Re: [SOGo] SOGO v3 Page Login

2016-02-17 Thread Christian Mack
Hello

Try to enclose your hostname in quotes:
hostname = "ldaps://ldap.hq.internal:636";

I have done that for all strings.


Kind regards,
Christian Mack

Am 17.02.2016 um 11:44 schrieb Oliver Werner:
> Hi,
> 
> i have installed sogo v3 on a debian 8 and configured with following config.
> I can open sogo on URL https://sogo.hq.internal/SOGo/ 
> 
> 
> But when i would Login with my LDAP credentials i got the message Login failed
> 
> So i have use tcpdump to check server will ask our ads.
> But server doesn’t send packets when i will login.
> 
> My firewall is configured to connect the ldap. i have tested with telnet.
> 
> Anyone have an idea?
> 
> Regards
> Oliver
> 
> {
>   SOGoProfileURL = 
> "mysql://sogo:s...@devdb.hq.internal:3306/sogo_www/sogo_user_profile";
>   OCSFolderInfoURL = 
> "mysql://sogo:s...@devdb.hq.internal:3306/sogo_www/sogo_folder_info";
>   OCSSessionsFolderURL = 
> "mysql://sogo:s...@devdb.hq.internal:3306/sogo_www/sogo_sessions_folder";
> 
>   SOGoDraftsFolderName = Drafts;
>   SOGoSentFolderName = Sent;
>   SOGoTrashFolderName = Trash;
>   SOGoIMAPServer = imaps://imap.hq.internal:993;
>   SOGoSMTPServer = smtp.hq.internal;
>   SOGoMailDomain = hq.internal;
>   SOGoMailingMechanism = smtp;
>   SOGoForceExternalLoginWithEmail = YES;
> 
>   SOGoAppointmentSendEMailNotifications = NO;
> 
>   SOGoUserSources = (
> {
>   type = ldap;
>   CNFieldName = cn;
>   UIDFieldName = sAMAccountName;
>   baseDN = "CN=users,dc=hq,dc=internal";
>   bindDN = "CN=Auth,cn=Users,DC=hq,DC=internal";
>   bindFields = (sAMAccountName, mail);
>   bindPassword = pass;
>   canAuthenticate = YES;
>   displayName = "Public";
>   hostname = ldaps://ldap.hq.internal:636;
>   //filter = "mail = '*'";
> id = directory;
>   isAddressBook = YES;
> }
>   );
> 
>   SOGoPageTitle = "HQ - SOGo";
> 
>   SOGoLanguage = German;
>   SOGoTimeZone = Europe/Berlin;
>   SOGoCalendarDefaultRoles = (
> PublicDAndTViewer,
> ConfidentialDAndTViewer
>   );
>   SOGoSuperUsernames = ("oliver.werner"); // This is an array - keep the 
> parens!
> 
>   SOGoDebugRequests = YES;
>   SoDebugBaseURL = YES;
>   ImapDebugEnabled = YES;
>   LDAPDebugEnabled = YES;
>   PGDebugEnabled = YES;
>   MySQL4DebugEnabled = YES;
>   SOGoUIxDebugEnabled = YES;
>   WODontZipResponse = YES;
>   WOLogFile = /var/log/sogo/sogo.log;
> }
> 
> 


-- 
Christian Mack
Universität Konstanz
Kommunikations-, Informations-, Medienzentrum (KIM)
Abteilung Basisdienste
78457 Konstanz
+49 7531 88-4416



smime.p7s
Description: S/MIME Cryptographic Signature


[SOGo] BTS activities for Wednesday, February 17 2016

2016-02-17 Thread SOGo reporter
Title: BTS activities for Wednesday, February 17 2016





  
BTS Activities

  Home page: http://www.sogo.nu/bugs
  Project: SOGo
  For the period covering: Wednesday, February 17 2016

  
  
idlast updatestatus (resolution)categorysummary
	
	
	  
	
3531
	2016-02-17 06:03:43
	updated (open)
	SOGo Connector
	SOGo Connector leads to unexpected confirmation dialog when closing a new but unmodified event or task in Lightning
	
	  
	
3534
	2016-02-17 13:22:15
	updated (open)
	Backend Calendar
	Enhancement - sync Calendar Categories
	
	  
	
3532
	2016-02-17 03:39:56
	updated (open)
	Backend General
	Authentication fails with LDAP/memberof-overlay
	
	  
	
3461
	2016-02-17 04:59:26
	updated (open)
	Packaging (Debian)
	Warning message with default /etc/apache2/conf-available/SOGo.conf
	
	  
	
3530
	2016-02-17 04:29:11
	updated (open)
	Web Calendar
	Editing a task deletes quotes
	
	  
	
3533
	2016-02-17 04:35:05
	updated (open)
	Web Calendar
	cannot select any calendar in webUI when subscribed as SOGoSuperUsernames
	
	  
	
3443
	2016-02-17 04:30:40
	updated (open)
	Web Mail
	when sending an email, you can not choose between multiple "mail" entries
	
	  
	
3526
	2016-02-17 04:30:40
	updated (open)
	Web Mail
	Adding Recpipients from Address Book
	
	  
	
3535
	2016-02-17 15:54:30
	updated (open)
	with external server
	SOGo Connector corrupts KEY field and uploads back to server
	
	  
	
3510
	2016-02-17 19:10:22
	feedback (reopened)
	Backend Mail
	DOS through uploading large attachments
	
	  
	
3528
	2016-02-17 19:04:01
	closed (not a bug)
	Apple iPhone OS
	Calendar Reminders for Delegate Calendars can not be turned off
	
	  
	
  
  


-- users@sogo.nuhttps://inverse.ca/sogo/lists

Re: [SOGo] SOGo 2.3.8 (xml parsing failed, cache cleanup needed, invalid multibyte sequence, ...)

2016-02-17 Thread Ludovic Marcotte

On 2016-02-17 11:19, Maxime RUBINO wrote:

Hi SOGo Users,

The updated SOGo Version 2.3.8 (@shiva.inverse 201602170156) leaves 
messages that scares in logfile today :


...
sogod [4108]: [ERROR] <0x0x7f685da06278[NSDataMalloc]> 
xml2wbxmlFromContent: failed: Parsing of XML Document Failed

sogod[4108] parseTimeZone: cannot parse time notation 'GMT'
sogod [4041]: <0x0x7f685dc1d8e8[NGImap4Client]> Note: no key found for 
sorting, using 'DATE': (null)
sogod [4046]: <0x0x7f68586f6e00[NSString]> Got invalid multibyte 
sequence. ToEncode: UTF-16LE FromEncode: US-ASCII.
sogod [4046]: <0x0x7f685d77c038[SOGoActiveSyncDispatcher]> Cache 
cleanup needed for device ApplXX - user: u...@domain.com syncKey: 
4755-589 cache: 4599-589

...

