Host masquerading

2001-02-27 Thread Massimo Quintini

My QMAIL host is "hostname.te.astro.it"

The recipient of msg send by [EMAIL PROTECTED] MUST SEE the
msg send by [EMAIL PROTECTED] (without "hostname").

I have filled /control/defaulthost with "te.astro.it" but don't
works

Thanks

==
= Massimo Quintini   =
= Osservatorio Astronomico Collurania Teramo (O.A.C.T.)  =
= Via Mentore Maggini s.n.c. =
= 64100 - TERAMO - (Italy)   =
= Telefono: 39-0861.210490   =
= Fax: 39-0861.210492=
= http://www.te.astro.it =
==





Re: Question: How allowing only certain senders to send mail to

2001-02-27 Thread Frank Tegtmeyer

> on my last posting, nobody has a answer for me.

I told you an applicable and working solution. Don't say that you got no 
answer from this list. Maybe nobody will have the wish to help you in the 
future then.

Frank



Relay test

2001-02-27 Thread Paco Martinez



Hi all 
 
I have put Qmail in my PC and I'd like to know how 
to avoid my PC from spammers.
 
Imagine that IP address is 192.168.1.1
 
I have checked PC using URL: http://www.abuse.net/cgi-bin/relaytest?ADDR=192.168.1.1&ALIAS=YES
 
and I have obtained this message:
 
Relay test 8>>> RSET<<< 
250 flushed>>> MAIL 
FROM:<<< 250 ok>>> RCPT 
TO:<"[EMAIL PROTECTED]"><<< 553 sorry, that domain isn't in 
my list of allowed rcpthosts (#5.7.1)
 
Relay test 9>>> RSET<<< 
250 flushed>>> MAIL 
FROM:<<< 250 ok>>> RCPT 
TO:<"relaytest%abuse.net"><<< 250 ok
 

Relay test resultHmmn, at first glance, host appeared to accept a 
message for relay. 
THIS MAY OR MAY NOT MEAN THAT IT'S AN OPEN RELAY.
 
As you see "Test 9" shows that my PC has a security hole 

How can I avoid PC from that unsecurity case 
???
 
Thank you very much !!!


Undeliverable error

2001-02-27 Thread Ami Shamril


Hi all,
Certain of my users sometime got this error message while trying to send
email to remote site. My server is RH6.2 & qmail 1.03.
My users use Microsoft Outlook.
Please advise.
TQ in advance.

-Original Message-
From:   System Administrator
Sent:   Tuesday, February 27, 2001 5:34 PM
To: 'Username'
Subject:Undeliverable: Test

Your message did not reach some or all of the intended recipients.

  Subject:  Test
  Sent: 2/27/01 5:34 PM

The following recipient(s) could not be reached:

  'Username' on 2/27/01 5:34 PM
No transport provider was available for delivery to this
recipient.






Re: Relay test

2001-02-27 Thread Harald Hanche-Olsen

+ "Paco Martinez" <[EMAIL PROTECTED]>:

| Relay test 9
| >>> RSET
| <<< 250 flushed
| >>> MAIL FROM:
| <<< 250 ok
| >>> RCPT TO:<"relaytest%abuse.net">
| <<< 250 ok
| 
| Relay test result
| Hmmn, at first glance, host appeared to accept a message for relay. 
| THIS MAY OR MAY NOT MEAN THAT IT'S AN OPEN RELAY.

It does not.  That address has only a local part, and will be treated
as local on your machine.  Unless you have enabled percenthack, or
have set envnoathost to a remote domain, the message will not be
relayed (check the qmail-send man page).  Most likely it will bounce
instead.

- Harald



AUTORESPONDER PROBLEM

2001-02-27 Thread qmailu



Hi,
 
I receive a bounce back msg if I have set 
autoresponder for any  user. The msg says

This message is looping: it already has my Delivered-To line.
I also receive the set autoresponder msg alongwith 
the bounce msg.How do I stop this bounce back msg from coming ?
I use autorespond-1.0.0
Raghu


qmail Digest 27 Feb 2001 11:00:01 -0000 Issue 1288

2001-02-27 Thread qmail-digest-help


qmail Digest 27 Feb 2001 11:00:01 - Issue 1288

Topics (messages 57934 through 57976):

Re: WU-IMAPD + QMAIL + SSL
57934 by: Mark Lane

debugging qmail...
57935 by: Daniellek
57937 by: Alex Pennace

tarpit+relaymailfrom.patch
57936 by: fred
57940 by: Pawel Garbowski

Re: Sending mail to local users
57938 by: japc.sl.pt

qmail-qfilter question
57939 by: Andy Meuse

RPM problem w/ Linux 7
57941 by: Bill Arends

Re: CNAME problem with qmail and djbdns
57942 by: Marcus Korte

OT help
57943 by: Virginia Chism

Re: Cannot receive mail from some sites
57944 by: Saso Dundev

amavis or qmail-scanner ?
57945 by: Jérémy Cluzel

Re: warning: trouble opening remote/4/r
57946 by: Alex Pennace

Re: Return address for autoresponder
57947 by: Karl Vogel
57948 by: Mikko Hänninen
57952 by: James R Grinter

qmail+system accounts+virt. dom. POPs
57949 by: Ben Schumacher

What does this mean.
57950 by: denis
57953 by: Peter van Dijk
57955 by: Keary Suska

Can Qmail send out 2 million mails in 12 hour window?
57951 by: Brandon Yu
57954 by: Peter van Dijk
57956 by: Sean Reifschneider

checkpassword (pop3d) problem
57957 by: Abu Arqam
57959 by: Charles Cazabon

relay-ctrl and qmail
57958 by: Bill Isaacs
57960 by: Charles Cazabon

Time::HiRes for Qmail-Scanner on RH7 ?
57961 by: dennis

mailserver buffering
57962 by: Chrisanthy Carlane
57967 by: Andy Bradford
57969 by: Andy Bradford

Starting qmail-scanner and "Life with qmail"
57963 by: dennis
57964 by: Brett Randall

unsubcribe
57965 by: Rajesh Arora
57966 by: Rajesh Arora

fastforward
57968 by: Chrisanthy Carlane

Host masquerading
57970 by: Massimo Quintini

Re: Question: How allowing only certain senders to send mail to
57971 by: Frank Tegtmeyer

Relay test
57972 by: Paco Martinez
57974 by: Michael Fleming
57975 by: Harald Hanche-Olsen

Undeliverable error
57973 by: Ami Shamril

AUTORESPONDER PROBLEM
57976 by: qmailu

Administrivia:

To unsubscribe from the digest, e-mail:
[EMAIL PROTECTED]

To subscribe to the digest, e-mail:
[EMAIL PROTECTED]

To bug my human owner, e-mail:
[EMAIL PROTECTED]

To post to the list, e-mail:
[EMAIL PROTECTED]


--



It is included in mua's like netscape communicator, outlook and outlook
express

- Original Message -
From: "Massimo Quintini" <[EMAIL PROTECTED]>
To: "Mark Lane" <[EMAIL PROTECTED]>
Cc: <[EMAIL PROTECTED]>
Sent: Monday, February 26, 2001 1:02 AM
Subject: WU-IMAPD + QMAIL + SSL


> I have an IMAPD Server (WU-IMAPD) on QMAIL.
>
> I must establish a secure (with SSL) connection between MUAs (Netscape
> Messenger) and QMAIL via IMAP protocol
>
> I must install SSL code server-side
>
> The very important question for me is: is SSL code included in netscape
> messenger ?? or I must install SSL code client-side
>
> thanks.
> ==
> = Massimo Quintini   =
> = Osservatorio Astronomico Collurania Teramo (O.A.C.T.)  =
> = Via Mentore Maggini s.n.c. =
> = 64100 - TERAMO - (Italy)   =
> = Telefono: 39-0861.210490   =
> = Fax: 39-0861.210492=
> = http://www.te.astro.it =
> ==
>
>
>





I'm writing a patch for qmail, and have some problems...

I've tried to do some debugging (using gdb), but though i compile with "-g"
flag (set in conf-cc and conf-ld) gdb still says:

(gdb) file qmail-remote
Reading symbols from qmail-remote...(no debugging symbols found)...done.

Do you know why is that happening to me? ;)
Any hints?

PS. Small test program which i wrote (few lines) compiles with debugging and
gdb works on him...

-- 
Daniel Fenert--==> [EMAIL PROTECTED] <==--
-P o w e r e d--b y--S l a c k w a r e-===-ICQ #37739641-
"Caution: Cape does not enable user to fly."
  (Batman Costume warning label)
==- http://daniellek.linux.krakow.pl/ -==< +48604628083 >




On Mon, Feb 26, 2001 at 01:13:34PM +0100, Daniellek wrote:
> I'm writing a patch for qmail, and have some problems...
> 
> I've tried to do some debugging (using gdb), but though i compile with "-g"
> flag (set in conf-cc and conf-ld) gdb still says:
> 
> (gdb) file qmail-remote
> Reading symbols from qmail-remote...(no debugging symbols found)...done.
> 
> Do you know why is that happening to me? ;)

Take out -s in conf-ld




Hello I want to secure against spam my mail server. I found the 
"tarpit+relaym

Re: relay-ctrl and qmail

2001-02-27 Thread Erwin Hoffmann

Hi,

At 20:45 26.2.2001 -0600, Charles Cazabon wrote:
>Bill Isaacs <[EMAIL PROTECTED]> wrote:
>> After installing this package, I found that I could not login to check my 
>> email (ERR: authorization failed).  I had to uncomment the pop-3 and smtp 
>> lines in inetd.conf to be able to connect to the server at all (these had 
>> been commented out during by the installation routine).
>
>relay-ctrl relies on tcpserver.  You can't run it out of inetd.  Change your
>pop3 configuration to use tcpserver as documented.

relay-ctrl with tpcserver depends on (static) IP-Addresses.

