Re: [qmailtoaster] squirrelmail and submission port
Hi Erik, It seems that the standard installation of qt installs both squirrelmail and qmail at the same server. So I assume the whole submission process happens within the qt server and localhost doesn't need to check against any RBL. Besides, I suppose users can only send email through squirrelmail after they have been authenticated (by squirrelmail). What's the benefit of submitting the mail through the submission port? Best regards, Bill On 2/7/07, Erik Espinoza [EMAIL PROTECTED] wrote: Nevermind, the config_local.php changes the setting back. We haven't changed the SquirrelMail because some people have the policy of not upgrading all packages, just the ones that need updating (ClamAV, SpamAssassin, SquirrelMail) but not the djb licensed packages. This is because of security. Next SquirrelMail release I'll change the port to 587 and require qmail-toaster-1.03-1.3.8 or higher. Thanks, Erik On 2/6/07, Erik Espinoza [EMAIL PROTECTED] wrote: Hey Slamp, I was under the impression that Squirrelmail used /usr/sbin/sendmail to send mail, not smtp. Doesn't your config.php have $useSendmail = true; Erik The reason squirrelmail uses On 2/6/07, slamp slamp [EMAIL PROTECTED] wrote: Is there a reason why the default config of squirrelmail is not using the submission port? Is it really necessary for squirrelmail to be checked against RBL's? I found that squirrelmail is much faster (sending) when configured to use the submission port since it bypasses RBL checks. This also prevents the error Server replied: 354 when an RBL timeout occurs. BTW I just updated to the latest and greatest including the 3 devel packages and everything is perfect (knocks on wood). Thanks. - QmailToaster hosted by: VR Hosted http://www.vr.org - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]
Re: [qmailtoaster] Need small help on QT
ashok wrote: Dear All,, Good morning J I have installed QT in a test server. If I send an email from my yahoo id to [EMAIL PROTECTED] mailto:[EMAIL PROTECTED] [ email id does not exist ], but it accepts the email an forwards to [EMAIL PROTECTED] mailto:[EMAIL PROTECTED]. Pls suggest why this is happening and what files shld I check around to solve this problem. Did you set it so that all invalid emails should be sent to a specific address? This would be handled in qmailadmin. smime.p7s Description: S/MIME Cryptographic Signature
RE: [qmailtoaster] Site to Site QT Server Replication - 24 hours
Hi Gabriel, you need to make sure that the port number you specify in the run file is the one you try and connect to. The one that is set in the qmail.prf file must match the /unison/unison -socket line in unison-run. On the primary confirm that the /root/.unison/qmail.prf file has the correct ip and socket. On the secondary, can you confirm the unison-run script matches what is on the wiki, or paste the contents here. Does the /unison/unison -socket line have the at the end? What happens on secondary if you manually run the above line. So at command type /unison/unison -socket and then enter on the blank line. If that runs, do ps -ef|grep unison and you should get a line similar to root 24608 1 0 12:28 pts/100:00:00 /unison/unison -socket Let me know what that does, the primary error will definately be down to the socket not running. As for socket number you can use anything so long as they match and aren't on a known used socket. e.g. 6576 _ From: Gabriel Lai [mailto:[EMAIL PROTECTED] Sent: 07 February 2007 05:35 To: qmailtoaster-list@qmailtoaster.com Subject: Re: [qmailtoaster] Site to Site QT Server Replication - 24 hours Hi Craig, I manage to redo the testing after so long you replied the email :) The error I got was extracted out from Primary Server, it says Contacting to server. Error: Can't connect to server (192.168.119.133:1234) Deleting lock file I start the unison-run command with /unison/unison-run start, the next line shown me: sh-3.1# But, seems like it doesn't start the service on Secondary, that's y it cannot connect. Would u mind tell me what is the port number u use? Thanks - Original Message From: Craig Smith [EMAIL PROTECTED] To: qmailtoaster-list@qmailtoaster.com Sent: Monday, January 22, 2007 10:21:25 PM Subject: RE: [qmailtoaster] Site to Site QT Server Replication - 24 hours Gabriel Where were you getting errors? I set up this procedure and it works like a charm on my system, but there are minor changes needed between various OS's. I set this up on Fedora Core 5. Let me know what errors you were getting and where and I will try and help you with it. Also I changed the timing on the script to more than 1 min as after a few weeks it started causing problems on our server with the replication itself, so now it is more accurate to say the backup server is only ever 10 mins (or cronjob based) from the primary. Regards. _ From: Gabriel Lai [mailto:[EMAIL