Re: SSL error

2022-11-09 Thread Ruben Safir
> 
> This got nothing to with LE or own CA. Bottom line is, you need to
> add your own CA to the cert tore (ideally) 


what is a cert tore?

> - look in DuckDuckGo how
> that works for your distri - Linux is different from BSD - for
> example.
> 
> That would be my line in FreeBSD, using a single file for the CA :
> $FOO_BIN -d 60 -F -f /usr/local/etc/fetchmailrc --sslcertfile
> /etc/ssl/certs/my-ca.crt
> 
> The --sslcertfile part can be dumped if using the global store.
> 
> Bottom line - independent from CA.
> 
> 
> --
> Thanks and regards
> 
>   Goetz R Schultz
> 
> >8
> Quis custodiet ipsos custodes?
>   /"\
>   \ /  ASCII Ribbon Campaign
>X   against HTML e-mail
>   / \
> 8<
> 
> >8--
> 
>  /"\
>  \ /  ASCII Ribbon Campaign
>   X   against HTML e-mail
>  / \
> 
>   This message is transmitted on 100% recycled electrons.
> 
> >8--
> Unsigned message - no responsibillity that content is not altered

-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com 

DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002
http://www.nylxs.com - Leadership Development in Free Software
http://www2.mrbrklyn.com/resources - Unpublished Archive 
http://www.coinhangout.com - coins!
http://www.brooklyn-living.com 

Being so tracked is for FARM ANIMALS and extermination camps, 
but incompatible with living as a free human being. -RI Safir 2013



SSL error

2022-11-09 Thread Ruben Safir



Hello

I am getting this error and I have no idea why.  openssh is upto date

client

bash-5.1$ fetchmail --ssl -p POP3 -uruben mail2.boroparkmd.com
Enter password for ru...@mail2.boroparkmd.com: 
fetchmail: Server certificate verification error: self signed
certificate
fetchmail: Missing trust anchor certificate:
/C=US/ST=NY/L=Brooklyn/O=Dovecot/OU=mail
servuces/CN=*.boroparkmd.com/emailAddress=ru...@mrbrklyn.com
fetchmail: This could mean that the root CA's signing certificate is not
in the trusted CA certificate location, or that c_rehash needs to be run
on the certificate directory. For details, please see the documentation
of --sslcertpath and --sslcertfile in the manual page. See README.SSL
for details.
fetchmail: OpenSSL reported: error:1416F086:SSL
routines:tls_process_server_certificate:certificate verify failed
fetchmail: mail2.boroparkmd.com: SSL connection failed.
fetchmail: socket error while fetching from ru...@mail2.boroparkmd.com
fetchmail: Query status=2 (SOCKET)


Server:
Nov  9 09:36:13 mail2 dovecot[25838]: pop3-login: Disconnected:
Connection closed: SSL_accept() failed: error:0A000412:SSL
routines::sslv3 alert bad certificate: SSL alert number 42 (no auth
attempts in 1 secs): user=<>, rip=96.57.23.83, lip=96.57.23.84, TLS
handshaking: SSL_accept() failed: error:0A000412:SSL routines::sslv3
alert bad certificate: SSL alert number 42, session=

-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com 

DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002
http://www.nylxs.com - Leadership Development in Free Software
http://www2.mrbrklyn.com/resources - Unpublished Archive 
http://www.coinhangout.com - coins!
http://www.brooklyn-living.com 

Being so tracked is for FARM ANIMALS and extermination camps, 
but incompatible with living as a free human being. -RI Safir 2013



Can't get it to work with conf.d files

2022-02-06 Thread Ruben Safir
I am trying to set up dovecot to be a sasl auithenticator for postfix
but it can't get it to function even on the most fundemental level

/usr/bin/dovecot -a -F -c /etc/dovecot/dovecot.conf
# 2.3.16 (7e2e900c1a): /etc/dovecot/dovecot.conf
doveconf: Fatal: Error in configuration file
/etc/dovecot/conf.d/15-mailboxes.conf line 48: Unknown setting: service
{ namespace { namespace


and before this, when I tried to get 10-ssl to work it said the same
thing - unknonw setting

Somewhere it is messed up in the syntax of the config files and I don't
know where or how to run it down in a debugger.


Here is the config file

mail2:[root]:/etc/dovecot# grep "^#" -v  /etc/dovecot/dovecot.conf|grep
-v "^$"
protocols = pop3 submission
base_dir = /var/run/dovecot/
dict {
  #quota = mysql:/etc/dovecot/dovecot-dict-sql.conf.ext
}
!include conf.d/*.conf
!include_try local.conf
mail2:[root]:/etc/dovecot#


-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com
DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002

http://www.nylxs.com - Leadership Development in Free Software
http://www.brooklyn-living.com

Being so tracked is for FARM ANIMALS and extermination camps,
but incompatible with living as a free human being. -RI Safir 2013


Can't get it to work with conf.d files

2022-02-06 Thread Ruben Safir
I am trying to set up dovecot to be a sasl auithenticator for postfix
but it can't get it to function even on the most fundemental level

/usr/bin/dovecot -a -F -c /etc/dovecot/dovecot.conf
# 2.3.16 (7e2e900c1a): /etc/dovecot/dovecot.conf
doveconf: Fatal: Error in configuration file
/etc/dovecot/conf.d/15-mailboxes.conf line 48: Unknown setting: service
{ namespace { namespace


and before this, when I tried to get 10-ssl to work it said the same
thing - unknonw setting

Somewhere it is messed up in the syntax of the config files and I don't
know where or how to run it down in a debugger.