Somebody have an idea ?

Add SOGoEASDebugEnabled = YES to your sogo.conf file and send me (if not 
too big) one of the /tmp/sogo...data file.


Thanks,

--
Ludovic Marcotte
lmarco...@inverse.ca  ::  +1.514.755.3630  ::  http://inverse.ca
Inverse inc. :: Leaders behind SOGo (http://sogo.nu) and PacketFence 
(http://packetfence.org)

--
users@sogo.nu
https://inverse.ca/sogo/lists


Re: [SOGo] v3 Android ActiveSync Problems and IMAP UserSource

2016-02-17 Thread Ludovic Marcotte

On 2016-02-17 18:23, Paul Freund wrote:

The issue I have with ActiveSync can be seen on my Android 6 device (Nexus 5X)
Where the Exchange Connector crashes. It stops crashing when I disable
Calendar syncing. Mail and Contacts are syncing just fine. I imported the data
from Horde in ICS format but later deleted all entries to see if a faulty
dataset was the problem. Even with an empty Calendar it still keeps crashing.
Have a look at this: 
http://sogo.nu/nc/support/faq/article/how-do-i-debug-sogo-2.html


--
Ludovic Marcotte
lmarco...@inverse.ca  ::  +1.514.755.3630  ::  http://inverse.ca
Inverse inc. :: Leaders behind SOGo (http://sogo.nu) and PacketFence 
(http://packetfence.org)

--
users@sogo.nu
https://inverse.ca/sogo/lists


[SOGo] v3 Android ActiveSync Problems and IMAP UserSource

2016-02-17 Thread Paul Freund
Hello,

I really like SOGo and so I'll give it a try. I first tried the "stable" v3
and then the nightly v3 together with a SQL based UserSource.

I am running a plesk installation which uses AES-128-CBC encrypted passwords
so I could not link them with a view. For testing I created a database with
only my own user manually entered. As an alternative a IMAP UserSource would
be nice (see http://sogo.nu/bugs/view.php?id=1810). I wouldnt mind having the
email address as the user name. If appreciated I could try to implement this
but I am coming from a c++ background so I'd first have to overcome the
language barrier.

The issue I have with ActiveSync can be seen on my Android 6 device (Nexus 5X)
Where the Exchange Connector crashes. It stops crashing when I disable
Calendar syncing. Mail and Contacts are syncing just fine. I imported the data
from Horde in ICS format but later deleted all entries to see if a faulty
dataset was the problem. Even with an empty Calendar it still keeps crashing.

Thank you for everything,

Paul
-- 
users@sogo.nu
https://inverse.ca/sogo/lists


Re: [SOGo] login problelms for one user - expire = -1 grace = -

2016-02-17 Thread Andreas Schosser
Hi Götz,

I have a similar problem.

When I log in on the webgui the Server responds with the following
Json-Code:

{"grace": -1, "expire": -1}

When I enter the URL to the webgui manually afterwards i am
authenticated and can use the interface as expected. The problem
occurs with Firefox 44.0.2 on Ubuntu. Chrome works well.

I'm runnig SOGo 2.3.8

What happens, when your user enters the manuall after the login?

Andreas

-- 
Kurs 10 IT-Consulting   www.kurs-10.de
Andreas Schosser  a...@kurs-10.de

Baldestraße. 14  Telefon +49 89 41615842-0
80469 MünchenTelefax +49 89 41615842-3

0x6EDECCF1 - 2AA0 939B 5585 819B FCE8 E43B 0B8E 0DF2 6EDE CCF1



smime.p7s
Description: S/MIME Cryptographic Signature


Re: [SOGo] event categories are not synchronized

2016-02-17 Thread Tanstaafl
On 2/17/2016 1:08 PM, Chris  wrote:
> On 2/16/2016 8:37 AM, Tanstaafl wrote:
>> So, is it possible, with some coding/enhancement to SOGo Integrator that
>> SOGo could become are of/manage Calendar Categories? Or would this
>> require some change/enhancement to Lightning?

> Yes there's a javascript API which would let SOGo integrator obtain the 
> calendar categories of calendar events.
> 
> See the code in this add-on, the Provider for Google Calendar, allows 
> bidirectional sync of google calendar events with thunderbird lightning 
> calendar:
> https://addons.mozilla.org/en-us/thunderbird/addon/provider-for-google-calendar/
> https://addons.mozilla.org/thunderbird/downloads/latest/4631/addon-4631-latest.xpi?src=dp-btn-primary
> File: chrome/gdata-provider/content/gdata-calendar-event-dialog.js
> File: module/gdataUtils.jsm

Thanks, enhancement request created:

http://sogo.nu/bugs/view.php?id=3534
-- 
users@sogo.nu
https://inverse.ca/sogo/lists


Re: [SOGo] OpenChange without Samba

2016-02-17 Thread Steve Ankeny

On 02/17/2016 11:56 AM, Rowland Penny wrote:

On 17/02/16 13:47, Steve Ankeny wrote:

On 02/17/2016 06:44 AM, Rowland Penny wrote:

On 17/02/16 07:39, Dennis Moebus wrote:

Hi all,

I'm sorry for my late response...
First of all, thank you for your advices!!!

I joined my Samba4 Server as a Member to my Windows 2012 AD.
(https://wiki.samba.org/index.php/Setup_Samba_as_an_AD_Domain_Member)
This worked without any problems.

This is my smb.conf, hope this will help :-)

#
# Sample configuration file for the Samba suite for Debian GNU/Linux.
#
#
[ redacted text ]




OK, this is never going to work, you need to extend the AD schema 
with the Openchange extensions, this will only work with a Samba4 AD 
DC and specific versions. You could try setting up a Samba4 AD DC 
and adding the Openchange extensions to this, but you will not be 
able to join the windows 2012 DC to it, they are incompatible.


Rowland



Is there no way to join as a Member Server and point the SOGo 
installation to the Windows 2012 AD DB?


What appears to be happening from the error log is it's not "finding 
the first exchange organization"





As far as I am aware, you can join a Samba4 domain member to a windows 
2012 AD, but you will not be able to use Openchange with it.
What I am struggling to understand is that the OP has the Openchange 
lines in his smb.conf, yet the smb.conf is setup as a domain member, 
was it originally a DC and this got changed to a domain member ?


Rowland


It appears he didn't delete the "sample" smb.conf, and when he 
provisioned Samba according to the Inverse instructions ("Native 
Microsoft Outlook Guide"), he provisioned it as an AD but then joined as 
a Member.