PROTECTED] Sent: 22 January 2007 07:24 To: qmailtoaster-list@qmailtoaster.com Subject: Re: [qmailtoaster] Site to Site QT Server Replication - 24 hours Joseph, Have you tried with the QMT Setup steps? I tested previously, but failed at certain level. If you have tested before, maybe you can help me out with the errors Thanks - Original Message From: Joseph Lundgren [EMAIL PROTECTED] To: qmailtoaster-list@qmailtoaster.com Sent: Friday, January 19, 2007 2:41:59 AM Subject: RE: [qmailtoaster] Site to Site QT Server Replication - 24 hours Gabriel, Please look at http://wiki.qmailtoaster.com/index.php/QMT_Failover_replication_Setup This page gives you a procedure to configure a backup qmt server that will be available for failover in the event of primary server failure. The backup server will only ever be 1 minute out from the primary. I believe that it covers what you're trying to achieve. Sincerely, -- Joseph Lundgren Systems Engineer Peak Internet, LLC [EMAIL PROTECTED] From: Gabriel Lai [mailto:[EMAIL PROTECTED] Sent: Thursday, January 18, 2007 1:12 AM To: Qmail Toaster List 2 Subject: [qmailtoaster] Site to Site QT Server Replication - 24 hours Hello all, I would like to setup a QT site where the 2 email servers will be doing replication to each other 24 hours live. eg: when mail coming from Internet to Mail Server 1, it will automatically replicate to Mail Server 2. Jake has point me the backup restore script guides, but that needs manual job when Mail Server 1 is down, someone have to manually restore the backup in Mail Server 2, then only can replace Mail Server 1. Have anyone tried to do so? Please assist. _ Sucker-punch spam with award-winning protection. Try the free Yahoo! Mail Beta. _ The fish are biting. Get more visitors http://us.rd.yahoo.com/evt=49679/*http://searchmarketing.yahoo.com/arp/spon soredsearch_v2.php?o=US2140cmp=Yahooctv=Q107Taglines=Ys2=EMb=50 on your site using Yahoo! Search Marketing. http://us.rd.yahoo.com/evt=49679/*http://searchmarketing.yahoo.com/arp/spon soredsearch_v2.php?o=US2140cmp=Yahooctv=Q107Taglines=Ys2=EMb=50 _ Need Mail bonding? Go to the Yahoo! http://answers.yahoo.com/dir/index;_ylc=X3oDMTFvbGNhMGE3BF9TAzM5NjU0NTEwOAR fcwMzOTY1NDUxMDMEc2VjA21haWxfdGFnbGluZQRzbGsDbWFpbF90YWcx?link=asksid=39654 6091 Mail QA for great
Re: [qmailtoaster] qtp-newmodel upgrade errors]
Ray Lance wrote: Eric Shubes wrote: Ray Lance wrote: Rats! I just got this failure on the 2nd box: Installing courier-imap-toaster-4.1.2-1.3.6 in the sandbox ... error: failed to stat /flash: No such file or directory Preparing... ## file /usr/share/man/man8/imapd.8.gz from install of courier-imap-toaster-4.1.2-1.3.6 conflicts with file from package cyrus-imapd-2.2.12-3.RHEL4.1 Are you trying to run both cyrus-imapd and courier-imap? If so, why? If not, simply remove cyrus-imapd. Did yum remove cyrus-imapd and it removed, but I get the same error from qtp-menu newmodel. So I removed the imapd.9.gz by hand and ran newmodel again, only to get the SAME ERROR! Help? You need to either remove the package from the sandbox, or rebuild the sandbox. To remove the package from the sandbox: # chroot /opt/qtp-sandbox # mount -t proc nada /proc # rpm -e cyrus-imapd # umount /proc # exit -- -Eric 'shubes' - QmailToaster hosted by: VR Hosted http://www.vr.org - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]
Re: [qmailtoaster] Problem with Qtp-newmodel upgrade
David J. wrote: Dear Eric, I Have run the qtp-newmodel and already got my toaster update, your script are running just fine. Glad to hear that. I wonder, the script are doing backup from my old toaster, I he was resoring the old version configuration, won't affecting my new Toaster..?? The script gives you the option of restoring the old configuration or not. There are still a few quirks with a few of the toaster packages regarding configuration files, but there's no *major* problem that I know of whether you choose to restore your configs or not. A recent (1.3.10) release of qmail-toaster introduced the NOP0FCHECK=1 variable into the tcp.smtp rules. It won't cause a malfunction if you don't have it, only an annoying log message. Rule of thumb: If you run a stock toaster, you should probably not choose to restore the config files. If you have customized your toaster a great deal, you should probably choose to do the restore. I'm thinking that perhaps the default action in qtp-newmodel should be to not restore configuration files. Does anyone have an opinion on this? I have done several check on the wiki about the whole configurations, are those wiki update for the lastest one ..? Unfortunately, the wiki isn't necessarily complete or up to date. It's getting better though. It's the responsibility of the whole community to ensure the quality of the wiki. If you know of something that's missing, please take the time to add it. It will make you feel good. ;) If not, what part of the configuration which I have to consider to modify. That would depend on which version you upgraded from. If you're upgrading withing the 1.3.n series, you should be ok. I'm not sure about 1.2.n. -- -Eric 'shubes' - QmailToaster hosted by: VR Hosted http://www.vr.org - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]
