you are subscribed to misc@opensmtpd.org
To unsubscribe, send a mail to: misc+unsubscr...@opensmtpd.org



Re: strange behavior on delivering messages

2015-02-15 Thread Ultramedia Libertad
I'm going to explain
I have OpenBSD 5.6 and OpenSMTPD 5.4.3

I can send and receive emails to all over the world, but I have two
big problems, I can't send to my contacts that are also virtual users
in my own domain.

example
u...@gmail.com -- m...@mydomain.com --works correct.
m...@mydomain.com -- u...@gmail.com --works correct.

but m...@mydomain.com -- mybrot...@mydomain.com --does Not work

# cat /etc/mail/smtpd.conf
#   $OpenBSD: smtpd.conf,v 1.7 2014/03/12 18:21:34 tedu Exp $

# This is the smtpd server system-wide configuration file.
# See smtpd.conf(5) for more information.

# To accept external mail, replace with: listen on all
#

pki mail.darkmail.mx certificate /etc/ssl/mail.darkmail.mx.crt
pki mail.darkmail.mx key /etc/ssl/private/mail.darkmail.mx.key

table vrecipients file:/etc/mail/vrecipients
table vdomains file:/etc/mail/vdomains
table valiases file:/etc/mail/valiases
table credentials file:/etc/mail/credentials

listen on lo0
listen on egress tls-require pki mail.darkmail.mx auth-optional
listen on lo0 port 10026 tag CLAM_IN # incoming mail
listen on lo0 port 10028 tag CLAM_OUT # outgoing mail
listen on lo0 port 10029 tag DKIM_OUT # outgoing mail
listen on re0 port 587 tls-require pki mail.darkmail.mx auth credentials

# tagged mail returned from clamsmtpd either deliver or relay
accept tagged CLAM_IN for domain vdomains recipient vrecipients
relay via lmtp://127.0.0.1:2525
accept tagged CLAM_IN for domain vdomains virtual valiases
accept tagged CLAM_OUT for any relay via smtp://127.0.0.1:10030 # send
to dkimproxy

# tagged mail returned from dkimproxy relay out
accept tagged DKIM_OUT for any relay

# start here - untagged mail is sent to clamsmtpd
accept from local for any relay via smtp://127.0.0.1:10027 # outgoing mail
accept from any for any relay via smtp://127.0.0.1:10025 # incoming mail

