<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
	<channel>
		<title><![CDATA[iRedMail — iRedMail Support]]></title>
		<link>http://www.iredmail.org/forum/</link>
		<atom:link href="http://www.iredmail.org/forum/feed-rss-forum2.xml" rel="self" type="application/rss+xml" />
		<description><![CDATA[The most recent topics at iRedMail.]]></description>
		<lastBuildDate>Tue, 21 May 2013 13:57:41 +0000</lastBuildDate>
		<generator>PunBB</generator>
		<item>
			<title><![CDATA[Emails migration from Plesk to IredMail]]></title>
			<link>http://www.iredmail.org/forum/topic4891-emails-migration-from-plesk-to-iredmail-new-posts.html</link>
			<description><![CDATA[<p>==== Required information ====<br />- iRedMail version: <br />- Store mail accounts in which backend (LDAP/MySQL/PGSQL): <br />- Linux/BSD distribution name and version: <br />- Related log if you&#039;re reporting an issue: <br />====Dear friends,</p><p>I&#039;m using the iRedMail for few days and I&#039;m very impressed with it. But now I&#039;m planning to migrate some accounts and domains from an old server (around 30 domains and 100 accounts) to the new server with IRedMail. The old server run a Plesk 11 over a CentOS 5.8 and I&#039;m using the &quot;default&quot; mail system provided by Plesk (and it&#039;s CentOS services).</p><p>I confess that I don&#039;t have idea about how can I move/copy/migrate the mail of my colleagues to the new server, including the address books of their accounts and for this I&#039;m here asking for help.</p><p>If someone have a tutorial or some insights about how can I do it, I&#039;m very happy.</p><p>Thank you.<br />Regards</p><p>==== Required information ====<br />- iRedMail version: lastest<br />- Store mail accounts in which backend (LDAP/MySQL/PGSQL): LDAP<br />- Linux/BSD distribution name and version: Debian Squeezy<br />- Related log if you&#039;re reporting an issue: <br />====</p>]]></description>
			<author><![CDATA[null@example.com (pmichelazzo)]]></author>
			<pubDate>Tue, 21 May 2013 13:57:41 +0000</pubDate>
			<guid>http://www.iredmail.org/forum/topic4891-emails-migration-from-plesk-to-iredmail-new-posts.html</guid>
		</item>
		<item>
			<title><![CDATA[Backup problem - wrong username or password]]></title>
			<link>http://www.iredmail.org/forum/topic4889-backup-problem-wrong-username-or-password-new-posts.html</link>
			<description><![CDATA[<p>==== Required information ====<br />- iRedMail version: 0.8.3<br />- Store mail accounts in which backend (LDAP/MySQL/PGSQL): LDAP<br />- Linux/BSD distribution name and version: Debian 6<br />- Related log if you&#039;re reporting an issue: <br />====</p><p>Hello,<br />From couple of days I get this in my Logwatch mail:<br /></p><div class="codebox"><pre><code>[ERROR] MySQL username or password is incorrect in file /var/vmail/backup/backup_mysql.sh.
Please fix them first.</code></pre></div><p>I check username and password and it&#039;s correct. I can without any problem login with username and password in that file to phpMyAdmin.</p><p>Any suggestions? </p><p>ag</p>]]></description>
			<author><![CDATA[null@example.com (ag)]]></author>
			<pubDate>Tue, 21 May 2013 11:38:43 +0000</pubDate>
			<guid>http://www.iredmail.org/forum/topic4889-backup-problem-wrong-username-or-password-new-posts.html</guid>
		</item>
		<item>
			<title><![CDATA[Server suddenly stoped working]]></title>
			<link>http://www.iredmail.org/forum/topic4888-server-suddenly-stoped-working-new-posts.html</link>
			<description><![CDATA[<p>==== ==== Required information ====<br />- iRedMail version: 0.8.3<br />- Store mail accounts in which backend (LDAP/MySQL/PGSQL): MySQL<br />- Linux/BSD distribution name and version: Ubuntu Server 12.04 64bits (VPS in DigitalOcean)<br />- Related log if you&#039;re reporting an issue: (see below)<br />====</p><p>Hello people,</p><p>I&#039;m running a VPS in DigitalOcean with Ubuntu Server 12.04.<br />Everything was working fine for more than 1 month. But in 05/17 the iredmail suddenly stoped working.<br />In the server I have two websites, the <a href="http://www.nudemail.tk">www.nudemail.tk</a> with the iredmail, and the <a href="http://www.nudestay.com.br">www.nudestay.com.br</a> with a wordpress plataform.</p><p>I don&#039;t know why it stoped working, the last changes I made is to install a ftp server for wordpress, because it doesn&#039;t working fine without a ftp server. So, looking in my history:</p><div class="codebox"><pre><code>192 apt-get install vsftpd 
193 nano /etc/vsftpd.conf 
194 mkdir /home/jackson/files 
195 chown root:root /home/jackson/ 
196 sudo service vsftpd restart 
199 chown -R www-data:jackson /var/www 
200 a2enmod rewrite 
201 nano /etc/apache2/sites-enabled/000-default 
202 nano /etc/apache2/sites-enabled/nudestay.com.br 
203 /etc/init.d/apache2 restart</code></pre></div><p>May the vsftpd would be the responsible for the iredmail stoped working?<br />May is the a2enmod rewrite?<br />I don&#039;t know, the changes are in nudestay.com.br, a wordpress blog, not in nudemail.tk (the iredmail server).<br />Both are in the same server, may the rewrite or vsftpd would affect the iredmail functionality?<br />Any tips? Any help?</p><p>I need that to work, I was until 05/17 without sending my job e-mails. D:<br />Rope in the neck.</p><p>Thanks people, I love you! <img src="http://www.iredmail.org/forum/img/smilies/wink.png" width="15" height="15" alt="wink" /></p>]]></description>
			<author><![CDATA[null@example.com (jacksonbenete)]]></author>
			<pubDate>Mon, 20 May 2013 19:14:17 +0000</pubDate>
			<guid>http://www.iredmail.org/forum/topic4888-server-suddenly-stoped-working-new-posts.html</guid>
		</item>
		<item>
			<title><![CDATA[Installation Problem]]></title>
			<link>http://www.iredmail.org/forum/topic4887-installation-problem-new-posts.html</link>
			<description><![CDATA[<p>==== Required information ====<br />- iRedMail version: <br />- Store mail accounts in which backend (LDAP/MySQL/PGSQL): <br />- Linux/BSD distribution name and version: <br />- Related log if you&#039;re reporting an issue: <br />====<br />Getting below error.<br /><a href="http://iredmail.org/yum/rpms/6/postfix-2.6.6-2.3.el6.x86_64.rpm:">http://iredmail.org/yum/rpms/6/postfix- … 86_64.rpm:</a> [Errno 14] PYCURL ERROR 18 - &quot;transfer closed with 4817578 bytes remaining to read&quot;&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; ]&nbsp; 73 kB/s | 6.5 MB&nbsp; &nbsp; &nbsp;01:05 ETA</p>]]></description>