[qmailtoaster] QT Admin-1.2.9
I've following the QT Fresh Install on CentOS 4.3(Fedora Core 6) up to step 9 and when I bring up by browser to the admin-toaster it went out fine, changed my passwd, hit the Usage Statistic per Domain-botton(OK) so also the MTA statistics-botton(OK), but when I do hit the Edit Users, mailing list, forwarders-button it is just hang there ... Any ideas? - QmailToaster hosted by: VR Hosted http://www.vr.org - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]
Re: [qmailtoaster] squirrelmail and submission port
Now you've got me thinking, Bill. (which is sometimes dangerous!) For the stock toaster, you bring up a good point. What if I were an Enterprise type of user and wanted to run SM on a separate host from the toaster? How difficult would that be? Can the toaster be packaged in such a way as to make this easier, without 'hurting' the stock toaster? IOW, make them loosely (minimally) coupled? Bill Kwok wrote: Hi Erik, It seems that the standard installation of qt installs both squirrelmail and qmail at the same server. So I assume the whole submission process happens within the qt server and localhost doesn't need to check against any RBL. Besides, I suppose users can only send email through squirrelmail after they have been authenticated (by squirrelmail). What's the benefit of submitting the mail through the submission port? Best regards, Bill On 2/7/07, *Erik Espinoza* [EMAIL PROTECTED] mailto:[EMAIL PROTECTED] wrote: Nevermind, the config_local.php changes the setting back. We haven't changed the SquirrelMail because some people have the policy of not upgrading all packages, just the ones that need updating (ClamAV, SpamAssassin, SquirrelMail) but not the djb licensed packages. This is because of security. Next SquirrelMail release I'll change the port to 587 and require qmail-toaster-1.03-1.3.8 or higher. Thanks, Erik On 2/6/07, Erik Espinoza [EMAIL PROTECTED] mailto:[EMAIL PROTECTED] wrote: Hey Slamp, I was under the impression that Squirrelmail used /usr/sbin/sendmail to send mail, not smtp. Doesn't your config.php have $useSendmail = true; Erik The reason squirrelmail uses On 2/6/07, slamp slamp [EMAIL PROTECTED] mailto:[EMAIL PROTECTED] wrote: Is there a reason why the default config of squirrelmail is not using the submission port? Is it really necessary for squirrelmail to be checked against RBL's? I found that squirrelmail is much faster (sending) when configured to use the submission port since it bypasses RBL checks. This also prevents the error Server replied: 354 when an RBL timeout occurs. BTW I just updated to the latest and greatest including the 3 devel packages and everything is perfect (knocks on wood). Thanks. - QmailToaster hosted by: VR Hosted http://www.vr.org http://www.vr.org - To unsubscribe, e-mail: [EMAIL PROTECTED] mailto:[EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED] mailto:[EMAIL PROTECTED] -- -Eric 'shubes' - QmailToaster hosted by: VR Hosted http://www.vr.org - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]
Re: [qmailtoaster] Need small help on QT
Jake Vickers wrote: ashok wrote: Dear All,, Good morning J I have installed QT in a test server. If I send an email from my yahoo id to [EMAIL PROTECTED] mailto:[EMAIL PROTECTED] [ email id does not exist ], but it accepts the email an forwards to [EMAIL PROTECTED] mailto:[EMAIL PROTECTED]. Pls suggest why this is happening and what files shld I check around to solve this problem. Did you set it so that all invalid emails should be sent to a specific address? This would be handled in qmailadmin. AKA CatchAll Account. ;) There can be one or none CatchAll account for each domain. If a CatchAll account is defined, all mail addressed to accounts that don't exist is delivered there. If there is no CatchAll account, email is rejected by smtp, and the sending server should bounce a message back to the sender's account. Ashok, Care to add a wiki FAQ on this? ;) -- -Eric 'shubes' - QmailToaster hosted by: VR Hosted http://www.vr.org - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]
Re: [qmailtoaster] QT Admin-1.2.9
Glenn Remstedt wrote: I've following the QT Fresh Install on CentOS 4.3(Fedora Core 6) up to step 9 and when I bring up by browser to the admin-toaster it went out fine, changed my passwd, hit the Usage Statistic per Domain-botton(OK) so also the MTA statistics-botton(OK), but when I do hit the Edit Users, mailing list, forwarders-button it is just hang there ... Any ideas? I don't know for sure. It should take you to the /qmailadmin/ screen. Have you done this? (I'm taking a shot in the dark here) Edit /etc/php.ini and set register_globals = Off service httpd restart -- -Eric 'shubes' - QmailToaster hosted by: VR Hosted http://www.vr.org - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]