-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com
DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002

http://www.nylxs.com - Leadership Development in Free Software
http://www.brooklyn-living.com

Being so tracked is for FARM ANIMALS and extermination camps,
but incompatible with living as a free human being. -RI Safir 2013


Re: Why would dovecot not be answering

2022-01-23 Thread Ruben Safir
On Sun, Jan 23, 2022 at 11:15:46AM +0100, Markus Winkler wrote:
> Oh, as I read this just now:
> 
> On 23.01.22 05:05, Ruben Safir wrote:
> >I want it to authenticate on submition only
> ---^^
> 
> you should remove all
> 
> smtpd_sasl_*
> 
> from /etc/postfix/main.cf, including the smtpd_sasl_path =
> private/auth from my former mail.
> 
> Instead you should put all that in /etc/postfix/master.cf and have
> something like this:
> 
> 
> submission inet n   -   y   -   -   smtpd
>   -o syslog_name=postfix/submission
>   -o smtpd_tls_security_level=encrypt
>   -o smtpd_sasl_auth_enable=yes
>   -o smtpd_sasl_type=dovecot
>   -o smtpd_sasl_path=private/auth
>   -o smtpd_sasl_security_options=noanonymous
>   -o broken_sasl_auth_clients=yes
>   -o smtpd_client_restrictions=permit_sasl_authenticated,reject
>   -o 
> smtpd_relay_restrictions=reject_non_fqdn_recipient,reject_unknown_recipient_domain,permit_sasl_authenticated,reject
>   -o milter_macro_daemon_name=ORIGINATING
>   -o smtpd_helo_required=no
>   -o smtpd_helo_restrictions=
> 
> 
> If it still doesn't work, then please provide the output of
> 
> - postconf -n
> - postconf -M
> 
> 


OK - I will try this.

> Regards,
> Markus

-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com 

DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002
http://www.nylxs.com - Leadership Development in Free Software
http://www2.mrbrklyn.com/resources - Unpublished Archive 
http://www.coinhangout.com - coins!
http://www.brooklyn-living.com 

Being so tracked is for FARM ANIMALS and extermination camps, 
but incompatible with living as a free human being. -RI Safir 2013



Re: Why would dovecot not be answering

2022-01-23 Thread Ruben Safir
On Sun, Jan 23, 2022 at 10:19:22AM +0100, Markus Winkler wrote:
> Hi Ruben,
> 
> On 23.01.22 05:05, Ruben Safir wrote:
> >smtpd_sasl_type = dovecot
> >
> >in main.cf
> 
> if not already there, please add the following to /etc/postfix/main.cf:
> 
> smtpd_sasl_path = private/auth

That is there
smtp_sasl_auth_enable = no
smtp_sasl_security_options =
smtp_sasl_password_maps =
smtpd_sasl_type = dovecot
smtpd_sasl_auth_enable = yes
smtpd_sasl_path = private/auth

> 
> HTH and regards,
> Markus

-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com 

DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002
http://www.nylxs.com - Leadership Development in Free Software
http://www2.mrbrklyn.com/resources - Unpublished Archive 
http://www.coinhangout.com - coins!
http://www.brooklyn-living.com 

Being so tracked is for FARM ANIMALS and extermination camps, 
but incompatible with living as a free human being. -RI Safir 2013



Why would dovecot not be answering

2022-01-22 Thread Ruben Safir
I am really lost as to why dovecot is not authenticating

I have 

smtpd_sasl_type = dovecot

in main.cf

and 

# Postfix smtp-auth
unix_listener /var/spool/postfix/private/auth {
 mode = 0666
 user = postfix
 group = postfix
}
in /etc/dovecot/conf.d/10-master.conf


I want it to authenticate on submition only

Everything I read says this should do it, but I am up against a wall.  I
have no debugging information or log at all to confirm what postfix is
doing.


-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com 

DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002
http://www.nylxs.com - Leadership Development in Free Software
http://www2.mrbrklyn.com/resources - Unpublished Archive 
http://www.coinhangout.com - coins!
http://www.brooklyn-living.com 

Being so tracked is for FARM ANIMALS and extermination camps, 
but incompatible with living as a free human being. -RI Safir 2013



Re: source code doesn't compile

2022-01-12 Thread Ruben Safir
On Wed, Jan 12, 2022 at 09:37:12AM +0200, Aki Tuomi wrote:
> 
> > On 12/01/2022 08:20 Ruben Safir  wrote:
> > 
> >  
> > On 1/12/22 01:06, Aki Tuomi wrote:
> > > I tried to reproduce this issue on debian stretch, but it worked just 
> > > fine. I suspect your distro is just too old for 2.3. Can you see if 
> > > 2.2.36 works better?
> > 
> > 
> > something in the autoconf config caused it to try to put auth and the
> > auth directory in the same local.. that should narrow the issue to a
> > couple of lines of config code.  I am not an expert in autoconf
> > 
> > -- 
> 
> There is limited amount of interest in trying to fix old operating systems, 
> unfortunately. Especially as there is no such thing as "couple of lines of 
> autoconf code".
> 
> Aki

That is perfectly understandable. 

