Install/iRedAdmin-Pro/MySQL/RHEL

From iRedMail

Revision as of 03:36, 29 January 2011 by ZhangHuangbin (Talk | contribs)
Jump to: navigation, search

Contents

System requirements

  • Apache, 2.2+. Web server. Already shipped within RHEL/CentOS 5.x.
    • mod_wsgi 2.1+. Apache module used to host Python application which supports the Python WSGI interface.
  • Python 2.4+, core programming language. Already shipped within RHEL/CentOS 5.x. Warning: Python 3.x is not supported yet.
  • Web.py, 0.32+. A python-powered web framework.
    • MySQLdb. A thread-compatible interface to the popular MySQL database server that provides the Python database API.

Add new system account: iredadmin

We will make iRedAdmin run with Apache web server, but as non-apache, low privilege user: iredadmin.

Terminal:
# useradd -s /sbin/nologin -m -d /home/iredadmin iredadmin

Install necessary packages

  • Make sure you have iRedMail yum repository configured: /etc/yum.repos.d/iRedMail.repo.
File: /etc/yum.repos.d/iRedMail.repo
[iRedMail]
name=iRedMail
baseurl=http://iredmail.org/yum/rpms/5/
enabled=1
gpgcheck=0
priority=1
  • Install necessary packages.
Terminal:
# ---- For i386 ----
# yum install python-webpy python-jinja2 MySQL-python mod_wsgi

# ---- For x86_64 ----
# yum install MySQL-python.x86_64 python-webpy.noarch python-jinja2.x86_64 mod_wsgi.x86_64

Download iRedAdmin and configure Apache web server

  • Get iRedAdmin:
    • If you purchased iRedAdmin-Pro-MySQL, you should already have it. If not, please mail to support@ iredmail.org to get a download link.
    • If you didn't purchase iRedAdmin-Pro-MySQL, download iRedAdmin open source edition from download page.
  • Copy iRedAdmin to /var/www/, set correct file permissions, and create symbol link.
Terminal:
# tar xjf iRedAdmin-x.y.z.tar.bz2 -C /var/www/
# cd /var/www/
# chown -R iredadmin:iredadmin iRedAdmin-x.y.z
# chmod -R 0755 iRedAdmin-x.y.z
# ln -s iRedAdmin-x.y.z iredadmin
  • Add apache configure file: /etc/httpd/conf.d/iredadmin.conf.
File: /etc/httpd/conf.d/iredadmin.conf
#
# Note: Uncomment below two lines if you want to make iRedAdmin accessable via HTTP.
#
#WSGIScriptAlias /iredadmin /var/www/iredadmin/iredadmin.py/
#Alias /iredadmin/static /var/www/iredadmin/static/

WSGISocketPrefix /var/run/wsgi
WSGIDaemonProcess iredadmin user=iredadmin threads=15
WSGIProcessGroup iredadmin

AddType text/html .py

<Directory /var/www/iredadmin/>
    Order deny,allow
    Allow from all
</Directory>
  • Edit /etc/httpd/conf.d/ssl.conf, make iredadmin accessable via HTTPS. Add below lines before </VirtualHost>:
File: /etc/httpd/conf.d/ssl.conf
WSGIScriptAlias /iredadmin /var/www/iredadmin/iredadmin.py/
Alias /iredadmin/static /var/www/iredadmin/static/
  • Restart apache to enable mod_wsgi:
Terminal:
# /etc/init.d/httpd restart

Create necessary MySQL database and grant privileges

  • Create MySQL database: iredadmin. Used to store sessions, admin operation logs, etc.
Terminal:
# mysql -uroot -p
mysql> CREATE DATABASE iredadmin DEFAULT CHARACTER SET utf8 COLLATE utf8_general_ci;
mysql> USE iredadmin;
mysql> SOURCE /var/www/iredadmin/docs/samples/iredadmin.sql;
  • Grant privileges to iredadmin user and set password for it.

WARNING: Here we use 'secret_passwd' as password of iredadmin user, please replace it with your own password.

Terminal:
# mysql -uroot -p
mysql> GRANT SELECT,INSERT,UPDATE,DELETE ON iredadmin.* TO iredadmin@localhost IDENTIFIED BY 'secret_passwd';
mysql> FLUSH PRIVILEGES;

Configure iRedAdmin

  • Copy example config file, and set correct file permission.
Terminal:
# cd /var/www/iredadmin/
# cp settings.ini.ldap.sample settings.ini
# chown iredadmin:iredadmin settings.ini
# chmod 0600 settings.ini
  • Edit settings.ini and set several variables.
    • NOTE: For more inforamtion, please read settings.ini, it's self-documented.
File: settings.ini

[general]
# General settings ...

[iredadmin]
# Database "iredadmin". required by iRedAdmin.

[vmaildb]
# Database "vmail", stored all mail accounts.

[policyd]
# Database "policyd". Required for policyd integration.

[amavisd]
# Database "amavisd". Required for Amavisd-New integration. includes spam quarantining/releasing.

Troubleshooting

Personal tools