[courier-users] Fwd: Re: Looking for new Debian maintainers for courier-mta packages

2017-03-28 Thread Mark Constable
: Looking for new Debian maintainers for courier-mta packages Date: Tue, 28 Mar 2017 18:56:58 +0200 From: Markus Wanner <mar...@bluegap.ch> To: Ondřej Surý <ond...@sury.org>, debian-de...@lists.debian.org, Willi Mann <wi...@debian.org>, courier-i...@lists.sourceforge.net CC: Mark Constabl

Re: [courier-users] Future of Courier MTA

2017-02-18 Thread Mark Constable
On 19/02/17 10:14, Gordon Messmer wrote: >> Is anyone willing to cooperate with me on fixing Debian-related >> errors? https://github.com/szepeviktor/courier > > Well, I just sent some more patches to the FreeBSD maintainer to > bring the package up to date. I think I can put in some effort to >

Re: [courier-users] Best practize for $USER -> EMail

2017-01-20 Thread Mark Constable
On 20/01/17 22:22, Michelle Konzack wrote: > All the users where created on as "normal" UNIX users > and there login name is also there email address. So, now you can > imagine, that this give problems if is responsable for > different domains, where maybe two users have the same names... You

Re: [courier-users] rspamd for courier-mta

2017-01-16 Thread Mark Constable
On 17/01/17 06:59, Ben Kennedy wrote: >> Has anyone tried this with courier-mta? > > I have nothing to contribute except to add my interest to this as > well. I've been running SpamAssassin for years, but with poorer and > poorer results, and have been keen to find an alternative. FWIW atm I only

[courier-users] rspamd for courier-mta

2017-01-13 Thread Mark Constable
I've been looking for a lightweight faster amavisd/spamassassin replacement for years and generally rely on just SpamProbe so this is very interesting. Has anyone tried this with courier-mta? https://rspamd.com/doc/integration.html

Re: [courier-users] Fwd: Looking for new Debian maintainers for courier-mta packages

2016-12-11 Thread Mark Constable
On 11/12/16 23:02, Alessandro Vesely wrote: > I'm not clear whether Ondřej's changes break compatibility with the > current package. If aiming at an incompatible repackaging, dropping > the existing packages and creating new ones can be easier. Call it > /renaming/ if you like. They are a

Re: [courier-users] Fwd: Looking for new Debian maintainers for courier-mta packages

2016-12-10 Thread Mark Constable
On 11/12/16 03:09, SZÉPE Viktor wrote: > On 07/12/16 00:04, Ondřej Surý wrote: >> I have filled RFH (Request for Help) bug on courier package, but >> nobody responded so far. Today I have changed that to RFA (Request >> for Adoption) and I intend to properly orphan the packages before >> stretch

[courier-users] Fwd: Looking for new Debian maintainers for courier-mta packages

2016-12-09 Thread Mark Constable
ian-de...@lists.debian.org, Willi Mann <wi...@debian.org>, courier-i...@lists.sourceforge.net CC: Mark Constable <ma...@renta.net> Hi, TL;DR I am looking for prospective courier-mta maintainers for Courier MTA packages. a little history - Mark Constable asked me a while ago if I could prepare u

[courier-users] Alternate and extra IMAP folders

2016-11-16 Thread Mark Constable
I always set up a "standard" set of extra IMAP folders like Sent, Junk and Trash (plus Drafts, Templates and Archives for Thunderbird users) but some of our Outlook and Apple Mail user programs are creating, for instance, "Sent Items", "Junk E-mail" and "Deleted Items" folders. Some of these

[courier-users] Ports 465 vs 587

2016-08-14 Thread Mark Constable
Because of arguments like this, and that I do not even want to offer non-SSL options, I routinely disable ports 143 and 587 and only use ports 993 and 465 for authenticated user mail... https://www.agwa.name/blog/post/starttls_considered_harmful However just now I notice this comment and am now

[courier-users] Vhost certificates

2016-07-08 Thread Mark Constable
FWIW I finally got around to testing 0.76.1 with a virtual vhost SSL (letsencrypt) certificate and it worked! All I did was create symlinks from /etc/courier/{esmtpd,imapd}.pem.DOMAIN to the right combined privkey.pem + fullchain.pem for the particular vhost and Thunderbird worked perfectly.