However, there should be interest that ./configure doesn't contruct a make file
which steps on itself which is a condition that should never happen.
Autoconf tools are supposed to handle these problems.  It should compile
from Slackware to Gentoo to Red Hat Enterprise.  At the end of the day,
they are all posix compliant systems.

make install tried to first make a file
called auth and then tries to use the same 
location on the file system to
make a directory.  That is a fixable bug.

Thanks

Reuvian

-
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com 

DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002
http://www.nylxs.com - Leadership Development in Free Software
http://www2.mrbrklyn.com/resources - Unpublished Archive 
http://www.coinhangout.com - coins!
http://www.brooklyn-living.com 

Being so tracked is for FARM ANIMALS and extermination camps, 
but incompatible with living as a free human being. -RI Safir 2013



Re: source code doesn't compile

2022-01-11 Thread Ruben Safir
On 1/12/22 01:06, Aki Tuomi wrote:
> I tried to reproduce this issue on debian stretch, but it worked just fine. I 
> suspect your distro is just too old for 2.3. Can you see if 2.2.36 works 
> better?


something in the autoconf config caused it to try to put auth and the
auth directory in the same local.. that should narrow the issue to a
couple of lines of config code.  I am not an expert in autoconf

-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com
DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002

http://www.nylxs.com - Leadership Development in Free Software
http://www.brooklyn-living.com

Being so tracked is for FARM ANIMALS and extermination camps,
but incompatible with living as a free human being. -RI Safir 2013


Re: source code doesn't compile

2022-01-11 Thread Ruben Safir
On 1/12/22 01:06, Aki Tuomi wrote:
> I tried to reproduce this issue on debian stretch, but it worked just fine. I 
> suspect your distro is just too old for 2.3. Can you see if 2.2.36 works 
> better?


Its not older than stretch.  It is based on opensuse -- how could it
behvave so differently with regard to auth

where did yours put the auth directory and the auth file?


-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com
DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002

http://www.nylxs.com - Leadership Development in Free Software
http://www.brooklyn-living.com

Being so tracked is for FARM ANIMALS and extermination camps,
but incompatible with living as a free human being. -RI Safir 2013


Re: source code doesn't compile

2022-01-11 Thread Ruben Safir
On 1/12/22 00:26, Aki Tuomi wrote:
> What ./configure line did you use? Also, which os/distro is this?

I just used ./configure

I thought of using a prefix to root, but changed my mind and decided to
just let it install into /usr/local/, especially since I had the systems
ancient dovecott still up and running.

This is an old RPM based distro on an appliance.

-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com
DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002

http://www.nylxs.com - Leadership Development in Free Software
http://www.brooklyn-living.com

Being so tracked is for FARM ANIMALS and extermination camps,
but incompatible with living as a free human being. -RI Safir 2013


Re: source code doesn't compile

2022-01-11 Thread Ruben Safir
On Tue, Jan 11, 2022 at 10:56:25PM -0500, dove...@ptld.com wrote:
> > I am running an older version of dovecott and would really like to
> > upgrade it and there is no package for this linux version 
> 
> 
> Not sure what OS you are using, but in case you didn't know, dovecot 
> maintains their own repos for popular OS's allowing you to use your package 
> manager to install the newest version.
> 
>https://repo.dovecot.org/

I needed to compile it.  It should compile, FWIW.
Thank you for checking in with that (expected but not useful) answer.  
As for the next follow up, "why do I insist on compiling it, you must be
ignorant..."  the answer is because I have to compile it because I have to 
and why is not important for this conversation.  If you feel discussing why the 
source 
doesn't compile is a waste of your time, I understand, but that is the
problem I am facing and the problem I am hoping to fix.  It doesn't compile 
from github or
from the tar ball.  In the case of the tarball, it steps on itself
trying to create a directory where a file was just created under 'auth'

So there seems to be an error in the makefile resulting from autoconf.

This is the autogen.sh response
./autogen.sh 
--2022-01-12 00:10:41--  https://www.dovecot.org/tmp/wiki2-export.tar.gz
Resolving www.dovecot.org (www.dovecot.org)... 94.237.12.234,
2a04:3545:1000:720:acc1:5bff:fe5e:4e9
Connecting to www.dovecot.org (www.dovecot.org)|94.237.12.234|:443...
connected.
OpenSSL: error:1409442E:SSL routines:SSL3_READ_BYTES:tlsv1 alert
protocol version
Unable to establish SSL connection.
tar (child): wiki2-export.tar.gz: Cannot open: No such file or directory
tar (child): Error is not recoverable: exiting now
tar: Child returned status 2
tar: Error is not recoverable: exiting now
Failed to uncompress wiki docs



I would think it is in the interest of the project that the source code
should compile.  Otherwise new hackers who might want to contribute,
amoung other things, won't be able to get off of ground 0 with the code
base.