The Guide tells you to "add" the OpenChange lines in the smb.conf

THAT's why I wondered if his Samba could point somehow to the Windows 
2012 AD exchange DB




--
users@sogo.nu
https://inverse.ca/sogo/lists


Re: [SOGo] event categories are not synchronized

2016-02-17 Thread Chris



On 2/16/2016 8:37 AM, Tanstaafl wrote:

On 2/16/2016 8:12 AM, Christian Mack  wrote:

Am 15.02.2016 um 14:31 schrieb Laurent Wargon:

Hi all,

With Thunderbird Lightning, event categories are not synchronized with the 
categories defined in the web interface. Yet contact categories defined in the 
web interface are synchronized.

Is this normal ?


Yes, that is normal, as calendar categories are managed in Lightning,
which does know nothing about SOGo.
But remote Adressbooks are managed via SOGo Connector Add-On, which was
created specifically for SOGo, therefore knowing how to get those
categories.

So, is it possible, with some coding/enhancement to SOGo Integrator that
SOGo could become are of/manage Calendar Categories? Or would this
require some change/enhancement to Lightning?



Yes there's a javascript API which would let SOGo integrator obtain the 
calendar categories of calendar events.


See the code in this add-on, the Provider for Google Calendar, allows 
bidirectional sync of google calendar events with thunderbird lightning 
calendar:

https://addons.mozilla.org/en-us/thunderbird/addon/provider-for-google-calendar/
https://addons.mozilla.org/thunderbird/downloads/latest/4631/addon-4631-latest.xpi?src=dp-btn-primary
File: chrome/gdata-provider/content/gdata-calendar-event-dialog.js
File: module/gdataUtils.jsm

--
users@sogo.nu
https://inverse.ca/sogo/lists


[SOGo] SOGo 2.3.8 (xml parsing failed, cache cleanup needed, invalid multibyte sequence, ...)

2016-02-17 Thread Maxime RUBINO

Hi SOGo Users,

The updated SOGo Version 2.3.8 (@shiva.inverse 201602170156) leaves 
messages that scares in logfile today :


...
sogod [4108]: [ERROR] <0x0x7f685da06278[NSDataMalloc]> 
xml2wbxmlFromContent: failed: Parsing of XML Document Failed

sogod[4108] parseTimeZone: cannot parse time notation 'GMT'
sogod [4041]: <0x0x7f685dc1d8e8[NGImap4Client]> Note: no key found for 
sorting, using 'DATE': (null)
sogod [4046]: <0x0x7f68586f6e00[NSString]> Got invalid multibyte 
sequence. ToEncode: UTF-16LE FromEncode: US-ASCII.
sogod [4046]: <0x0x7f685d77c038[SOGoActiveSyncDispatcher]> Cache cleanup 
needed for device ApplXX - user: u...@domain.com syncKey: 4755-589 
cache: 4599-589

...

Somebody have an idea ?

--
Cordialement,
Maxime RUBINO

--
users@sogo.nu
https://inverse.ca/sogo/lists


Re: [SOGo] OpenChange without Samba

2016-02-17 Thread Rowland Penny

On 17/02/16 13:47, Steve Ankeny wrote:

On 02/17/2016 06:44 AM, Rowland Penny wrote:

On 17/02/16 07:39, Dennis Moebus wrote:

Hi all,

I'm sorry for my late response...
First of all, thank you for your advices!!!

I joined my Samba4 Server as a Member to my Windows 2012 AD.
(https://wiki.samba.org/index.php/Setup_Samba_as_an_AD_Domain_Member)
This worked without any problems.

This is my smb.conf, hope this will help :-)

#
# Sample configuration file for the Samba suite for Debian GNU/Linux.
#
#
# This is the main Samba configuration file. You should read the
# smb.conf(5) manual page in order to understand the options listed
# here. Samba has a huge number of configurable options most of which
# are not shown in this example
#
# Some options that are often worth tuning have been included as
# commented-out examples in this file.
#  - When such options are commented with ";", the proposed setting
#differs from the default Samba behaviour
#  - When commented with "#", the proposed setting is the default
#behaviour of Samba but the option is considered important
#enough to be mentioned here
#
# NOTE: Whenever you modify this file you should run the command
# "testparm" to check that you have not made any basic syntactic
# errors.

#=== Global Settings ===

[global]

netbios name = SOGo
security = ADS
workgroup = 3PC
realm = 3PC.LOCAL

log file = /var/log/samba/%m.log
log level = 1

dedicated keytab file = /etc/krb5.keytab
kerberos method = secrets and keytab
winbind refresh tickets = yes

winbind trusted domains only = no
winbind use default domain = yes
winbind enum users  = yes
winbind enum groups = yes

# idmap config used for your domain.
# Choose one of the following backends fitting to your
# requirements and add the corresponding configuration.
#  - idmap config ad
#  - idmap config rid
#  - idmap config autorid

###  Configuration required by OpenChange server ###
 dsdb:schema update allowed = true
 dcerpc endpoint servers = epmapper, mapiproxy, dnsserver
 dcerpc_mapiproxy:server = true
 dcerpc_mapiproxy:interfaces = exchange_emsmdb, exchange_nsp,
exchange_ds_rfr
### Configuration required by OpenChange server ###

mapistore:namedproperties = mysql
namedproperties:mysql_user = openchange
namedproperties:mysql_pass = *
namedproperties:mysql_host = localhost
namedproperties:mysql_db = openchange
mapistore:indexing_backend =
mysql://openchange:*@localhost/openchange
mapiproxy:openchangedb =
mysql://openchange:*@localhost/openchange

## Browsing/Identification ###

# Change this to the workgroup/NT-domain name your Samba server will 
part of

#   workgroup = WORKGROUP

# Windows Internet Name Serving Support Section:
# WINS Support - Tells the NMBD component of Samba to enable its 
WINS Server

#   wins support = no

# WINS Server - Tells the NMBD components of Samba to be a WINS Client
# Note: Samba can be either a WINS Server, or a WINS Client, but NOT 
both

;   wins server = w.x.y.z

# This will prevent nmbd to search for NetBIOS names through DNS.
dns proxy = no

 Networking 

# The specific set of interfaces / networks to bind to
# This can be either the interface name or an IP address/netmask;
# interface names are normally preferred
;   interfaces = 127.0.0.0/8 eth0

# Only bind to the named interfaces and/or networks; you must use the
# 'interfaces' option above to use this.
# It is recommended that you enable this feature if your Samba 
machine is

# not protected by a firewall or is a firewall itself. However, this
# option cannot handle dynamic or non-broadcast interfaces correctly.
;   bind interfaces only = yes



 Debugging/Accounting 

# This tells Samba to use a separate log file for each machine
# that connects
#   log file = /var/log/samba/log.%m

# Cap the size of the individual log files (in KiB).
max log size = 1000

# If you want Samba to only log through syslog then set the following
# parameter to 'yes'.
#   syslog only = no

# We want Samba to log a minimum amount of information to syslog. 
Everything
# should go to /var/log/samba/log.{smbd,nmbd} instead. If you want 
to log
# through syslog you should set the following parameter to something 
higher.

syslog = 0

# Do something sensible when Samba crashes: mail the admin a backtrace
panic action = /usr/share/samba/panic-action %d


### Authentication ###

# Server role. Defines in which mode Samba will operate. Possible
# values are "standalone server", "member server", "classic primary
# domain controller", "classic backup domain controller", "active
# directory domain controller".
#
# Most people will want "standalone sever" or "member server".
# Running as "active dire

RE: [SOGo] Libraries not found

2016-02-17 Thread MicTieMix
Thank you!