[courier-users] OpenSSL v1.1.0

2016-06-27 Thread Mark Constable
Hi Sam, FWIW Debian "stretch" is currently rebuilding all SSL related packages based on OpenSSL v1.1.0 which will also flow through to Ubuntu packages pretty soon. Perhaps you could provide a tweak to help ondrej build new deb packages, and no doubt this will affect rpm packages too. > From: Kurt

Re: [courier-users] Courier is malware

2016-06-02 Thread Mark Constable
On 03/06/16 11:44, Sam Varshavchik wrote: > If Sourceforge doesn't resolve it tomorrow, or I get an unhelpful > response, they won't follow-up until Monday; and I'll just replace > all the links with the direct download links, bypassing Sourceforge's > banner ads, for now. FWIW how about

Re: [courier-users] Disable SSL for esmtpd on port 25

2016-05-29 Thread Mark Constable
On 28/05/16 23:23, Sam Varshavchik wrote: >> We only use authenticated relaying via 465/SSL and 587/TLS so none >> of our clients use port 25 for auth/relay. The problem is our client >> recipient has to contact our support which then asks them for a copy >> of the error, then I get it, then I

Re: [courier-users] Disable SSL for esmtpd on port 25

2016-05-26 Thread Mark Constable
On 27/05/16 02:20, Matus UHLAR - fantomas wrote: >> Some lame govt mailservers are still using SSL23... >> "SSL23_GET_SERVER_HELLO:tlsv1 alert decode error" >> and rather than whitelist them I'm sure I used to just disable SSL >> via /etc/courier/esmtpd altogether (currently using v0.68.2)... > >

[courier-users] Disable SSL for esmtpd on port 25

2016-05-26 Thread Mark Constable
I just set up a new server and I can't for the life of me remember, or find, how to disable SSL on port 25 for general incoming mail? Some lame govt mailservers are still using SSL23... SSL23_GET_SERVER_HELLO:tlsv1 alert decode error and rather than whitelist them I'm sure I used to just

Re: [courier-users] How to force quota recalculation ?

2016-05-25 Thread Mark Constable
On 25/05/16 19:00, chaouche yacine wrote: > I've move maildirsize to maildirsize- but quota is still shown as > 209715200 (instead of 64764) even after an authentification lookup > [...] > Authenticated: i.aitah...@domain.tld (uid 5000, gid 5000) > Home Directory: /var/vmail >

Re: [courier-users] How to force quota recalculation ?

2016-05-25 Thread Mark Constable
On 25/05/16 16:38, Matus UHLAR - fantomas wrote: > so this depends on authdaemon providing that information, e.g. this > won't work with standard user accounts other that removing quota at > all... You're right, not with authpam (and maybe authpipe / authcustom depending what's returned), but I

Re: [courier-users] How to force quota recalculation ?

2016-05-25 Thread Mark Constable
On 25/05/16 16:10, Matus UHLAR - fantomas wrote: > On 25.05.16 12:41, Mark Constable wrote: >> There may be more elegant solutions but I just simply delete that >> file and quotawarn. The maildirsize file will be rebuilt soon >> enough. > > isn't quota lost when you lo

Re: [courier-users] How to force quota recalculation ?

2016-05-24 Thread Mark Constable
On 25/05/16 01:48, chaouche yacine wrote: > maildirsize shows 200Mb+ of disk usage while du shows only 64Mb. How > can I ask courier to recaclculate the quota and allow this poor user > to receive mail again ? There may be more elegant solutions but I just simply delete that file and quotawarn.

Re: [courier-users] Let's encrypt

2016-05-13 Thread Mark Constable
On 14/05/16 06:30, SZÉPE Viktor wrote: > Let's Encrypt also provides you 3 certs: intermediate, public and > private. Just install them (symlink them) as any other certificate. > The order is: > > # cat "$PRIV" "$PUB" "$INT" > "$COURIER_COMBINED" FWIW I find that only privkey.pem and

[courier-users] Manipulating outgoing messages

2016-05-04 Thread Mark Constable
We often have a problem with Thunderbird hanging when trying to send a copy of an outgoing email to the Sent folder. Using RMB -> Properties -> Repair Folder and Compact seems to generally fix it for a few months. However it occurred to me that if the original sent message could be squirreled

Re: [courier-users] courier-mta.org website down?

2016-05-03 Thread Mark Constable
On 05/04/16 14:18, Harry Duncan wrote: > The usual site is missing and I get a cpanel message? Yikes. I'm not even getting that. Whois and dig/ping work okay but nothing on port 80 comes up for me. -- Find and fix

Re: [courier-users] TLS SNI when Courier is built with OpenSSL

2016-05-03 Thread Mark Constable
Mini followup on success with using 0.76.0.20160430 SNI SSL. I'm happy to report that Windows10 Outlook works with SNI as does the Android Outlook client. The Android K9 mail app does not. -- Find and fix application

Re: [courier-users] I need working nginx configuration for webadmin

2016-05-02 Thread Mark Constable
On 05/02/16 20:14, Matus UHLAR - fantomas wrote: > and I mean, apache process loads all modules at startup time, which > means that mod-php is loaded only at the start or reconfigure time, > and all child processes are created by forking only when servers are > spawned at: > - startup > -