#smtpd -dv -Tlookup
debug: mta: enough connections already
debug: mta: 0x1dd8f2efdc00: handling next task for relay [relay:yahoo.com.tw]
relay: TempFail for 144cef630aedae49: session=e4a930d0c22a698c,
from=mirfmepvx...@wysina.com.tw, to=6922...@yahoo.com.tw,
rcpt=-, source=78.46.145.206, relay=203.188.197.119
(mta-v3.mail.vip.tp2.yahoo.com), delay=12m, stat=421 4.7.0 [GL01]
Message from (78.46.145.206) temporarily deferred - 4.16.50. Please
refer to http://postmaster.yahoo.com/errors/postmaster-21.html
relay: TempFail for 144cef631fdc18f3: session=e4a930d0c22a698c,
from=mirfmepvx...@wysina.com.tw, to=afu...@yahoo.com.tw, rcpt=-,
source=78.46.145.206, relay=203.188.197.119
(mta-v3.mail.vip.tp2.yahoo.com), delay=12m, stat=421 4.7.0 [GL01]
Message from (78.46.145.206) temporarily deferred - 4.16.50. Please
refer to http://postmaster.yahoo.com/errors/postmaster-21.html
relay: TempFail for 144cef6328801e4c: session=e4a930d0c22a698c,
from=mirfmepvx...@wysina.com.tw, to=ak2032...@yahoo.com.tw,
rcpt=-, source=78.46.145.206, relay=203.188.197.119
(mta-v3.mail.vip.tp2.yahoo.com), delay=12m, stat=421 4.7.0 [GL01]
Message from (78.46.145.206) temporarily deferred - 4.16.50. Please
refer to http://postmaster.yahoo.com/errors/postmaster-21.html
relay: TempFail for 144cef63363dc5ff: session=e4a930d0c22a698c,
from=mirfmepvx...@wysina.com.tw, to=alex960...@yahoo.com.tw,
rcpt=-, source=78.46.145.206, relay=203.188.197.119
(mta-v3.mail.vip.tp2.yahoo.com), delay=12m, stat=421 4.7.0 [GL01]
Message from (78.46.145.206) temporarily deferred - 4.16.50. Please
refer to http://postmaster.yahoo.com/errors/postmaster-21.html
relay: TempFail for 144cef63482d7753: session=e4a930d0c22a698c,
from=mirfmepvx...@wysina.com.tw, to=an545...@yahoo.com.tw,
rcpt=-, source=78.46.145.206, relay=203.188.197.119
(mta-v3.mail.vip.tp2.yahoo.com), delay=12m, stat=421 4.7.0 [GL01]
Message from (78.46.145.206) temporarily deferred - 4.16.50. Please
refer to http://postmaster.yahoo.com/errors/postmaster-21.html
relay: TempFail for 144cef6367adbe49: session=e4a930d0c22a698c,
from=mirfmepvx...@wysina.com.tw, to=come...@yahoo.com.tw,
rcpt=-, source=78.46.145.206, relay=203.188.197.119
(mta-v3.mail.vip.tp2.yahoo.com), delay=12m, stat=421 4.7.0 [GL01]
Message from (78.46.145.206) temporarily deferred - 4.16.50. Please
refer to http://postmaster.yahoo.com/errors/postmaster-21.html
relay: TempFail for 144cef6380ee8611: session=e4a930d0c22a698c,
from=mirfmepvx...@wysina.com.tw, to=alpha2...@yahoo.com.tw,
rcpt=-, source=78.46.145.206, relay=203.188.197.119
(mta-v3.mail.vip.tp2.yahoo.com), delay=12m, stat=421 4.7.0 [GL01]
Message from (78.46.145.206) temporarily deferred - 4.16.50. Please
refer to http://postmaster.yahoo.com/errors/postmaster-21.html
relay: TempFail for 144cef63cc5afbb9: session=e4a930d0c22a698c,
from=mirfmepvx...@wysina.com.tw, to=ann776152...@yahoo.com.tw,
rcpt=-, source=78.46.145.206, relay=203.188.197.119
(mta-v3.mail.vip.tp2.yahoo.com), delay=12m, stat=421 4.7.0 [GL01]
Message from (78.46.145.206) temporarily deferred - 4.16.50. Please
refer to http://postmaster.yahoo.com/errors/postmaster-21.html
relay: TempFail for 

Re: mx1.poolp.org - bad signature errors

2015-02-15 Thread Gilles Chehade
sending from gmail as I accidentally deleted your mail in my mailbox ...

The certificate on mx1.poolp.org had expired, I had replaced it but forgot
to restart the daemon :-p

2015-02-15 17:24 GMT+01:00 Scott Vanderbilt li...@datagenic.com:

 On 2/14/2015 6:22 PM, Gilles Chehade wrote:

 On Sat, Feb 14, 2015 at 03:53:50PM -0800, Scott Vanderbilt wrote:

 I'm starting too see a lot of entries in maillog that look like this:

 Feb 14 12:14:34 callistus smtpd[19266]: smtp-in: New session
 55caf5d3967dc747 from host mx1.poolp.org [212.83.181.8]
 Feb 14 12:14:35 callistus smtpd[19266]: smtp-in: Disconnecting session
 55caf5d3967dc747: IO error: error:1408807B:SSL
 routines:SSL3_GET_CERT_VERIFY:bad signature
 Feb 14 12:30:36 callistus smtpd[19266]: smtp-in: New session
 55caf5da505426c5 from host mx1.poolp.org [212.83.181.8]
 Feb 14 12:30:37 callistus smtpd[19266]: smtp-in: Disconnecting session
 55caf5da505426c5: IO error: error:1408807B:SSL
 routines:SSL3_GET_CERT_VERIFY:bad signature
 Feb 14 13:14:27 callistus smtpd[19266]: smtp-in: New session
 55caf5e142adad77 from host mx1.poolp.org [212.83.181.8]
 Feb 14 13:14:28 callistus smtpd[19266]: smtp-in: Disconnecting session
 55caf5e142adad77: IO error: error:1408807B:SSL
 routines:SSL3_GET_CERT_VERIFY:bad signature

 Might anyone know what is causing these errors, and whether it is a
 misconfiguration on my end or not?