Reuvain

-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com 

DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002
http://www.nylxs.com - Leadership Development in Free Software
http://www2.mrbrklyn.com/resources - Unpublished Archive 
http://www.coinhangout.com - coins!
http://www.brooklyn-living.com 

Being so tracked is for FARM ANIMALS and extermination camps, 
but incompatible with living as a free human being. -RI Safir 2013



source code doesn't compile

2022-01-11 Thread Ruben Safir
I downloaded the dovecot source and it doesn't compile.  The install
script fails in auth because it makes a file and then tries to make a
directory over it

make[2]: Entering directory '/home/ruben/src/dovecot-2.3.17.1/src/auth'
make[3]: Entering directory
'/home/ruben/src/dovecot-2.3.17.1/src/auth'
  /usr/bin/mkdir -p '/usr/local/lib/dovecot'
   /bin/sh ../../libtool   --mode=install /usr/bin/install -c
auth checkpassword-reply '/usr/local/lib/dovecot'
 libtool: warning: 'libstats_auth.la' has not been installed
in '/usr/local/lib/dovecot/old-stats'
 libtool: install: /usr/bin/install -c .libs/auth
/usr/local/lib/dovecot/auth
 libtool: install: /usr/bin/install -c
.libs/checkpassword-reply /usr/local/lib/dovecot/checkpassword-reply
  /usr/bin/mkdir -p '/usr/local/lib/dovecot/auth'

I am running an older version of dovecott and would really like to
upgrade it and there is no package for this linux version 


-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com 

DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002
http://www.nylxs.com - Leadership Development in Free Software
http://www2.mrbrklyn.com/resources - Unpublished Archive 
http://www.coinhangout.com - coins!
http://www.brooklyn-living.com 

Being so tracked is for FARM ANIMALS and extermination camps, 
but incompatible with living as a free human being. -RI Safir 2013



Re: system wakeup caused by write operations to /var/lib/dovecot/instances

2019-02-07 Thread Ruben Safir via dovecot
On Thu, Feb 07, 2019 at 05:10:04PM +0100, Tijl via dovecot wrote:
> Hi Timo, 
> 
> Thank you very much for replying with an instant solution!
> 
> Suggestion for future release: a setting in the configuration to
> enable/disable the automatic instance_update_now action and/or set the
> timeout by the user.
> 
> In the meanwhile I can use the recompiled version with this code change.
> Problem solved for me. 
> 
> Regards,
> Tijl 
> 
> Timo Sirainen schreef op 2019-02-07 15:59:
> 
> > On 2 Feb 2019, at 6.44, Tijl  wrote:
> > 
> >> How can dovecot be run without writing to /var/lib/dovecot/instances 
> >> everyday? Is there a configuration setting for this?

Postfix can do this without that added infrastructure.


> > 
> > You'd need to patch src/master/main.c instance_update_now() to remove: 
> > 
> > to_instance = timeout_add((3600 * 12 + i_rand_limit(60 * 30)) * 1000, 
> > instance_update_now, list); 
> > 
> > I'm not quite sure why I wrote such code to update it continuously.

-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com 

DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002
http://www.nylxs.com - Leadership Development in Free Software
http://www2.mrbrklyn.com/resources - Unpublished Archive 
http://www.coinhangout.com - coins!
http://www.brooklyn-living.com 

Being so tracked is for FARM ANIMALS and extermination camps, 
but incompatible with living as a free human being. -RI Safir 2013



Re: gcc -> clang

2019-01-03 Thread Ruben Safir
On 1/3/19 4:50 AM, Rupert Gallagher via dovecot wrote:
> Please, use clang instead of gcc. Code quality can only profit from it. I 
> just compiled 2.3.4 and compiler stderr is full of interesting problems.
> 


oh please


Re: Mailing list address harvested for spamming

2018-12-01 Thread Ruben Safir
On 12/1/18 10:13 PM, Ruben Safir wrote:
> Email should be intitive
intuitive

-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com
DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002

http://www.nylxs.com - Leadership Development in Free Software
http://www.brooklyn-living.com

Being so tracked is for FARM ANIMALS and and extermination camps,
but incompatible with living as a free human being. -RI Safir 2013


Re: Mailing list address harvested for spamming

2018-12-01 Thread Ruben Safir
On Sun, Dec 02, 2018 at 03:58:53AM +0100, Bernd Petrovitsch wrote:
> On 02/12/2018 03:05, Michael A. Peters wrote:
> [...]
> > But - I would wager that over 95% of the time when someone hits the
> > reply button on a list post, their intent is to reply to the list.
> 
> Even if it's 99%: What is the lesser risk if someone get's it wrong?
> 
> Apart from the situation that people send mails over the mailing list
> with "for X.Y." in the subject and no one knows how private that should
> be. Obviously, it's absolutely not private because it goes to - at least
> - all folks on the mailing list.
> 
> > If netiquette is why that sometimes fails, then netiquette does not
> > match common usage and is the problem.
> The netiquette is more than just a piece of "documentation of most of
> the people think how it should work".
> 
> Please bring serious an factual problems with the netiquette as such and
> not just "with some MUA it's not possible" (because it's possible with
> really *every* MUA - with some it's just a little more work than with
> others) or "most people ignore it because ...
> 
> > I would wager that most people are clueless to how mail headers work,
> > not should most people need to.
> 
> ... they are clueless".
> 
> In consequence, the clueless people should define how things should work?
> 
> Well, there are better solutions than that IMHO.
> 
> It's quite the opposite: People should have a *basic* knowledge of the
> tools they use - for email e.g. the To:-header has no technical meaning.
> 
> Let's hope that people who do not know how to use a tool - e.g. like a
> hammer - doesn't use that tool in the first place 
> 
> MfG,
>   Bernd


that is pretty unrealistic and I don't agree with it anyway.

