[vchkpw] vpopmail 5.4.14 valias

2006-02-16 Thread Michael Krieger
Two topics:1. Last chatter on vpopmail 5.4.14 was about a month ago with hints that it would be a few days to fix a few configure quirks. Were other issues discovered? What's expected new in 5.4.14 and what's the status of it?2. valias- migrating 3 CDB-based mail systems to one

[vchkpw] vpopmail extensions not working correctly

2006-02-27 Thread Michael Krieger
I am using 5.4.15 vpopmail and I've noticed that extensions aren't quite working right. If I send mail to [EMAIL PROTECTED] I get mail going to my inbox and blackberry. If I send mail to [EMAIL PROTECTED] I get mail going only to my inbox.# cat

Re: [vchkpw] vpopmail extensions not working correctly

2006-02-28 Thread Michael Krieger
/vpopmail/domains/mydomain.com/.qmail-michaelandhome/vpopmail/domains/mydomain.com/.qmail-michael-testingare two *entirely separate* accounts?C. --- Michael Krieger wrote: I am using 5.4.15 vpopmail and I've noticed that extensions aren't quite working right. If I send mail to [EMAIL PROTECTED] I get

[vchkpw] Fwd: vpopmail 5.4.15/qmailadmin 1.2.x - was: Crashes and Bugs?

2006-02-28 Thread Michael Krieger
) = 0 837 qsort(0x807a240, 0, 4, 0x8062510) = void 837 strcpy(0xb140, NULL unfinished ... 837 --- SIGSEGV (Segmentation fault) --- 837 +++ killed by SIGSEGV +++ any ideas?Michael Krieger [EMAIL PROTECTED] wrote: It seems to be dying as such (trying to get a backtrace, but debugging

[vchkpw] qmailadmin 1.2.10 vpopmail 5.4.15 segfaults on forwards page

2006-03-03 Thread Michael Krieger
I've spent the past few days working on this problem for a good 8 hours a day, so figure I'll send it back to the list for some insight.This is using no valias code, so it should be using vpalias.c. I'm using standard qmail aliases.I'm getting qmailadmin segfaulting when handling

Re: [vchkpw] Why not disconnect after rejection/limit ?

2006-03-04 Thread Michael Krieger
Jeremy Kister [EMAIL PROTECTED] wrote: On 3/3/2006 10:28 AM, Michael Krieger wrote:An SMTP server MUST NOT intentionally close the connection except:- After receiving a QUIT command and responding with a 221 reply. - After detecting the need to shut down the SMTP service and returning

Re: [vchkpw] Transfering vpopmail domains

2006-03-04 Thread Michael Krieger
Rick Macdougall wrote: devnull wrote: I've tryed to modify by hand the passwd and the passwd.cdb files changing the path but it dont work any suggestion? You'll need to modify the /var/qmail/users/assign file as well as the vpasswd files.devnull-Your solution of using vadduser in a script

Re: [vchkpw] Re: what's this 'vpopmailctl' stuff? (Was: [vchkpw] 552 message too large error)

2006-03-08 Thread Michael Krieger
Potential answer to the parent question below. Now, re vpopmailctl:vpopmailctl is a script provided by some distros, that ultimately is more like a qmailctl but not for each component. All it does is run svc for these pop3 and pop3ds. It really sholdn't be named vpopmailctl, but so be it.

Re: [vchkpw] IMAP connections fail after undetermined period.

2006-03-08 Thread Michael Krieger
Check your connection limits to the MySQL server. Seems to occasionally happen when a flood of smtp connections or pop connections opens up a lot of MySQL backends. Essentially it means that it tried to run its database queries and the server isn't there and has broken or didn't accept the

RE: [vchkpw] FW: chkuser 2.0 doesn't appear to be working

2006-03-09 Thread Michael Krieger
#ifndef TLSThis means that it will only run chkuser if you didn't compile it with TLS support, which you might have done. If TLS is defined, I don't see chkuser being included in the executable. You need the chkuser calls in the TLS/SSL section as well.This is not an if structure as it would be

[vchkpw] Transition from pop-before-smtp

2006-03-14 Thread Michael Krieger
I've got a much older mail system running vpopmail/qmail that was created some time ago. We have been encouraging new settings on users for some time, including using their full e-mail address instead of just the username to authenticate, as well as enabling smtp authentication.As with any

Re: [vchkpw] Virtual SMTP Greeting?