Re: [courier-users] I need working nginx configuration for webadmin

2016-05-02 Thread Mark Constable
On 05/02/16 19:19, Matus UHLAR - fantomas wrote: >> A couple of more points, apache with libapache2-mod-php requires >> the slower pre-forking version of apache and because that module is >> always loaded for every access > > is it? iiuc it's only loaded on apache reload... (unless you tune >

Re: [courier-users] TLS SNI when Courier is built with OpenSSL

2016-05-01 Thread Mark Constable
On 04/30/16 11:59, Sam Varshavchik wrote: >> - courier, courier-imap: add support for TLS SNI when Courier is >> built with OpenSSL. I'm happy to report that the 0.76.0.20160430 devel version does indeed support TLS SNI with OpenSSL.

Re: [courier-users] I need working nginx configuration for webadmin

2016-05-01 Thread Mark Constable
On 05/02/16 03:16, Matus UHLAR - fantomas wrote: >> Perl kludge suggested on nginx site for runnig CGI scripts as >> FastCGI much worse than time-honoured apache. > > but what's the point of proxying it from apache? Apache can run cgi > (and fastcgi, even php as module, not as fastcgi, so php

Re: [courier-users] TLS SNI when Courier is built with OpenSSL

2016-04-29 Thread Mark Constable
On 29/04/16 22:36, Sam Varshavchik wrote: >>> I finally have a 0.76.0 ubuntu install to test and trying to get this to >>> work... >>> >>> > - courier, courier-imap: add support for TLS SNI when Courier is built >>> > with OpenSSL. >>> >>> I've added this vhost settings but no sign the

Re: [courier-users] New courier and courier-imap release

2016-04-29 Thread Mark Constable
I finally have a 0.76.0 ubuntu install to test and trying to get this to work... > - courier, courier-imap: add support for TLS SNI when Courier is built with > OpenSSL. I've added this vhost settings but no sign the LetsEncrypt certificate is being delivered to Thunderbird. ~ ls -1

Re: [courier-users] esmtproutes (SOLVED)

2016-03-29 Thread Mark Constable
On 30/03/16 13:04, Sam Varshavchik wrote: >> Anyway, it almost worked... except that I am using LetsEncrypt certificates >> where I have a multiple subdomains of renta.net AND www.renta.net on the >> destination server and the source server said... >> 400 couriertls: Mismatched SSL certificate:

Re: [courier-users] esmtproutes (was How to disable ipv6)

2016-03-29 Thread Mark Constable
On 30/03/16 01:13, Mark Constable wrote: > So it seems that maybe courier-mta is trying to use ipv6 and seeing that > I'm not sure how to deal set up ipv6 I would like to completely disable > courier-mta (and imap for that matter) using ipv6 and default to ipv4. So it seems; because outg

[courier-users] How to disable ipv6

2016-03-29 Thread Mark Constable
I have a weird new install where mail comes in okay but trying to send out just hangs with no real feedback as to why but just now an attempt to send to Gmail gave me a hint... "Our system has detected that this message does not meet IPv6 sending guidelines regarding PTR records and

[courier-users] maildrop vs courier-maildrop deb packages

2016-03-19 Thread Mark Constable
I know this is about deb packaging details but someone here might know the answer to this question. The very latest ubuntu devel packages are dropping courier-maildrop in favour of just using the maildrop package and aside from the default /etc/courier/maildroprc moving to /etc/maildroprc I've

Re: [courier-users] maildrop vs courier-maildrop deb packages

2016-03-19 Thread Mark Constable
On 17/03/16 21:00, Sam Varshavchik wrote: >> How can I get back the previous maildrop behaviour where it treats >> HOME as from the virtual homedir field rather than the home field >> in /etc/passwd? > > Most likely by explicitly invoking maildrop with the -d option. I've read through most of

Re: [courier-users] maildrop vs courier-maildrop deb packages

2016-03-19 Thread Mark Constable
On 18/03/16 12:20, Sam Varshavchik wrote: > Pedantically, it should be > > DEFAULTDELIVERY='|/usr/bin/maildrop -w 90 -V 9 -d "${RECIPIENT}"' > > to guard against a wildcard virtual domain alias allowing some clown > to use an address with shell special characters. Right, I tried that but when I

Re: [courier-users] maildrop vs courier-maildrop deb packages

2016-03-19 Thread Mark Constable
On 17/03/16 22:27, Sam Varshavchik wrote: >> >> How can I get back the previous maildrop behaviour where it treats >> >> HOME as from the virtual homedir field rather than the home field >> >> in /etc/passwd? >> > >> > Most likely by explicitly invoking maildrop with the -d option. >> >> I've read

Re: [courier-users] SNI for SSL negotiations

2016-03-02 Thread Mark Constable
>> Would mail clients like Thunderbird need to understand SNI as well >> or would it be up to only the server daemon to present the right >> certificate? > > Both. SNI is a protocol extension. Both the client and the server > have to be explicitly coded to support it. Thanks for the confirmation.