This solved the problem!

 

From: users-requ...@sogo.nu [mailto:users-requ...@sogo.nu] On Behalf Of Jesús 
García Sáez
Sent: Wednesday, 17 February 2016 19:39
To: users@sogo.nu
Subject: Re: [SOGo] Libraries not found

 

Your system probably isn't loading shared libraries from /usr/local/* (more 
info [0]), you could either added to ldconfig, use LD_LIBRARY_PATH or compile 
sogo with (on ./configure) --prefix=/usr/System so libraries will be installed 
on /usr/ instead of /usr/local where they will be loaded for sure.



[0] http://tldp.org/HOWTO/Program-Library-HOWTO/shared-libraries.html

 

On Wed, Feb 17, 2016 at 6:27 AM, MicTie mailto:mictie...@gmail.com> > wrote:

Hi,
I try to install SOGo on a Raspberry Pi 2 running RASPIAN (equiv. to Debian
Jessie).
As there is no precompiled version available for ARMHF architecture I compiled
SOGo by myself, which was running without errors but gave several warnings.

When starting sogod I get following message: 'sogod: error while loading
shared libraries: libSOGo.so.3: cannot open shared object file: No such file
or directory'

ldd /usr/local/sbin/sogod  shows that following libraries are missing:
libSOGo.so.3 => not found
libGDLContentStore.so.4.9 => not found
libNGCards.so.4.9 => not found

All 3 missing libraries are in /usr/local/lib/sogo either locally or via a
symlink.
Also copying to /usr/local/lib did not change.

As the libraries are available, I assume that they cannot be loaded, maybe due
to wrong architecture or corruption.

Any idea how to solve this problem?

--
users@sogo.nu  
https://inverse.ca/sogo/lists

 

-- 
users@sogo.nu  
https://inverse.ca/sogo/lists

-- 
users@sogo.nu
https://inverse.ca/sogo/lists

Re: [SOGo] OpenChange without Samba

2016-02-17 Thread Steve Ankeny

On 02/17/2016 06:44 AM, Rowland Penny wrote:

On 17/02/16 07:39, Dennis Moebus wrote:

Hi all,

I'm sorry for my late response...
First of all, thank you for your advices!!!

I joined my Samba4 Server as a Member to my Windows 2012 AD.
(https://wiki.samba.org/index.php/Setup_Samba_as_an_AD_Domain_Member)
This worked without any problems.

This is my smb.conf, hope this will help :-)

#
# Sample configuration file for the Samba suite for Debian GNU/Linux.
#
#
# This is the main Samba configuration file. You should read the
# smb.conf(5) manual page in order to understand the options listed
# here. Samba has a huge number of configurable options most of which
# are not shown in this example
#
# Some options that are often worth tuning have been included as
# commented-out examples in this file.
#  - When such options are commented with ";", the proposed setting
#differs from the default Samba behaviour
#  - When commented with "#", the proposed setting is the default
#behaviour of Samba but the option is considered important
#enough to be mentioned here
#
# NOTE: Whenever you modify this file you should run the command
# "testparm" to check that you have not made any basic syntactic
# errors.

#=== Global Settings ===

[global]

netbios name = SOGo
security = ADS
workgroup = 3PC
realm = 3PC.LOCAL

log file = /var/log/samba/%m.log
log level = 1

dedicated keytab file = /etc/krb5.keytab
kerberos method = secrets and keytab
winbind refresh tickets = yes

winbind trusted domains only = no
winbind use default domain = yes
winbind enum users  = yes
winbind enum groups = yes

# idmap config used for your domain.
# Choose one of the following backends fitting to your
# requirements and add the corresponding configuration.
#  - idmap config ad
#  - idmap config rid
#  - idmap config autorid

###  Configuration required by OpenChange server ###
 dsdb:schema update allowed = true
 dcerpc endpoint servers = epmapper, mapiproxy, dnsserver
 dcerpc_mapiproxy:server = true
 dcerpc_mapiproxy:interfaces = exchange_emsmdb, exchange_nsp,
exchange_ds_rfr
### Configuration required by OpenChange server ###

mapistore:namedproperties = mysql
namedproperties:mysql_user = openchange
namedproperties:mysql_pass = *
namedproperties:mysql_host = localhost
namedproperties:mysql_db = openchange
mapistore:indexing_backend =
mysql://openchange:*@localhost/openchange
mapiproxy:openchangedb =
mysql://openchange:*@localhost/openchange

## Browsing/Identification ###

# Change this to the workgroup/NT-domain name your Samba server will 
part of

#   workgroup = WORKGROUP

# Windows Internet Name Serving Support Section:
# WINS Support - Tells the NMBD component of Samba to enable its WINS 
Server

#   wins support = no

# WINS Server - Tells the NMBD components of Samba to be a WINS Client
# Note: Samba can be either a WINS Server, or a WINS Client, but NOT 
both

;   wins server = w.x.y.z

# This will prevent nmbd to search for NetBIOS names through DNS.
dns proxy = no

 Networking 

# The specific set of interfaces / networks to bind to
# This can be either the interface name or an IP address/netmask;
# interface names are normally preferred
;   interfaces = 127.0.0.0/8 eth0

# Only bind to the named interfaces and/or networks; you must use the
# 'interfaces' option above to use this.
# It is recommended that you enable this feature if your Samba 
machine is

# not protected by a firewall or is a firewall itself.  However, this
# option cannot handle dynamic or non-broadcast interfaces correctly.
;   bind interfaces only = yes



 Debugging/Accounting 

# This tells Samba to use a separate log file for each machine
# that connects
#   log file = /var/log/samba/log.%m

# Cap the size of the individual log files (in KiB).
max log size = 1000

# If you want Samba to only log through syslog then set the following
# parameter to 'yes'.
#   syslog only = no

# We want Samba to log a minimum amount of information to syslog. 
Everything
# should go to /var/log/samba/log.{smbd,nmbd} instead. If you want to 
log
# through syslog you should set the following parameter to something 
higher.

syslog = 0

# Do something sensible when Samba crashes: mail the admin a backtrace
panic action = /usr/share/samba/panic-action %d


### Authentication ###

# Server role. Defines in which mode Samba will operate. Possible
# values are "standalone server", "member server", "classic primary
# domain controller", "classic backup domain controller", "active
# directory domain controller".
#
# Most people will want "standalone sever" or "member server".
# Running as "active directory domain controller" will require f

Re: [SOGo] OpenChange without Samba

2016-02-17 Thread Rowland Penny

On 17/02/16 07:39, Dennis Moebus wrote:

Hi all,

I'm sorry for my late response...
First of all, thank you for your advices!!!