Re: [qmailtoaster] squirrelmail and submission port
Eric Shubes wrote: Now you've got me thinking, Bill. (which is sometimes dangerous!) For the stock toaster, you bring up a good point. What if I were an Enterprise type of user and wanted to run SM on a separate host from the toaster? How difficult would that be? Can the toaster be packaged in such a way as to make this easier, without 'hurting' the stock toaster? IOW, make them loosely (minimally) coupled? Look at the config.pl file for SM. It's in /usr/share/squirrelmail/config/ You should be able to edit all the functions, and tell it what IMAP server to utilize. I haven't messed with this in a long time, but you may also be able to adjust the port. So in theory, yes, you could use SM on a different server and just have it IMAP to your real mail server. smime.p7s Description: S/MIME Cryptographic Signature
Re: [qmailtoaster] QT Admin-1.2.9
the register_global is set to Off one thing I'm wondering over is: If I do have my own domain i.e. 'domain.org' and my host is 'mail.domain.org', and when I then go through the step Add a domain like: /home/vpopmail/bin/vadddomain should it be with 'domain.org' or 'mail.domain.org'? also how should I configure the /etc/hosts ? thanks for any ideas, Eric Shubes wrote: Glenn Remstedt wrote: I've following the QT Fresh Install on CentOS 4.3(Fedora Core 6) up to step 9 and when I bring up by browser to the admin-toaster it went out fine, changed my passwd, hit the Usage Statistic per Domain-botton(OK) so also the MTA statistics-botton(OK), but when I do hit the Edit Users, mailing list, forwarders-button it is just hang there ... Any ideas? I don't know for sure. It should take you to the /qmailadmin/ screen. Have you done this? (I'm taking a shot in the dark here) Edit /etc/php.ini and set register_globals = Off service httpd restart - QmailToaster hosted by: VR Hosted http://www.vr.org - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]
[qmailtoaster] Success!
Eric Shubes wrote: Ray Lance wrote: Eric Shubes wrote: Ray Lance wrote: Rats! I just got this failure on the 2nd box: Installing courier-imap-toaster-4.1.2-1.3.6 in the sandbox ... error: failed to stat /flash: No such file or directory Preparing... ## file /usr/share/man/man8/imapd.8.gz from install of courier-imap-toaster-4.1.2-1.3.6 conflicts with file from package cyrus-imapd-2.2.12-3.RHEL4.1 Are you trying to run both cyrus-imapd and courier-imap? If so, why? If not, simply remove cyrus-imapd. Did yum remove cyrus-imapd and it removed, but I get the same error from qtp-menu newmodel. So I removed the imapd.9.gz by hand and ran newmodel again, only to get the SAME ERROR! Help? You need to either remove the package from the sandbox, or rebuild the sandbox. To remove the package from the sandbox: # chroot /opt/qtp-sandbox # mount -t proc nada /proc # rpm -e cyrus-imapd # umount /proc # exit Thanks, Eric. The chroot removal didn't work, but the sandbox rebuild did.
Re: [qmailtoaster] Disable RBL cheks for authenticated senders
24x7server wrote: hi we are running qmail toaster successfully with clam and spamassassin we wish to disable rbl checks and spam checks for authenticated senders since many dial customers / broadband users ip addresses end up in spam databases are not able to send email thru our server. we however need to ensure that virus scan is not disabled at all and to be done for all emails incoming and outgoing. help required please Use port 587, the submission port. That requires authentication, but does not do RBL checking. smime.p7s Description: S/MIME Cryptographic Signature
Re: [qmailtoaster] force rebuild?
Ray Lance wrote: How can I force a sandbox rebuild after the failure of djbdns (cnt40)? I tried chrooting into the sandbox and removing a component, but that doesn't do it. Ray, Don't use qtp-newmodel to do djbdns at this point. You need to do that package manually for now. Please visit http://trac.shubes.net/qtp and create a new ticket to have djbdns fixed. (I'm already working on it but haven't created a ticket for it yet). Thanks. -- -Eric 'shubes' - QmailToaster hosted by: VR Hosted http://www.vr.org - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]
Re: [qmailtoaster] squirrelmail and submission port
Hi Slamp Eric, I have done this once, SM on a different host from QT. That was REALLY SLOW even on a 100mbps connection. So I just decided to implement proxy in apache and now it's alot faster. I usually run imapproxy on the different host and all goes well. Erik - QmailToaster hosted by: VR Hosted http://www.vr.org - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]
Re: [qmailtoaster] force rebuild?