>
>> I am trying to use this package so that I can relay from my home
workstation 
>> in California with a dynamic IP address.
>> 
>> Any advice?

1. Use SMTP-after-POP: Patches are available. 
But you have to employ tcpserver.
2. Alternatively, you can use my SPAMCONTROL patch. 
It gives you the ability to define arbitary E-Mail addresses which are
allowed to relay. Here you free to use INETD/XINETD/TCPSERVER (with Version
1.3.1).

greetings.
eh.
>
>Send your mail through your ISP's smarthost -- that's what they're for.
>relay-ctrl is not needed for most situations, and this appears to be one
>of them.
>
>Charles
>-- 
>---
>Charles Cazabon<[EMAIL PROTECTED]>
>GPL'ed software available at:  http://www.qcc.sk.ca/~charlesc/software/
>Any opinions expressed are just that -- my opinions.
>---
>
+---+
|  fffhh http://www.fehcom.deDr. Erwin Hoffmann |
| ff  hh|
| ffeee     ccc   ooomm mm  mm   Wiener Weg 8   |
| fff  ee ee  hh  hh   cc   oo   oo  mmm  mm  mm 50858 Koeln|
| ff  ee eee  hh  hh  cc   oo oo mm   mm  mm|
| ff  eee hh  hh   cc   oo   oo  mm   mm  mm Tel 0221 484 4923  |
| ff      hh  hhccc   ooomm   mm  mm Fax 0221 484 4924  |
+---+



unsubcribe

2001-02-27 Thread Schiffbauer, Anthony



 

  -Original Message-From: Rajesh Arora 
  [mailto:[EMAIL PROTECTED]]Sent: Tuesday, February 27, 2001 
  1:15 AMTo: [EMAIL PROTECTED]Subject: 
  unsubcribe
  
  unsubcribe


Re: relay-ctrl and qmail

2001-02-27 Thread Charles Cazabon

Erwin Hoffmann <[EMAIL PROTECTED]> wrote:
> At 20:45 26.2.2001 -0600, Charles Cazabon wrote:
> >Bill Isaacs <[EMAIL PROTECTED]> wrote:
> >> After installing this package, I found that I could not login to check my 
> >> email (ERR: authorization failed).  I had to uncomment the pop-3 and smtp 
> >> lines in inetd.conf to be able to connect to the server at all (these had 
> >> been commented out during by the installation routine).
> >
> >relay-ctrl relies on tcpserver.  You can't run it out of inetd.  Change your
> >pop3 configuration to use tcpserver as documented.
> 
> relay-ctrl with tpcserver depends on (static) IP-Addresses.

Pardon?  relay-ctrl is a package by Bruce Guenter, specifically designed to
allow selective relaying from clients with dynamically assigned IP addresses.
If it required static IP addresses, it would serve absolutely no purpose.
Perhaps you were thinking of IP-based selective relaying with tcpserver?

> 1. Use SMTP-after-POP: Patches are available. 

relay-ctrl provides SMTP-after-POP functionality, with no patches to qmail.
It's a technically superior solution.

Charles
-- 
---
Charles Cazabon<[EMAIL PROTECTED]>
GPL'ed software available at:  http://www.qcc.sk.ca/~charlesc/software/
Any opinions expressed are just that -- my opinions.
---



Re: Host masquerading

2001-02-27 Thread Charles Cazabon

Massimo Quintini <[EMAIL PROTECTED]> wrote:
> My QMAIL host is "hostname.te.astro.it"
> 
> The recipient of msg send by [EMAIL PROTECTED] MUST SEE the
> msg send by [EMAIL PROTECTED] (without "hostname").
> 
> I have filled /control/defaulthost with "te.astro.it" but don't
> works

The correct way to fix this is to have your clients submit their mail with
the correct sender address in the first place.  They should be able to set it
in their MUA very simply.

If you must work around this, look in Dan's FAQ for the fixme/fixup solution.
You can use this to arbitrarily rewrite headers in messages from those clients.

Charles
-- 
---
Charles Cazabon<[EMAIL PROTECTED]>
GPL'ed software available at:  http://www.qcc.sk.ca/~charlesc/software/
Any opinions expressed are just that -- my opinions.
---



Re: Undeliverable error

2001-02-27 Thread Charles Cazabon

Ami Shamril <[EMAIL PROTECTED]> wrote:
> 
> Certain of my users sometime got this error message while trying to send
> email to remote site. My server is RH6.2 & qmail 1.03.
> My users use Microsoft Outlook.
[...]
>   'Username' on 2/27/01 5:34 PM
>No transport provider was available for delivery to this recipient.

Duplicate the problem with a client other than Outlook -- one that actually
provides a meaningful error message.  If necessary, duplicate it by connecting
to port 25 on your server with telnet.

Then, between the error message you receive, and the entries in the qmail
logs, you should be able to see what the actual problem is.

Charles
-- 
---
Charles Cazabon<[EMAIL PROTECTED]>
GPL'ed software available at:  http://www.qcc.sk.ca/~charlesc/software/
Any opinions expressed are just that -- my opinions.
---



SMTP

2001-02-27 Thread Ross Cooney

Hi Guys,

I am sorry if this is been asked to death...but for some reason we are only
allowed one SMTP feed into our Qmail server at a time...where can I change
the config files to allow multiple?

Thanks,

Ross Cooney
_
Cyber Sentry Ltd, 101 Johnstown Road, Dun Laoghaire, Co Dublin, Ireland.

Email:  [EMAIL PROTECTED]
Telephone:  + 353 1 2352546
Fax:+ 353 1 2847263


This communication contains information which is confidential and
may also be privileged.  It is for the exclusive use of the
intended recipient(s).  If you are not the intended recipient(s),
please note that any distribution, copying or use of this
communication or the information in it is strictly prohibited.
If you have received this communication in error, please notify
the sender immediately and then destroy any copies of it.
_







**
This email has been scanned by Pro-Web for all known Viruses
For more information please visit our web site at www.pro-web.ie
**




Re: SMTP

2001-02-27 Thread Charles Cazabon

Ross Cooney <[EMAIL PROTECTED]> wrote:
> 
> I am sorry if this is been asked to death...but for some reason we are only
> allowed one SMTP feed into our Qmail server at a time...where can I change
> the config files to allow multiple?

Not sure exactly what you're referring to.  If you mean that you can only
establish one connection at a time to the SMTP port of your qmail server,
then check the options being given to the tcpserver instance for qmail-smtpd.
It may have been given a concurrency limit of 1.

Charles
-- 
---
Charles Cazabon<[EMAIL PROTECTED]>
GPL'ed software available at:  http://www.qcc.sk.ca/~charlesc/software/
Any opinions expressed are just that -- my opinions.
---



Re: relay-ctrl and qmail

2001-02-27 Thread Enrique Vadillo

|o|  Charles Cazabon escribió 
|o| > 1. Use SMTP-after-POP: Patches are available. 
|o| 
|o| relay-ctrl provides SMTP-after-POP functionality, with no patches to qmail.
|o| It's a technically superior solution.

I recently installed Bruce Guenter's relay-ctrl after testing many different
solutions, i can definitely say it's the best smtp-after-pop package around,
and it requires no Qmail patches.

Enrique-



Re: Return address for autoresponder

2001-02-27 Thread Bruno Wolff III

On Sun, Feb 25, 2001 at 04:21:07PM -0500,
> Leander Berwers <[EMAIL PROTECTED]> said:

> I am writing an auto-responder in Perl. I have been looking for the ones
> publicly available, but I was wondering to what address I have to
> respond to, namely: Do you need to look for Reply-To: first and if that
> header is unavailable look for From:?

It depends on what the auto responder is doing. If it is a delivery status
notification (for example an out of the office reply), then the message
should be sent to the envelope sender address.

If it is an automated reply to a request of some sort, than use
reply-to, from and then sender. If there are resent-* headers present,
then use the resent versions of the previous headers. If none of the
above are provided and you still want to try to reply, then use the
envelope sender address.

You may want to include the original received headers somewhere in the
reply so that it is easier for the recipient to deal with mischief.



Re: Time::HiRes for Qmail-Scanner on RH7 ?