			<author><![CDATA[null@example.com (indranil.kamulkar)]]></author>
			<pubDate>Mon, 20 May 2013 10:50:42 +0000</pubDate>
			<guid>http://www.iredmail.org/forum/topic4887-installation-problem-new-posts.html</guid>
		</item>
		<item>
			<title><![CDATA[Upgrading packages on Debian - safe to do?]]></title>
			<link>http://www.iredmail.org/forum/topic4886-upgrading-packages-on-debian-safe-to-do-new-posts.html</link>
			<description><![CDATA[<p>Hi, I&#039;m runnign Debian 6.0 on my iredmail servers and I&#039;d liek to upgrade a load of the packages on them, is this safe to do or should I be following an official iRedmail upgrade path?</p><p>Thanks..</p><p>--- list of packages it wants to upgrade....</p><p>The following packages will be upgraded:<br />&nbsp; acpid apache2 apache2-mpm-prefork apache2-utils apache2.2-bin apache2.2-common base-files bind9-host clamav<br />&nbsp; clamav-base clamav-daemon clamav-freshclam dbus debian-archive-keyring dpkg fail2ban file gnupg gpgv gzip<br />&nbsp; host initscripts isc-dhcp-client isc-dhcp-common libapache2-mod-php5 libapr1 libbind9-60 libc-bin<br />&nbsp; libc-dev-bin libc6 libc6-dev libclamav6 libcups2 libdbus-1-3 libdns69 libexpat1 libgnutls26 libgssapi-krb5-2<br />&nbsp; libisc62 libisccc60 libisccfg62 libk5crypto3 libkrb5-3 libkrb5support0 libldap-2.4-2 liblwres60 libmagic1<br />&nbsp; libmysqlclient16 libnss3-1d libpng12-0 libpq5 libssl0.9.8 libtasn1-3 libtiff4 libxi6 libxml2 linux-base<br />&nbsp; linux-image-2.6.32-5-amd64 linux-libc-dev locales mysql-client mysql-client-5.1 mysql-common mysql-server<br />&nbsp; mysql-server-5.1 mysql-server-core-5.1 openjdk-6-jre openjdk-6-jre-headless openjdk-6-jre-lib openssh-client<br />&nbsp; openssh-server openssl perl perl-base perl-modules php5-cli php5-common php5-gd php5-imap php5-ldap<br />&nbsp; php5-mcrypt php5-mysql procps python python-minimal sd-agent ssh sysv-rc sysvinit sysvinit-utils tzdata<br />&nbsp; tzdata-java</p>]]></description>
			<author><![CDATA[null@example.com (chrispyfur)]]></author>
			<pubDate>Mon, 20 May 2013 10:09:42 +0000</pubDate>
			<guid>http://www.iredmail.org/forum/topic4886-upgrading-packages-on-debian-safe-to-do-new-posts.html</guid>
		</item>
		<item>
			<title><![CDATA[Wanting to allow iRedMail to be used as a relay for a specific IP]]></title>
			<link>http://www.iredmail.org/forum/topic4885-wanting-to-allow-iredmail-to-be-used-as-a-relay-for-a-specific-ip-new-posts.html</link>
			<description><![CDATA[<p>I am getting the following message:<br />Relay access denied</p><p>I have got a VPS running Postfix mail server on a remote address from my iRedMail server, on that VPS I wanted to allow for any mail coming from any application to be allowed to send mail through (relayhost) my server running iRedMail.</p><p>The logs are as below, using relayhost = emailrelayer.mydomain.com (the one running iRedMail) and using app settings would this alone allow me to use my iRedMail server as a relayhost at all?</p><p>I am a little bit confused about what I need to be setting up in iRedMail.</p><p>Any help&#039;s much appreciated, see below for full logs.</p><p>Jeremy</p><p>==== Required information ====<br />- iRedMail version: <br />- Store mail accounts in which backend (LDAP/MySQL/PGSQL): <br />- Linux/BSD distribution name and version: <br />- Related log if you&#039;re reporting an issue:</p><p>[REMOTE VPS] - wanting to send mail from this, to an address, using iredmail host as a relay for all emails using an ecommerce platform<br />May 20 05:14:38 vps91348474 postfix/pickup[26909]: 8163F11F93E: uid=0 from=&lt;root&gt;<br />May 20 05:14:38 vps91348474 postfix/cleanup[26991]: 8163F11F93E: message-id=&lt;20130520041438.8163F11F93E@remotevps.co.uk&gt;<br />May 20 05:14:38 vps91348474 postfix/qmgr[26910]: 8163F11F93E: from=&lt;root@remotevps.co.uk&gt;, size=466, nrcpt=1 (queue active)<br />May 20 05:14:39 vps91348474 postfix/smtp[26993]: 8163F11F93E: to=&lt;usertosendto@mydestination.com&gt;, relay=emailrelayer.mydomain.com[iredmailserversip]:25, delay=0.56, delays=0.01/0.01/0.44/0.11, dsn=5.7.1, status=bounced (host emailrelayer.mydomain.com[iredmailserversip] said: 554 5.7.1 &lt;usertosendto@mydestination.com&gt;: Relay access denied (in reply to RCPT TO command))<br />May 20 05:14:39 vps91348474 postfix/cleanup[26991]: 1B72611F93F: message-id=&lt;20130520041439.1B72611F93F@remotevps.co.uk&gt;<br />May 20 05:14:39 vps91348474 postfix/qmgr[26910]: 1B72611F93F: from=&lt;&gt;, size=2525, nrcpt=1 (queue active)<br />May 20 05:14:39 vps91348474 postfix/bounce[26994]: 8163F11F93E: sender non-delivery notification: 1B72611F93F<br />May 20 05:14:39 vps91348474 postfix/qmgr[26910]: 8163F11F93E: removed<br />May 20 05:14:39 vps91348474 postfix/local[26995]: 1B72611F93F: to=&lt;root@remotevps.co.uk&gt;, relay=local, delay=0.01, delays=0/0.01/0/0, dsn=2.0.0, status=sent (delivered to mailbox)<br />May 20 05:14:39 vps91348474 postfix/qmgr[26910]: 1B72611F93F: removed</p><p>[iremail server to actually send the emails&nbsp; to the email address concerned]<br />May 20 06:15:01 server postfix/smtpd[1315]: connect from unknown[remotevpsipaddress]<br />May 20 06:15:01 server postfix/smtpd[1315]: NOQUEUE: reject: RCPT from unknown[remotevpsipaddress]: 554 5.7.1 &lt;usertosendto@mydestination.com&gt;: Relay access denied; from=&lt;root@remotevps.co.uk&gt; to=&lt;usertosendto@mydestination.com&gt; proto=ESMTP helo=&lt;remotevps.co.uk&gt;<br />====</p>]]></description>
			<author><![CDATA[null@example.com (j.smith1981)]]></author>
			<pubDate>Mon, 20 May 2013 05:34:11 +0000</pubDate>
			<guid>http://www.iredmail.org/forum/topic4885-wanting-to-allow-iredmail-to-be-used-as-a-relay-for-a-specific-ip-new-posts.html</guid>
		</item>
		<item>
			<title><![CDATA[403 Forbidden iredamin only]]></title>
			<link>http://www.iredmail.org/forum/topic4884-403-forbidden-iredamin-only-new-posts.html</link>