 Thank you.

 Running OpenSMTPD 5.4.4 on OpenBSD 5.7-beta (amd64) 3 Feb. snapshot


 Can you try again please ?


 I am no longer seeing these log entries since the time of your message.

 Just out of curiosity, do you know what was causing them?

 Thank you.




 --
 You received this mail because you are subscribed to misc@opensmtpd.org
 To unsubscribe, send a mail to: misc+unsubscr...@opensmtpd.org




Re: snapshot build against LibreSSL 2.1.3 error: previous declaration of 'SSL_CTX_use_certificate_chain' was here

2015-02-15 Thread Gilles Chehade
On Tue, Feb 03, 2015 at 08:53:31PM -0800, Seth wrote:
 I think this particular issue might have been fixed by commit 
 https://github.com/OpenSMTPD/OpenSMTPD/commit/8bca141233921dcfee7b1fc734d376adb70ef044.
 
 Can't be sure though because the build doesn't even get far enough to
 compile tortls.c. It fails earlier with this error:
 
 -compare -Wformat-security -Wno-pointer-sign -fno-strict-aliasing
 -fno-builtin-memset -MT bsd-misc.o -MD -MP -MF .deps/bsd-misc.Tpo -c -o
 bsd-misc.o bsd-misc.c
 bsd-misc.c: In function 'nanosleep':
 bsd-misc.c:146: error: expected ';' before '(' token
 bsd-misc.c:165: error: expected ';' before 'return'
 *** [bsd-misc.o] Error code 1
 
 Stop in /usr/local/src/opensmtpd/openbsd-compat.
 *** [all-recursive] Error code 1
 
 Stop in /usr/local/src/opensmtpd.
 *** [all] Error code 1
 
 Stop in /usr/local/src/opensmtpd.
 

We're currently in a very annoying situation:


on OpenBSD:

We rely on LibreSSL as it has now deprecated OpenSSL there, however when
the maintainers cleaned up some code a function we rely upon was renamed
so depending on the version of OpenBSD we need to build some custom code
or not.


on Portable:

We rely mostly on OpenSSL but some people are building against LibreSSL.
The LibreSSL they link against is one that was released before the names
changed, so we also need to build some custom code or not depending what
people are linking again... but unlike the OpenBSD case we also have the
other differences between OpenSSL and LibreSSL to account for.


Until we have figured a way out of this, you should expect some breakage
in snapshots / git and should comment on the ticket that was opened with
regard to OpenSSL - LibreSSL transition.

-- 
Gilles Chehade

https://www.poolp.org  @poolpOrg

-- 
You received this mail because you are subscribed to misc@opensmtpd.org
To unsubscribe, send a mail to: misc+unsubscr...@opensmtpd.org



Re: strange behavior on delivering messages

2015-02-15 Thread Ultramedia Libertad
thanks Christoph,

the solution that you mean for the spam I worked very well

for the delivery of emails to my same virtual users, add the following
line just before DKIMPROXY

accept tagged CLAM_OUT for domain vdomains virtual valiases relay via \
lmtp://127.0.0.1

and the answer was

/etc/mail/smtpd.conf:28: error: invalid url: lmtp://127.0.0.1

then I change to the following
accept tagged CLAM_OUT for domain vdomains virtual valiases relay via \
lmtp://127.0.0.1:2525

and the answer was

aliases/virtual may not be used with a relay rule

then I change to the following

# cat /etc/mail/smtpd.conf
#   $OpenBSD: smtpd.conf,v 1.7 2014/03/12 18:21:34 tedu Exp $

# This is the smtpd server system-wide configuration file.
# See smtpd.conf(5) for more information.

# To accept external mail, replace with: listen on all
#

pki mail.darkmail.mx certificate /etc/ssl/mail.darkmail.mx.crt
pki mail.darkmail.mx key /etc/ssl/private/mail.darkmail.mx.key

table vrecipients file:/etc/mail/vrecipients
table vdomains file:/etc/mail/vdomains
table valiases file:/etc/mail/valiases
table credentials file:/etc/mail/credentials

listen on lo0
listen on re0 port 25
listen on lo0 port 10026 tag CLAM_IN # incoming mail
listen on lo0 port 10028 tag CLAM_OUT # outgoing mail
listen on lo0 port 10029 tag DKIM_OUT # outgoing mail
listen on re0 port 587 tls-require pki mail.darkmail.mx auth credentials