2006-03-24 Thread Michael Krieger
Just ignore it. In a world where machines could do only one thing due to a lack of power, machines greeted with their own name, which was where you want to deliver to. These days, where hundreds of domains can operate on one machine, this greeting just allows you to identify the server. It is

Re: [vchkpw] relay, smtp after pop

2006-03-24 Thread Michael Krieger
SMTP Authentication seems to be the norm these days, and I'd encourage it. Now if only M$ would make it the default or easier than going into advanced settings when adding an account (and also the port 587 option).-M Jeremy Kitchen [EMAIL PROTECTED] wrote: On Friday 24 March 2006 09:52,

Re: [vchkpw] relay, smtp after pop

2006-03-24 Thread Michael Krieger
to.-MJeremy Kitchen [EMAIL PROTECTED] wrote: On Friday 24 March 2006 10:31, Michael Krieger wrote: SMTP Authentication seems to be the norm these days, and I'd encourage it. Now if only M$ would make it the default or easier than going into advanced settings when adding an account (and also the port

Re: [vchkpw] relay, smtp after pop

2006-03-24 Thread Michael Krieger
, be it by challenge-response or that are short and plain text. There may be more recognizable sections to look at.-MPaul Theodoropoulos [EMAIL PROTECTED] wrote: At 10:48 AM 3/24/2006, Michael Krieger wrote:Keeping in mind most SMTP uses CRAM-MD5 or some equivalent these days with some portion of challenge

Re: [vchkpw] relay, smtp after pop

2006-03-24 Thread Michael Krieger
i don't use smtp auth, so i wouldn't know. i thought you were claiming that most providers these days are doing smtp auth. I was stating that most mail CLIENTS (Outlook, Thunderbird, etc) tend to prefer any mangled authentication method in favour of sending a password in clear text, based

Re: [vchkpw] relay, smtp after pop

2006-03-24 Thread Michael Krieger
I have my clients use port 587 whenever possible, because I use RBLs on port 25 that block some dynamic address ranges.Is there a better practice for this?I'd also recommend turning of hostname lookups and identd lookups in tcpserver's command line.You may want to look at the REQUIREAUTH patch

Re: [vchkpw] relay, smtp after pop

2006-03-24 Thread Michael Krieger
To correct myself... Each future POP authentication will update the expire time of the open-smtp entry and rebuild the CDB file again.I don't believe it actually rebuilds the CDB file here, but it does update the open-smtp file with the new timestamp for the expiry. In any case, any

Re: [vchkpw] relay, smtp after pop

2006-03-24 Thread Michael Krieger
unless you're doing it in mysql. which works dandy.You sure about that?the MySQL open relay database would speed up the cleanup of old entries and the updates making that pretty quick, but ultimately it needs to make that a cdb file that sets relayclient for tcpserver to execute qmail-smtpd

Re: [vchkpw] relay, smtp after pop

2006-03-24 Thread Michael Krieger
no, no cdb rebuilding at all. this is with the patches to do so of course. my vpopmail tcp.smtp.cdb file hasn't been touched in just over three years. Good to know- thanks for the correction.of course, i have lots more mysql transactions going on all the time, but have had no performance

Re: [vchkpw] qmail-inject deferrals

2006-03-24 Thread Michael Krieger
Jeremy Kister [EMAIL PROTECTED] wrote: I'm using qmail and vpopmail in a rather large environment. I've always got several hundred messages in my queues because of unparsable header fields.delivery 50391: deferral:

RE: [vchkpw] Re: 5.4.15 onchange patch

2006-03-27 Thread Michael Krieger
The reason I mention this is that I'm having a bugger of a job getting my code that implements skel dirs to work with vqadmin - it works fine from the command line (as root) but I get a permission denied error when executing from vqadmin.Have you thought at all about just wrapping your qmail

Re: [vchkpw] Patch to create IMAPdir

2006-03-28 Thread Michael Krieger
Did you see my post last night about the same issue and wrapping a shell script and exec call around bincimap? It means you don't have to deal with this problem for pop/smtp uses, but only imap.Why modify vpopmail to do something specific to another program?-MRobin Bowes [EMAIL