			<description><![CDATA[<p>==== Required information ====<br />- iRedMail version: <br />- Store mail accounts in which backend (LDAP/MySQL/PGSQL): <br />- Linux/BSD distribution name and version: <br />- Related log if you&#039;re reporting an issue: <br />====</p><p>Dear friends,<br />Yesterday I install the IredMail and I&#039;m very surprised with it. A great solution.</p><p>Yesterday I was using the IredAdmin to create some mail accounts and domains without problems. After that, I upgrade the Roundcube, install some plugins there and I install the webmin too. Everything was fine.</p><p>Today when I try to use IredAdmin, I don&#039;t know why but I received a 403 Forbiden error *ONLY* in IredAdmin. The phpMyAdmin is ok, phpLdapAdmin is ok and the Roundcube works fine.</p><p>I checked all apache conf files and I can&#039;t find any problem and/or change and I can&#039;t find a clue about this situation.</p><p>Here is the files and logs:</p><p>ls Apache root:<br />root@server:/usr/share/apache2# ls -l<br />total 32<br />drwxr-xr-x 2 root&nbsp; &nbsp; &nbsp; root&nbsp; &nbsp; &nbsp; &nbsp;4096 May 18 11:36 build<br />drwxr-xr-x 2 root&nbsp; &nbsp; &nbsp; root&nbsp; &nbsp; &nbsp; &nbsp;4096 May 18 11:36 default-site<br />drwxr-xr-x 3 root&nbsp; &nbsp; &nbsp; root&nbsp; &nbsp; &nbsp; &nbsp;4096 May 18 11:36 error<br />drwxr-xr-x 3 root&nbsp; &nbsp; &nbsp; root&nbsp; &nbsp; &nbsp; 12288 May 18 11:36 icons<br />lrwxrwxrwx 1 root&nbsp; &nbsp; &nbsp; root&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;34 May 18 11:38 iredadmin -&gt; /usr/share/apache2/iRedAdmin-0.2.1<br />drwxr-xr-x 8 iredadmin iredadmin&nbsp; 4096 May 19 14:13 iRedAdmin-0.2.1<br />lrwxrwxrwx 1 root&nbsp; &nbsp; &nbsp; root&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;38 May 19 11:59 roundcubemail -&gt; /usr/share/apache2/roundcubemail-0.9.1<br />drwxr-xr-x 9 root&nbsp; &nbsp; &nbsp; root&nbsp; &nbsp; &nbsp; &nbsp;4096 May 19 12:41 roundcubemail-0.9.1<br />#####################</p><p>iredadmin.conf<br />root@server:/usr/share/apache2# cat /etc/apache2/conf.d/iredadmin.conf<br />WSGISocketPrefix /var/run/wsgi<br />WSGIDaemonProcess iredadmin user=iredadmin threads=15<br />WSGIProcessGroup iredadmin</p><p>AddType text/html .py</p><p>&lt;Directory /usr/share/apache2/iredadmin/&gt;<br />&nbsp; &nbsp; Order allow,deny<br />&nbsp; &nbsp; Allow from all<br />&lt;/Directory&gt;<br />#####################</p><p>default-ssl file<br />root@server:/usr/share/apache2# cat /etc/apache2/sites-available/default-ssl<br />&lt;IfModule mod_ssl.c&gt;<br />&lt;VirtualHost _default_:443&gt;<br />DocumentRoot /var/www<br />&nbsp; &nbsp; &lt;Directory /&gt;<br />&nbsp; &nbsp; &nbsp; &nbsp; Options FollowSymLinks<br />&nbsp; &nbsp; &nbsp; &nbsp; AllowOverride None<br />&nbsp; &nbsp; &lt;/Directory&gt;<br />&nbsp; &nbsp; &lt;Directory /var/www/&gt;<br />&nbsp; &nbsp; &nbsp; &nbsp; Options Indexes FollowSymLinks MultiViews<br />&nbsp; &nbsp; &nbsp; &nbsp; AllowOverride None<br />&nbsp; &nbsp; &nbsp; &nbsp; Order allow,deny<br />&nbsp; &nbsp; &nbsp; &nbsp; Allow from all<br />&nbsp; &nbsp; &lt;/Directory&gt;</p><p>&nbsp; &nbsp; ScriptAlias /cgi-bin/ /usr/lib/cgi-bin/<br />&nbsp; &nbsp; &lt;Directory &quot;/usr/lib/cgi-bin&quot;&gt;<br />&nbsp; &nbsp; &nbsp; &nbsp; AllowOverride None<br />&nbsp; &nbsp; &nbsp; &nbsp; Options +ExecCGI -MultiViews +SymLinksIfOwnerMatch<br />&nbsp; &nbsp; &nbsp; &nbsp; Order allow,deny<br />&nbsp; &nbsp; &nbsp; &nbsp; Allow from all<br />&nbsp; &nbsp; &lt;/Directory&gt;</p><p>&nbsp; &nbsp; ErrorLog ${APACHE_LOG_DIR}/error.log</p><p>&nbsp; &nbsp; # Possible values include: debug, info, notice, warn, error, crit,<br />&nbsp; &nbsp; # alert, emerg.<br />&nbsp; &nbsp; LogLevel warn</p><p>&nbsp; &nbsp; CustomLog ${APACHE_LOG_DIR}/ssl_access.log combined</p><p>&nbsp; &nbsp; #&nbsp; &nbsp;SSL Engine Switch:<br />&nbsp; &nbsp; #&nbsp; &nbsp;Enable/Disable SSL for this virtual host.<br />&nbsp; &nbsp; SSLEngine on</p><p>&nbsp; &nbsp; #&nbsp; &nbsp;A self-signed (snakeoil) certificate can be created by installing<br />&nbsp; &nbsp; #&nbsp; &nbsp;the ssl-cert package. See<br />&nbsp; &nbsp; #&nbsp; &nbsp;/usr/share/doc/apache2.2-common/README.Debian.gz for more info.<br />&nbsp; &nbsp; #&nbsp; &nbsp;If both key and certificate are stored in the same file, only the<br />&nbsp; &nbsp; #&nbsp; &nbsp;SSLCertificateFile directive is needed.<br />&nbsp; &nbsp; SSLCertificateFile /etc/ssl/certs/iRedMail_CA.pem<br />&nbsp; &nbsp; SSLCertificateKeyFile /etc/ssl/private/iRedMail.key</p><p>&nbsp; &nbsp; #&nbsp; &nbsp;Server Certificate Chain:<br />&nbsp; &nbsp; #&nbsp; &nbsp;Point SSLCertificateChainFile at a file containing the<br />&nbsp; &nbsp; #&nbsp; &nbsp;concatenation of PEM encoded CA certificates which form the<br />&nbsp; &nbsp; #&nbsp; &nbsp;certificate chain for the server certificate. Alternatively<br />&nbsp; &nbsp; #&nbsp; &nbsp;the referenced file can be the same as SSLCertificateFile<br />&nbsp; &nbsp; #&nbsp; &nbsp;when the CA certificates are directly appended to the server<br />&nbsp; &nbsp; #&nbsp; &nbsp;certificate for convinience.<br />&nbsp; &nbsp; #SSLCertificateChainFile /etc/apache2/ssl.crt/server-ca.crt</p><p>&nbsp; &nbsp; #&nbsp; &nbsp;Certificate Authority (CA):<br />&nbsp; &nbsp; #&nbsp; &nbsp;Set the CA certificate verification path where to find CA<br />&nbsp; &nbsp; #&nbsp; &nbsp;certificates for client authentication or alternatively one<br />&nbsp; &nbsp; #&nbsp; &nbsp;huge file containing all of them (file must be PEM encoded)<br />&nbsp; &nbsp; #&nbsp; &nbsp;Note: Inside SSLCACertificatePath you need hash symlinks<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;to point to the certificate files. Use the provided<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;Makefile to update the hash symlinks after changes.<br />&nbsp; &nbsp; #SSLCACertificatePath /etc/ssl/certs/<br />&nbsp; &nbsp; #SSLCACertificateFile /etc/apache2/ssl.crt/ca-bundle.crt</p><p>&nbsp; &nbsp; #&nbsp; &nbsp;Certificate Revocation Lists (CRL):<br />&nbsp; &nbsp; #&nbsp; &nbsp;Set the CA revocation path where to find CA CRLs for client<br />&nbsp; &nbsp; #&nbsp; &nbsp;authentication or alternatively one huge file containing all<br />&nbsp; &nbsp; #&nbsp; &nbsp;of them (file must be PEM encoded)<br />&nbsp; &nbsp; #&nbsp; &nbsp;Note: Inside SSLCARevocationPath you need hash symlinks<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;to point to the certificate files. Use the provided<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;Makefile to update the hash symlinks after changes.