I joined my Samba4 Server as a Member to my Windows 2012 AD.
(https://wiki.samba.org/index.php/Setup_Samba_as_an_AD_Domain_Member)
This worked without any problems.

This is my smb.conf, hope this will help :-)

#
# Sample configuration file for the Samba suite for Debian GNU/Linux.
#
#
# This is the main Samba configuration file. You should read the
# smb.conf(5) manual page in order to understand the options listed
# here. Samba has a huge number of configurable options most of which
# are not shown in this example
#
# Some options that are often worth tuning have been included as
# commented-out examples in this file.
#  - When such options are commented with ";", the proposed setting
#differs from the default Samba behaviour
#  - When commented with "#", the proposed setting is the default
#behaviour of Samba but the option is considered important
#enough to be mentioned here
#
# NOTE: Whenever you modify this file you should run the command
# "testparm" to check that you have not made any basic syntactic
# errors.

#=== Global Settings ===

[global]

netbios name = SOGo
security = ADS
workgroup = 3PC
realm = 3PC.LOCAL

log file = /var/log/samba/%m.log
log level = 1

dedicated keytab file = /etc/krb5.keytab
kerberos method = secrets and keytab
winbind refresh tickets = yes

winbind trusted domains only = no
winbind use default domain = yes
winbind enum users  = yes
winbind enum groups = yes

# idmap config used for your domain.
# Choose one of the following backends fitting to your
# requirements and add the corresponding configuration.
#  - idmap config ad
#  - idmap config rid
#  - idmap config autorid

###  Configuration required by OpenChange server ###
 dsdb:schema update allowed = true
 dcerpc endpoint servers = epmapper, mapiproxy, dnsserver
 dcerpc_mapiproxy:server = true
 dcerpc_mapiproxy:interfaces = exchange_emsmdb, exchange_nsp,
exchange_ds_rfr
### Configuration required by OpenChange server ###

mapistore:namedproperties = mysql
namedproperties:mysql_user = openchange
namedproperties:mysql_pass = *
namedproperties:mysql_host = localhost
namedproperties:mysql_db = openchange
mapistore:indexing_backend =
mysql://openchange:*@localhost/openchange
mapiproxy:openchangedb =
mysql://openchange:*@localhost/openchange

## Browsing/Identification ###

# Change this to the workgroup/NT-domain name your Samba server will part of
#   workgroup = WORKGROUP

# Windows Internet Name Serving Support Section:
# WINS Support - Tells the NMBD component of Samba to enable its WINS Server
#   wins support = no

# WINS Server - Tells the NMBD components of Samba to be a WINS Client
# Note: Samba can be either a WINS Server, or a WINS Client, but NOT both
;   wins server = w.x.y.z

# This will prevent nmbd to search for NetBIOS names through DNS.
dns proxy = no

 Networking 

# The specific set of interfaces / networks to bind to
# This can be either the interface name or an IP address/netmask;
# interface names are normally preferred
;   interfaces = 127.0.0.0/8 eth0

# Only bind to the named interfaces and/or networks; you must use the
# 'interfaces' option above to use this.
# It is recommended that you enable this feature if your Samba machine is
# not protected by a firewall or is a firewall itself.  However, this
# option cannot handle dynamic or non-broadcast interfaces correctly.
;   bind interfaces only = yes



 Debugging/Accounting 

# This tells Samba to use a separate log file for each machine
# that connects
#   log file = /var/log/samba/log.%m

# Cap the size of the individual log files (in KiB).
max log size = 1000

# If you want Samba to only log through syslog then set the following
# parameter to 'yes'.
#   syslog only = no

# We want Samba to log a minimum amount of information to syslog. Everything
# should go to /var/log/samba/log.{smbd,nmbd} instead. If you want to log
# through syslog you should set the following parameter to something higher.
syslog = 0

# Do something sensible when Samba crashes: mail the admin a backtrace
panic action = /usr/share/samba/panic-action %d


### Authentication ###

# Server role. Defines in which mode Samba will operate. Possible
# values are "standalone server", "member server", "classic primary
# domain controller", "classic backup domain controller", "active
# directory domain controller".
#
# Most people will want "standalone sever" or "member server".
# Running as "active directory domain controller" will require first
# running "samba-tool domain provision" to wipe datab

Re: [SOGo] Libraries not found

2016-02-17 Thread Jesús García Sáez
Your system probably isn't loading shared libraries from /usr/local/* (more
info [0]), you could either added to ldconfig, use LD_LIBRARY_PATH or
compile sogo with (on ./configure) --prefix=/usr/System so libraries will
be installed on /usr/ instead of /usr/local where they will be loaded for
sure.



[0] http://tldp.org/HOWTO/Program-Library-HOWTO/shared-libraries.html

On Wed, Feb 17, 2016 at 6:27 AM, MicTie  wrote:

> Hi,
> I try to install SOGo on a Raspberry Pi 2 running RASPIAN (equiv. to Debian
> Jessie).
> As there is no precompiled version available for ARMHF architecture I
> compiled
> SOGo by myself, which was running without errors but gave several warnings.
>
> When starting sogod I get following message: 'sogod: error while loading
> shared libraries: libSOGo.so.3: cannot open shared object file: No such
> file
> or directory'
>
> ldd /usr/local/sbin/sogod  shows that following libraries are missing:
> libSOGo.so.3 => not found
> libGDLContentStore.so.4.9 => not found
> libNGCards.so.4.9 => not found
>
> All 3 missing libraries are in /usr/local/lib/sogo either locally or via a
> symlink.
> Also copying to /usr/local/lib did not change.
>
> As the libraries are available, I assume that they cannot be loaded, maybe
> due
> to wrong architecture or corruption.
>
> Any idea how to solve this problem?
>
> --
> users@sogo.nu
> https://inverse.ca/sogo/lists
>
-- 
users@sogo.nu
https://inverse.ca/sogo/lists

Re: [SOGo] OpenChange without Samba

2016-02-17 Thread Martin Simovic
Openchange WILL NOT WORK if Samba is joined to AD as member sever and NOT a DC 
AFAIK. 