Re: [vchkpw] Re: 5.4.15 onchange patch

2006-03-28 Thread Michael Krieger
It is indeed possible to use wrappers as you do, but this adds overheadto every invocation of [insert progran here] which I'd rather avoid. How much overhead do you think executing a shell script and an internal call to test implements? How often do you think IMAP connections are made? Think of

Re: [vchkpw] rblsmtpd with vchkpw

2006-04-04 Thread Michael Krieger
Use a scoring based RBL check. rblsmtpd denies all connections existing in RBLs You could modify it to do a scoring algorithm if you wanted, finding only the popular entries. SpamAssassin (with simscan) will do what you want, adding a score based on the credibility and error rates of each RBL.

Re: [vchkpw] Force Auth from all but localhost

2006-04-14 Thread Michael Krieger
You'd want something like http://www.netable.com/~dburkes/qmail-smtpd-requireauth/dist/qmail-smtpd-requireauth-0.30.tar.gz to do it. Note that this patch is against old/different versions of the auth patch, so you'll have to just use it as a guide and do it by hand. In specific, and if I recall

Re: [vchkpw] Best way to receive mail on TWO servers

2006-05-03 Thread Michael Krieger
Yes. Set up a new copy of qmail in a different folder other than /var/qmail [or your current location] (see conf-*), as otherwise you can't have two running on the same machine, unless they point to the same queue and all.Bring up tcpserver for the second installation on a different port- if you

[vchkpw] problem overriding qmailadmin limits at authentication?

2006-05-07 Thread Michael Krieger
Interesting problem..qmailadmin-limits is my default that has disable_imap set for the domain. Naturally that should make new accounts have that limit.Sadly though, I want some people to use imap. So I clear the flags (-x) with vmoduser, but the disable_imap still holds true, rejecting the login.I

[vchkpw] Corrupt return-path help? [OT]

2006-05-08 Thread Michael Krieger
Somewhat off-topic, but I'm imagining that somewhere in the mix is where this is all beginning.This is an example of a [junk but unscanned] message [slightly edited for the actual e-mail addresses, though mostly should be the same] that was received. You'll notice the Return-Path: fails to have

Re: [vchkpw] Corrupt return-path help? [OT]

2006-05-08 Thread Michael Krieger
Sorry- I meant shouldn't this be added by qmail-local on delivery. I guess I am trying to figure out why it isn't properly adding it.-MMichael Krieger [EMAIL PROTECTED] wrote: Somewhat off-topic, but I'm imagining that somewhere in the mix is where this is all beginning.This is an example of a

Re: [vchkpw] Corrupt return-path help? [OT]

2006-05-08 Thread Michael Krieger
The message comes in properly (or so it seems) and into qmail-local and then vdelivermail. It reads a .qmail file that says [EMAIL PROTECTED] and has a second line with the maildir. The first one [the inject] is failing, which vdelivermail is supposed to be handling.Is this a bug in vdelivermail?

[vchkpw] vpopmail 5.4.16 locking issue?

2006-05-08 Thread Michael Krieger
Seem to be having an issue since vpopmail 5.4.16 and qmailadmin 1.2.10.The first operation tends to work alright, such as creating a user, deleting a user, or so on, however the second fails. Even changing a password fails.If I delete the .vpasswd.lock file everything goes through... for one more

Re: [vchkpw] vpopmail 5.4.16 locking issue?

2006-05-08 Thread Michael Krieger
Permissions in the answer. .vpasswd.lock is being created 000 by vpopmail.I made a patch to add the mode to it. Since it's being created by vpopmail, it should be 600. It seems it's not only qmailadmin that is doing this, but also vadduser for example is making a 000 lock file.Patch

Re: [vchkpw] [vpopmail] handle 'postmaster' as non existing user (reject mails)

2006-05-09 Thread Michael Krieger
Easiest thing to do is add a .qmail file in the postmaster directory stating '|/bin/true delete' to scrap the message [just sets it as deleted by default].Now I'd imagine the main frontline you'd want to investigate is chkuser.c if you use it. By line 567, it's got a user and domain split. Under

Re: [vchkpw] [vpopmail] handle 'postmaster' as non existing user (reject mails)