<br />&nbsp; &nbsp; #SSLCARevocationPath /etc/apache2/ssl.crl/<br />&nbsp; &nbsp; #SSLCARevocationFile /etc/apache2/ssl.crl/ca-bundle.crl</p><p>&nbsp; &nbsp; #&nbsp; &nbsp;Client Authentication (Type):<br />&nbsp; &nbsp; #&nbsp; &nbsp;Client certificate verification type and depth.&nbsp; Types are<br />&nbsp; &nbsp; #&nbsp; &nbsp;none, optional, require and optional_no_ca.&nbsp; Depth is a<br />&nbsp; &nbsp; #&nbsp; &nbsp;number which specifies how deeply to verify the certificate<br />&nbsp; &nbsp; #&nbsp; &nbsp;issuer chain before deciding the certificate is not valid.<br />&nbsp; &nbsp; #SSLVerifyClient require<br />&nbsp; &nbsp; #SSLVerifyDepth&nbsp; 10</p><p>&nbsp; &nbsp; #&nbsp; &nbsp;Access Control:<br />&nbsp; &nbsp; #&nbsp; &nbsp;With SSLRequire you can do per-directory access control based<br />&nbsp; &nbsp; #&nbsp; &nbsp;on arbitrary complex boolean expressions containing server<br />&nbsp; &nbsp; #&nbsp; &nbsp;variable checks and other lookup directives.&nbsp; The syntax is a<br />&nbsp; &nbsp; #&nbsp; &nbsp;mixture between C and Perl.&nbsp; See the mod_ssl documentation<br />&nbsp; &nbsp; #&nbsp; &nbsp;for more details.<br />&nbsp; &nbsp; #&lt;Location /&gt;<br />&nbsp; &nbsp; #SSLRequire (&nbsp; &nbsp; %{SSL_CIPHER} !~ m/^(EXP|NULL)/ \<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; and %{SSL_CLIENT_S_DN_O} eq &quot;Snake Oil, Ltd.&quot; \<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; and %{SSL_CLIENT_S_DN_OU} in {&quot;Staff&quot;, &quot;CA&quot;, &quot;Dev&quot;} \<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; and %{TIME_WDAY} &gt;= 1 and %{TIME_WDAY} &lt;= 5 \<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; and %{TIME_HOUR} &gt;= 8 and %{TIME_HOUR} &lt;= 20&nbsp; &nbsp; &nbsp; &nbsp;) \<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;or %{REMOTE_ADDR} =~ m/^192\.76\.162\.[0-9]+$/<br />&nbsp; &nbsp; #&lt;/Location&gt;</p><p>&nbsp; &nbsp; #&nbsp; &nbsp;SSL Engine Options:<br />&nbsp; &nbsp; #&nbsp; &nbsp;Set various options for the SSL engine.<br />&nbsp; &nbsp; #&nbsp; &nbsp;o FakeBasicAuth:<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;Translate the client X.509 into a Basic Authorisation.&nbsp; This means that<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;the standard Auth/DBMAuth methods can be used for access control.&nbsp; The<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;user name is the `one line&#039; version of the client&#039;s X.509 certificate.<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;Note that no password is obtained from the user. Every entry in the user<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;file needs this password: `xxj31ZMTZzkVA&#039;.<br />&nbsp; &nbsp; #&nbsp; &nbsp;o ExportCertData:<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;This exports two additional environment variables: SSL_CLIENT_CERT and<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;SSL_SERVER_CERT. These contain the PEM-encoded certificates of the<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;server (always existing) and the client (only existing when client<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;authentication is used). This can be used to import the certificates<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;into CGI scripts.<br />&nbsp; &nbsp; #&nbsp; &nbsp;o StdEnvVars:<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;This exports the standard SSL/TLS related `SSL_*&#039; environment variables.<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;Per default this exportation is switched off for performance reasons,<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;because the extraction step is an expensive operation and is usually<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;useless for serving static content. So one usually enables the<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;exportation for CGI and SSI requests only.<br />&nbsp; &nbsp; #&nbsp; &nbsp;o StrictRequire:<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;This denies access when &quot;SSLRequireSSL&quot; or &quot;SSLRequire&quot; applied even<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;under a &quot;Satisfy any&quot; situation, i.e. when it applies access is denied<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;and no other module can change it.<br />&nbsp; &nbsp; #&nbsp; &nbsp;o OptRenegotiate:<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;This enables optimized SSL connection renegotiation handling when SSL<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;directives are used in per-directory context.<br />&nbsp; &nbsp; #SSLOptions +FakeBasicAuth +ExportCertData +StrictRequire<br />&nbsp; &nbsp; &lt;FilesMatch &quot;\.(cgi|shtml|phtml|php)$&quot;&gt;<br />&nbsp; &nbsp; &nbsp; &nbsp; SSLOptions +StdEnvVars<br />&nbsp; &nbsp; &lt;/FilesMatch&gt;<br />&nbsp; &nbsp; &lt;Directory /usr/lib/cgi-bin&gt;<br />&nbsp; &nbsp; &nbsp; &nbsp; SSLOptions +StdEnvVars<br />&nbsp; &nbsp; &lt;/Directory&gt;</p><p>&nbsp; &nbsp; #&nbsp; &nbsp;SSL Protocol Adjustments:<br />&nbsp; &nbsp; #&nbsp; &nbsp;The safe and default but still SSL/TLS standard compliant shutdown<br />&nbsp; &nbsp; #&nbsp; &nbsp;approach is that mod_ssl sends the close notify alert but doesn&#039;t wait for<br />&nbsp; &nbsp; #&nbsp; &nbsp;the close notify alert from client. When you need a different shutdown<br />&nbsp; &nbsp; #&nbsp; &nbsp;approach you can use one of the following variables:<br />&nbsp; &nbsp; #&nbsp; &nbsp;o ssl-unclean-shutdown:<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;This forces an unclean shutdown when the connection is closed, i.e. no<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;SSL close notify alert is send or allowed to received.&nbsp; This violates<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;the SSL/TLS standard but is needed for some brain-dead browsers. Use<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;this when you receive I/O errors because of the standard approach where<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;mod_ssl sends the close notify alert.