Re: [courier-users] SNI for SSL negotiations

2016-03-02 Thread Mark Constable
On 03/03/16 12:37, Sam Varshavchik wrote: >> Is there any possibility that SNI negotiation can take place when >> doing SSL handshakes with couriers daemons so that multiple SSL >> certificates can be used on the same IP? > > I haven't yet found the time to investigate what needs to be done >to

[courier-users] SNI for SSL negotiations

2016-03-02 Thread Mark Constable
I think I may have asked this question many years ago but just in case things have changed. Is there any possibility that some of SNI negotiation can take place when doing SSL handshakes with couriers daemons so that multiple SSL certificates can be used on the same IP?

[courier-users] SPF failing again

2016-01-27 Thread Mark Constable
I have another SPF fail and this time it could be courier-mta at fault because if I check with... http://mxtoolbox.com/SuperTool.aspx?action=spf%3abounce.s7.exacttarget.com%3a136.147.176.7 it indicates this one should work, but... Jan 21 15:49:18 s1 courieresmtpd: error,

[courier-users] Failing SPF from spf.protection.outlook.com

2016-01-26 Thread Mark Constable
I can't quite work out why this particular example is failing an SPF check. Jan 27 10:49:46 s1 courieresmtpd: error, relay=:::104.47.126.51, from=: 517 SPF fail recept...@.com.au: Address does not pass the Sender Policy Framework The IP is owned by M$ and it

Re: [courier-users] Failing SPF from spf.protection.outlook.com

2016-01-26 Thread Mark Constable
On 27/01/16 12:20, Sam Varshavchik wrote: > Use the full dig command. Is this two separate TXT records, or one > single TXT record with two strings. If google-site-verification is a > separate TXT record, it will definitely be ignored. Sorry, yes, it was 2 distinct TXT records... .com.au.

[courier-users] setgid(1) and setuid(1)

2016-01-02 Thread Mark Constable
I know this is not strictly a courier code issue but I'm trying to track down a permissions issue and from this strace I am getting... setgid(1) = 0 getuid()= 0 setgroups(1, [1]) = 0 setuid(1)

Re: [courier-users] What config option controls -access=

2016-01-01 Thread Mark Constable
On 01/01/16 23:39, Sam Varshavchik wrote: >> /usr/lib/courier/sbin/imapd references $IMAPACCESSFILE > > Right. Looks like a packaging bug. The imapd configuration file > should be setting IMAPACCESSFILE. Thanks Sam and Gordon, I'm actually helping the guy putting some 0.75 *buntu packages

[courier-users] What config option controls -access=

2015-12-31 Thread Mark Constable
courier-mta 0.75.0-2+deb.sury.org~wily+2 My /etc/courier/imapd file has ACCESSFILE=/etc/courier/smtpaccess and yet these 2 daemon instance below show -access=.dat. Where do I set whatever affects the -access argument? root 19325 0.0 0.0 4368 1268 ?S14:05 0:00

[courier-users] More recent debian/buntu packages anywhere?

2015-11-18 Thread Mark Constable
I've been using somewhat more recent packages available from here... deb http://ppa.launchpad.net/ondrej/courier/ubuntu vivid main but... courier-mta 0.73.1-1.3+deb.sury.org~vivid+2 courier-imap 4.15-1.3+deb.sury.org~vivid+2 courier-authlib 0.66.3-1+deb.sury.org~wily+2 are still a good deal

Re: [courier-users] Unexpected SSL connection shutdown

2015-07-31 Thread Mark Constable
On Fri, 31 Jul 2015 01:07:38 PM Bowie Bailey wrote: Apparently, Outlook doesn't like something about my SSL setup. These errors and the bounceback errors I have been provided by the sender don't give any clues to the actual problem. I have the protocol set to SSL23, which should allow

[courier-users] PHP Control Panel

2015-07-31 Thread Mark Constable
I've just spent a few days reviewing web control panels again and as anyone knows who has looked there is nothing that supports courier-mta out of the box, some support courier-imap (Froxlor, ISPConfig). I have some code I've written myself but it's such a huge job to write a web CP from scratch

Re: [courier-users] [SOLVED] Recent Windows 8.1 update problem

2015-05-22 Thread Mark Constable
On Fri, 22 May 2015 07:07:13 AM Sam Varshavchik wrote: openssl dhparam -out /etc/ssl/dhparam.pem 2048 mkdhparams already defaults to 2048 bit DH keys. FWIW, maybe I have an old one but unless I do this I still get a 768bit DH param file... ~ rm /etc/courier/dhparams.pem ~ export

