That's good news. I'll work on duplicating your setup so I can find the
bug in the TLS passthrough code.
-- Sam Clippinger
Ronnie Tartar wrote:
Ok, compiling without the --disable-tls, default configure, make, install.
Works no problem with the tls-certificate-file parameter in the conf file.
Just will not work without it.
Thanks for the fix.
-----Original Message-----
From: Sam Clippinger [mailto:[EMAIL PROTECTED]
Sent: Wednesday, January 09, 2008 5:00 PM
To: qmailtoaster-list@qmailtoaster.com
Subject: Re: [qmailtoaster] Problems with SPAMDYKE
OK, I should be able to duplicate that setup to see if I can reproduce
your error. It may be a little while before I have the time, however.
In the meantime, can you try enabling TLS support in spamdyke to see if
this error persists? Inside spamdyke, TLS passthrough is handled
differently than TLS decoding. If this is a spamdyke bug, you may be
able to work around it. Enabling TLS support will also allow all of
spamdyke's filters to function, including graylisting.
To enable TLS, you'll need to compile spamdyke with TLS support and use
the "tls-certificate-file" directive in the configuration file. Your
TLS certificate is probably located at:
/var/qmail/control/servercert.pem
-- Sam Clippinger
Ronnie Tartar wrote:
Yes,
Spamdyke version 3.1.3 downloaded today. Tried default configure, then
the --disable-tls, failed both ways.
The remote machine is a centos5 64 bit, running the default sendmail
sendmail-8.13.8-2.el5
courier-authlib-toaster-0.59.2-1.3.6
maildrop-toaster-2.0.3-1.3.5
libsrs2-toaster-1.0.18-1.3.3
ezmlm-cgi-toaster-0.53.324-1.3.3
ucspi-tcp-toaster-0.88-1.3.5
qmail-toaster-1.03-1.3.15
autorespond-toaster-2.0.4-1.3.3
isoqlog-toaster-2.1-1.3.4
clamav-toaster-0.92-1.3.16
vpopmail-toaster-5.4.17-1.3.4
qmail-pop3d-toaster-1.03-1.3.15
control-panel-toaster-0.5-1.3.4
qmailmrtg-toaster-4.2-1.3.3
vqadmin-toaster-2.3.4-1.3.3
ripmime-toaster-1.4.0.6-1.3.3
qmailadmin-toaster-1.2.11-1.3.4
spamassassin-toaster-3.2.3-1.3.12
libdomainkeys-toaster-0.68-1.3.3
ezmlm-toaster-0.53.324-1.3.3
squirrelmail-toaster-1.4.9a-1.3.6
daemontools-toaster-0.76-1.3.3
courier-imap-toaster-4.1.2-1.3.7
maildrop-toaster-devel-2.0.3-1.3.5
simscan-toaster-1.3.1-1.3.6
Are the packages, bone stock except for spambox being enabled and per
use settings for spamassassin.
----- Original Message ----- From: "Phil Leinhauser" <[EMAIL PROTECTED]>
To: <qmailtoaster-list@qmailtoaster.com>
Sent: Wednesday, January 09, 2008 4:09 PM
Subject: Re: [qmailtoaster] Problems with SPAMDYKE
Well Ronnie, you just can't get any better service than the author
himself!!
Looks like you're in good hands.
Phil
-----Original message-----
From: Sam Clippinger [EMAIL PROTECTED]
Date: Wed, 09 Jan 2008 16:43:29 -0500
To: qmailtoaster-list@qmailtoaster.com
Subject: Re: [qmailtoaster] Problems with SPAMDYKE
Looking at the configuration file you posted, it doesn't look like
you're using spamdyke's TLS at all (so my previous comment about the TLS
certificate doesn't apply). spamdyke should be passing the TLS traffic
through, untouched, to qmail.
Are you using the latest version of spamdyke? Can you post the OS and
MTA versions of both your qmail server and the remote server? If this
is a bug in spamdyke, I'd like to reproduce it and fix it.
-- Sam Clippinger
Ronnie Tartar wrote:
Strange, those errors are on other machines. Not on the qmail toaster
machine.
I ran the configtest, no errors.
----- Original Message ----- From: "Sam Clippinger" <[EMAIL PROTECTED]>
To: <qmailtoaster-list@qmailtoaster.com>
Sent: Wednesday, January 09, 2008 3:26 PM
Subject: Re: [qmailtoaster] Problems with SPAMDYKE
Most likely, spamdyke doesn't have permission to read your TLS
certificate. Are you seeing any errors in the maillog on your qmail
server?
You can also try running spamdyke with the "--config-test" flag to
check for configuration errors.
-- Sam Clippinger
Ronnie Tartar wrote:
Having trouble from some places getting email to my server, they get
tls errors?
lnt.c:567:
Jan 9 14:56:15 cp sendmail[32112]: ruleset=tls_server,
arg1=SOFTWARE, relay=mx1.host2max.com, reject=403 4.7.0 TLS
handshake
failed
Any ideas?
---------------------------------------------------------------------
QmailToaster hosted by: VR Hosted <http://www.vr.org>
---------------------------------------------------------------------
To unsubscribe, e-mail: >>>
[EMAIL PROTECTED]
For additional commands, e-mail: >>>
[EMAIL PROTECTED]
---------------------------------------------------------------------
QmailToaster hosted by: VR Hosted <http://www.vr.org>
---------------------------------------------------------------------
To unsubscribe, e-mail:
[EMAIL PROTECTED]
For additional commands, e-mail: >>
[EMAIL PROTECTED]
---------------------------------------------------------------------
QmailToaster hosted by: VR Hosted <http://www.vr.org>
---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: >
[EMAIL PROTECTED]
---------------------------------------------------------------------
QmailToaster hosted by: VR Hosted <http://www.vr.org>
---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]
---------------------------------------------------------------------
QmailToaster hosted by: VR Hosted <http://www.vr.org>
---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]
---------------------------------------------------------------------
QmailToaster hosted by: VR Hosted <http://www.vr.org>
---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]
---------------------------------------------------------------------
QmailToaster hosted by: VR Hosted <http://www.vr.org>
---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]
---------------------------------------------------------------------
QmailToaster hosted by: VR Hosted <http://www.vr.org>
---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]
---------------------------------------------------------------------
QmailToaster hosted by: VR Hosted <http://www.vr.org>
---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]