2006-05-09 Thread Michael Krieger
Ken Jones [EMAIL PROTECTED] wrote:I've been thinking of setting up all new domains with thisway. Nobody really reads postmaster email.I do see the occasional person who does, but it's rare. I like the 'set the bounce flag' idea suggested in this thread. Postmaster should have the bounce message

Re: [vchkpw] Corrupt return-path help? [OT]

2006-05-09 Thread Michael Krieger
Have the same thing with a message with a CTRL-Z in the from/reply-to line. it's fine as a local delivery, but since forwards even within the same domain go in [EMAIL PROTECTED] then it gets called with qmail-inject. From: "Eva Andrews" )^Z X-Mailer: The Bat! (v2.00.9) Business Reply-To: "Eva

[vchkpw] Crash in qmailadmin 1.2.10/vpopmail 5.4.16 adding first forward

2006-05-09 Thread Michael Krieger
Seems there's a crash in qmailadmin/vpopmail still when adding only the first forward in a domain. The second works fine, but deleting the first and recreating it even shows an internal server error.I'll have another look at the source, but I think there's still some bugs left to squash.-M

Re: [vchkpw] Crash in qmailadmin 1.2.10/vpopmail 5.4.16 adding first forward

2006-05-09 Thread Michael Krieger
Ken- a segfault patch against 5.4.16 is attached.Since mydir is static (and hence survives the function call), if max_names is null (which happens if there are no aliases on the domain), then mydir has been closed, but mydir is not set to NULL. Hence when it does a second itteration of the

Re: [vchkpw] Vpopmail With Only One Domain and POP Logins

2006-05-09 Thread Michael Krieger
You're looking for vipmap and the --enable-ip-alias-domain configure option: # --enable-ip-alias-domains # Enable mapping of default domain via reverse ip lookup table.See README.ipaliasdomains for more information in the vpopmail distribution.You want to add a record (vipmap -h for details) for

[vchkpw] qmailmrtg7 simscan patch update.

2006-05-10 Thread Michael Krieger
An update on the qmailmrtg7 simscan patch.Remove the following (line 280) } else if ((tmpstr1 = strstr(TmpBuf, ":RELAYCLIENT:"))!=NULL) { // just log message ++tclean;as this is logging outgoing messages and hence making the numbers look lower than they are.The new patch should first check for

Re: [vchkpw] restrict users

2006-05-12 Thread Michael Krieger
Remember- they can set the header To/From to be whatever they want, unless you want to scan the whole message. You can with reasonable ease probably get this going with the envelope from/to.This would probably be a custom job.How I'd approach it:- use the REQUIREAITH patch (note that it no longer

[vchkpw] dot-qmail ordering

2006-05-13 Thread Michael Krieger
Hi Folks,I've been browsing the qmailadmin/vpopmail code and see that there's no effort to enforce order in dot-qmail files. Adding lines to a dot-qmail file is just an append to the end of the file it seems with valias_insert and so on [at least in vpalias it is for the files/cdb backend].I'm

Re: [vchkpw] Unwanted Local Delivery

2006-05-19 Thread Michael Krieger
for i in `cat /var/qmail/control/{more,}rcpthosts`; do host -t MX $i | egrep "mail1.thiscouldbeme.com|mail2.thiscouldbemetoo.com" 21 || echo $idoneDone- will echo everything that does not include your _expression_ in its MX record. If it has no matches, grep exits 1 and will trigger the echo. If

RE: [vchkpw] Unwanted Local Delivery

2006-05-20 Thread Michael Krieger
regards, Ingo Claro F. Gerente de Operaciones [EMAIL PROTECTED] (+56-2) 43 00 155Certificado ISO 9001:2000 Michael Krieger escribi�: for i in `cat /var/qmail/control/{more,}rcpthosts`; do host -t MX $i | egrep "mail1.thiscoul

[vchkpw] Misc Bugfixes- update, cleanup

2006-06-05 Thread Michael Krieger
Hey folks,I've submitted a few bugfixes against 5.4.16 to fix:- a crash when there are no names and one is using the cdb module- qmailadmin can cause this one as well as the command line programs- a series of lockfile permissions fixes when using the locking to... 1. comply with the man pages':