2001-02-27 Thread Matthew Patterson

On Mon, 26 Feb 2001, dennis wrote:
>Hi all...
>
>Has anyone installed "Time::HiRes" for Qmail-Scanner
>(http://qmail-scanner.sourceforge.net/) on Redhat7.0 ? I'm finding that if I
>try and install the modual as an rpm it wants an older version of perl. If
>manually install "Time::HiRes" the ./configure can't find the modual
>
>Any suggestions ?
>
>Regards
>Dennis

`perl -MCPAN -e "install Time::HiRes"`

-- 
***
Matthew H Patterson
Unix Systems Administrator
National Support Center, LLC
Naperville, Illinois, USA
***



help please

2001-02-27 Thread info




Hi All
 
I "WAS" running qmail with all the other 
application behind perfectly, up until now, when I restarted it and i 
got:
 
supervise: fatal: unable to aquire 
log/supervise/lock: temporary failure

supervise: fatal: unable to aquire 
qmail-send/supervise/lock: temporary failure
 
Any idea
 
Thanks
 
Nicola


Cert format for tls SMTP patch

2001-02-27 Thread John McCoy, Jr

I've been having some trouble with this. I have it working fine with
UW-IMAP-2000c.
I copied just the cert to /var/qmail/control/cert.pem it complained about no
key.
I then copied the imapd.pem (cert and key -no password) to cert.pem same
problem, I tried creating a separate prvtkey.pem file still no good, what am
I missing?

Thanks all

Solaris 7 (Sparq)
qmail 1.03
UW-Imap-2000c




John McCoy [EMAIL PROTECTED]
Systems Administrator
Central Systems
Mills College
510-430-3321





Re: help please

2001-02-27 Thread Charles Cazabon

info <[EMAIL PROTECTED]> wrote:
> 
> I "WAS" running qmail with all the other application behind perfectly, up until now, 
>when I restarted it and i got:
> 
> supervise: fatal: unable to aquire log/supervise/lock: temporary failure
> supervise: fatal: unable to aquire qmail-send/supervise/lock: temporary failure

You've already got a supervise process running in that directory.

Charles
-- 
---
Charles Cazabon<[EMAIL PROTECTED]>
GPL'ed software available at:  http://www.qcc.sk.ca/~charlesc/software/
Any opinions expressed are just that -- my opinions.
---



Re: help please

2001-02-27 Thread info

ok thank
So do I just kill all the preocess and reboot again?

thank you
- Original Message -
From: "Charles Cazabon" <[EMAIL PROTECTED]>
To: "qmail" <[EMAIL PROTECTED]>
Sent: Tuesday, February 27, 2001 7:56 AM
Subject: Re: help please


> info <[EMAIL PROTECTED]> wrote:
> >
> > I "WAS" running qmail with all the other application behind perfectly,
up until now, when I restarted it and i got:
> >
> > supervise: fatal: unable to aquire log/supervise/lock: temporary failure
> > supervise: fatal: unable to aquire qmail-send/supervise/lock: temporary
failure
>
> You've already got a supervise process running in that directory.
>
> Charles
> --
> ---
> Charles Cazabon<[EMAIL PROTECTED]>
> GPL'ed software available at:  http://www.qcc.sk.ca/~charlesc/software/
> Any opinions expressed are just that -- my opinions.
> ---
>




Re: help please

2001-02-27 Thread Charles Cazabon

info <[EMAIL PROTECTED]> wrote:
> So do I just kill all the preocess and reboot again?

Rebooting will work.  You don't have to kill anything first.

Charles
-- 
---
Charles Cazabon<[EMAIL PROTECTED]>
GPL'ed software available at:  http://www.qcc.sk.ca/~charlesc/software/
Any opinions expressed are just that -- my opinions.
---



Re: relay-ctrl and qmail

2001-02-27 Thread Erwin Hoffmann

Hi,

I was misleaded by the term "relay-ctrl" - it was to little specific. 
The original posting simply said:
"After installing this package, I found that I could not login to check my 
email (ERR: authorization failed).  I had to uncomment the pop-3 and smtp 
lines in inetd.conf to be able to connect to the server at all (these had 
been commented out during by the installation routine)."

It was not specific enough to point me to Bruce Guenter's solution. Maybe
there was some private conversation going on before.

There are serval implementations out now, including Bruce's. 
Actually, instead of saying "Patches are available" I should say
"Enhancements are available". 

For anybody, to subsume Bruce's development under "Alternative
Checkpassword Implementations" is a little bit short-breathed. We are back
to the question, who to organzie the qmail home page. 


Apologize.
eh.

At 10:09 27.2.2001 -0500, Enrique Vadillo wrote:
>|o|  Charles Cazabon escribió 
>|o| > 1. Use SMTP-after-POP: Patches are available. 
>|o| 
>|o| relay-ctrl provides SMTP-after-POP functionality, with no patches to
qmail.
>|o| It's a technically superior solution.
>
>I recently installed Bruce Guenter's relay-ctrl after testing many different
>solutions, i can definitely say it's the best smtp-after-pop package around,
>and it requires no Qmail patches.
>
>Enrique-
>
+---+
|  fffhh http://www.fehcom.deDr. Erwin Hoffmann |
| ff  hh|
| ffeee     ccc   ooomm mm  mm   Wiener Weg 8   |
| fff  ee ee  hh  hh   cc   oo   oo  mmm  mm  mm 50858 Koeln|
| ff  ee eee  hh  hh  cc   oo oo mm   mm  mm|
| ff  eee hh  hh   cc   oo   oo  mm   mm  mm Tel 0221 484 4923  |
| ff      hh  hhccc   ooomm   mm  mm Fax 0221 484 4924  |
+---+



Re: help please

2001-02-27 Thread info

I've tried but I'm still having the same problem, plus qmail-send dosen't
start now after reboot
M. Tanks
Nicola
- Original Message -
From: "Charles Cazabon" <[EMAIL PROTECTED]>
To: "qmail" <[EMAIL PROTECTED]>
Sent: Tuesday, February 27, 2001 8:18 AM
Subject: Re: help please


> info <[EMAIL PROTECTED]> wrote:
> > So do I just kill all the preocess and reboot again?
>
> Rebooting will work.  You don't have to kill anything first.
>
> Charles
> --
> ---
> Charles Cazabon<[EMAIL PROTECTED]>
> GPL'ed software available at:  http://www.qcc.sk.ca/~charlesc/software/
> Any opinions expressed are just that -- my opinions.
> ---
>




Re: daemontools problems

2001-02-27 Thread Charles Cazabon

info <[EMAIL PROTECTED]> wrote:
> I've tried but I'm still having the same problem, plus qmail-send dosen't
> start now after reboot

You need to provide better information.  After you rebooted, and before
manually starting anything, show us the output of:

`ps auxw | grep svscan`
`ps auxw | grep supervise`
`ps auxw | grep qmail`
`ls -ld /service/*`
`grep svscan /etc/inittab`

Charles
-- 
---
Charles Cazabon<[EMAIL PROTECTED]>
GPL'ed software available at:  http://www.qcc.sk.ca/~charlesc/software/
Any opinions expressed are just that -- my opinions.
---



RE: help please

2001-02-27 Thread schoon

I've also received this message as well - normally after an svscan
restart. For some reason, doing an svscan stop, then start seems to
clear this problem.

HTH

.mark

>--
>From:  Charles Cazabon[SMTP:[EMAIL PROTECTED]]
>Sent:  Tuesday, February 27, 2001 8:18 AM
>To:qmail
>Subject:   Re: help please
>
>info <[EMAIL PROTECTED]> wrote:
>> So do I just kill all the preocess and reboot again?
>
>Rebooting will work.  You don't have to kill anything first.
>
>Charles
>-- 
>---
>Charles Cazabon<[EMAIL PROTECTED]>
>GPL'ed software available at:  http://www.qcc.sk.ca/~charlesc/software/
>Any opinions expressed are just that -- my opinions.
>---
>



Re: mailserver buffering

2001-02-27 Thread Bill Carlson

On Tue, 27 Feb 2001, Andy Bradford wrote:

> > OK, and when their emails go to my server, where do they go(what directory,
> > do I have to make a directory for their domain?
> > and what about the users?
>
> Not necessary.  They will be queued up in qmail's mail queue until they
> can be delivered to their mail server (or until the message has been in your
> queue too long and the message bounces).  Simple really.

Stupid question: What controls the lifetime of those messages in the
queue? Are the 'buffered' messages treated like any other message and
timeout at control/queuelifetime?

Thanks,

Bill Carlson
-- 
Systems Programmer[EMAIL PROTECTED]|  Opinions are mine,
Virtual Hospital  http://www.vh.org/|  not my employer's.
University of Iowa Hospitals and Clinics|




Re: mailserver buffering

2001-02-27 Thread Chris Johnson

On Tue, Feb 27, 2001 at 10:44:42AM -0600, Bill Carlson wrote:
> On Tue, 27 Feb 2001, Andy Bradford wrote:
> 
> > > OK, and when their emails go to my server, where do they go(what directory,
> > > do I have to make a directory for their domain?
> > > and what about the users?
> >
> > Not necessary.  They will be queued up in qmail's mail queue until they
> > can be delivered to their mail server (or until the message has been in your
> > queue too long and the message bounces).  Simple really.
> 
> Stupid question: What controls the lifetime of those messages in the
> queue? Are the 'buffered' messages treated like any other message and
> timeout at control/queuelifetime?

Yes. They are simply messages which have been queued, no different from any
other message which has been queued by whatever means.

Chris

 PGP signature


RE: Bulk mail concurrency

2001-02-27 Thread Phil Oester

Would that require running multiple IPs on the box with an instance of
qmail-smtpd running on each IP?

-Original Message-
From: Russell Nelson [mailto:[EMAIL PROTECTED]]
Sent: Saturday, February 24, 2001 10:23 PM
To: [EMAIL PROTECTED]
Subject: Re: Bulk mail concurrency


Phil Oester writes:
 > So it would seem that when qmail is actively receiving lots of messages
for
 > delivery, it won't spawn the remotes?  Anyone have a solution to improve
 > this situation?