Eric Shubes wrote: Ray Lance wrote: How can I force a sandbox rebuild after the failure of djbdns (cnt40)? I tried chrooting into the sandbox and removing a component, but that doesn't do it. Simply run qtp-newmodel again from the top. It'll ask you if you want to keep the sandbox or build a new one. No, this is the one where I answer no or skip to djbdns, then it quits, having nothing to do.
Re: [qmailtoaster] force rebuild?
Eric Shubes wrote: Ray Lance wrote: How can I force a sandbox rebuild after the failure of djbdns (cnt40)? I tried chrooting into the sandbox and removing a component, but that doesn't do it. Ray, Don't use qtp-newmodel to do djbdns at this point. You need to do that package manually for now. Please visit http://trac.shubes.net/qtp and create a new ticket to have djbdns fixed. (I'm already working on it but haven't created a ticket for it yet). Thanks. The rub is, it never went through the final part of the newmodel where it shuts down the old toaster and replaces it. I only knew about that when I finally got it done this morning on the 2nd box. I will make the ticket for djbdns.
[qmailtoaster] domains migration
Hi All, finally I could easily install qmailtoaster and qtp on CentOS 4.4 Now, I want to migrate my domains from a qmail-toaster-1.03-1.0.15 (August/2004) installed on Mandrake 10.x This old installation does not have spamassasin and simscan installed, this is the real motivation for mi migration. My question is, all work is just copy the config files and the virtual domains directory (now /home/vpopmail) ? Is there any other consideration to take ? I was looking at the upgrade pages (http://wiki.qmailtoaster.com/index.php/Upgrading) but I think that maibe this procedure is tested for migrating from a most recent version. By example, Im not using Mysql on my old box This is what I think I must do, I have a clean new installation : a.. backs up control and configuration files a.. stops qmail a.. invokes qtp-remove-pkgs to remove certain packages that need to be removed a.. upgrades the packages with a single rpm -Uvh command a.. restores control and configuration files a.. invokes qtp-convert to do conversion processing: a.. mrtg file changes b.. mysql password location change a.. starts qmail a.. runs spamassassin debug configuration Ill try to migrate a first domain, make ir work, test it a few days, and migrate the rest of the server later. Any comment will be apreciated. regards. Gabriel - QmailToaster hosted by: VR Hosted http://www.vr.org - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]
Re: [qmailtoaster] domains migration
Gaby Kule wrote: Hi All, finally I could easily install qmailtoaster and qtp on CentOS 4.4 Now, I want to migrate my domains from a qmail-toaster-1.03-1.0.15 (August/2004) installed on Mandrake 10.x This old installation does not have spamassasin and simscan installed, this is the real motivation for mi migration. My question is, all work is just copy the config files and the virtual domains directory (now /home/vpopmail) ? Is there any other consideration to take ? I was looking at the upgrade pages (http://wiki.qmailtoaster.com/index.php/Upgrading) but I think that maibe this procedure is tested for migrating from a most recent version. By example, Im not using Mysql on my old box This is what I think I must do, I have a clean new installation : a.. backs up control and configuration files a.. stops qmail a.. invokes qtp-remove-pkgs to remove certain packages that need to be removed a.. upgrades the packages with a single rpm -Uvh command a.. restores control and configuration files a.. invokes qtp-convert to do conversion processing: a.. mrtg file changes b.. mysql password location change a.. starts qmail a.. runs spamassassin debug configuration Look at my backup script (v2gnu.com) - it will show you what files need to be backed up. You'll also want to read the script, since it has notes in there that can be helpful. I'd also look at the restore script, since it will show you things like changing permissions on files, etc. smime.p7s Description: S/MIME Cryptographic Signature
[qmailtoaster] neat article
January 27, 2006 http://www.serverwatch.com/news/article.php/3580951 Page 2: Tips of the Trade You've probably heard the praises of Qmail, Professor Dan Bernstein's excellent MTA, and you may even have tried to set up a mail server with it. Chances are you found the documentation to be not entirely adequate, and community support not quite what it could be either. Any problems you encountered are not because you're not smart enough but because getting help is sometimes more difficult than it needs to be. Don't give up on Qmail yet because it is a great MTA. Bernstein claims it will move more messages on old weak hardware than any MTA on any platform, and he is so certain it is completely secure that he promises a $500 cash reward to anyone who can find a security flaw. To install