Re: [vchkpw] Misc Bugfixes- update, cleanup

2006-06-29 Thread Michael Krieger
Tom Collins [EMAIL PROTECTED] wrote:One question related to the vpalias.c fix. Why is mydir static? It's always set to NULL before that function exits. Wouldn't making it not static and initializing it to NULL make more sense?mydir was static in vpopmail-5.4.16, so I didn't set that. Looking at

Re: [vchkpw] concurrency

2006-07-05 Thread Michael Krieger
In theory, ther'es always potential, particularly when dealing with files on disk. One program could in theory do one thing and not another.The MySQL database should deal with its own concurrency. The CDB database has .vpasswd.lock files when updating the password files.You probably don't have to

[vchkpw] Simscan Crucial matching bug

2006-07-08 Thread Michael Krieger
So an interesting bug in simscan I noticed when at a clients' today. She said that she was getting tons of Spam- a good 20 times what she should rightfully get. All obvious Spam as well. Looking in the headers, it's not being scanned by spamc, despite the domain being in simcontrol.The answer?

Re: [vchkpw] concurrency

2006-07-08 Thread Michael Krieger
[EMAIL PROTECTED] wrote:As for (1), SQL database and CDB have their own mechanism to serialize the concurrent access, so we will not worry about it.Well SQL has its own locking, be it table or row level that will prevent a single domain from being updated at the same time. For example, an update

Re: [vchkpw] That domain isn't in my list of allowed rcpthosts

2006-07-13 Thread Michael Krieger
tcpserver uses one CDB file- that being a compiled database in CDB format with the keys (domains) and their values.Whichever file is in your -x parameter for tcpserver is the one that is used. The other is not used at all by your SMTP server.Given that, vpopmail has a neat feature of

Re: [vchkpw] How can I have my mail server checked whether helo address of sender mail servers has fully-qualified domain name or not ?

2006-07-21 Thread Michael Krieger
Why would you want to? First look at the RFC822 statement below.Also look at though, RFC 1123, stating:" The HELO receiver MAY verify that the HELO parameter really corresponds to the IP address of the sender. However, the receiver MUST NOT refuse to accept a message,

Re: [vchkpw] weird, disturbing error

2006-08-04 Thread Michael Krieger
Paul Theodoropoulos [EMAIL PROTECTED] wrote:pass theirpass-ERR aack, child crashedurk. so, on a hunch, on the new server i ran 'vpasswd theirpass' - exact same password. and after doing that, it worked fine.cd ~vpopmail/domainsrm ~vpopmail/domains/*/vpasswd.cdbfor i in `ls -ld *`; do echo $i;

Re: [vchkpw] weird, disturbing error

2006-08-05 Thread Michael Krieger
I'd be hesitant to rsync /usr/lib if it's ba enough to cause crashing errors like that. I'd be more interested in seeing you configure/recompile vpopmail with the existing headers/libraries in order to fix your problem rather than change your system and everything that depends on it.-MPaul

[vchkpw] Simscan 'trap' addresses

2006-10-17 Thread Michael Krieger
Recently I've moved from adding some spammed addresses into badmailto, but am realizing that's a bit of a waste, as these same users usually turn around and Spam the recipients that are accepted.This got me thinking- doing a bit of this at the SMTP level and including the Spam scanner could be a

Re: [vchkpw] Rethinking qmail : was Re: [vchkpw] how use chkuser on dmz

2007-01-11 Thread Michael Krieger
Look at QMAIL-SPP ( http://qmail-spp.sourceforge.net/ ). It provides a plugin for vpopmail and gets away from this patching situation. The idea is great, the implementation is good. A mix of this and the existing patches you may have is probably the best way to go. In the end, you make a perl

Re: [vchkpw] which files truly determine relay into a qmail server

2007-01-18 Thread Michael Krieger
locals: Domains that the server should deliver as local rather than sending off to other people. When you send mail to your own domain, it knows to not deliver it to the MX of that domain by its presence in the locals file rcpthosts / morercpthosts: Domains that the SMTP daemon should

Re: [vchkpw] which files truly determine relay into a qmail server

2007-01-19 Thread Michael Krieger
Q: ONLY the content of the 'rcpthosts' and 'morercpthosts' (and any special cases in tcp.smtp) defines which domains' incoming mail will be accepted by SMTPd. True or False? FALSE: The contents of rcpthosts and morercpthosts define which domains mail is accepted by SMTP for [that part is