Run multiple copies of qmail on the same machine.  Cause the perl
script to choose one of them at random, by running one of:

/var/qmail1/bin/qmail-inject
/var/qmail2/bin/qmail-inject
/var/qmail3/bin/qmail-inject
/var/qmail4/bin/qmail-inject

--
-russ nelson <[EMAIL PROTECTED]>  http://russnelson.com
Crynwr sells support for free software  | PGPok | "This is Unix...
521 Pleasant Valley Rd. | +1 315 268 1925 voice | Stop acting so helpless."
Potsdam, NY 13676-3213  | +1 315 268 9201 FAX   | --Daniel J. Bernstein





LOGIN FAILED

2001-02-27 Thread fred

Hello

I use qmail-1.03 on a redhat 7.0
I have followed all the instruction in the "life with qmail" doc.
TEST.delivery and TEST.receive are good.
I can send and read local messages but I am unable to use virtualdomain.

My dns and Mx  are good.
It seems to be an authentification problem.

When I try to get message using telnet I have errors: 

[fred@localhost fred]$ telnet ip_of_mailserver 110
Trying ip_of_mailserver...
Connected to ip_of_mailserver.
Escape character is '^]'.
+OK Hello there.
USER fpinatel@my_virtualdomain
+OK Password required.
PASS mypass
-ERR Login failed.
QUIT
+OK Better luck next time.
Connection closed by foreign host.
[fred@localhost fred]$ 

And I have errors in my log files :

Feb 27 18:21:35 www pop3login: Connection, ip=[:::192.168.11.3]
Feb 27 18:21:57 www pop3login: LOGIN FAILED, ip=[:::192.168.11.3]
Feb 27 18:22:09 www pop3login: Disconnected, ip=[:::192.168.11.3]
 
Can someone help me.
Thanks for your help.
 
__
ifrance.com, l'email gratuit le plus complet de l'Internet !
vos emails depuis un navigateur, en POP3, sur Minitel, sur le WAP...
http://www.ifrance.com/_reloc/email.emailif





Re: Bulk mail concurrency

2001-02-27 Thread Charles Cazabon

Phil Oester <[EMAIL PROTECTED]> wrote:
> Would that require running multiple IPs on the box with an instance of
> qmail-smtpd running on each IP?

Russ Nelson wrote:
> Run multiple copies of qmail on the same machine.  Cause the perl
> script to choose one of them at random, by running one of:
> 
> /var/qmail1/bin/qmail-inject
> /var/qmail2/bin/qmail-inject
> /var/qmail3/bin/qmail-inject
> /var/qmail4/bin/qmail-inject

Not necessarily.  If you're injecting through qmail-inject, you don't
need an SMTP daemon for these extra queues.  You only need one to handle
the late bounces, and that needn't be on this machine.

Charles
-- 
---
Charles Cazabon<[EMAIL PROTECTED]>
GPL'ed software available at:  http://www.qcc.sk.ca/~charlesc/software/
Any opinions expressed are just that -- my opinions.
---



RE: LOGIN FAILED

2001-02-27 Thread schoon

Ah, isn't the username simply just that, without any hostname appended??
Just a thought I use pullmail to pop stuff from a qmail server and
shove it into an aging Exchange system, and the username I supply
doesn't include the @HOSTNAME .

HTH

.mark

>--
>From:  fred[SMTP:[EMAIL PROTECTED]]
>Sent:  Tuesday, February 27, 2001 9:30 AM
>To:[EMAIL PROTECTED]
>Subject:   LOGIN FAILED
>
>Hello
>
>I use qmail-1.03 on a redhat 7.0
>I have followed all the instruction in the "life with qmail" doc.
>TEST.delivery and TEST.receive are good.
>I can send and read local messages but I am unable to use virtualdomain.
>
>My dns and Mx  are good.
>It seems to be an authentification problem.
>
>When I try to get message using telnet I have errors: 
>
>[fred@localhost fred]$ telnet ip_of_mailserver 110
>Trying ip_of_mailserver...
>Connected to ip_of_mailserver.
>Escape character is '^]'.
>+OK Hello there.
>USER fpinatel@my_virtualdomain
>+OK Password required.
>PASS mypass
>-ERR Login failed.
>QUIT
>+OK Better luck next time.
>Connection closed by foreign host.
>[fred@localhost fred]$ 
>
>And I have errors in my log files :
>
>Feb 27 18:21:35 www pop3login: Connection, ip=[:::192.168.11.3]
>Feb 27 18:21:57 www pop3login: LOGIN FAILED, ip=[:::192.168.11.3]
>Feb 27 18:22:09 www pop3login: Disconnected, ip=[:::192.168.11.3]
> 
>Can someone help me.
>Thanks for your help.
> 
>_
>_
>ifrance.com, l'email gratuit le plus complet de l'Internet !
>vos emails depuis un navigateur, en POP3, sur Minitel, sur le WAP...
>http://www.ifrance.com/_reloc/email.emailif
>
>
>



Re: LOGIN FAILED

2001-02-27 Thread Jerry Lynde

At 10:30 AM 2/27/2001, fred wrote:
>Hello
>
>I use qmail-1.03 on a redhat 7.0
>I have followed all the instruction in the "life with qmail" doc.
>TEST.delivery and TEST.receive are good.
>I can send and read local messages but I am unable to use virtualdomain.
>
>My dns and Mx  are good.
>It seems to be an authentification problem.
>
>When I try to get message using telnet I have errors:
>
>[fred@localhost fred]$ telnet ip_of_mailserver 110
>Trying ip_of_mailserver...
>Connected to ip_of_mailserver.
>Escape character is '^]'.
>+OK Hello there.
>USER fpinatel@my_virtualdomain
>+OK Password required.
>PASS mypass
>-ERR Login failed.
>QUIT
>+OK Better luck next time.
>Connection closed by foreign host.
>[fred@localhost fred]$
>
>And I have errors in my log files :
>
>Feb 27 18:21:35 www pop3login: Connection, ip=[:::192.168.11.3]
>Feb 27 18:21:57 www pop3login: LOGIN FAILED, ip=[:::192.168.11.3]
>Feb 27 18:22:09 www pop3login: Disconnected, ip=[:::192.168.11.3]
>
>Can someone help me.
>Thanks for your help.


Hi fred,

checkpassword needs to run as root..here is a copy of my run file for 
qmail-pop3d
the important parts (not that it's not all important) are -u0 -g0

#!/bin/sh
exec /usr/local/bin/softlimit -m 200 \
 /usr/local/bin/tcpserver -v -R -u0 -g0 0 110 
/var/qmail/bin/qmail-popup pdc.diligence.com \
 /bin/checkpassword /var/qmail/bin/qmail-pop3d Maildir 2>&1


Hope that helps,

Jer




RE: Can Qmail send out 2 million mails in 12 hour window?

2001-02-27 Thread Brandon Yu

The messages themselves have been pre-generated and exist as a file and is
qmail-injected to place them in the queue. The message is the same across
the board with the exception of some personalization, such as the name.
Since there are so many messages, we use a perl script to place them in the
queue at a certain rate, i.e. 50 msgs/second, or whatever rate we choose. By
injecting them at this rate, we can see whether qmail can keep up with our
intended rate. With this in mind, does this lessen the burden of disk I/O? 

I have heard of DNSCACHE, currently BIND is running directly on those
machines. Would it be worthwhile changing out? Can I expect to relive a
bottleneck in this process?

Why would you avoid sorting by domain? I would think it would be more
efficient handshaking.

No, I am not using EZMLM. How could I benefit from using it? 

Brandon

> -Original Message-
> From: John White [mailto:[EMAIL PROTECTED]]
> Sent: Monday, February 26, 2001 10:17 PM
> To: Brandon Yu
> Subject: Re: Can Qmail send out 2 million mails in 12 hour window?
> 
> 
> On Mon, Feb 26, 2001 at 04:28:43PM -0800, Brandon Yu wrote:
> > I have been given the task to send out 2 million emails in 
> a 12 hour time
> > window. All the emails will be sent remotely, to a list of 
> users of which is
> > 90% accurate (I figure 10% of the emails will bounceback 
> because of bad
> > email addresses) I have all the bandwidth I need (servers 
> are located in
> > co-location) and will be sorting the email list by domain name.
> >  
> > My initial idea is to have 2 dedicated qmail servers, ( 
> Redhat Linux 6.2,
> > Pentium 600, 500Megs RAM, IDE drives) configured with a 
> concurrency limit of
> > 400. Other than that, the qmail install will be out of the box.
>   
> The thing you're going to run up against is disk i/o.
> 
> Are the message bodies customized to the recipient?  If so, 
> you'll have
> problems getting all the messages into the queue.  Is this the case?
> 
> If not, the best way is to send one message with all the recipients.
> One way to do this is to call qmail-queue directly.  Another way is to
> call qmail-inject with the flag that tells it to look for 
> recipients in
> the header, and attach each recipient as a BCC header.
> 
> I would avoid sorting by domain.
> 
> I would have dnscache installed on the qmail machines.
> 
> Are you using list management software like ezmlm?
> 
> John
> 



RE: Can Qmail send out 2 million mails in 12 hour window?