<br />&nbsp; &nbsp; #&nbsp; &nbsp;o ssl-accurate-shutdown:<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;This forces an accurate shutdown when the connection is closed, i.e. a<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;SSL close notify alert is send and mod_ssl waits for the close notify<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;alert of the client. This is 100% SSL/TLS standard compliant, but in<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;practice often causes hanging connections with brain-dead browsers. Use<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;this only for browsers where you know that their SSL implementation<br />&nbsp; &nbsp; #&nbsp; &nbsp; &nbsp;works correctly.<br />&nbsp; &nbsp; #&nbsp; &nbsp;Notice: Most problems of broken clients are also related to the HTTP<br />&nbsp; &nbsp; #&nbsp; &nbsp;keep-alive facility, so you usually additionally want to disable<br />&nbsp; &nbsp; #&nbsp; &nbsp;keep-alive for those clients, too. Use variable &quot;nokeepalive&quot; for this.<br />&nbsp; &nbsp; #&nbsp; &nbsp;Similarly, one has to force some clients to use HTTP/1.0 to workaround<br />&nbsp; &nbsp; #&nbsp; &nbsp;their broken HTTP/1.1 implementation. Use variables &quot;downgrade-1.0&quot; and<br />&nbsp; &nbsp; #&nbsp; &nbsp;&quot;force-response-1.0&quot; for this.<br />&nbsp; &nbsp; BrowserMatch &quot;MSIE [2-6]&quot; \<br />&nbsp; &nbsp; &nbsp; &nbsp; nokeepalive ssl-unclean-shutdown \<br />&nbsp; &nbsp; &nbsp; &nbsp; downgrade-1.0 force-response-1.0<br />&nbsp; &nbsp; # MSIE 7 and newer should be able to use keepalive<br />&nbsp; &nbsp; BrowserMatch &quot;MSIE [17-9]&quot; ssl-unclean-shutdown</p><p>Alias /cluebringer &quot;/usr/share/postfix-cluebringer-webui/webui/&quot;<br />Alias /iredadmin/static &quot;/usr/share/apache2/iredadmin/static/&quot;<br />WSGIScriptAlias /iredadmin &quot;/usr/share/apache2/iredadmin/iredadmin.py/&quot;<br />Alias /awstats/icon &quot;/usr/share/awstats/icon/&quot;<br />Alias /awstatsicon &quot;/usr/share/awstats/icon/&quot;<br />ScriptAlias /awstats &quot;/usr/lib/cgi-bin/&quot;<br />Alias /webmail &quot;/usr/share/apache2/roundcubemail/&quot;<br />Alias /phpldapadmin &quot;/usr/share/phpldapadmin/&quot;<br />Alias /roundcube &quot;/usr/share/apache2/roundcubemail/&quot;<br />Alias /ldap &quot;/usr/share/phpldapadmin/&quot;<br />Alias /phpmyadmin &quot;/usr/share/phpmyadmin/&quot;<br />Alias /iredadmin &quot;/usr/share/apache2/iredadmin/&quot;<br />&lt;/VirtualHost&gt;<br />&lt;/IfModule&gt;<br />#####################</p><p>Apache error.log (excerpt)<br />[Sun May 19 14:13:43 2013] [notice] Apache/2.2.22 (Debian) mod_ssl/2.2.22 OpenSSL/1.0.1e mod_wsgi/3.3 Python/2.7.3 configured -- resuming normal operations<br />[Sun May 19 14:14:31 2013] [error] [client 186.247.123.152] Directory index forbidden by Options directive: /usr/share/apache2/iredadmin/<br />[Sun May 19 14:14:31 2013] [error] [client 186.247.123.152] File does not exist: /var/www/favicon.ico<br />[Sun May 19 14:14:32 2013] [error] [client 186.247.123.152] File does not exist: /var/www/favicon.ico<br />[Sun May 19 14:15:10 2013] [error] [client 186.247.123.152] Directory index forbidden by Options directive: /usr/share/apache2/iredadmin/<br />[Sun May 19 14:15:10 2013] [error] [client 186.247.123.152] File does not exist: /var/www/favicon.ico<br />[Sun May 19 14:15:11 2013] [error] [client 186.247.123.152] File does not exist: /var/www/favicon.ico<br />[Sun May 19 14:15:16 2013] [error] [client 186.247.123.152] Directory index forbidden by Options directive: /usr/share/apache2/iredadmin/<br />[Sun May 19 14:15:17 2013] [error] [client 186.247.123.152] File does not exist: /var/www/favicon.ico<br />[Sun May 19 14:15:17 2013] [error] [client 186.247.123.152] File does not exist: /var/www/favicon.ico<br />[Sun May 19 14:15:56 2013] [error] [client 186.247.123.152] File does not exist: /var/www/favicon.ico<br />[Sun May 19 14:16:09 2013] [error] [client 186.247.123.152] Directory index forbidden by Options directive: /usr/share/apache2/iredadmin/<br />[Sun May 19 14:16:09 2013] [error] [client 186.247.123.152] File does not exist: /var/www/favicon.ico<br />[Sun May 19 14:16:09 2013] [error] [client 186.247.123.152] File does not exist: /var/www/favicon.ico</p><p>Someone have a clue about what&#039;s happen?</p><p>Thank you</p>]]></description>
			<author><![CDATA[null@example.com (pmichelazzo)]]></author>
			<pubDate>Sun, 19 May 2013 14:30:39 +0000</pubDate>
			<guid>http://www.iredmail.org/forum/topic4884-403-forbidden-iredamin-only-new-posts.html</guid>
		</item>
		<item>
			<title><![CDATA[Firewall]]></title>
			<link>http://www.iredmail.org/forum/topic4883-firewall-new-posts.html</link>
			<description><![CDATA[<p>==== Required information ====<br />- iRedMail version: 0.8.4<br />- Store mail accounts in which backend (LDAP/MySQL/PGSQL): MYSQL<br />- Linux/BSD distribution name and version: Debian/squeeze<br />- Related log if you&#039;re reporting an issue: <br />====</p><p>Hello Zhang,</p><p>As you have seen from my Logwatch report in my other thread, there are a lot of unwanted SSH brute force attacks. The /var/log/auth.log shows plenty of attacks (trials) from unknown IPs (see below). </p><p>I haven&#039;t installed Fail2ban and I gave NO for the option: &quot;Use firewall rules provided by iRedmail&quot;, during the iRedmail installation. I think that is the reason for these unknown ssh requests. I can install the fail2ban from the debian repository, but how can start using the firewall rules now ?</p><p>Also I found the below method using iptables:<br /><a href="http://kvz.io/blog/2007/07/28/block-brute-force-attacks-with-iptables/">http://kvz.io/blog/2007/07/28/block-bru … -iptables/</a></p><p>Which one do you suggest ? Thanks.</p><br /><br /><p># cat /var/log/auth.log<br /></p><div class="codebox"><pre><code>May 19 09:49:06 mx sshd[10269]: Failed password for invalid user devdata from 124.160.194.27 port 21889 ssh2
May 19 09:49:09 mx sshd[10271]: Invalid user webapp from 124.160.194.27
May 19 09:49:09 mx sshd[10271]: pam_unix(sshd:auth): check pass; user unknown
May 19 09:49:09 mx sshd[10271]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=124.160.194.27 
May 19 09:49:10 mx sshd[10271]: Failed password for invalid user webapp from 124.160.194.27 port 22883 ssh2
May 19 09:49:13 mx sshd[10273]: Invalid user erwin from 124.160.194.27
May 19 09:49:13 mx sshd[10273]: pam_unix(sshd:auth): check pass; user unknown
May 19 09:49:13 mx sshd[10273]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=124.160.194.27 
May 19 09:49:15 mx sshd[10273]: Failed password for invalid user erwin from 124.160.194.27 port 23891 ssh2