# tagged mail returned from clamsmtpd either deliver or relay
accept tagged CLAM_IN for domain vdomains recipient vrecipients
relay via lmtp://127.0.0.1:2525
accept tagged CLAM_IN for domain vdomains virtual valiases
accept tagged CLAM_OUT for domain vdomains recipient vrecipients
relay via lmtp://127.0.0.1:2525
accept tagged CLAM_OUT for domain vdomains virtual valiases
accept tagged CLAM_OUT for any relay via smtp://127.0.0.1:10030 # send
to dkimproxy

# tagged mail returned from dkimproxy relay out
accept tagged DKIM_OUT for any relay

# start here - untagged mail is sent to clamsmtpd
accept from local for any relay via smtp://127.0.0.1:10027 # outgoing mail
accept from any for domain vdomains relay via smtp://127.0.0.1:10025
# incoming mail

and this is working perfectly, even that is not printing the DKIM
signature between e-mails from the same server, even though I don't
think it's very necessary, but maybe for the standard

thank you I would like to know if you see bugs or errors, or if I can
improve something, for example I very much doubt you have this:

listen on re0 port 25

now my server seems to work well even between virtual users of my
server does not see the DKIM signature.

;)

2015-02-15 18:24 GMT+00:00 Christoph Borsbach
christoph+opensm...@borsbach.org:
 Hi,

 On Sun, Feb 15, 2015 at 14:01:15 +, Ultramedia Libertad wrote:
and this is working perfectly, even that is not printing the DKIM
signature between e-mails from the same server, even though I don't
think it's very necessary, but maybe for the quality
 I'm going to explain
 I have OpenBSD 5.6 and OpenSMTPD 5.4.3

 I can send and receive emails to all over the world, but I have two
 big problems, I can't send to my contacts that are also virtual users
 in my own domain.
 example
 u...@gmail.com -- m...@mydomain.com --works correct.
 m...@mydomain.com -- u...@gmail.com --works correct.

 but m...@mydomain.com -- mybrot...@mydomain.com --does Not work

 I'm not sure if this is the correct way of doing things,
 but I'd say you need one more line in your config before the DKIM-Proxy-Part
 like this:
 accept tagged CLAM_OUT for domain vdomains virtual valiases relay via \
 lmtp://127.0.0.1

 So that way you accept mail for your own domain.

 as you can see it seems that there are a spammer atacandome and don't
 know how to stop it nothing more I turn on the smtpd and starts to
 send

 Spam: The last line in your config accepts mail for any domain. You probably
 only want to handle mail for your own vdomains:
 accept from any for domain vdomains relay via smtp://127.0.0.1:10025 # 
 incoming mail

 I hope this helps, I'm no expert myself.

 Cheers,
 Christoph

 thanks for any help

 2015-02-15 13:05 GMT+00:00 Gilles Chehade gil...@poolp.org:
  On Sun, Feb 15, 2015 at 12:27:51PM +, kanzer wrote:
  I have the same problem friend,
 
  you was able to solve this, I would appreciate if someone gives a light
 
  thanks
 
 
  Still happens ?
  OpenBSD too ? What version ?
 
 
  --
  Gilles Chehade
 
  https://www.poolp.org  @poolpOrg



 --
 editor de sueqos

 --
 You received this mail because you are subscribed to misc@opensmtpd.org
 To unsubscribe, send a mail to: misc+unsubscr...@opensmtpd.org

 --
 You received this mail because you are subscribed to misc@opensmtpd.org
 To unsubscribe, send a mail to: misc+unsubscr...@opensmtpd.org




-- 
editor de sueƱos

--
You received this mail because you are subscribed to misc@opensmtpd.org
To unsubscribe, send a mail to: misc+unsubscr...@opensmtpd.org