2001-02-27 Thread Dave Sill

Brandon Yu <[EMAIL PROTECTED]> wrote:

>The messages themselves have been pre-generated and exist as a file and is
>qmail-injected to place them in the queue. The message is the same across
>the board with the exception of some personalization, such as the name.

Ouch. That's gonna cost you dearly.

>Since there are so many messages, we use a perl script to place them in the
>queue at a certain rate, i.e. 50 msgs/second, or whatever rate we choose. By
>injecting them at this rate, we can see whether qmail can keep up with our
>intended rate. With this in mind, does this lessen the burden of disk I/O?

You're going to run into the qmail-send bottleneck: qmail-send won't
dispatch messages to qmail-local or qmail-remote while there are
messages in queue/todo. So not much will go out until all 2M messages
are injected. Therefore, throttling the injections is
counterproductive.

>I have heard of DNSCACHE, currently BIND is running directly on those
>machines. Would it be worthwhile changing out? Can I expect to relive a
>bottleneck in this process?

The only bottleneck you need to relieve is the current bottleneck.
If/when you get to the point that DNS lookups are the bottleneck, then
dnscache would be the thing to try.

Your first bottleneck is going to be qmail-send handling new
injections. After that, it'll be disk I/O or concurrencyremote, most
likely.

>Why would you avoid sorting by domain? I would think it would be more
>efficient handshaking.

qmail-send is going to pass each delivery to a separate qmail-remote.
Sorting will only cause qmail to pound on each domain sequentially. If
your first 2000 subscribers are on AOL and your concurrencyremote is
400, you're going to initiate 400 simultaneous connections to AOL
right off the bat.

>No, I am not using EZMLM. How could I benefit from using it? 

If you need customized messages, you can't. If you could use it, you'd
benefit by automatic bounce handling and much more efficient
delivery--one message with 2M recipients vs. 2M messages with 1
recipient.

-Dave



Re: Can Qmail send out 2 million mails in 12 hour window?

2001-02-27 Thread Peter van Dijk

On Tue, Feb 27, 2001 at 10:13:28AM -0800, Brandon Yu wrote:
> The messages themselves have been pre-generated and exist as a file and is
> qmail-injected to place them in the queue. The message is the same across
> the board with the exception of some personalization, such as the name.
> Since there are so many messages, we use a perl script to place them in the
> queue at a certain rate, i.e. 50 msgs/second, or whatever rate we choose. By
> injecting them at this rate, we can see whether qmail can keep up with our
> intended rate. With this in mind, does this lessen the burden of disk I/O? 

As long as you are injecting messages, qmail won't perform at full
speed. Play with that rate, maybe no limiting *is* the best option.

> I have heard of DNSCACHE, currently BIND is running directly on those
> machines. Would it be worthwhile changing out? Can I expect to relive a
> bottleneck in this process?

If you're sending out that many mails, I wouldn't be surprised if BIND
kept on caching all data and eventually filled all available memory.

Since BIND doesn't limit it's memory use, it will grow as long as
records don't expire. Extreme growth breaks your server, less extreme
growth still limits the amount of memory your OS can dedicate to disk
caching and buffering, which hurts performance.

Use dnscache :)

> Why would you avoid sorting by domain? I would think it would be more
> efficient handshaking.

If you insert 10.000 messages to the same domain together, qmail will
be spending lots of time on all these messages before it handles
messages for another domain. If this domain is down, it will
bottleneck the rest. If you don't care about domains at all, it's much
harder for a single domain to use all your remote concurrency.

> No, I am not using EZMLM. How could I benefit from using it? 

ezmlm is an instantly-working mailinglist tool, that saves you time
coding. It also injects a message into the queue *once*, which means
there is no I/O problem. qmail then delivers this *one* message to
*all* recipients, in such a way that ezmlm can do reliable
bouncehandling.

Greetz, Peter.



Certificate format for tls.patch PLEASE

2001-02-27 Thread John McCoy, Jr

Exactly what certs and keys are needed and in what format?


Thanks


John McCoy [EMAIL PROTECTED]
Systems Administrator
Central Systems
Mills College
510-430-3321





RE: Can Qmail send out 2 million mails in 12 hour window?

2001-02-27 Thread Peter Samuel

On Tue, 27 Feb 2001, Brandon Yu wrote:

> The messages themselves have been pre-generated and exist as a file and is
> qmail-injected to place them in the queue. The message is the same across
> the board with the exception of some personalization, such as the name.
> Since there are so many messages, we use a perl script to place them in the
> queue at a certain rate, i.e. 50 msgs/second, or whatever rate we choose. By
> injecting them at this rate, we can see whether qmail can keep up with our
> intended rate. With this in mind, does this lessen the burden of disk I/O? 

Don't use qmail-inject unless you have to. Use qmail-remote directly.
If qmail-remote reports a transient failure, then inject them into the
queue for later delivery. If qmail-remote reports a permanent failure
then the message cannot be delivered so it can be ignored.

See the qmail-remote man page for driving instructions.

Using qmail-inject will increase your disk I/O and impose qmails
concurrency limits. If you use qmail-remote directly you can bybass
these limits and impose your own :)

-- 
Regards
Peter
--
Peter Samuel[EMAIL PROTECTED]
http://www.e-smith.org (development)http://www.e-smith.com (corporate)
Phone: +1 613 368 4398  Fax: +1 613 564 7739
e-smith, inc. 1500-150 Metcalfe St, Ottawa, ON K2P 1P1 Canada

"If you kill all your unhappy customers, you'll only have happy ones left"




Re: Can Qmail send out 2 million mails in 12 hour window?

2001-02-27 Thread Jurjen Oskam

On Tue, Feb 27, 2001 at 08:11:10PM +0100, Peter van Dijk wrote:

> ezmlm is an instantly-working mailinglist tool, that saves you time
> coding. It also injects a message into the queue *once*, which means
> there is no I/O problem. qmail then delivers this *one* message to
> *all* recipients, in such a way that ezmlm can do reliable
> bouncehandling.

Could you please point to some documentation about how this is done?

I checked cr.yp.to and www.ezmlm.org but couldn't find it. (I have not
searched extremely well though, so ofcourse I could have missed it.)

Thanks.

-- 
  Jurjen Oskam * http://www.stupendous.org/ for PGP key * Q265230
  pro-life bombing bush hacker attack USA president 2600 decss assassinate
nuclear strike terrorism gun control eta military disrupt economy encryption
7:40pm  up 2 days, 22:45,  2 users,  load average: 0.08, 0.02, 0.01



Re: Can Qmail send out 2 million mails in 12 hour window?

2001-02-27 Thread Peter van Dijk

On Tue, Feb 27, 2001 at 08:39:28PM +0100, Jurjen Oskam wrote:
> Could you please point to some documentation about how this is done?
> 
> I checked cr.yp.to and www.ezmlm.org but couldn't find it. (I have not
> searched extremely well though, so ofcourse I could have missed it.)

Look for VERP.

Greetz, Peter.



qmail-send progress with large queue/todo

2001-02-27 Thread Bruce Guenter

On Tue, Feb 27, 2001 at 02:06:52PM -0500, Dave Sill wrote:
>  qmail-send won't
> dispatch messages to qmail-local or qmail-remote while there are
> messages in queue/todo.

I've been thinking about this issue, and was wondering if it would be
possible to fix this in some simple way.  Would it be possible to modify
qmail-send to always handle known messages before scanning todo?  Or to
make it defer scanning todo after it hits a certain number of messages
so it can process other events and then come back to scanning?

I tried instrumenting qmail-send to see where things were hanging up,
but was having difficulty following the flow of control.  It was
certainly easy to reproduce the problem -- stop qmail-send, put 100
messages in the todo, start qmail-send, and watch as only a few
deliveries get started before qmail-send stop scanning todo.

Is the problem as simple as this, or is it an artifact of the I/O
generated by qmail-send causing the other tasks to block?
-- 
Bruce Guenter <[EMAIL PROTECTED]>   http://em.ca/~bruceg/

 PGP signature


Relay-ctrl and qmail

2001-02-27 Thread Bill Isaacs

Now that we're all in agreement on what relay-ctrl is, let me get
more specific about what is not happening for me with this package ;)

I check the spool directory:
---
[root@hoss relay-ctrl]# ls -l
total 0
[root@hoss relay-ctrl]#
---

I log into my server and collect my email with Eudora,
and then check the spool directory again:
--
[root@hoss relay-ctrl]# ls -l
total 0
-rw-rw-r--   1 root workshop0 Feb 27 12:43 63.207.13.190
[root@hoss relay-ctrl]#
--

I now check the cron log to make sure that relay-ctrl-age has run
since the timestamp on the above file:
---
root (02/27-12:47:00-5529) CMD (/usr/sbin/relay-ctrl-age)
---

So far so good.  Now I attempt to relay a message from my
workstation at the above IP address:

'553 sorry, that domain isn't in my list of allowed rcpthosts (#5.7.1)'.