May 19 09:49:17 mx sshd[10275]: Invalid user erwin from 124.160.194.27
May 19 09:49:17 mx sshd[10275]: pam_unix(sshd:auth): check pass; user unknown
May 19 09:49:17 mx sshd[10275]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=124.160.194.27 
May 19 09:49:18 mx sshd[10275]: Failed password for invalid user erwin from 124.160.194.27 port 24923 ssh2
May 19 09:49:21 mx sshd[10277]: Invalid user sachin from 124.160.194.27
May 19 09:49:21 mx sshd[10277]: pam_unix(sshd:auth): check pass; user unknown
May 19 09:49:21 mx sshd[10277]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=124.160.194.27 
May 19 09:49:22 mx sshd[10277]: Failed password for invalid user sachin from 124.160.194.27 port 25860 ssh2</code></pre></div>]]></description>
			<author><![CDATA[null@example.com (aniyan.rajan6)]]></author>
			<pubDate>Sun, 19 May 2013 12:07:19 +0000</pubDate>
			<guid>http://www.iredmail.org/forum/topic4883-firewall-new-posts.html</guid>
		</item>
		<item>
			<title><![CDATA[Remove]]></title>
			<link>http://www.iredmail.org/forum/topic4882-remove-new-posts.html</link>
			<description><![CDATA[<p>==== Required information ====<br />- iRedMail version: 0.8.4<br />- Store mail accounts in which backend (LDAP/MySQL/PGSQL): LDAP<br />- Linux/BSD distribution name and version: Debian Squeeze 6<br />- Related log if you&#039;re reporting an issue: <br />====</p><p>Hello,<br />today, i&#039;ve fresh installed iRedMail, everything works but if i navigate to <a href="http://mydomain.com">http://mydomain.com</a>, the server redirects me to <a href="https://mydomain.com/mail.">https://mydomain.com/mail.</a> How can i remove these automatic redirection?</p><p>Bye</p>]]></description>
			<author><![CDATA[null@example.com (Blu3scReeN)]]></author>
			<pubDate>Sun, 19 May 2013 01:24:49 +0000</pubDate>
			<guid>http://www.iredmail.org/forum/topic4882-remove-new-posts.html</guid>
		</item>
		<item>
			<title><![CDATA[Greylisting configuration not per FAQ]]></title>
			<link>http://www.iredmail.org/forum/topic4881-greylisting-configuration-not-per-faq-new-posts.html</link>
			<description><![CDATA[<p>==== Required information ====<br />- iRedMail version: 0.8.3<br />- Store mail accounts in which backend (LDAP/MySQL/PGSQL): LDAP<br />- Linux/BSD distribution name and version: Ubuntu 12.04<br />- Related log if you&#039;re reporting an issue: <br />====</p><p>It seems that greylisting might be in effect on our iRedMail server installation.<br />I found several iRedMail FAQ articles / topics</p><p><a href="http://www.iredmail.org/wiki/index.php?title=IRedMail/FAQ/Enable.Greylist.Opt.In">http://www.iredmail.org/wiki/index.php? … ist.Opt.In</a><br /><a href="http://www.iredmail.org/forum/topic3075-iredmail-support-recipient-address-rejected-greylisting-in-effect.html">http://www.iredmail.org/forum/topic3075 … ffect.html</a></p><p>which say I need to modify settings in /etc/postfix-policyd.conf.<br />(running am on Ubuntu 12.04 as mentioned above).<br />That file does not exist on my server.</p><p>The FAQ also states that iRedAdmin Pro customers can easily enable / disable greylisting from domain settings panel under the Advanced tab. There is no such setting in the iRedAdmin panel, neither in the Advanced tab nor anywhere else. </p><p>Can you please indicate what I would need to do to make those settings. I want to at least find out if greylisting is in effect, and how to turn it off.</p>]]></description>
			<author><![CDATA[null@example.com (pschulz)]]></author>
			<pubDate>Sat, 18 May 2013 20:48:00 +0000</pubDate>
			<guid>http://www.iredmail.org/forum/topic4881-greylisting-configuration-not-per-faq-new-posts.html</guid>
		</item>
		<item>
			<title><![CDATA[Wrong version]]></title>
			<link>http://www.iredmail.org/forum/topic4880-wrong-version-new-posts.html</link>
			<description><![CDATA[<p>==== Required information ====<br />- iRedMail version: <br />- Store mail accounts in which backend (LDAP/MySQL/PGSQL): <br />- Linux/BSD distribution name and version: <br />- Related log if you&#039;re reporting an issue: <br />======== Required information ====<br />- iRedMail version: <br />- Store mail accounts in which backend (LDAP/MySQL/PGSQL): <br />- Linux/BSD distribution name and version: CentOs 6.4<br />- Related log if you&#039;re reporting an issue: <br />====</p><p>Hello, </p><p>i&#039;ve bought your Pro Version, but got the wrong version. <br />I was buying Mysql Version, and i received Ldap version.</p><p>____</p><p>Paypal: <br />May 17, 2013 17:27:40 GMT+01:00<br />Transaction ID: 1T171609WF8694628</p><br /><p>Thanks very much for your purchase to support iRedMail project, you can<br />now click below URL to download the latest iRedAdmin-Pro-LDAP-1.9.0:</p><p>&nbsp; &nbsp;- URL: <a href="http://iredmail.org/iRedAdmin-Pro/LDAP/1.9.0/Hm8iIvDkuLtuM1uOLCCF5G2fauq8sAJd/">http://iredmail.org/iRedAdmin-Pro/LDAP/ … fauq8sAJd/</a><br />&nbsp; &nbsp;- Username: yxpzNCobzLtm</p><br /><p>Your license will expire on 2014-06-01. After expired, you can<br />continue using it, without bug/security fixes, patches, and newer releases.</p>]]></description>
			<author><![CDATA[null@example.com (filipe.contente)]]></author>
			<pubDate>Fri, 17 May 2013 17:39:35 +0000</pubDate>
			<guid>http://www.iredmail.org/forum/topic4880-wrong-version-new-posts.html</guid>
		</item>
		<item>
			<title><![CDATA[Migrating from another setup - questions]]></title>
			<link>http://www.iredmail.org/forum/topic4879-migrating-from-another-setup-questions-new-posts.html</link>
			<description><![CDATA[<p>==== Required information ====<br />- iRedMail version: None as yet!<br />- Store mail accounts in which backend (LDAP/MySQL/PGSQL): MySQL<br />- Linux/BSD distribution name and version: Debian 7<br />- Related log if you&#039;re reporting an issue: <br />====</p><p>Hello</p><p>I&#039;m looking at migrating an existing email system from an old server (Postfix/Dovecot) to iRedmail (and probably buying iRedMail Pro).&nbsp; </p><p>All the existing emails are stored in a Maildir format and in the same directory structure that iRedmail uses - so I know it&#039;s just a matter of copying files and setting permissions in order to move these over.</p><p>How can I move the user information (ie email addresses, domains, passwords, aliases)?&nbsp; The passwords are stored currently as an MD5 hash.&nbsp; I can export this information in any format.</p><p>How can I import these into iRedmail - is there a quick way of doing it?&nbsp; </p><p>Thank you in advance</p>]]></description>