Email should be intitive

> -- 
> Bernd Petrovitsch  Email : be...@petrovitsch.priv.at
>  LUGA : http://www.luga.at

-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com 

DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002
http://www.nylxs.com - Leadership Development in Free Software
http://www2.mrbrklyn.com/resources - Unpublished Archive 
http://www.coinhangout.com - coins!
http://www.brooklyn-living.com 

Being so tracked is for FARM ANIMALS and and extermination camps, 
but incompatible with living as a free human being. -RI Safir 2013



Re: Best way of merging mbox files

2018-11-29 Thread Ruben Safir



aside from cat?

On Thu, Nov 29, 2018 at 03:07:58PM -0800, Joseph Tam wrote:
> On Thu, 29 Nov 2018, Marc Roos wrote:
> 
> >When concatenating mbox files like described here
> >https://xaizek.github.io/2013-03-30/merge-mbox-mailboxes/. You will end
> >up with an 'unsorted' mbox file. Is this going to be a problem
> >esspecially when they are large >2GB's and new emails will be written to
> >it?
> 
> I don't think it will be a problem, but you might have to remove
> some headers (like the UUID header?).  However, I think dovecot
> ought to be able to cope with it anyways and regenerate the indices.
> 
> >The email client nicely sorts the message from folder A "foldera 5 last"
> >as last, but of course the mbox is not like this.
> >Is there a better solution for merging files?
> 
> As noted, the time order gets scrambled -- using your mail reader to
> get it back in time order requires sorting, an intensive operation.
> 
> It just so happen I've done this recently with a (GNU) awk script that
> merges multiple mailboxes into one mailbox, preserving time order.
> It assumes that each message starst with a From envelopes header with
> sorted timestamps e.g.
> 
>   From mic...@disney.com  Thu Nov 25 18:45:37 2018
>   From mic...@disney.com  Thu Nov 25 18:45:37 2018 -0400
> 
> Your're welcome to use it.  There's probably a more elegant way with
> doveadm/dsync.  Using a mail reader to sort the merged mailbox, then
> drag/drop/copy everything into a final mailbox could also work.
> 
> Joseph Tam 
> 
> #!/bin/sh
> #
> # Merge multiple mbox's into one assuming that each message
> # starts with /^From .* {year}$/ and they are sorted by time.
> #
> # -- Joseph Tam 
> #
> 
> [ x"$*" = x ] && {
>   echo "Usage:  $0 mbox-file ..."
>   exit 1
> }
> 
> gawk -v boxes="$*"function Tstamp(header) {
>   # Format:   Jan 22 21:00:48 2018 -0700
>   #   12345678901234567890123456
>   l = length(header)
>   spec = (substr(header,l-4,1)=="-")? substr(header,l-25,20) : 
> substr(header,l-19,20)
>   spec = substr(spec,17,4) " " ym[substr(spec,1,3)] 
> substr(spec,4,3) \
>" " substr(spec,8,2) " " substr(spec,11,2) " " 
> substr(spec,14,2)
>   return int(mktime(spec))
> 
>   }
> 
>   function DumpMessage(i) {
>   if (header[i]!="") {
>   printf("%s\n",header[i])
>   }
>   while ((getline x 0) {
>   if (x~/^From .*[0-9][0-9][0-9][0-9]$/) {
>   stamp[i] = Tstamp(x)
>   header[i] = x
>   printf("%s => [%d] %d\n",header[i],i,stamp[i]) 
> >"/dev/stderr"
>   return
>   }
>   print x
>   }
> 
>   printf("EOF[%d]\n",i) >"/dev/stderr"
>   stamp[i] = 2147483647
>   header[i] = ""
>   }
> 
>   BEGIN {
> ym["Jan"] = "01"; ym["Feb"] = "02"; ym["Mar"] = "03"; 
> ym["Apr"] = "04"
> ym["May"] = "05"; ym["Jun"] = "06"; ym["Jul"] = "07"; 
> ym["Aug"] = "08"
> ym["Sep"] = "09"; ym["Oct"] = "10"; ym["Nov"] = "11"; 
> ym["Dec"] = "12"
> 
>   n = split(boxes,mbox," ")
> 
>   # Read first header line from all boxes
>   for (i=1; i<=n; i++) {
>DumpMessage(i)
>   }
> 
>   # Loop until all maiboxes read
>   while (1) {
>   t = 2147483646
> 
>   # Find next message
>   for (i=1; i<=n; i++) {
>   if (stamp[i]<=t) {t=stamp[i]; j=i;}
>   }
> 
>   # If no more message, quit
>   if (t==2147483646) exit
> 
>   # Dump next message from mbox[j]
>   DumpMessage(j)
>   }
>   }'

-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com 

DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002
http://www.nylxs.com - Leadership Development in Free Software
http://www2.mrbrklyn.com/resources - Unpublished Archive 
http://www.coinhangout.com - coins!
http://www.brooklyn-living.com 

Being so tracked is for FARM ANIMALS and and extermination camps, 
but incompatible with living as a free human being. -RI Safir 2013



Re: Best way to move mail from one server to another

2018-09-04 Thread Ruben Safir
On 9/4/18 12:27 PM, Sami Ketola wrote:
> 
> 
>> On 4 Sep 2018, at 18.38, Robert Schetterer  wrote:
>>
>> Sorry i migrated terrabytes of mail with imapsync and never had a
>> problem, it works as designed, also with maildir rsync did a good job,
>> what never worked as it should was dsync ,cause of bugs ,that may
>> changed now
>>
> 
> I would like to very much hear about the problems you had with dsync as we 
> have successfully migrated tens of petabytes of mails with it successfully 
> while preserving the UID numbers.
> Imapsync would have been totally out of question as it is absolutely crucial 
> in those migrations to keep the UID -> MAIL pairs matching legacy server. And 
> usually also POP3 UIDLs. If not keeping the data the servers would have 
> literally melted under load when switching over then of thousands of users 
> forcing them to redownload headers of even mail bodies for millions of mails.
> 
> Sami
> 
> 


why does not rsync work?