So obviously, the database isn't being updated.
Here is my invocation of tcpserver and relay-ctrl
---
tcpserver -v -R 0 pop-3 /var/qmail/bin/qmail-popup (fqdn - no, its the real 
name not 'fqdn') \
/bin/checkpassword /usr/sbin/relay-ctrl-allow /var/qmail/bin/qmail-pop3d 
Maildir
2>&1 | \
/var/qmail/bin/splogger pop3d &


Here are the contents of /etc/relay-ctrl:

[root@hoss relay-ctrl]# ls -l
total 6
-rw-rw-r--   1 root qmail   4 Feb 26 18:52 expiry
-rw-rw-r--   1 root qmail  22 Feb 26 18:52 rule
-rw-rw-r--   1 root qmail   9 Feb 26 18:52 smtpcdb
-rw-rw-r--   1 root qmail  11 Feb 26 18:53 smtprules
-rw-rw-r--   1 root qmail  22 Feb 26 18:53 spooldir
-rw-rw-r--   1 root qmail  18 Feb 26 18:54 tcprules
[root@hoss relay-ctrl]# cat *
900
:allow,RELAYCLIENT=''
smtp.cdb
smtp.rules
/var/spool/relay-ctrl
/usr/bin/tcprules
[root@hoss relay-ctrl]#
--

What is going on here?  What else should I check?

Thanks,

Bill


_
Get your FREE download of MSN Explorer at http://explorer.msn.com




Re: Certificate format for tls.patch PLEASE

2001-02-27 Thread Jamie Heilman

John McCoy, Jr wrote:

> Exactly what certs and keys are needed and in what format?

Did you read the patch?  Do you understand how SSL certificates work?

   - provide a certificate in /var/qmail/control/cert.pem.
 "make cert" makes a self-signed certificate.
 "make cert-req" makes a certificate request.
 Note: nsCertType must be = server,client or be a generic
 certificate (no usage specified). If you want to use
 a separate cert in qmail-remote (SMTP client), then
 s/cert\.pem/clientcert\.pem/ in qmail-remote.c.

cert.pem must be a complete certificate, private key and all.  Read the
Makefile post-tls-patch and see what the 'cert' target and the 'cert-req'
target do, it should answer both your questions.


-- 
Jamie Heilman   http://audible.transient.net/~jamie/
"I was in love once -- a Sinclair ZX-81.  People said, "No, Holly, she's 
 not for you." She was cheap, she was stupid and she wouldn't load 
 -- well, not for me, anyway."  -Holly



qmail-qread listing large number of completed deliveries

2001-02-27 Thread Peter Brezny

Runing /var/qmail/bin/qmail-qread on my qmail1.03 install lists a huge
number of things in the que but done.

Shouldn't this be getting cleaned out by qmail-clean every so often?

Is this going to cause problems as the size of this gets very large?

TIA

Peter Brezny
SysAdmin Services Inc.




Re: Relay-ctrl and qmail

2001-02-27 Thread Charles Cazabon

Bill Isaacs <[EMAIL PROTECTED]> wrote:
> Now that we're all in agreement on what relay-ctrl is, let me get
> more specific about what is not happening for me with this package ;)
[...] 
> I now check the cron log to make sure that relay-ctrl-age has run
> since the timestamp on the above file:
> ---
> root (02/27-12:47:00-5529) CMD (/usr/sbin/relay-ctrl-age)
> ---
> 
> So far so good.
[...]
> So obviously, the database isn't being updated.

Okay, lets see some information on the file itself.  How about 
`ls -ld / /etc /etc/tcpcontrol /etc/tcpcontrol/*`

Then, use tcprulescheck on the cdb file to see if that IP address is
in there:
`TCPREMOTEIP=1.2.3.4 tcprulescheck /etc/tcpcontrol/smtp.cdb`

Replace 1.2.3.4 with the IP address of the machine you POP-checked your
mail from immediately before doing the above steps.

Charles
-- 
---
Charles Cazabon<[EMAIL PROTECTED]>
GPL'ed software available at:  http://www.qcc.sk.ca/~charlesc/software/
Any opinions expressed are just that -- my opinions.
---



Re: Certificate format for tls.patch PLEASE

2001-02-27 Thread John McCoy, Jr

No one responded to me when I spelled it out.
here is the Makefile stuff:
cert:
/usr/local/ssl/bin/openssl req -new -x509 -nodes \
-out /var/qmail/control/cert.pem -days 366 \
-keyout /var/qmail/control/cert.pem
chmod 640 /var/qmail/control/cert.pem
chown qmaild.qmail /var/qmail/control/cert.pem

cert-req:
/usr/local/ssl/bin/openssl req -new -nodes \
-out req.pem \
-keyout /var/qmail/control/cert.pem
chmod 640 /var/qmail/control/cert.pem
chown qmaild.qmail /var/qmail/control/cert.pem
@echo
@echo "Send req.pem to your CA to obtain signed_req.pem, and do:"
@echo "cat signed_req.pem >> /var/qmail/control/cert.pem"

This looks to me like the commands for requesting a cert and key. I already
have them. I need to know how qmail is going to want them now, some programs
want them in a single file with no password protection, I tried that it
didn't work. Others want to seperate files and will prompt you for a
password as they start up, that didn't work either. That is all I know how
to do, is there another way? I tried two files without a password on the
privet key too. Do I need a CA file possibly?



- Original Message -
From: "Jamie Heilman" <[EMAIL PROTECTED]>
To: "John McCoy, Jr" <[EMAIL PROTECTED]>
Cc: "Qmail" <[EMAIL PROTECTED]>
Sent: Tuesday, February 27, 2001 1:11 PM
Subject: Re: Certificate format for tls.patch PLEASE


> John McCoy, Jr wrote:
>
> > Exactly what certs and keys are needed and in what format?
>
> Did you read the patch?  Do you understand how SSL certificates work?
>
>- provide a certificate in /var/qmail/control/cert.pem.
>  "make cert" makes a self-signed certificate.
>  "make cert-req" makes a certificate request.
>  Note: nsCertType must be = server,client or be a generic
>  certificate (no usage specified). If you want to use
>  a separate cert in qmail-remote (SMTP client), then
>  s/cert\.pem/clientcert\.pem/ in qmail-remote.c.
>
> cert.pem must be a complete certificate, private key and all.  Read the
> Makefile post-tls-patch and see what the 'cert' target and the 'cert-req'
> target do, it should answer both your questions.
>
>
> --
> Jamie Heilman   http://audible.transient.net/~jamie/
> "I was in love once -- a Sinclair ZX-81.  People said, "No, Holly, she's
>  not for you." She was cheap, she was stupid and she wouldn't load
>  -- well, not for me, anyway." -Holly
>




Re: qmail-qread listing large number of completed deliveries

2001-02-27 Thread Chris Johnson

On Tue, Feb 27, 2001 at 04:10:48PM -0500, Peter Brezny wrote:
> Runing /var/qmail/bin/qmail-qread on my qmail1.03 install lists a huge
> number of things in the que but done.
> 
> Shouldn't this be getting cleaned out by qmail-clean every so often?

I think you'll find that these are multi-recipient messages, delivery of which
is still not complete to one or more recipients. So the message remains in the
queue, though qmail-qread shows that a lot of the recipients are "done."

Chris

 PGP signature


Re: Certificate format for tls.patch PLEASE

2001-02-27 Thread Jamie Heilman

John McCoy, Jr wrote:

> No one responded to me when I spelled it out.

That happens, life's a bitch.

> here is the Makefile stuff:
[snip] 
> This looks to me like the commands for requesting a cert and key. I already
> have them. I need to know how qmail is going to want them now, some programs
> want them in a single file with no password protection, I tried that it
> didn't work.

Have you tried running them and examining the output?  Then maybe comparing
them to the cert data you have?  I already said that both the key and the
cert need to be in the file.  Which if you examine those make commands is
exactly what you end up with.  How did you test your setup with the
key+cert combo?  What is "didn't work"?

> Others want to seperate files and will prompt you for a
> password as they start up, that didn't work either. That is all I know how
> to do, is there another way? I tried two files without a password on the
> privet key too. Do I need a CA file possibly?

Everything you need to know is in the header of the patch file.  It tells
you every additional control file, and what they are used for.  It gives
examples of how to generate them.  You may need a list of CAs, it depends
on which aspect of SMTP/TLS you are trying to make work.  If you want to
allow relaying based on signed personal certificates, for example, you will
need a list of CAs which you want to accept placed into
/var/qmail/control/clientca.pem as well as the email addresses placed in
/var/qmail/control/tlsclients

-- 
Jamie Heilman   http://audible.transient.net/~jamie/
"We must be born with an intuition of mortality.  Before we know the words
 for it, before we know there are words, out we come bloodied and squalling
 with the knowledge that for all the compasses in the world, there's only
 one direction, and time is its only measure."  -Rosencrantz



Re: Certificate format for tls.patch PLEASE

2001-02-27 Thread John McCoy, Jr

That got it but is causing a more serous problem:

starting delivery 1017: msg 229980 to remote mailto:[EMAIL PROTECTED]
2001-02-27 16:58:55.995301500 delivery 1017: deferral:
qmail-remote_crashed./

Every delivery to yahoo causes a crash of qmail remote!!!

Any idea?

Thanks for the help, I was forgetting the chmod.