--
Martin Šimovič

NETSON s.r.o.
Mlynská 2238
934 01 Levice
tel: +421 915 393 570
mail: mar...@netson.sk

> On 17 Feb 2016, at 08:39, Dennis Moebus  wrote:
> 
> Hi all,
> 
> I'm sorry for my late response...
> First of all, thank you for your advices!!!
> 
> I joined my Samba4 Server as a Member to my Windows 2012 AD.
> (https://wiki.samba.org/index.php/Setup_Samba_as_an_AD_Domain_Member)
> This worked without any problems.
> 
> This is my smb.conf, hope this will help :-)
> 
> #
> # Sample configuration file for the Samba suite for Debian GNU/Linux.
> #
> #
> # This is the main Samba configuration file. You should read the
> # smb.conf(5) manual page in order to understand the options listed
> # here. Samba has a huge number of configurable options most of which
> # are not shown in this example
> #
> # Some options that are often worth tuning have been included as
> # commented-out examples in this file.
> #  - When such options are commented with ";", the proposed setting
> #differs from the default Samba behaviour
> #  - When commented with "#", the proposed setting is the default
> #behaviour of Samba but the option is considered important
> #enough to be mentioned here
> #
> # NOTE: Whenever you modify this file you should run the command
> # "testparm" to check that you have not made any basic syntactic
> # errors.
> 
> #=== Global Settings ===
> 
> [global]
> 
>   netbios name = SOGo
>   security = ADS
>   workgroup = 3PC
>   realm = 3PC.LOCAL
> 
>   log file = /var/log/samba/%m.log
>   log level = 1
> 
>   dedicated keytab file = /etc/krb5.keytab
>   kerberos method = secrets and keytab
>   winbind refresh tickets = yes
> 
>   winbind trusted domains only = no
>   winbind use default domain = yes
>   winbind enum users  = yes
>   winbind enum groups = yes
> 
>   # idmap config used for your domain.
>   # Choose one of the following backends fitting to your
>   # requirements and add the corresponding configuration.
>   #  - idmap config ad
>   #  - idmap config rid
>   #  - idmap config autorid
> 
>   ###  Configuration required by OpenChange server ###
>dsdb:schema update allowed = true
>dcerpc endpoint servers = epmapper, mapiproxy, dnsserver
>dcerpc_mapiproxy:server = true
>dcerpc_mapiproxy:interfaces = exchange_emsmdb, exchange_nsp,
> exchange_ds_rfr
>   ### Configuration required by OpenChange server ###
> 
>   mapistore:namedproperties = mysql
>   namedproperties:mysql_user = openchange
>   namedproperties:mysql_pass = *
>   namedproperties:mysql_host = localhost
>   namedproperties:mysql_db = openchange
>   mapistore:indexing_backend =
> mysql://openchange:*@localhost/openchange
>   mapiproxy:openchangedb =
> mysql://openchange:*@localhost/openchange
> 
> ## Browsing/Identification ###
> 
> # Change this to the workgroup/NT-domain name your Samba server will part of
> #   workgroup = WORKGROUP
> 
> # Windows Internet Name Serving Support Section:
> # WINS Support - Tells the NMBD component of Samba to enable its WINS Server
> #   wins support = no
> 
> # WINS Server - Tells the NMBD components of Samba to be a WINS Client
> # Note: Samba can be either a WINS Server, or a WINS Client, but NOT both
> ;   wins server = w.x.y.z
> 
> # This will prevent nmbd to search for NetBIOS names through DNS.
>   dns proxy = no
> 
>  Networking 
> 
> # The specific set of interfaces / networks to bind to
> # This can be either the interface name or an IP address/netmask;
> # interface names are normally preferred
> ;   interfaces = 127.0.0.0/8 eth0
> 
> # Only bind to the named interfaces and/or networks; you must use the
> # 'interfaces' option above to use this.
> # It is recommended that you enable this feature if your Samba machine is
> # not protected by a firewall or is a firewall itself.  However, this
> # option cannot handle dynamic or non-broadcast interfaces correctly.
> ;   bind interfaces only = yes
> 
> 
> 
>  Debugging/Accounting 
> 
> # This tells Samba to use a separate log file for each machine
> # that connects
> #   log file = /var/log/samba/log.%m
> 
> # Cap the size of the individual log files (in KiB).
>   max log size = 1000
> 
> # If you want Samba to only log through syslog then set the following
> # parameter to 'yes'.
> #   syslog only = no
> 
> # We want Samba to log a minimum amount of information to syslog. Everything
> # should go to /var/log/samba/log.{smbd,nmbd} instead. If you want to log
> # through syslog you should set the following parameter to something higher.
>   syslog = 0
> 
> # Do something sensible when Samba crashes: mail the admin a backtrace
>   panic action = /usr/share/samba/panic-action %d
> 
> 
> ### Authentication ###
> 
> # Server role. 

[SOGo] SOGO v3 Page Login

2016-02-17 Thread Oliver Werner
Hi,

i have installed sogo v3 on a debian 8 and configured with following config.
I can open sogo on URL https://sogo.hq.internal/SOGo/ 


But when i would Login with my LDAP credentials i got the message Login failed

So i have use tcpdump to check server will ask our ads.
But server doesn’t send packets when i will login.

My firewall is configured to connect the ldap. i have tested with telnet.

Anyone have an idea?

Regards
Oliver

{
  SOGoProfileURL = 
"mysql://sogo:s...@devdb.hq.internal:3306/sogo_www/sogo_user_profile";
  OCSFolderInfoURL = 
"mysql://sogo:s...@devdb.hq.internal:3306/sogo_www/sogo_folder_info";
  OCSSessionsFolderURL = 
"mysql://sogo:s...@devdb.hq.internal:3306/sogo_www/sogo_sessions_folder";

  SOGoDraftsFolderName = Drafts;
  SOGoSentFolderName = Sent;
  SOGoTrashFolderName = Trash;
  SOGoIMAPServer = imaps://imap.hq.internal:993;
  SOGoSMTPServer = smtp.hq.internal;
  SOGoMailDomain = hq.internal;
  SOGoMailingMechanism = smtp;
  SOGoForceExternalLoginWithEmail = YES;

  SOGoAppointmentSendEMailNotifications = NO;

  SOGoUserSources = (
{
  type = ldap;
  CNFieldName = cn;
  UIDFieldName = sAMAccountName;
  baseDN = "CN=users,dc=hq,dc=internal";
  bindDN = "CN=Auth,cn=Users,DC=hq,DC=internal";
  bindFields = (sAMAccountName, mail);
  bindPassword = pass;
  canAuthenticate = YES;
  displayName = "Public";
  hostname = ldaps://ldap.hq.internal:636;
  //filter = "mail = '*'";
id = directory;
  isAddressBook = YES;
}
  );

  SOGoPageTitle = "HQ - SOGo";

  SOGoLanguage = German;
  SOGoTimeZone = Europe/Berlin;
  SOGoCalendarDefaultRoles = (
PublicDAndTViewer,
ConfidentialDAndTViewer
  );
  SOGoSuperUsernames = ("oliver.werner"); // This is an array - keep the parens!