Ruben

-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com
DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002

http://www.nylxs.com - Leadership Development in Free Software
http://www.brooklyn-living.com

Being so tracked is for FARM ANIMALS and and extermination camps,
but incompatible with living as a free human being. -RI Safir 2013


Re: hosting emails at home

2017-12-11 Thread Ruben Safir
what I said, not what you said...


On Mon, Dec 11, 2017 at 10:41:44AM -0800, Kenneth Porter wrote:
> --On Monday, December 11, 2017 1:07 PM -0500 Ruben Safir
>  wrote:
> 
> >thatis not secure and you might as well use gmail
> >
> >It is not so hard to just get a static IP and put a mail server up.
> 
> Why do you think this isn't secure?
> 
> Gmail wouldn't let me run my own spam and AV solution. My external
> server gives me full control, with sendmail, MIMEDefang,
> SpamAssassin, ClamAV, dovecot, and procmail. I could, in principle,
> keep a remote copy of all my mail there and dsync it to my home
> server. I'm using fetchmail (with SSL option) only because I didn't
> understand dsync when I set it up.
> 
> I'm still a bit unclear on how dsync decides which users to sync.
> All my users are real system users, not virtual users. I'd like to
> retire my 3 older accounts on my home system to never receive email
> again, only provide it for archival reading, and direct all my mail
> to new accounts that could be dsync'd to the leased external server.
> So I'd want to limit dsync to only sync the new accounts. Which
> might even be virtual.

-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com 

DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002
http://www.nylxs.com - Leadership Development in Free Software
http://www2.mrbrklyn.com/resources - Unpublished Archive 
http://www.coinhangout.com - coins!
http://www.brooklyn-living.com 

Being so tracked is for FARM ANIMALS and and extermination camps, 
but incompatible with living as a free human being. -RI Safir 2013



Re: hosting emails at home

2017-12-11 Thread Ruben Safir
thatis not secure and you might as well use gmail

It is not so hard to just get a static IP and put a mail server up.

fit/pc has perfect boxes for this, run on about 15w/h power

On Sun, Dec 10, 2017 at 02:42:36PM -0800, Kenneth Porter wrote:
> On 12/10/2017 12:39 PM, Stephan H wrote:
> >I have dovecot postfix setup on my home server as well.  I use a virtual
> >server in the cloud as my mx record and mail relay and have my home record
> >on dynamic dns.  It's really effective.
> 
> My MX points at a leased virtual server and my home server uses
> fetchmail to pull the mail into local mailboxes. I suppose dsync
> might be used instead of fetchmail.

-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com 

DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002
http://www.nylxs.com - Leadership Development in Free Software
http://www2.mrbrklyn.com/resources - Unpublished Archive 
http://www.coinhangout.com - coins!
http://www.brooklyn-living.com 

Being so tracked is for FARM ANIMALS and and extermination camps, 
but incompatible with living as a free human being. -RI Safir 2013



Re: Newbie question...

2017-10-15 Thread Ruben Safir
On 10/16/2017 12:32 AM, SH Development wrote:
> I DID offer my help privately. 

that is pretty much worthless as it creates no record to benefit others
in the future.  Bad form and it is inappropriate list behavior.


Re: EOF from net_disconnect(fd)

2017-09-07 Thread Ruben Safir
On 09/08/2017 02:29 AM, Steffan Cline wrote:
> I’m working on an OS project from github. There are two parts:
> 
> Dovecot plugin - https://github.com/st3fan/dovecot-xaps-plugin
> 
> Daemon written in Go - https://github.com/st3fan/dovecot-xaps-daemon
>

what does this have to do with dovecot?

> 


-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com

DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002
http://www.nylxs.com - Leadership Development in Free Software
http://www2.mrbrklyn.com/resources - Unpublished Archive
http://www.coinhangout.com - coins!
http://www.brooklyn-living.com

Being so tracked is for FARM ANIMALS and and extermination camps,
but incompatible with living as a free human being. -RI Safir 2013


Re: password reset

2017-09-07 Thread Ruben Safir
On 09/07/2017 05:52 PM, @lbutlr wrote:
> On Sep 7, 2017, at 2:33 PM, Ruben Safir  wrote:
>> On 09/07/2017 02:24 PM, @lbutlr wrote:
>>> sudo passed 
>>
>> su -
>> password username
> 
> No difference.
> 
> No difference when logging in to the console as root.
> 
> 


not possible as it is described.  Reinstall the box from scratch


-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com

DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002
http://www.nylxs.com - Leadership Development in Free Software
http://www2.mrbrklyn.com/resources - Unpublished Archive
http://www.coinhangout.com - coins!
http://www.brooklyn-living.com