- Original Message -
From: "Jamie Heilman" <[EMAIL PROTECTED]>
To: "John McCoy, Jr" <[EMAIL PROTECTED]>
Cc: "Qmail" <[EMAIL PROTECTED]>
Sent: Tuesday, February 27, 2001 3:46 PM
Subject: Re: Certificate format for tls.patch PLEASE


> John McCoy, Jr wrote:
>
> > No one responded to me when I spelled it out.
>
> That happens, life's a bitch.
>
> > here is the Makefile stuff:
> [snip]
> > This looks to me like the commands for requesting a cert and key. I
already
> > have them. I need to know how qmail is going to want them now, some
programs
> > want them in a single file with no password protection, I tried that it
> > didn't work.
>
> Have you tried running them and examining the output?  Then maybe
comparing
> them to the cert data you have?  I already said that both the key and the
> cert need to be in the file.  Which if you examine those make commands is
> exactly what you end up with.  How did you test your setup with the
> key+cert combo?  What is "didn't work"?
>
> > Others want to seperate files and will prompt you for a
> > password as they start up, that didn't work either. That is all I know
how
> > to do, is there another way? I tried two files without a password on the
> > privet key too. Do I need a CA file possibly?
>
> Everything you need to know is in the header of the patch file.  It tells
> you every additional control file, and what they are used for.  It gives
> examples of how to generate them.  You may need a list of CAs, it depends
> on which aspect of SMTP/TLS you are trying to make work.  If you want to
> allow relaying based on signed personal certificates, for example, you
will
> need a list of CAs which you want to accept placed into
> /var/qmail/control/clientca.pem as well as the email addresses placed in
> /var/qmail/control/tlsclients
>
> --
> Jamie Heilman   http://audible.transient.net/~jamie/
> "We must be born with an intuition of mortality.  Before we know the words
>  for it, before we know there are words, out we come bloodied and
squalling
>  with the knowledge that for all the compasses in the world, there's only
>  one direction, and time is its only measure." -Rosencrantz
>




Re: Certificate format for tls.patch PLEASE

2001-02-27 Thread Jamie Heilman

John McCoy, Jr wrote:

> That got it but is causing a more serous problem:
> 
> starting delivery 1017: msg 229980 to remote mailto:[EMAIL PROTECTED]
> 2001-02-27 16:58:55.995301500 delivery 1017: deferral:
> qmail-remote_crashed./
> 
> Every delivery to yahoo causes a crash of qmail remote!!!

Do you have outgoing TLS mis-configured?  Yahoo doesn't support STARTTLS
afaik.  Are you sure its just Yahoo? 

-- 
Jamie Heilman   http://audible.transient.net/~jamie/
"Paranoia is a disease unto itself, and may I add, the person standing
 next to you may not be who they appear to be, so take precaution."
-Sathington Willoughby



Re: qmail-qfilter question

2001-02-27 Thread Bruce Guenter

On Mon, Feb 26, 2001 at 09:26:59AM -0500, Andy Meuse wrote:
>   So, I have qmail-qfilter running using the deny-filetypes script included
> in the package. I set it up as per the README, in the smtp rules files.
> 
>A.B.C.D:allow,RELAYCLIENT="",QMAILQUEUE="/usr/local/bin/(script that
> calls deny-filetypes"
> 
>   The problem is that it denies files from being sent BY my users, but it
> doesn't deny incoming files from the world TO my users. The relaying rules
> aren't being invoked I suppose.
> 
>   Any ideas on how I can use qmail-qfilter to screen incoming attachments
> another way, or how to change my relaying setup to grab them?

Add a final rule to your SMTP rules file with:
:allow,QMAILQUEUE="/usr/local/bin/"
This will force all non-relayclient users to be filtered as well.
-- 
Bruce Guenter <[EMAIL PROTECTED]>   http://em.ca/~bruceg/

 PGP signature


Re: mailserver buffering

2001-02-27 Thread Chrisanthy Carlane

Another question about mail buffering:

 When my client's mailserver try to connect to my mailserver to pick up
their queue, what setting should they use for authentication?  Pop3? but
there's no user.

If I'm using Vpopmail, do I need to add my client's domain into
../control/virtual domains?


> > > > They must produce an appropriate MX record in their DNS information
> > > > which points to your mail server.
> > > OK, and when their emails go to my server, where do they go(what
> directory,
> > > do I have to make a directory for their domain?
> > > and what about the users?
> >
> > Not necessary.  They will be queued up in qmail's mail queue until they
> > can be delivered to their mail server (or until the message has been in
> your
> > queue too long and the message bounces).  Simple really.
> >
> > Andy
> > --
> > [---[system uptime]]
> >  12:08am  up 13 days, 10 min,  6 users,  load average: 1.06, 1.20, 1.23
> >
> >
> >
>




unsubcribe

2001-02-27 Thread tatsuya


unsubcribe





Re: mailserver buffering

2001-02-27 Thread Chris Johnson

On Wed, Feb 28, 2001 at 10:45:47AM +0700, Chrisanthy Carlane wrote:
> Another question about mail buffering:

You should really stop calling it mail buffering. Anyone joining the thread
mid-stream won't know what you're talking about. What you are talking about is
providing backup or secondary MX service for a client.

> When my client's mailserver try to connect to my mailserver to pick up their
> queue, what setting should they use for authentication?  Pop3? but there's no
> user.

Is your mail server the secondary, and your client's the primary? Mail will be
sent to your server only if the client's is down?

If that's the case, then your client doesn't connect to you to collect mail.
Your mail server queues the mail and tries periodically to send it to your
client's mail server via SMTP. When it finds your client's server up, it
delivers the mail to it.

You're making this much more complicated than it should be. Simply add your
client's domain names to /var/qmail/control/rcpthosts and nowhere else. Make
sure the MX records are set correctly, and that's all there is to it.

Chris

 PGP signature


Qmail could not send message/email

2001-02-27 Thread The Afif

Hello Miliser,

I have some problem with my linux box, (RH 6.0) I was install qmail,
qmail-autoresponder, ezmlm, vpopmail, qmailadmin, absolutely its work
properly, but after a few days later its had problem that email could
not send the message is
" qq write error or disk full (#4.3.0)"  what is the problem ?
I check my disk like this

$df
Filesystem   1k-blocks  Used Available Use% Mounted on
/dev/hda8   256592 28563214777  12% /
/dev/hda123300  2276 19821  10% /boot
/dev/hda6  1725194 47632   1588403   3% /home
/dev/hda5  1725194302284   1333751  18% /usr
/dev/hda7   256592256592 0 100% /var

its about /var ? or some think i dont know ?
if its about /var how could I increase the partition of its ?
my HD is 4,3GB

Need help of yours
Thx & Best regards,
The Afif
mailto:[EMAIL PROTECTED]





nfs mounting /var/qmail/alias

2001-02-27 Thread Phil Oester

Any issues with NFS mounting the alias directory so a common version can be
shared by all mail servers?

 winmail.dat


Re: Qmail could not send message/email

2001-02-27 Thread Sean Chittenden

You're right that it's your /var partition: qmail is installed
in /var/qmail by default.  See where your space is going (du -d 1 -h
/var/qmail).  Your logs are also stored in /var/log, so there may be
some space there.  You only have 25MB of space (df -h), so you may
want to delete (rm -f ...) a few things that are taking up space.  If
worst comes to worse, you could move qmail to the usr partition (mkdir
/usr/qmail && cp -Rp /var/qmail/* /usr && rm -rf /var/qmail && ln -s
/usr/qmail /var/qmail).  You may want to consider increasing the size
of your /var partition (parted at:
(http://freshmeat.net/redir/gnuparted/3543/url_homepage/).

Hope that helps.  -sc

PS If you go the deleting route, just make sure you _avoid_ the
rm -rf /


On Wed, Feb 28, 2001 at 10:57:52AM +0700, The Afif wrote:
> Delivered-To: [EMAIL PROTECTED]
> Mailing-List: contact [EMAIL PROTECTED]; run by ezmlm
> Precedence: bulk
> Delivered-To: mailing list [EMAIL PROTECTED]
> Date: Wed, 28 Feb 2001 10:57:52 +0700
> From: The Afif <[EMAIL PROTECTED]>
> X-Mailer: The Bat! (v1.35) UNREG / CD5BF9353B3B7091
> X-Priority: 3 (Normal)
> To: [EMAIL PROTECTED]
> Subject: Qmail could not send message/email
> 
> Hello Miliser,
> 
> I have some problem with my linux box, (RH 6.0) I was install qmail,
> qmail-autoresponder, ezmlm, vpopmail, qmailadmin, absolutely its work
> properly, but after a few days later its had problem that email could
> not send the message is
> " qq write error or disk full (#4.3.0)"  what is the problem ?
> I check my disk like this
> 
> $df
> Filesystem   1k-blocks  Used Available Use% Mounted on
> /dev/hda8   256592 28563214777  12% /
> /dev/hda123300  2276 19821  10% /boot
> /dev/hda6  1725194 47632   1588403   3% /home
> /dev/hda5  1725194302284   1333751  18% /usr
> /dev/hda7   256592256592 0 100% /var
> 
> its about /var ? or some think i dont know ?
> if its about /var how could I increase the partition of its ?
> my HD is 4,3GB
> 
> Need help of yours
> Thx & Best regards,
> The Afif
> mailto:[EMAIL PROTECTED]
> 
> 

-- 
Sean Chittenden[EMAIL PROTECTED]
C665 A17F 9A56 286C 5CFB  1DEA 9F4F 5CEF 1EDD FAAD

 PGP signature


Re: nfs mounting /var/qmail/alias

2001-02-27 Thread Andy Bradford

Thus said "Phil Oester" on Tue, 27 Feb 2001 20:02:15 PST:

> Any issues with NFS mounting the alias directory so a common version can be
> shared by all mail servers?