Re: [courier-users] [SOLVED] Recent Windows 8.1 update problem

2015-05-22 Thread Mark Constable
On Fri, 22 May 2015 07:07:13 AM Sam Varshavchik wrote: openssl dhparam -out /etc/ssl/dhparam.pem 2048 mkdhparams already defaults to 2048 bit DH keys. Right, good to know I can install courier first and just use it's dhparam.pem for nginx too. TLS_DHPARAMS=/etc/ssl/dhparam.pem

Re: [courier-users] [SOLVED] Recent Windows 8.1 update problem

2015-05-22 Thread Mark Constable
A related followup. This looks like the actual MS patch that caused my particular problem with Outlook users not being able to connect via SSL after a recent MS update. For some reason I had an old 768 bit dhparams.pem file and this link clearly states that MS will now only accept a minimum of

[courier-users] [SOLVED] Recent Windows 8.1 update problem

2015-05-21 Thread Mark Constable
On Tue, 19 May 2015 10:07:32 AM Alessandro Vesely wrote: No, but admittedly just a cheap chained certificate... What's the key length? This article seems to imply it must be = 2048: https://www.sophos.com/en-us/support/knowledgebase/122327.aspx Thanks for this (and Sams) hint about an

Re: [courier-users] Recent Windows 8.1 update problem

2015-05-18 Thread Mark Constable
On Mon, 18 May 2015 07:03:21 AM Sam Varshavchik wrote: ie; IMAP port 143/none and SMTP port 587/none works for those Windows 8.1 users who have had updates since the 12th May 2015. Are you using self-signed certificates for IMAP and SMTP? No, but admittedly just a cheap chained

Re: [courier-users] Recent Windows 8.1 update problem

2015-05-18 Thread Mark Constable
On Mon, 18 May 2015 11:35:07 AM Matus UHLAR - fantomas wrote: FWIW we found a workaround for now and that is to disable tls/ssl. I believe you understand that this is very bad workaround The only alternative was to ask users to downgrade and disable OS upgrades. One user had 2Gb of upgrades

Re: [courier-users] Recent Windows 8.1 update problem

2015-05-17 Thread Mark Constable
On Sun, 17 May 2015 09:41:47 PM Sam Varshavchik wrote: May 18 10:37:12 s1 courieresmtpd: error,relay=:::xx.xx.xx.xx,msg=502 ESMTP command error,cmd: DATA The SMTP error message would not have anything to do with the client's failure to talk IMAP. That's a dead end. Unless, for some

[courier-users] Recent Windows 8.1 update problem

2015-05-17 Thread Mark Constable
Hi we are seeing everyone that updated their Windows 8.1 systems last week no longer be able to authenticate with courier, and it only seems to be courier at fault which may explain why we have not been able to google for any solutions other than to advise clients to undo last weeks updates. I've

Re: [courier-users] Recent Windows 8.1 update problem

2015-05-17 Thread Mark Constable
FWIW we found a workaround for now and that is to disable tls/ssl. ie; IMAP port 143/none and SMTP port 587/none works for those Windows 8.1 users who have had updates since the 12th May 2015. -- One dashboard for

[courier-users] invalid UIDNEXT value

2015-04-01 Thread Mark Constable
I have no idea if this is a real bug or not but there seems to be a lot of these in my local desktop logfile output from Kmail which uses the so called akonadi backend to fetch IMAP messages. This is a FWIW. akonadi_imap_resource_0(2620) RetrieveItemsTask::onFinalSelectDone: Server bug: Your

Re: [courier-users] invalid UIDNEXT value

2015-04-01 Thread Mark Constable
On 02/04/15 09:52, Sam Varshavchik wrote: Next, someone pointed out the fact that the client should not assume that the client will get a UIDNEXT. This was explicitly documented: If this is missing, the client can not make any assumptions about the next unique identifier value. So clients

Re: [courier-users] Aliasing

2015-02-28 Thread Mark Constable
On 27/02/15 02:51, Alessandro Vesely wrote: https://github.com/r-a-y/bp-reply-by-email The 'tag' element of the settings can be changed without forking. Alessandro, you were dead right. When I went back into the BP Reply By Email dashboard I noticed an Address Tag Separator setting and when I

Re: [courier-users] Aliasing

2015-02-26 Thread Mark Constable
On 26/02/15 11:40, Sam Varshavchik wrote: But the best course of action is to wrap that third party app, somehow, and change the return address to use dashes instead of pluses. That would make things much easier. Thanks, I can see that this is going to be the cleanest approach and have forked