  SOGoDebugRequests = YES;
  SoDebugBaseURL = YES;
  ImapDebugEnabled = YES;
  LDAPDebugEnabled = YES;
  PGDebugEnabled = YES;
  MySQL4DebugEnabled = YES;
  SOGoUIxDebugEnabled = YES;
  WODontZipResponse = YES;
  WOLogFile = /var/log/sogo/sogo.log;
}



signature.asc
Description: Message signed with OpenPGP using GPGMail


Re: [SOGo] Outlook Connection

2016-02-17 Thread Zhang Huangbin

> On Feb 17, 2016, at 5:00 PM, Christian Mack  
> wrote:
> 
> But how long your sogod keeps connections open is specified in the
> SOGoMaximumSyncInterval.
> This has to match with your above proxy_send_timeout +
> proxy_read_timeout, which means those have to be bigger than the setting
> SOGoMaximumSyncInterval.

The relationship between SOGoMaximumSyncInterval and Nginx settings should be 
mentioned in SOGo Installation Guide.


Zhang Huangbin, founder of iRedMail project: http://www.iredmail.org/
Time zone: GMT+8 (China/Beijing).
Looking for opportunity to move from China to another country.

-- 
users@sogo.nu
https://inverse.ca/sogo/lists

Re: [SOGo] Outlook Connection

2016-02-17 Thread Enrique J.
On mar, 2016-02-16 at 19:29 +0100, Marc Plogas wrote:
> > 2) There are no different protocols used, you always seem to use
> > ActiveSync for synchronizing.
> > At least that is what your error messages suggest.
>  From what I recall, SOGo isn't supporting EWS anyway. So EAS is the 
> only protocol available, right?

You have support to MAPI natively using Outlook Anywhere from Outlook
2007 to Outlook 2013 with OpenChange.

See http://sogo.nu/about.html for details.

Best regards,
-- 
Enrique J. Hernández - Lead Developer (sixstone)

Zentyal - Active Exchange
www.zentyal.com


-- 
users@sogo.nu
https://inverse.ca/sogo/lists


Re: [SOGo] OpenChange without Samba

2016-02-17 Thread Dennis Moebus
Hi all,

I'm sorry for my late response...
First of all, thank you for your advices!!!

I joined my Samba4 Server as a Member to my Windows 2012 AD.
(https://wiki.samba.org/index.php/Setup_Samba_as_an_AD_Domain_Member)
This worked without any problems.

This is my smb.conf, hope this will help :-)

#
# Sample configuration file for the Samba suite for Debian GNU/Linux.
#
#
# This is the main Samba configuration file. You should read the
# smb.conf(5) manual page in order to understand the options listed
# here. Samba has a huge number of configurable options most of which
# are not shown in this example
#
# Some options that are often worth tuning have been included as
# commented-out examples in this file.
#  - When such options are commented with ";", the proposed setting
#differs from the default Samba behaviour
#  - When commented with "#", the proposed setting is the default
#behaviour of Samba but the option is considered important
#enough to be mentioned here
#
# NOTE: Whenever you modify this file you should run the command
# "testparm" to check that you have not made any basic syntactic
# errors.

#=== Global Settings ===

[global]

   netbios name = SOGo
   security = ADS
   workgroup = 3PC
   realm = 3PC.LOCAL

   log file = /var/log/samba/%m.log
   log level = 1

   dedicated keytab file = /etc/krb5.keytab
   kerberos method = secrets and keytab
   winbind refresh tickets = yes

   winbind trusted domains only = no
   winbind use default domain = yes
   winbind enum users  = yes
   winbind enum groups = yes

   # idmap config used for your domain.
   # Choose one of the following backends fitting to your
   # requirements and add the corresponding configuration.
   #  - idmap config ad
   #  - idmap config rid
   #  - idmap config autorid

   ###  Configuration required by OpenChange server ###
dsdb:schema update allowed = true
dcerpc endpoint servers = epmapper, mapiproxy, dnsserver
dcerpc_mapiproxy:server = true
dcerpc_mapiproxy:interfaces = exchange_emsmdb, exchange_nsp,
exchange_ds_rfr
   ### Configuration required by OpenChange server ###

   mapistore:namedproperties = mysql
   namedproperties:mysql_user = openchange
   namedproperties:mysql_pass = *
   namedproperties:mysql_host = localhost
   namedproperties:mysql_db = openchange
   mapistore:indexing_backend =
mysql://openchange:*@localhost/openchange
   mapiproxy:openchangedb =
mysql://openchange:*@localhost/openchange

## Browsing/Identification ###

# Change this to the workgroup/NT-domain name your Samba server will part of
#   workgroup = WORKGROUP

# Windows Internet Name Serving Support Section:
# WINS Support - Tells the NMBD component of Samba to enable its WINS Server
#   wins support = no

# WINS Server - Tells the NMBD components of Samba to be a WINS Client
# Note: Samba can be either a WINS Server, or a WINS Client, but NOT both
;   wins server = w.x.y.z

# This will prevent nmbd to search for NetBIOS names through DNS.
   dns proxy = no

 Networking 

# The specific set of interfaces / networks to bind to
# This can be either the interface name or an IP address/netmask;
# interface names are normally preferred
;   interfaces = 127.0.0.0/8 eth0

# Only bind to the named interfaces and/or networks; you must use the
# 'interfaces' option above to use this.
# It is recommended that you enable this feature if your Samba machine is
# not protected by a firewall or is a firewall itself.  However, this
# option cannot handle dynamic or non-broadcast interfaces correctly.
;   bind interfaces only = yes



 Debugging/Accounting 

# This tells Samba to use a separate log file for each machine
# that connects
#   log file = /var/log/samba/log.%m

# Cap the size of the individual log files (in KiB).
   max log size = 1000

# If you want Samba to only log through syslog then set the following
# parameter to 'yes'.
#   syslog only = no

# We want Samba to log a minimum amount of information to syslog. Everything
# should go to /var/log/samba/log.{smbd,nmbd} instead. If you want to log
# through syslog you should set the following parameter to something higher.
   syslog = 0

# Do something sensible when Samba crashes: mail the admin a backtrace
   panic action = /usr/share/samba/panic-action %d


### Authentication ###

# Server role. Defines in which mode Samba will operate. Possible
# values are "standalone server", "member server", "classic primary
# domain controller", "classic backup domain controller", "active
# directory domain controller".
#
# Most people will want "standalone sever" or "member server".
# Running as "active directory domain controller" will require first
# running "samba-tool domain provision" to wipe databases and create a
# new domain.
   server role = standalone server
# If you ar

[SOGo] Libraries not found

2016-02-17 Thread MicTie
Hi,
I try to install SOGo on a Raspberry Pi 2 running RASPIAN (equiv. to Debian
Jessie).
As there is no precompiled version available for ARMHF architecture I compiled
SOGo by myself, which was running without errors but gave several warnings.