You should probably use the ``fastforward'' package and then distribute 
the alias.cdb with rsync or something like that.  I believe that would 
be more reliable than using NFS to mount the alias directory.  In 
addition, it gives you a speedier lookup of aliases...

Andy
-- 
[---[system uptime]]
  9:33pm  up 13 days, 21:35,  8 users,  load average: 1.02, 1.08, 1.14





tcpserver for pop3 and telnet

2001-02-27 Thread Peter Cavender

The LWQ description of setting up pop3 for qmail only
says to put the tcpserver command in the qmail startup file.

Shouldn't this "service" be supervised by svscan?  Why do the other qmail
processes get this, but pop3 does not?

Also, I am moving towards eliminating inetd, and have set up in.telnetd to
be run by tcpserver in a line in rc.local (RH Linux 6.2 here).  In the
inetd.conf file, it runs in.telnetd via /usr/sbin/tcpd.  In the man page
is says that tcps does some logging and other stuff, but I see no signs of
it.  When I try to use tcpserver->tcpd->in.telnetd, it doesn't
work.  Remove tcpd and all is fine.  Should I be happy discarding tcpd?

Also, since my inetd.conf file is now *empty*, can I disable it
altogether, or or will I lose essential internal services?  Is there a kit
for making tcpserver mimic all the inetd services?

Thanks
 
--Pete





RE: nfs mounting /var/qmail/alias

2001-02-27 Thread Phil Oester

This won't work for us - we also will be using ezmlm in subdirectories of
alias, and would like multiple servers to be able to use the lists.

-Original Message-
From: Andy Bradford [mailto:[EMAIL PROTECTED]]
Sent: Tuesday, February 27, 2001 8:33 PM
To: Phil Oester
Cc: [EMAIL PROTECTED]
Subject: Re: nfs mounting /var/qmail/alias


Thus said "Phil Oester" on Tue, 27 Feb 2001 20:02:15 PST:

> Any issues with NFS mounting the alias directory so a common version can
be
> shared by all mail servers?

You should probably use the ``fastforward'' package and then distribute
the alias.cdb with rsync or something like that.  I believe that would
be more reliable than using NFS to mount the alias directory.  In
addition, it gives you a speedier lookup of aliases...

Andy
--
[---[system uptime]]
  9:33pm  up 13 days, 21:35,  8 users,  load average: 1.02, 1.08, 1.14







Ezmlm, Yahoo and list mirroring.

2001-02-27 Thread David Coley

I have been trying to figure this out for about a week now.  I know that
this list is mirrored on Yahoo!Groups (formally a list to long to name).
What I can not figure out is how to set up my Visual C++ mailing list so
that it has the same mirror capabilities.  If anyone can give me a hand I'd
appreciate it.

David Coley
http://www.codecipher.com




RE: Ezmlm, Yahoo and list mirroring.

2001-02-27 Thread David Coley

I'm using the WWW indexer right now for on site archiving, but quite frankly
it needs a lot of work.  I'm looking at 4 or 5 differnt archiving options
since that's what the users are asking for...

DC

-Original Message-
From: Steve Hagerman [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, February 28, 2001 12:43 AM
To: David Coley
Subject: RE: Ezmlm, Yahoo and list mirroring.


ezmlm has the feature to provide www indexing and such but I have never
tried it .

-Original Message-
From: David Coley [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, February 28, 2001 12:35 AM
To: [EMAIL PROTECTED]
Subject: Ezmlm, Yahoo and list mirroring.


I have been trying to figure this out for about a week now.  I know that
this list is mirrored on Yahoo!Groups (formally a list to long to name).
What I can not figure out is how to set up my Visual C++ mailing list so
that it has the same mirror capabilities.  If anyone can give me a hand I'd
appreciate it.

David Coley
http://www.codecipher.com





stralloc?

2001-02-27 Thread tc lewis


has any thought been put into releasing the stralloc library/interface by
itself?  qmail's stralloc files appear a bit different than djbdns', and
i'm unsure about the ones in other packages, but stralloc could be rather
useful for developers of other projects.

sorry that this is to the qmail list.  none of the cr.yp.to lists were
very relevant.

-tcl.





Re: Relay-ctrl and qmail

2001-02-27 Thread Bill Isaacs

Hi Bruce and Charles,

No luck yet.  I tried Bruce's suggestion with the same outcome as before:
---
tcpserver -v -R -x /etc/smtp.cdb 0 pop-3 /var/qmail/bin/qmail-popup 
hoss.willysworkshop.com \
/bin/checkpassword /usr/sbin/relay-ctrl-allow /var/qmail/bin/qmail-pop3d 
Maildir
2>&1 | \
/var/qmail/bin/splogger pop3d &
---


And Charles, here are the diagnostics you requested (I hope)

>Okay, lets see some information on the file itself.  How about
> `ls -ld / /etc /etc/tcpcontrol /etc/tcpcontrol/*`
--
[root@hoss relay-ctrl]# ls -ld / /etc /etc/tcpcontrol /etc/tcpcontrol/*
drwxr-xr-x  19 root root 1024 Feb 26 12:35 /
drwxr-xr-x  24 root root 3072 Feb 27 22:34 /etc
drwxr-xr-x   2 root root 1024 Feb 27 21:27 /etc/tcpcontrol
-rw-r--r--   1 root qmail2072 Feb 26 12:48 
/etc/tcpcontrol/pop-3.cdb
-rw-r--r--   1 root qmail2072 Feb 26 13:12 
/etc/tcpcontrol/pop-3.cdb
.rpmnew
-rw-r--r--   1 root qmail   7 Feb 26 12:48 
/etc/tcpcontrol/pop-3.rul
es
-rw-r--r--   1 root qmail   7 Feb 26 13:12 
/etc/tcpcontrol/pop-3.rul
es.rpmnew
-rw-r--r--   1 root qmail2074 Feb 26 12:48 
/etc/tcpcontrol/qmqp.cdb
-rw-r--r--   1 root qmail2074 Feb 26 13:12 
/etc/tcpcontrol/qmqp.cdb.
rpmnew
-rw-r--r--   1 root qmail   6 Feb 26 12:48 
/etc/tcpcontrol/qmqp.rule
s
-rw-r--r--   1 root qmail   6 Feb 26 13:12 
/etc/tcpcontrol/qmqp.rule
s.rpmnew
-rw-r--r--   1 root qmail2072 Feb 26 12:48 
/etc/tcpcontrol/qmtp.cdb
-rw-r--r--   1 root qmail2072 Feb 26 13:12 
/etc/tcpcontrol/qmtp.cdb.
rpmnew
-rw-r--r--   1 root qmail   7 Feb 26 12:48 
/etc/tcpcontrol/qmtp.rule
s
-rw-r--r--   1 root qmail   7 Feb 26 13:12 
/etc/tcpcontrol/qmtp.rule
s.rpmnew
-rw-r--r--   1 root root 2072 Feb 27 21:27 
/etc/tcpcontrol/smtp.cdb
-rw-r--r--   1 root qmail2072 Feb 26 13:12 
/etc/tcpcontrol/smtp.cdb.
rpmnew
-rw-r--r--   1 root qmail   7 Feb 26 12:48 
/etc/tcpcontrol/smtp.rule
s
-rw-r--r--   1 root qmail   7 Feb 26 13:12 
/etc/tcpcontrol/smtp.rule
s.rpmnew
[root@hoss relay-ctrl]#

>Then, use tcprulescheck on the cdb file to see if that IP address is
>in there:
> `TCPREMOTEIP=1.2.3.4 tcprulescheck /etc/tcpcontrol/smtp.cdb`

[root@hoss workshop]# TCPREMOTEIP=63.207.13.190 tcprulescheck 
/etc/tcpcontrol/smtp.cdb
rule :
allow connection
[root@hoss workshop]#
--

Anyway, there's the dope.  I did find an error in tcpcontrol, to whit:
I had not specified the full path to the smtp.cdb file.  Unfortunately
fixing this did not solve the problem.

Thanks,

Bill

_
Get your FREE download of MSN Explorer at http://explorer.msn.com




How to create two mailboxes for one user

2001-02-27 Thread Andrew Wafula

Hi,

I want to be able to implement a system where a user has one login but with
that one login is able to access two different mailboxes (I use Maildir
format). The mailboxes are separate but belong to that one user eg login is
johndoe but picks mail from johndoe and john_doe.

Andrew




rblsmtpd and inetd

2001-02-27 Thread Todd A. Jacobs

I'm getting a lot of errors like the following in my syslog:

Feb 27 20:09:51 cyrix inetd[925]: pid 27274: exit status 1

which I suspect are coming from rblsmtpd. The problem is that I don't know
how to redirect the stderr to a log file where I can see what the actual
problem is. My inetd line is as follows:

smtp stream tcp nowait qmaild /usr/sbin/tcpd \
/var/qmail/bin/tcp-env /usr/local/bin/rblsmtpd \
/var/qmail/bin/qmail-smtpd

According to the rblsmtpd man page, the errors are being sent to stderr,
but they're apparently not getting logged to syslog. What can I do?

-- 
Todd A. Jacobs
CodeGnome Consulting, LTD