Re: strange behavior on delivering messages

2015-02-15 Thread Christoph Borsbach
Hi,

On Sun, Feb 15, 2015 at 14:01:15 +, Ultramedia Libertad wrote:
 I'm going to explain
 I have OpenBSD 5.6 and OpenSMTPD 5.4.3
 
 I can send and receive emails to all over the world, but I have two
 big problems, I can't send to my contacts that are also virtual users
 in my own domain.
 example
 u...@gmail.com -- m...@mydomain.com --works correct.
 m...@mydomain.com -- u...@gmail.com --works correct.
 
 but m...@mydomain.com -- mybrot...@mydomain.com --does Not work

I'm not sure if this is the correct way of doing things,
but I'd say you need one more line in your config before the DKIM-Proxy-Part
like this: 
accept tagged CLAM_OUT for domain vdomains virtual valiases relay via \
lmtp://127.0.0.1

So that way you accept mail for your own domain. 

 as you can see it seems that there are a spammer atacandome and don't
 know how to stop it nothing more I turn on the smtpd and starts to
 send

Spam: The last line in your config accepts mail for any domain. You probably
only want to handle mail for your own vdomains:
accept from any for domain vdomains relay via smtp://127.0.0.1:10025 # 
incoming mail

I hope this helps, I'm no expert myself. 

Cheers,
Christoph

 thanks for any help
 
 2015-02-15 13:05 GMT+00:00 Gilles Chehade gil...@poolp.org:
  On Sun, Feb 15, 2015 at 12:27:51PM +, kanzer wrote:
  I have the same problem friend,
 
  you was able to solve this, I would appreciate if someone gives a light
 
  thanks
 
 
  Still happens ?
  OpenBSD too ? What version ?
 
 
  --
  Gilles Chehade
 
  https://www.poolp.org  @poolpOrg
 
 
 
 -- 
 editor de sueqos
 
 --
 You received this mail because you are subscribed to misc@opensmtpd.org
 To unsubscribe, send a mail to: misc+unsubscr...@opensmtpd.org

-- 
You received this mail because you are subscribed to misc@opensmtpd.org
To unsubscribe, send a mail to: misc+unsubscr...@opensmtpd.org



Re: Article/howto: Opensmtpd and dovecot with a shared SQL database

2015-02-15 Thread Hugo Osvaldo Barrera
On 2015-02-15 19:45, Hugo Osvaldo Barrera wrote:
 I've written a brief article on how I configured opensmtpd with dovecot, using
 virtual user from a shared SQL DB.
 
 I have to handle multiple user in multiple domains and a few catch-all 
 domains,
 so it's a non-trivial example.
 
 Hopefully it'll be of some use to somebody - or maybe somebody can provide
 insight on improvements.
 
 Cheers, and thanks to the devs for the magnificent software!
 

I guess it'll be of no use to anybody without a link, huh?

https://hugo.barrera.io/journal/2015/02/15/opensmtpd-dovecot-shared-sql-db/

Sorry for the noise,

-- 
Hugo Osvaldo Barrera
A: Because we read from top to bottom, left to right.
Q: Why should I start my reply below the quoted text?


signature.asc
Description: PGP signature


Re: YAB - Yet Another Blog with posts about OpenSMTPD, clamsmtp, spampd, lmtp, etc.on OpenBSD

2015-02-15 Thread Edgar Pettijohn


On 02/14/15 14:14, Chess Griffin wrote:

On Fri, Feb 13, 2015, at 02:38 PM, Christoph Borsbach wrote:

I found one issue with your config though: It seems the last line of your
config creates an open relay:
accept from any for any relay via smtp://127.0.0.1:10025 # incoming mail

I noticed this while running the setup without spamd, maybe spamd
mitigates
this? When I change the for any for for domain vdomains, the relay is
closed, mail for non local-adresses is refused.

My config is exactly the same as here
http://technoquarter.blogspot.de/2015/02/openbsd-mail-server-part-4-spamassassin.html,
except for the last line as stated above.


Thanks, Christoph - posts have been updated and I noted the change at
the end of the Intro post.  Cheers!

It appears to create an infinite loop when sending to another user on 
your domain.  ie


from: us...@example.tld
to: us...@example.tld




--
You received this mail because you are subscribed to misc@opensmtpd.org
To unsubscribe, send a mail to: misc+unsubscr...@opensmtpd.org