and administer Qmail the easy way, take a look at Qmail Toaster. Qmail Toaster packages a complete mail server, based on Qmail, into easy-to-install RPM packages. You get everything you need: Webmail, anti-malware, a mailing list manager, IMAP and POP mail, encryption, a MySQL database backend, SPF (Sender Policy Framework) and a Web-based administration panel. There is even a Sendmail migration tool. An MS Exchange migration tool would make even more admins happy. Qmail Toaster works with Red Hat Linux, CentOS, Fedora, Mandriva, Trustix, and Open SUSE. It installs from source RPMs, so you can install it on other RPM-based systems by tweaking the spec files a bit. With the automated install you'll have a fully functioning mail server in a couple of hours or less. You may also install individual components manually, and take complete control of the installation. Qmail Toaster has no commercial support, but the mailing list is refreshingly civilized and helpful. In addition, every component of the server is standard free/open source software, and it has its own documentation and user communities. Carla Schroder writes the Tips of the Trade section of Enterprise Unix Roundup. She also appears on Enterprise Networking Planet and Linux Planet, covering Linux from the desktop to the server room. She is the author of the Linux Cookbook and the upcoming Linux Networking Cookbook. - QmailToaster hosted by: VR Hosted http://www.vr.org - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]
Re: [qmailtoaster] squirrelmail and submission port
Thanks Erik, imapproxy is nice!! Eric, This would be a good addon to qtp. On 2/7/07, Erik Espinoza [EMAIL PROTECTED] wrote: Hi Slamp Eric, I have done this once, SM on a different host from QT. That was REALLY SLOW even on a 100mbps connection. So I just decided to implement proxy in apache and now it's alot faster. I usually run imapproxy on the different host and all goes well. Erik - QmailToaster hosted by: VR Hosted http://www.vr.org - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]
Re: [qmailtoaster] squirrelmail and submission port
Hi Slamp, Thank you for the clarification but sorry for my ignorance. If we have the *127.0.0.1:allow,RELAYCLIENT=,RBLSMTPD=* in tcp.smtp, will the RBLSMTPD process still be involved, but just return a pass status? Best regards, Bill On 2/8/07, slamp slamp [EMAIL PROTECTED] wrote: Thanks Erik for making the change in the future SM rpm. Bill, To me the real benefit of using the submission port is speed and reliability. The stock SM uses smtp to send mail and gets checked for RBLs. The reason the submission was added was to provide a way of sending without being checked for RBLs but still required to authenticate. Eric, I have done this once, SM on a different host from QT. That was REALLY SLOW even on a 100mbps connection. So I just decided to implement proxy in apache and now it's alot faster. On 2/7/07, Jake Vickers [EMAIL PROTECTED] wrote: Eric Shubes wrote: Now you've got me thinking, Bill. (which is sometimes dangerous!) For the stock toaster, you bring up a good point. What if I were an Enterprise type of user and wanted to run SM on a separate host from the toaster? How difficult would that be? Can the toaster be packaged in such a way as to make this easier, without 'hurting' the stock toaster? IOW, make them loosely (minimally) coupled? Look at the config.pl file for SM. It's in /usr/share/squirrelmail/config/ You should be able to edit all the functions, and tell it what IMAP server to utilize. I haven't messed with this in a long time, but you may also be able to adjust the port. So in theory, yes, you could use SM on a different server and just have it IMAP to your real mail server.
Re: [qmailtoaster] Disable RBL cheks for authenticated senders
hi jake, thanks for your reply. two more questions please a) where can we find the patch to create a seperate instance of qmail on port 587 b) can we configure this so that virus checks Are Enabled. we wish to ensure that even in case any of our clients machine get compromised it shud never be able to send viruses thru our server rajesh -- Original Message -- From: Jake Vickers [EMAIL PROTECTED] Reply-To: qmailtoaster-list@qmailtoaster.com Date: Wed, 07 Feb 2007 11:43:41 -0500 24x7server wrote: hi we are running qmail toaster successfully with clam and spamassassin we wish to disable rbl checks and spam checks for authenticated senders since many dial customers / broadband users ip addresses end up in spam databases are not able to send email thru our server. we however need to ensure that virus scan is not disabled at all and to be done for all emails incoming and outgoing. help required please Use port 587, the submission port. That requires authentication, but does not do RBL checking. - QmailToaster hosted by: VR Hosted http://www.vr.org - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]
Re: [qmailtoaster] force rebuild?