Being so tracked is for FARM ANIMALS and and extermination camps,
but incompatible with living as a free human being. -RI Safir 2013


Re: password reset

2017-09-07 Thread Ruben Safir
On 09/07/2017 02:24 PM, @lbutlr wrote:
> sudo passed 

su -
password username


-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com

DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002
http://www.nylxs.com - Leadership Development in Free Software
http://www2.mrbrklyn.com/resources - Unpublished Archive
http://www.coinhangout.com - coins!
http://www.brooklyn-living.com

Being so tracked is for FARM ANIMALS and and extermination camps,
but incompatible with living as a free human being. -RI Safir 2013


Re: is a self signed certificate always invalid the first time

2017-08-19 Thread Ruben Safir
On 08/19/2017 09:39 PM, KT Walrus wrote:
> I use DNS verification for LE certs.


what is that?


-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com

DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002
http://www.nylxs.com - Leadership Development in Free Software
http://www2.mrbrklyn.com/resources - Unpublished Archive
http://www.coinhangout.com - coins!
http://www.brooklyn-living.com

Being so tracked is for FARM ANIMALS and and extermination camps,
but incompatible with living as a free human being. -RI Safir 2013


Re: is a self signed certificate always invalid the first time?

2017-08-11 Thread Ruben Safir
On 08/10/2017 04:41 PM, Frank-Ulrich Sommer wrote:
> add security exceptions this rings all alarm bells. 

no, but software vendors will have you believe that.  Sorry, I don't
leave my house keys with strangers


-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com

DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002
http://www.nylxs.com - Leadership Development in Free Software
http://www2.mrbrklyn.com/resources - Unpublished Archive
http://www.coinhangout.com - coins!
http://www.brooklyn-living.com

Being so tracked is for FARM ANIMALS and and extermination camps,
but incompatible with living as a free human being. -RI Safir 2013


Re: is a self signed certificate always invalid the first time?

2017-08-11 Thread Ruben Safir
On 08/10/2017 04:41 PM, Frank-Ulrich Sommer wrote:
> I can't see any security advantages of a self signed cert. I

then you fail to understand the history, like when Microsoft's certs
were undermined because the third party authentication agency gave the
keys to 2 guys that knocked on the door and asked for them...



-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com

DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002
http://www.nylxs.com - Leadership Development in Free Software
http://www2.mrbrklyn.com/resources - Unpublished Archive
http://www.coinhangout.com - coins!
http://www.brooklyn-living.com

Being so tracked is for FARM ANIMALS and and extermination camps,
but incompatible with living as a free human being. -RI Safir 2013


Re: dovecot auth errors for a new user

2017-07-30 Thread Ruben Safir
On Sun, Jul 30, 2017 at 10:04:38PM +0200, Alexander Dalloz wrote:
> Am 30.07.2017 um 21:49 schrieb Ruben Safir:
> >2017-07-30T15:47:23.113000-04:00 www dovecot: pop3(facebook): Error:
> >user facebook: Initialization failed: Namespace '': Mail storage
> >autodetection failed with home=/home/facebook
> >2017-07-30T15:47:23.116805-04:00 www dovecot: pop3(facebook): Error:
> >Invalid user settings. Refer to server log for more information.
> 
> Define mail_location; see https://wiki.dovecot.org/MailLocation
> 
> > # OS: Linux 3.16.7-53-pae i686 openSUSE 13.2 (i586)
> 
> And do you think it is clever to run on an EOLed distribution release?
> 
> Alexander



got it, thanks

-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com 

DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002
http://www.nylxs.com - Leadership Development in Free Software
http://www2.mrbrklyn.com/resources - Unpublished Archive 
http://www.coinhangout.com - coins!
http://www.brooklyn-living.com 

Being so tracked is for FARM ANIMALS and and extermination camps, 
but incompatible with living as a free human being. -RI Safir 2013


Re: dovecot auth errors for a new user

2017-07-30 Thread Ruben Safir
On Sun, Jul 30, 2017 at 10:04:38PM +0200, Alexander Dalloz wrote:
> Am 30.07.2017 um 21:49 schrieb Ruben Safir:
> >2017-07-30T15:47:23.113000-04:00 www dovecot: pop3(facebook): Error:
> >user facebook: Initialization failed: Namespace '': Mail storage
> >autodetection failed with home=/home/facebook
> >2017-07-30T15:47:23.116805-04:00 www dovecot: pop3(facebook): Error:
> >Invalid user settings. Refer to server log for more information.
> 
> Define mail_location; see https://wiki.dovecot.org/MailLocation
> 
> > # OS: Linux 3.16.7-53-pae i686 openSUSE 13.2 (i586)
> 
> And do you think it is clever to run on an EOLed distribution release?

the mail sits in /var/spool/mail/user



> 
> Alexander

-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com 

DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002
http://www.nylxs.com - Leadership Development in Free Software
http://www2.mrbrklyn.com/resources - Unpublished Archive 
http://www.coinhangout.com - coins!
http://www.brooklyn-living.com 

Being so tracked is for FARM ANIMALS and and extermination camps, 
but incompatible with living as a free human being. -RI Safir 2013


Re: dovecot auth errors for a new user

2017-07-30 Thread Ruben Safir
2017-07-30T15:47:23.113000-04:00 www dovecot: pop3(facebook): Error:
user facebook: Initialization failed: Namespace '': Mail storage
autodetection failed with home=/home/facebook
2017-07-30T15:47:23.116805-04:00 www dovecot: pop3(facebook): Error:
Invalid user settings. Refer to server log for more information.