Re: [courier-users] Development

2015-02-15 Thread Mark Constable
On 15/02/15 23:59, Sam Varshavchik wrote: Try adding line-height: 1.5 to the CSS for the navigation line, so when it wraps on a mobile screen there will be extra spacing between the multiple lines. Bingo! It took a line-height of 1.7 on the whole body to work but now it's 100/100 and no

Re: [courier-users] Development

2015-02-14 Thread Mark Constable
On 15/02/15 01:46, Sam Varshavchik wrote: All of this is fixable with trivial CSS tweaking. [...] Right. The layout is simple enough so that a complete reengineering is overkill. Totally agree. It's not often I get a chance to work with static pages and page loading speed trumps glitz in this

Re: [courier-users] Development

2015-02-13 Thread Mark Constable
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 14/02/15 12:19, Sam Varshavchik wrote: Sure, and I already link to a Japanese language site that someone maintains. Okay, cool. But out of curiosity – what exactly is the problem with viewing www.courier- mta.org from a mobile phone. I

Re: [courier-users] Development

2015-02-13 Thread Mark Constable
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 12/02/15 23:42, Sam Varshavchik wrote: Would anyone entertain the possibility of updating the web site with a new design? That anyone would be me. In general, I'm happy to look at proposals for tweaks to the web site's appearance. However,

Re: [courier-users] Courier IMAP connectivity issues with iOS devices

2015-02-13 Thread Mark Constable
On 14/02/15 15:09, Abel Jeffcoat wrote: I was wondering if anyone has seen the issue when iOS devices cannot connect to the IMAP server? I’m running a Plesk v12 server with Courier IMAP. So many different versions etc. One thing we've been caught out with is that an incorrect profile can

Re: [courier-users] Development

2015-02-13 Thread Mark Constable
On 14/02/15 12:47, Zachary Grafton wrote: On my mobile at least, with Chrome, the menu is extremely tiny and practically impossible to use without zooming in about 15 times. Yep, that was my main problem too. And slightly annoying was the lack of a bit of padding down the sides of the body

Re: [courier-users] Ports, SSL and STARTTLS for ESMTP

2015-02-07 Thread Mark Constable
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 08/02/15 01:29, Hanno Böck wrote: But not sure this is the right place to discuss it, hope we don't annoy others with offtopic discussions. I'm sure there are quite a few of us interested in current best practices. It's certainly a surprise to

Re: [courier-users] autoreply script

2015-02-02 Thread Mark Constable
On 03/02/15 07:34, Bowie Bailey wrote: I do something similar with my email when I go on vacation. In addition, I wrap it with a test that looks for spam, list mail, and bulk mail headers and does not respond to those. If you are interested, it looks like this: if (! (/^X-Spam-Flag:

Re: [courier-users] autoreply script

2015-01-31 Thread Mark Constable
On 31/01/15 18:52, Jan Ingvoldstad wrote: Imagine being a recipient of this, and trying to make the flood stop. Do you know how the courier mailbot program works? And imagine forgetting the last lines of the message! The original message is attached to the autoresponse. Unix systems usually

[courier-users] autoreply script

2015-01-30 Thread Mark Constable
I've been meaning to do this for the past decade... #!/bin/bash # autoreply 20150130 (C) Mark Constable ma...@renta.net (AGPL-3.0) # # A simple vacation autoreply script for courier-mta based mailservers. # # Depends on these conditions: # # - courier-imap/mta with courier-authdaemon and maildrop

[courier-users] Kolab?

2015-01-26 Thread Mark Constable
Has anyone managed to get a recent installation of Kolab working with courier-imap instead of the default cyrus? -- Dive into the World of Parallel Programming. The Go Parallel Website, sponsored by Intel and developed in

[courier-users] Read only mailbox (no deliveries)

2015-01-19 Thread Mark Constable
It's so hot here I can't think. If I wanted to have a read-only backup mailbox that was populated from an active mailbox by automatically moving messages older than 30 days from the active mailbox to the backup mailbox then what would be the easiest and simplest way to deny incoming deliveries to

[courier-users] Slow sending out port 587

2014-12-15 Thread Mark Constable
Thunderbird often hangs when picking up IMAP (starttls) and I've tried all manner of tweaks but it still persists BUT now for the past week trying to send email via port 587 is also taking up to 1 and 2 minutes before the message actually gets accepted and sent from TB. I've also been getting a

[courier-users] alias user in virtual tables

2014-12-14 Thread Mark Constable
Just a real low priority suggestion that may not be possible but having to have an extra alias@domain user entry in a virtual password table has always annoyed when using the same table with other services. ATM I am seeing 2 SQL lookups, one to check user id/password and another one to see if