Ray Lance wrote: Eric Shubes wrote: Ray Lance wrote: How can I force a sandbox rebuild after the failure of djbdns (cnt40)? I tried chrooting into the sandbox and removing a component, but that doesn't do it. Simply run qtp-newmodel again from the top. It'll ask you if you want to keep the sandbox or build a new one. No, this is the one where I answer no or skip to djbdns, then it quits, having nothing to do. That sounds peculiar. What do you get from # qtp-ami-up2date # rpm -qa | grep toaster ? -- -Eric 'shubes' - QmailToaster hosted by: VR Hosted http://www.vr.org - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]
Re: [qmailtoaster] Disable RBL cheks for authenticated senders
24x7server wrote: hi jake, thanks for your reply. two more questions please a) where can we find the patch to create a seperate instance of qmail on port 587 There is no patch per se. It is (automatically) included in qmail-toaster-1.03-1.3.8 and above. # qmailctl stat will show submission along with all the other toaster processes. b) can we configure this so that virus checks Are Enabled. we wish to ensure that even in case any of our clients machine get compromised it shud never be able to send viruses thru our server I don't recall how to do this, but I'm sure someone here will answer definitively. You might try searching the list archive, as I seem to remember something being mentioned about this. rajesh -- Original Message -- From: Jake Vickers [EMAIL PROTECTED] Reply-To: qmailtoaster-list@qmailtoaster.com Date: Wed, 07 Feb 2007 11:43:41 -0500 24x7server wrote: hi we are running qmail toaster successfully with clam and spamassassin we wish to disable rbl checks and spam checks for authenticated senders since many dial customers / broadband users ip addresses end up in spam databases are not able to send email thru our server. we however need to ensure that virus scan is not disabled at all and to be done for all emails incoming and outgoing. help required please Use port 587, the submission port. That requires authentication, but does not do RBL checking. -- -Eric 'shubes' - QmailToaster hosted by: VR Hosted http://www.vr.org - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]
Re: [qmailtoaster] squirrelmail and submission port
Thanks, slamp. I know nothing about it. Can you give me a link to chase it down? slamp slamp wrote: Thanks Erik, imapproxy is nice!! Eric, This would be a good addon to qtp. On 2/7/07, *Erik Espinoza* [EMAIL PROTECTED] mailto:[EMAIL PROTECTED] wrote: Hi Slamp Eric, I have done this once, SM on a different host from QT. That was REALLY SLOW even on a 100mbps connection. So I just decided to implement proxy in apache and now it's alot faster. I usually run imapproxy on the different host and all goes well. Erik - QmailToaster hosted by: VR Hosted http://www.vr.org - To unsubscribe, e-mail: [EMAIL PROTECTED] mailto:[EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED] mailto:[EMAIL PROTECTED] -- -Eric 'shubes' - QmailToaster hosted by: VR Hosted http://www.vr.org - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]
Re: [qmailtoaster] squirrelmail and submission port
Good point. Before it worked without authorization cuz I borked an init script that Jean-Paul found and fixed. But in the latest version on the devel site, you can't point to port 587. I'll update the default tcp.smtp to skip rbl's on localhost. Someone should put that in the wiki. ;) Erik On 2/7/07, Eric Shubes [EMAIL PROTECTED] wrote: That's my understanding, based on man rblsmtpd. So, is it better to run through port 25 with rbl transparent, or run though 587 with no rbl but with authorization? Wouldn't the authorization be unnecessary from SM on localhost? Bill Kwok wrote: Hi Slamp, Thank you for the clarification but sorry for my ignorance. If we have the *127.0.0.1:allow,RELAYCLIENT=,RBLSMTPD=* in tcp.smtp, will the RBLSMTPD process still be involved, but just return a pass status? Best regards, Bill On 2/8/07, *slamp slamp* [EMAIL PROTECTED] mailto:[EMAIL PROTECTED] wrote: Thanks Erik for making the change in the future SM rpm. Bill, To me the real benefit of using the submission port is speed and reliability. The stock SM uses smtp to send mail and gets checked for RBLs. The reason the submission was added was to provide a way of sending without being checked for RBLs but still required to authenticate. Eric, I have done this once, SM on a different host from QT. That was REALLY SLOW even on a 100mbps connection. So I just decided to implement proxy in apache and now it's alot faster. On 2/7/07, *Jake Vickers* [EMAIL PROTECTED] mailto:[EMAIL PROTECTED] wrote: Eric Shubes wrote: Now you've got me thinking, Bill. (which is sometimes dangerous!) For the stock toaster, you bring up a good point. What if I were an Enterprise type of user and wanted to run SM on a separate host from the toaster? How difficult would that be? Can the toaster be packaged in such a way as to make this easier, without 'hurting' the stock toaster? IOW, make them loosely (minimally) coupled? Look at the config.pl file for SM. It's in /usr/share/squirrelmail/config/ You should be able to edit all the functions, and tell it what IMAP server to utilize. I haven't messed with this in a long time, but you may also be able to adjust the port. So in theory, yes, you could use SM on a different server and just have it IMAP to your real mail server. -- -Eric 'shubes' - QmailToaster hosted by: VR Hosted http://www.vr.org - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED] - QmailToaster hosted by: VR Hosted http://www.vr.org - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]