On 07/30/2017 03:42 PM, Ruben Safir wrote:
> I've been running dovecott without trouble for quite a why and now when
> I added a new user, it is not accepting the user and I can not track the
> problem.  It says find more information in the server log, but it is not
> in /var/log/messages or /var/log/mail.err and nothing with lsof
> dovecot|grep log show anything to tail
> 
> www:~ # dovecot -n
> # 2.2.13: /etc/dovecot/dovecot.conf
> # OS: Linux 3.16.7-53-pae i686 openSUSE 13.2 (i586)
> base_dir = /var/run/dovecot/
> managesieve_notify_capability = mailto
> managesieve_sieve_capability = fileinto reject envelope
> encoded-character vacation subaddress comparator-i;ascii-numeric
> relational regex imap4flags copy include variables body enotify
> environment mailbox date ihave
> namespace inbox {
>   inbox = yes
>   location =
>   mailbox Drafts {
> special_use = \Drafts
>   }
>   mailbox Junk {
> special_use = \Junk
>   }
>   mailbox Sent {
> special_use = \Sent
>   }
>   mailbox "Sent Messages" {
> special_use = \Sent
>   }
>   mailbox Trash {
> special_use = \Trash
>   }
>   prefix =
> }
> passdb {
>   driver = pam
> }
> plugin {
>   sieve = ~/.dovecot.sieve
>   sieve_dir = ~/sieve
> }
> protocols = pop3
> ssl_cert =  ssl_key =  userdb {
>   driver = passwd
> }
> 
> 
> www:/etc/dovecot # dovecot --version
> 2.2.13
> 
> 
> Sending of password for user facebook did not succeed. Mail server
> mrbrklyn.com responded: Internal error occurred. Refer to server log for
> more information.
> 
> 2017-07-30T15:41:58.803006-04:00 www dovecot: pop3-login: Login:
> user=, method=PLAIN, rip=10.0.0.62, lip=96.57.23.82,
> mpid=25269, TLS, session=
> 2017-07-30T15:41:58.812827-04:00 www dovecot: pop3(facebook): Error:
> user facebook: Initialization failed: Namespace '': Mail storage
> autodetection failed with home=/home/facebook
> 2017-07-30T15:41:58.816903-04:00 www dovecot: pop3(facebook): Error:
> Invalid user settings. Refer to server log for more information.
> 


-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com

DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002
http://www.nylxs.com - Leadership Development in Free Software
http://www2.mrbrklyn.com/resources - Unpublished Archive
http://www.coinhangout.com - coins!
http://www.brooklyn-living.com

Being so tracked is for FARM ANIMALS and and extermination camps,
but incompatible with living as a free human being. -RI Safir 2013


dovecot auth errors for a new user

2017-07-30 Thread Ruben Safir
I've been running dovecott without trouble for quite a why and now when
I added a new user, it is not accepting the user and I can not track the
problem.  It says find more information in the server log, but it is not
in /var/log/messages or /var/log/mail.err and nothing with lsof
dovecot|grep log show anything to tail

www:~ # dovecot -n
# 2.2.13: /etc/dovecot/dovecot.conf
# OS: Linux 3.16.7-53-pae i686 openSUSE 13.2 (i586)
base_dir = /var/run/dovecot/
managesieve_notify_capability = mailto
managesieve_sieve_capability = fileinto reject envelope
encoded-character vacation subaddress comparator-i;ascii-numeric
relational regex imap4flags copy include variables body enotify
environment mailbox date ihave
namespace inbox {
  inbox = yes
  location =
  mailbox Drafts {
special_use = \Drafts
  }
  mailbox Junk {
special_use = \Junk
  }
  mailbox Sent {
special_use = \Sent
  }
  mailbox "Sent Messages" {
special_use = \Sent
  }
  mailbox Trash {
special_use = \Trash
  }
  prefix =
}
passdb {
  driver = pam
}
plugin {
  sieve = ~/.dovecot.sieve
  sieve_dir = ~/sieve
}
protocols = pop3
ssl_cert = , method=PLAIN, rip=10.0.0.62, lip=96.57.23.82,
mpid=25269, TLS, session=
2017-07-30T15:41:58.812827-04:00 www dovecot: pop3(facebook): Error:
user facebook: Initialization failed: Namespace '': Mail storage
autodetection failed with home=/home/facebook
2017-07-30T15:41:58.816903-04:00 www dovecot: pop3(facebook): Error:
Invalid user settings. Refer to server log for more information.

-- 
So many immigrant groups have swept through our town
that Brooklyn, like Atlantis, reaches mythological
proportions in the mind of the world - RI Safir 1998
http://www.mrbrklyn.com

DRM is THEFT - We are the STAKEHOLDERS - RI Safir 2002
http://www.nylxs.com - Leadership Development in Free Software
http://www2.mrbrklyn.com/resources - Unpublished Archive
http://www.coinhangout.com - coins!
http://www.brooklyn-living.com

Being so tracked is for FARM ANIMALS and and extermination camps,
but incompatible with living as a free human being. -RI Safir 2013