Re: [courier-users] smtpaccess and 517 rejects woes

2014-11-28 Thread Mark Constable
On 28/11/14 22:34, Marcin 'Rambo' Roguski wrote: Nov 28 12:31:04 goldsmith courieresmtpd: error, relay=:::178.63.50.70,from=-[edited]-@platon.com.pl: 517 HELO mx1.evo.pl does not match :::178.63.50.70 The domain you want to whitelist is platon.com.pl so try... platon.com.pl

Re: [courier-users] Turning accounts into honeypots

2014-11-07 Thread Mark Constable
On 07/11/14 21:52, Sam Varshavchik wrote: Is it possible to add authmysql twice (and have them behave differently)? Nope. You could list authmysql twice, but each instance uses the same config file. Maybe falling over to different auth backends might work but, Sam, it would be really neat to

Re: [courier-users] MYSQL_MAILDIR_FIELD missing

2014-10-03 Thread Mark Constable
On 03/10/14 17:12, Matus UHLAR - fantomas wrote: for debian/ubuntu the config dir is /etc/courier/ for all courier packages except maildrop... (there's no reason to use /usr/local when the package is installed within the OS distribution) Yes, it's a standard debian layout with packages from

[courier-users] MYSQL_MAILDIR_FIELD missing

2014-10-02 Thread Mark Constable
courier-imap 4.15-1 and courier-authdaemon 0.66.1 on Ubuntu 14.10 I can't for the life of me figure out why MYSQL_MAILDIR_FIELD / maildir is not returning a value? Oct 3 11:59:41 netserva authdaemond: SQL query: SELECT username, , password, uid, gid, homedir, , quota, , FROM mail_users WHERE

Re: [courier-users] MYSQL_MAILDIR_FIELD missing

2014-10-02 Thread Mark Constable
On 03/10/14 12:30, Sam Varshavchik wrote: ~ grep DEFAULT /etc/courier/courierd (truncated) courierd:DEFAULTDELIVERY=| /usr/bin/maildrop courierd:MAILDROPDEFAULT=./Maildir What's courierd doing here? You said that you are running the courier-imap package, at the beginning. Well ubuntu's idea

[courier-users] Ubuntu/Debian package dependencies

2014-09-12 Thread Mark Constable
Would anyone happen to know which dependencies of the Ubuntu/Debian courier packages that would force such crazy desktop related junk? https://github.com/oerdnj/deb.sury.org/issues/18 If anyone on this list would like to cooperate with a lite debian package then please contact me off-list.

Re: [courier-users] Ubuntu/Debian package dependencies

2014-09-12 Thread Mark Constable
On 12/09/14 16:46, Aidas Kasparas wrote: If anyone on this list would like to cooperate with a lite debian package then please contact me off-list. The lite package is not necessary. Problem lies in default configuration of apt system -- by default it installs all Recomended packages. I

Re: [courier-users] Couriertls SSL Error : no start line

2014-09-04 Thread Mark Constable
On 04/09/14 13:14, [Kreiz IT]Cédric GROSS wrote: I just upgrade courier-imap from version 4.12 to 4.15 and now I see in my log : imapd-ssl: couriertls: /usr/local/etc/courier-imap/ssl/imapds.pem: error:0906D06C:PEM routines:PEM_read_bio:no start line Just a wild guess but do you have

Re: [courier-users] Couriertls SSL Error : no start line

2014-09-04 Thread Mark Constable
On 04/09/14 19:26, [Kreiz IT]Cédric GROSS wrote: No symlink. Permission wasn't change. Same config file. Upgrade process changed it but I put back my previous config file. I checked diff between config files and it's only comments differ. So should be ok. I can't really help other than to

[courier-users] authdaemond password debugging

2014-09-01 Thread Mark Constable
a) server running Debian 6 w/ courier-authdaemon 0.63.0-3 b) server running Ubuntu 14.04 w/ courier-authdaemon 0.63.0-6ubuntu1 b) server provides the below when a password fails... Sep 2 11:35:45 s2 authdaemond: supplied password 'user_pw' does not match passwd 'db_pw' a) does not provide

Re: [courier-users] authdaemond password debugging

2014-09-01 Thread Mark Constable
On 02/09/14 12:49, Sam Varshavchik wrote: Sep 2 11:35:45 s2 authdaemond: supplied password 'user_pw' does not match passwd 'db_pw' a) does not provide the above line even though both have almost exactly the same settings. Why is a) not providing the 'does not match' line for failed

[courier-users] Latest Courier Ubuntu PPA Available

2014-08-29 Thread Mark Constable
Thanks to Ondřej Surý Ubuntu 12.04, 14.04 and 14.10 users can now install the latest courier packages directly from a PPA. https://launchpad.net/~ondrej/+archive/ubuntu/courier courier-authlib 0.66.1 courier-mta 0.73.1 courier-imap 4.15-1 But no courier-authlib-sqlite package so I'll CC Ondřej.