Re: [qmailtoaster] Site to Site QT Server Replication - 24 hours
Hi Craig, I manage to get it works by manually issue the below commands: Secondary Serv: /unison/unison -socket 1234 Primary Server: /unison/./qmai-replicatec It works! I checked thru the logfile created by unison (unisonlog.full) i can see the process being taken place. But it just don't start it with /unison/unison start command. 2) After everything was replicated from Primary to Secondary, I can see that every folders in /vpopmail/domains/abc.com/user's mailbox are copied to secondary server. however, when I use webmail access to user's account on Secondary server, it don't allow me to login, it says Username or Password are wrong. So I check thru vqadmin and found that, users that are created in Primary, doesn't shown on Secondary server vqadmin. Seems like mysql database was not replicated. How to do so? Please assist. Hi Gabriel, you need to make sure that the port number you specify in the run file is the one you try and connect to. The one that is set in the qmail.prf file must match the /unison/unison -socket line in unison-run. On the primary confirm that the /root/.unison/qmail.prf file has the correct ip and socket. On the secondary, can you confirm the unison-run script matches what is on the wiki, or paste the contents here. Does the /unison/unison -socket line have the at the end? What happens on secondary if you manually run the above line. So at command type /unison/unison -socket and then enter on the blank line. If that runs, do ps -ef|grep unison and you should get a line similar to root 24608 1 0 12:28 pts/100:00:00 /unison/unison -socket Let me know what that does, the primary error will definately be down to the socket not running. As for socket number you can use anything so long as they match and aren't on a known used socket. e.g. 6576 From: Gabriel Lai [mailto:[EMAIL PROTECTED] Sent: 07 February 2007 05:35 To: qmailtoaster-list@qmailtoaster.com Subject: Re: [qmailtoaster] Site to Site QT Server Replication - 24 hours Hi Craig, I manage to redo the testing after so long you replied the email :) The error I got was extracted out from Primary Server, it says Contacting to server. Error: Can't connect to server (192.168.119.133:1234) Deleting lock file I start the unison-run command with /unison/unison-run start, the next line shown me: sh-3.1# But, seems like it doesn't start the service on Secondary, that's y it cannot connect. Would u mind tell me what is the port number u use? Thanks - Original Message From: Craig Smith [EMAIL PROTECTED] To: qmailtoaster-list@qmailtoaster.com Sent: Monday, January 22, 2007 10:21:25 PM Subject: RE: [qmailtoaster] Site to Site QT Server Replication - 24 hours Gabriel Where were you getting errors? I set up this procedure and it works like a charm on my system, but there are minor changes needed between various OS's. I set this up on Fedora Core 5. Let me know what errors you were getting and where and I will try and help you with it. Also I changed the timing on the script to more than 1 min as after a few weeks it started causing problems on our server with the replication itself, so now it is more accurate to say the backup server is only ever 10 mins (or cronjob based) from the primary. Regards. From: Gabriel Lai [mailto:[EMAIL PROTECTED] Sent: 22 January 2007 07:24 To: qmailtoaster-list@qmailtoaster.com Subject: Re: [qmailtoaster] Site to Site QT Server Replication - 24 hours Joseph, Have you tried with the QMT Setup steps? I tested previously, but failed at certain level. If you have tested before, maybe you can help me out with the errors Thanks - Original Message From: Joseph Lundgren [EMAIL PROTECTED] To: qmailtoaster-list@qmailtoaster.com Sent: Friday, January 19, 2007 2:41:59 AM Subject: RE: [qmailtoaster] Site to Site QT Server Replication - 24 hours Gabriel, Please look at http://wiki.qmailtoaster.com/index.php/QMT_Failover_replication_Setup This page gives you a procedure to configure a backup qmt server that will be available for failover in the event of primary server failure. The backup server will only ever be 1 minute out from the primary. I believe that it covers what youre trying to achieve. Sincerely, -- Joseph Lundgren Systems Engineer Peak Internet, LLC [EMAIL PROTECTED] From: Gabriel Lai [mailto:[EMAIL PROTECTED] Sent: Thursday, January 18, 2007 1:12 AM To: Qmail Toaster List 2 Subject: [qmailtoaster] Site to Site QT Server Replication - 24 hours Hello all, I would like to setup a QT site where the 2 email servers will be doing replication to each other 24 hours live. eg: when mail coming from Internet to Mail Server 1, it will automatically replicate to Mail Server 2. Jake has point me the backup restore script guides, but that needs manual job when Mail Server 1 is down, someone have to manually restore the