			<author><![CDATA[null@example.com (rodneytrotter)]]></author>
			<pubDate>Fri, 17 May 2013 17:26:17 +0000</pubDate>
			<guid>http://www.iredmail.org/forum/topic4879-migrating-from-another-setup-questions-new-posts.html</guid>
		</item>
		<item>
			<title><![CDATA[SMTP Error 250: Authentication failed!]]></title>
			<link>http://www.iredmail.org/forum/topic4877-smtp-error-250-authentication-failed-new-posts.html</link>
			<description><![CDATA[<p>==== Required information ====<br />- iRedMail version: 0.8.4<br />- Store mail accounts in which backend (LDAP/MySQL/PGSQL): MySQL<br />- Linux/BSD distribution name and version: Debian Wheezy<br />====</p><p>Having a little problem with SMTP. I can login and all of that but when I try to send an email I get the error: <br />SMTP Error (250): authentication failure</p><p>And I found this post: <br /><a href="http://www.iredmail.org/forum/topic3531-iredmail-support-smtp-error-250-authentication-failure.html">http://www.iredmail.org/forum/topic3531 … ilure.html</a></p><p>Which says it is resolved however those commands will not run on my system with the error: <br />&quot;update-rc.d: using dependency based boot sequencing&quot;</p><p>I hope someone can help me out and get it to where I can send mail without any problems. </p><p>Is there a way I can just change the method that iredmail uses to send mail and change it to postfix?</p><br /><p>Thanks, JJ Edgar</p>]]></description>
			<author><![CDATA[null@example.com (JJEdgar)]]></author>
			<pubDate>Thu, 16 May 2013 23:04:58 +0000</pubDate>
			<guid>http://www.iredmail.org/forum/topic4877-smtp-error-250-authentication-failed-new-posts.html</guid>
		</item>
		<item>
			<title><![CDATA[[SOLVED] status=deferred (temporary failure)]]></title>
			<link>http://www.iredmail.org/forum/topic4875-solved-statusdeferred-temporary-failure-new-posts.html</link>
			<description><![CDATA[<p>======== Required information ====<br />- iRedMail version: 0.8.4<br />- Store mail accounts in which backend (LDAP/MySQL/PGSQL): MySQL<br />- Linux/BSD distribution name and version: Debian Squeeze<br />- Related log if you&#039;re reporting an issue: </p><p>Attached syslog (same as mail.log)</p><p>status=deferred (temporary failure) sending mail to the same domain</p><p># postconf -n<br />alias_maps = mysql:/etc/postfix/mysql/domain_alias_maps.cf<br />allow_min_user = no<br />allow_percent_hack = no<br />append_dot_mydomain = no<br />biff = no<br />bounce_queue_lifetime = 2h<br />broken_sasl_auth_clients = yes<br />config_directory = /etc/postfix<br />content_filter = smtp-amavis:[127.0.0.1]:10024<br />delay_warning_time = 0h<br />disable_vrfy_command = yes<br />enable_original_recipient = no<br />home_mailbox = Maildir/<br />inet_interfaces = all<br />inet_protocols = ipv4<br />mailbox_command = /usr/lib/dovecot/deliver<br />mailbox_size_limit = 0<br />maximal_backoff_time = 4000s<br />maximal_queue_lifetime = 2h<br />message_size_limit = 15728640<br />minimal_backoff_time = 300s<br />mydestination = $myhostname, localhost, localhost.localdomain, localhost.$myhostname<br />mydomain = jboss.dojo<br />myhostname = debian.dojo<br />mynetworks = 127.0.0.0/8<br />mynetworks_style = subnet<br />myorigin = $myhostname<br />proxy_read_maps = $canonical_maps $lmtp_generic_maps $local_recipient_maps $mydestination $mynetworks $recipient_bcc_maps $recipient_canonical_maps $relay_domains $relay_recipient_maps $relocated_maps $sender_bcc_maps $sender_canonical_maps $smtp_generic_maps $smtpd_sender_login_maps $transport_maps $virtual_mailbox_domains $smtpd_sender_restrictions $virtual_mailbox_maps<br />queue_run_delay = 1s<br />readme_directory = no<br />recipient_bcc_maps = proxy:mysql:/etc/postfix/mysql/recipient_bcc_maps_user.cf, proxy:mysql:/etc/postfix/mysql/recipient_bcc_maps_domain.cf<br />recipient_delimiter = +<br />relay_domains = $mydestination, proxy:mysql:/etc/postfix/mysql/relay_domains.cf<br />relayhost = <br />sender_bcc_maps = proxy:mysql:/etc/postfix/mysql/sender_bcc_maps_user.cf, proxy:mysql:/etc/postfix/mysql/sender_bcc_maps_domain.cf<br />smtp_data_init_timeout = 240s<br />smtp_data_xfer_timeout = 600s<br />smtpd_data_restrictions = reject_unauth_pipelining<br />smtpd_helo_required = no<br />smtpd_recipient_restrictions = permit_mynetworks, permit_sasl_authenticated, reject_unauth_destination<br />smtpd_reject_unlisted_recipient = no<br />smtpd_reject_unlisted_sender = no<br />smtpd_sasl_auth_enable = yes<br />smtpd_sasl_authenticated_header = no<br />smtpd_sasl_exceptions_networks = $mynetworks<br />smtpd_sasl_local_domain = <br />smtpd_sasl_path = ./dovecot-auth<br />smtpd_sasl_security_options = noanonymous<br />smtpd_sasl_type = dovecot<br />smtpd_sender_login_maps = proxy:mysql:/etc/postfix/mysql/sender_login_maps.cf<br />smtpd_sender_restrictions = permit_mynetworks, reject_sender_login_mismatch, permit_sasl_authenticated<br />smtpd_tls_CAfile = /etc/ssl/certs/iRedMail_CA.pem<br />smtpd_tls_cert_file = /etc/ssl/certs/iRedMail_CA.pem<br />smtpd_tls_key_file = /etc/ssl/private/iRedMail.key<br />smtpd_tls_loglevel = 3<br />smtpd_tls_security_level = may<br />swap_bangpath = no<br />tls_random_source = dev:/dev/urandom<br />transport_maps = proxy:mysql:/etc/postfix/mysql/transport_maps_user.cf, proxy:mysql:/etc/postfix/mysql/transport_maps_domain.cf<br />virtual_gid_maps = static:8<br />virtual_mailbox_base = /var/vmail<br />virtual_mailbox_domains = proxy:mysql:/etc/postfix/mysql/virtual_mailbox_domains.cf<br />virtual_mailbox_maps = proxy:mysql:/etc/postfix/mysql/virtual_mailbox_maps.cf<br />virtual_minimum_uid = 150<br />virtual_transport = dovecot<br />virtual_uid_maps = static:150</p><br /><br /><br /><br /><p>Answer:<br />For anyone that got this problem, check in /etc/groups and /etc/passwd that vmail got a correct UID and GID</p>]]></description>
			<author><![CDATA[null@example.com (guido.rugo)]]></author>
			<pubDate>Thu, 16 May 2013 18:00:40 +0000</pubDate>
			<guid>http://www.iredmail.org/forum/topic4875-solved-statusdeferred-temporary-failure-new-posts.html</guid>
		</item>
		<item>
			<title><![CDATA[I would like to change master.cf to the default value]]></title>