[courier-users] Separate service passwords

2014-08-15 Thread Mark Constable
Most of our brute force password attacks are against our pop service and some of our breaches are where gullible clients respond to various claims about give us your details or you will lose your account, of which some recent spams were even branded with our domainname so they would always look

Re: [courier-users] Separate service passwords

2014-08-15 Thread Mark Constable
On 16/08/14 09:31, Sam Varshavchik wrote: Using mysql or postgres, you can use a custom query, and use the $(service) variable. Thank you Sam, Bernd and Lisa. I was completely unaware of this variable so no doubt I will have some fun trying it out on some larger installs with mysql (hopefully

Re: [courier-users] Auto-Re: IMAP/SSL and ESMTP/SSL

2014-08-09 Thread Mark Constable
On 10/08/14 12:21, Charles Parkinson wrote: Ok, so that makes sense except for the fact that a CSR sent... Perhaps an example will help. I concatenate PEM variations (which my cert authority provides) of the key, the crt and the chained CA file to /etc/ssl/server.pem then symlink the

Re: [courier-users] Offline maildir reader

2014-08-08 Thread Mark Constable
On 08/08/14 20:32, Lisa Muir wrote: Well if you batch rename the individual messages in Maildir/cur/* to something ending with *.eml then if they could download the Maildir folders then they can just click on them and they will open up in whatever is their default desktop mail program. This

Re: [courier-users] Offline maildir reader

2014-08-08 Thread Mark Constable
On 08/08/14 21:06, Lisa Muir wrote: 14 year old email, there must come a time where it goes into archives somewhere and I don't think a MUA is the appropriate place for that, but some searchable repository is. I will be facing this same kind of issue. mhonarc is available as an ubuntu package

Re: [courier-users] imapd seems to stall sometimes

2014-05-25 Thread Mark Constable
On 25/05/14 11:04, Sam Varshavchik wrote: Leaving off MAXPERC should not be a factor. It defaults to, internally, to MAXDAEMONS – effectively a no-op. Right, thanks. I presume that you've eliminated the low hanging fruit of actually reaching the maximum number of connections. Yes, barely

Re: [courier-users] imapd seems to stall sometimes

2014-05-25 Thread Mark Constable
On 26/05/14 00:00, Sam Varshavchik wrote: Need to set IMAPDEBUGFILE on the server side, and collect the actual IMAP traffic. Got it, thanks, doing that now. Even better yet would be to find the server process, and strace it. It'll be tricky to find the right imapd process to attach to but I

Re: [courier-users] imapd seems to stall sometimes

2014-05-25 Thread Mark Constable
On 26/05/14 00:00, Sam Varshavchik wrote: Or, turn off IMAPENHANCEDIDLE, to see if that makes a difference. Ah right, I see, it's IMAP_ENHANCEDIDLE. It was 0 so I just flipped it to 1 with IMAP_USELOCKS=1 and see what happens. Then I'll set them both to 0 as I rarely if ever use shared

[courier-users] imapd seems to stall sometimes

2014-05-24 Thread Mark Constable
I was using ISPConfig3 + postfix for the past year and finally got around to unhitching myself from ISPConfig3 so I could run courier again on this particular server. However since the changeover I've noticed that Thunderbird seems to just hang and wait every half a dozen'th time when I go to

Re: [courier-users] Problem after upgrade

2014-04-14 Thread Mark Constable
On 04/14/14 21:23, Vytautas Kasparavičius wrote: I'm getting following errors Apr 14 14:13:20 mail imapd-ssl: couriertls: /etc/pki/tls/certs/gdcertpack.pem: error:0D0680A8:asn1 encoding routines:ASN1_CHECK_TLEN:wrong tag Apr 14 14:13:27 mail esmtpd-ssl: couriertls:

Re: [courier-users] courier imap troubles

2014-03-09 Thread Mark Constable
On 03/10/14 06:07, Sam Varshavchik wrote: Courier-IMAP never has any trouble creating any mailboxes, for the simple reason that Courier-IMAP never creates any mailboxes. Strictly speaking that is true but the OP may want to know that maildrop can create a users mailbox if it doesn't already

Re: [courier-users] authdaemond: segfault at 0 ip... error 4 in libc-2.18.so

2014-03-04 Thread Mark Constable
On 03/05/14 15:31, Anders Le Chevalier wrote: Mar 5 06:08:05 e350 authdaemond: zero rows returned Mar 5 06:08:05 e350 authdaemond: no password available to compare Mar 5 06:08:05 e350 authdaemond: authmysql: REJECT - try next module Mar 5 06:08:05 e350 authdaemond: FAIL, all modules

  1   2   3   4   >