When starting sogod I get following message: 'sogod: error while loading
shared libraries: libSOGo.so.3: cannot open shared object file: No such file
or directory'

ldd /usr/local/sbin/sogod  shows that following libraries are missing:
libSOGo.so.3 => not found
libGDLContentStore.so.4.9 => not found
libNGCards.so.4.9 => not found

All 3 missing libraries are in /usr/local/lib/sogo either locally or via a
symlink.
Also copying to /usr/local/lib did not change.

As the libraries are available, I assume that they cannot be loaded, maybe due
to wrong architecture or corruption.

Any idea how to solve this problem?

-- 
users@sogo.nu
https://inverse.ca/sogo/lists


Re: [SOGo] Outlook Connection

2016-02-17 Thread Christian Mack
Hello

Am 16.02.2016 um 19:29 schrieb Marc Plogas:
> 
> Am 16.02.16 um 18:30 schrieb Christian Mack:
>> hello
>>
>> Am 16.02.2016 um 17:16 schrieb m.plo...@berlin.de:
>>> Heya,
>>>
>>> When trying to connect to a SOGo installation with Outlook 2016,
>>> these errors
>>> appear in my log.
>>>
>>> Feb 16 09:38:45 sogod [30243]: [ERROR]
>>> <0x0x5633db73fbd8[WOHttpTransaction]>
>>> client disconnected during delivery of response for
>>> >> ActiveSync?
>>> Cmd=Sync&User=u...@domain.tld&DeviceId=DEVICEID&DeviceType=WindowsOutlook15
>>>
>>> app=SOGo rqKey=Microsoft-Server-ActiveSync rqPath=(null)> (len=0):
>>> the socket
>>> was shutdown
>>> Feb 16 09:38:45 sogod [30243]: localhost "POST /SOGo/Microsoft-Server-
>>> ActiveSync?
>>> Cmd=Sync&User=u...@domain.tld&DeviceId=DEVICEID&DeviceType=WindowsOutlook15
>>>
>>> HTTP/1.0" 503 0/16812 303.853 - - 334M
>>>
>>> The connection then fails. SOGo is part of an iRedMail installation,
>>> I already
>>> checked with the developer, but he can't help me with this issue.
>>>
>>> There is a similar case here on the mailing list, but the user was
>>> having a
>>> faulty rewrite rule. That doesn't seem to be the case here. Also,
>>> Outlook for
>>> Android and Outlook for Windows Phone seems to be unaffected and work
>>> without
>>> issues (probably due to a different prtocoll being used)
>>>
>>> Any ideas?
>>>
>> 1) Outlook for Android and Outlook for Windows Phone only share the same
>> name with Outlook 20XX on PCs. They have completely different codebases,
>> are developed from completely different development teams, which were
>> not even part of Microsoft, when they wrote those first two.
> I see. I could talk to the product teams, fortunately my mobile clients
> work.

This means, that when it is working on the mobiles, that has nothing to
do with Outlooks 20XX behaviour.

IIRC the mobile programs do not use ActiveSync Push.
We should look into that.


>> 2) There are no different protocols used, you always seem to use
>> ActiveSync for synchronizing.
>> At least that is what your error messages suggest.
> From what I recall, SOGo isn't supporting EWS anyway. So EAS is the only
> protocol available, right?

Yes, exactly.


>> 3) The error message says, that the connection was closed from the
>> client, before the complete response could be delivered from SOGo.
>> That can mean, that the Proxy server closed the connection, but it can
>> also happen, because Outlook did close the connection or the network did
>> fail.
> There is no Proxy between the client and the SOGo service. There is
> however a firewall. I'll check for the logs. The sogo.log says the
> socket was shutdown. Has it been shut down because of a lack of activity
> from the client or because of an internal error within SOGo?

There is always an apache/nginx between the client and the sogod.
It works partly as reverse proxy and partly delivers static content like
pictures, CSS and JavaScript-Snippets.

So you always have an Proxy in between ;-)


>> Perhaps your sogo.conf parameters for ActiveSync are bogus
> I checked the sogo.conf. What should I look for? I've enabled
> SOGoEASDebugEnabled = YES for now.

Check the following settings:
SOGoMaximumPingInterval = 3540;
SOGoMaximumSyncInterval = 3540;
SOGoInternalSyncInterval = 60;
SOGoMaximumSyncWindowSize = 0;
SOGoMaximumSyncResponseSize = 51200;

>> Perhaps your settings for the ProxyPass directive in Apache is bogus.
> I'm using nginx. This is from my conf
> location ^~ /SOGo {
> proxy_pass http://127.0.0.1:2;
> proxy_set_header x-webobjects-server-protocol HTTP/1.0;
> proxy_connect_timeout 600;
> proxy_send_timeout 600;
> proxy_read_timeout 600;
> }
> 

Especially the "timeout" value is important for ActiveSync Push.
As Push connections can last for an hour (=3600 seconds).
If your connection from Outlook stays open bejond that timeout interval,
apache will close it.
When that happens, sogod will only see a closed connection, not by whom
it was closed.

But how long your sogod keeps connections open is specified in the
SOGoMaximumSyncInterval.
This has to match with your above proxy_send_timeout +
proxy_read_timeout, which means those have to be bigger than the setting
SOGoMaximumSyncInterval.

> location ^~ /Microsoft-Server-ActiveSync {
> proxy_pass http://127.0.0.1:2/SOGo/Microsoft-Server-ActiveSync;
> proxy_redirect http://127.0.0.1:2/Microsoft-Server-ActiveSync /;
> }
> 
> location ^~ /SOGo/Microsoft-Server-ActiveSync {
> proxy_pass http://127.0.0.1:2/SOGo/Microsoft-Server-ActiveSync;
> proxy_redirect
> http://127.0.0.1:2/SOGo/Microsoft-Server-ActiveSync /;
> }
> 
> location /SOGo.woa/WebServerResources/ {
> alias /usr/lib/GNUstep/SOGo/WebServerResources/;
> }
> location /SOGo/WebServerResources/ {
> alias /usr/lib/GNUstep/SOGo/WebServerResources/;
> }
> location ^/SOGo/so/ControlPanel/Products/([^/]*)/Resources/(.*)$ {
> alias /usr/lib/GNUstep/SOGo/$1.SOGo/Resour