			<link>http://www.iredmail.org/forum/topic4873-i-would-like-to-change-mastercf-to-the-default-value-new-posts.html</link>
			<description><![CDATA[<p>==== Required information ====<br />- iRedMail version: <br />- Store mail accounts in which backend (LDAP/MySQL/PGSQL): <br />- Linux/BSD distribution name and version: <br />- Related log if you&#039;re reporting an issue: <br />======== Required information ====<br />- iRedMail version: Latest<br />- Store mail accounts in which backend (LDAP/MySQL/PGSQL): MySQL<br />- Linux/BSD distribution name and version: Cent OS6<br />- Related log if you&#039;re reporting an issue: <br />====</p><p>Hi, <br />I would like to change the master.cf file to the default value.<br />I forgot to keep the backup.</p><p>Would you suggest the default value of master.cf file?<br />For your reference, I will paste my current value:</p><p>smtp&nbsp; &nbsp; &nbsp; inet&nbsp; n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;smtpd</p><p>pickup&nbsp; &nbsp; fifo&nbsp; n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;60&nbsp; &nbsp; &nbsp; 1&nbsp; &nbsp; &nbsp; &nbsp;pickup<br />cleanup&nbsp; &nbsp;unix&nbsp; n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;0&nbsp; &nbsp; &nbsp; &nbsp;cleanup<br />qmgr&nbsp; &nbsp; &nbsp; fifo&nbsp; n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;300&nbsp; &nbsp; &nbsp;1&nbsp; &nbsp; &nbsp; &nbsp;qmgr<br />#qmgr&nbsp; &nbsp; &nbsp;fifo&nbsp; n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;300&nbsp; &nbsp; &nbsp;1&nbsp; &nbsp; &nbsp; &nbsp;oqmgr<br />tlsmgr&nbsp; &nbsp; unix&nbsp; -&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;1000?&nbsp; &nbsp;1&nbsp; &nbsp; &nbsp; &nbsp;tlsmgr<br />rewrite&nbsp; &nbsp;unix&nbsp; -&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;trivial-rewrite<br />bounce&nbsp; &nbsp; unix&nbsp; -&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;0&nbsp; &nbsp; &nbsp; &nbsp;bounce<br />defer&nbsp; &nbsp; &nbsp;unix&nbsp; -&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;0&nbsp; &nbsp; &nbsp; &nbsp;bounce<br />trace&nbsp; &nbsp; &nbsp;unix&nbsp; -&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;0&nbsp; &nbsp; &nbsp; &nbsp;bounce<br />verify&nbsp; &nbsp; unix&nbsp; -&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;1&nbsp; &nbsp; &nbsp; &nbsp;verify<br />flush&nbsp; &nbsp; &nbsp;unix&nbsp; n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;1000?&nbsp; &nbsp;0&nbsp; &nbsp; &nbsp; &nbsp;flush<br />proxymap&nbsp; unix&nbsp; -&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;proxymap<br />proxywrite unix -&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;1&nbsp; &nbsp; &nbsp; &nbsp;proxymap<br />smtp&nbsp; &nbsp; &nbsp; unix&nbsp; -&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;smtp<br /># When relaying mail as backup MX, disable fallback_relay to avoid MX loops<br />relay&nbsp; &nbsp; &nbsp;unix&nbsp; -&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;smtp<br />&nbsp; &nbsp; &nbsp; &nbsp; -o smtp_fallback_relay=<br />#&nbsp; &nbsp; &nbsp; &nbsp;-o smtp_helo_timeout=5 -o smtp_connect_timeout=5<br />showq&nbsp; &nbsp; &nbsp;unix&nbsp; n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;showq<br />error&nbsp; &nbsp; &nbsp;unix&nbsp; -&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;error<br />retry&nbsp; &nbsp; &nbsp;unix&nbsp; -&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;error<br />discard&nbsp; &nbsp;unix&nbsp; -&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;discard<br />local&nbsp; &nbsp; &nbsp;unix&nbsp; -&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;local<br />virtual&nbsp; &nbsp;unix&nbsp; -&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;virtual<br />lmtp&nbsp; &nbsp; &nbsp; unix&nbsp; -&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;lmtp<br />anvil&nbsp; &nbsp; &nbsp;unix&nbsp; -&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;1&nbsp; &nbsp; &nbsp; &nbsp;anvil<br />scache&nbsp; &nbsp; unix&nbsp; -&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;1&nbsp; &nbsp; &nbsp; &nbsp;scache</p><p>submission inet n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;smtpd<br />&nbsp; -o smtpd_tls_security_level=encrypt<br />&nbsp; -o smtpd_sasl_auth_enable=yes<br />&nbsp; -o smtpd_client_restrictions=permit_mynetworks,permit_sasl_authenticated,reject</p><p>dovecot unix&nbsp; &nbsp; -&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;n&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; &nbsp;-&nbsp; &nbsp; &nbsp; pipe<br />&nbsp; &nbsp; flags=DRhu user=vmail:vmail argv=/usr/libexec/dovecot/deliver -f ${sender} -d ${user}@${domain} -m ${extension}</p><p>smtp-amavis unix -&nbsp; -&nbsp; &nbsp;-&nbsp; &nbsp;-&nbsp; &nbsp;2&nbsp; smtp<br />&nbsp; &nbsp; -o smtp_data_done_timeout=1200<br />&nbsp; &nbsp; -o smtp_send_xforward_command=yes<br />&nbsp; &nbsp; -o disable_dns_lookups=yes<br />&nbsp; &nbsp; -o max_use=20</p><p>127.0.0.1:10025 inet n&nbsp; -&nbsp; &nbsp;-&nbsp; &nbsp;-&nbsp; &nbsp;-&nbsp; smtpd<br />&nbsp; &nbsp; -o content_filter=<br />&nbsp; &nbsp; -o local_recipient_maps=<br />&nbsp; &nbsp; -o relay_recipient_maps=<br />&nbsp; &nbsp; -o smtpd_restriction_classes=<br />&nbsp; &nbsp; -o smtpd_delay_reject=no<br />&nbsp; &nbsp; -o smtpd_tls_security_level=none<br />&nbsp; &nbsp; -o smtpd_client_restrictions=permit_mynetworks,reject<br />&nbsp; &nbsp; -o smtpd_helo_restrictions=<br />&nbsp; &nbsp; -o smtpd_sender_restrictions=<br />&nbsp; &nbsp; -o smtpd_recipient_restrictions=permit_mynetworks,reject</p><p>&nbsp; &nbsp; -o smtpd_end_of_data_restrictions=<br />&nbsp; &nbsp; -o mynetworks_style=host<br />&nbsp; &nbsp; -o mynetworks=127.0.0.0/8<br />&nbsp; &nbsp; -o strict_rfc821_envelopes=yes<br />&nbsp; &nbsp; -o smtpd_error_sleep_time=0<br />&nbsp; &nbsp; -o smtpd_soft_error_limit=1001<br />&nbsp; &nbsp; -o smtpd_hard_error_limit=1000<br />&nbsp; &nbsp; -o smtpd_client_connection_count_limit=0<br />&nbsp; &nbsp; -o smtpd_client_connection_rate_limit=0<br />&nbsp; &nbsp; -o receive_override_options=no_header_body_checks,no_unknown_recipient_checks,no_address_mappings</p>]]></description>
			<author><![CDATA[null@example.com (different)]]></author>
			<pubDate>Thu, 16 May 2013 11:08:00 +0000</pubDate>
			<guid>http://www.iredmail.org/forum/topic4873-i-would-like-to-change-mastercf-to-the-default-value-new-posts.html</guid>
		</item>
	</channel>
</rss>
