Re: [qmailtoaster] Virus problem

2009-07-30 Thread Natalio Gatti
>
>
>
>  Maybe I didn'y explain myself. The infected user sends spam using my mail
> server.
>
> Maybe your server is hacked. :(
> You should check logs, directories with write permission for all. There are
> many dictionary attacks on ports ssh and pop3. Check ssh daemon (if you're
> hacked you probably have sshd2), try to find strange directories or
> binaries. There is possibility that someone has weak password and it was
> guessed by attacker.
> OSSEC can help you to protect your server, tripwire is good solution to
> protect your files.
>
It has happened before (in other server), but this is not the case. Ssh is
restricted only to a group of IPs. Smtp connections come from the natted IP.


Re: [qmailtoaster] Message not sent

2009-07-30 Thread John Hansen
Ganesh wrote:

> Dear John,
> 
>Kindly check your /etc/tcprules.d/tcp.smtp and check that 
> CHKUSER setting. if it is possible then paste your /etc/tcprules.d/tcp.smtp
> contain..
> 
> Regards,
> Ganesh
> 
> On Thu, Jul 30, 2009 at 1:27 AM, John Hansen wrote:
> 
> > Hi,
> >
> > I'm starting to do some testing on a new install. I set up a couple of test
> > accounts and when I log into Squirrelmail and try to send an email from one
> > test account to another on the same server in the same domain, I get this
> > response just after hitting the send button.
> >
> >
> > Message not sent. Server replied:
> >
> > Unknown response
> > 571 sorry, sender address has invalid format (#5.7.1 - chkuser)
> >
> > Please advise.
> >
> > Thanks,
> >
> > John


Hi,

Contents of /etc/tcprules.d/tcp.smtp
This is the default entry for the tcp.smtp file, I haven't changed it from
the install only added the extra IP range from my network (10.) I was getting
the error before I added the extra IP range.

127.:allow,RELAYCLIENT="",DKSIGN="/var/qmail/control/domainkeys/%/private",RBLSMTPD="",NOP0FCHECK="1"
:allow,BADMIMETYPE="",BADLOADERTYPE="M",CHKUSER_RCPTLIMIT="50",CHKUSER_WRONGRCPTLIMIT="10",QMAILQUEUE="/var/qmail/bin/simscan",DKSIGN="/var/qmail/control/domainkeys/%/private",NOP0FCHECK="1"
10.:allow,RELAYCLIENT="",DKSIGN="/var/qmail/control/domainkeys/%/private",RBLSMTPD="",NOP0FCHECK="1"
:allow,BADMIMETYPE="",BADLOADERTYPE="M",CHKUSER_RCPTLIMIT="50",CHKUSER_WRONGRCPTLIMIT="10",QMAILQUEUE="/var/qmail/bin/simscan",DKSIGN="/var/qmail/control/domainkeys/%/private",NOP0FCHECK="1"

Thanks,
John

-- 
This message has been scanned for viruses and
dangerous content by the Cotter Technology 
Department, and is believed to be clean.


-
Qmailtoaster is sponsored by Vickers Consulting Group 
(www.vickersconsulting.com)
Vickers Consulting Group offers Qmailtoaster support and installations.
  If you need professional help with your setup, contact them today!
-
 Please visit qmailtoaster.com for the latest news, updates, and packages.
 
  To unsubscribe, e-mail: qmailtoaster-list-unsubscr...@qmailtoaster.com
 For additional commands, e-mail: qmailtoaster-list-h...@qmailtoaster.com




Re: [qmailtoaster] Message not sent

2009-07-30 Thread Eric Shubert

John Hansen wrote:

John Hansen wrote:

Hi,

I'm starting to do some testing on a new install. I set up a couple of test
accounts and when I log into Squirrelmail and try to send an email from one
test account to another on the same server in the same domain, I get this
response just after hitting the send button.


Message not sent. Server replied:

Unknown response
571 sorry, sender address has invalid format (#5.7.1 - chkuser)

Please advise.

Thanks,

John

Eric wrote: 

If you show us the sender's address that would help.

--
-Eric 'shubes'


sender: t...@cotterschools.org
recipient: test...@cotterschools.org

The error message showed up in the senders window, not as an email, but as an
error message immediately after hitting the send button.

Both are test accounts I set up earlier.

DNS is pointing internally.

Let me know what else will help.




Which client program?
You need to use the whole email address as the account name (including 
@cotterschools.org). Did you do so?


--
-Eric 'shubes'


-
Qmailtoaster is sponsored by Vickers Consulting Group 
(www.vickersconsulting.com)
   Vickers Consulting Group offers Qmailtoaster support and installations.
 If you need professional help with your setup, contact them today!
-
Please visit qmailtoaster.com for the latest news, updates, and packages.

 To unsubscribe, e-mail: qmailtoaster-list-unsubscr...@qmailtoaster.com

For additional commands, e-mail: qmailtoaster-list-h...@qmailtoaster.com




Re: [qmailtoaster] Message not sent

2009-07-30 Thread Eric Shubert

John Hansen wrote:

Ganesh wrote:


Dear John,

   Kindly check your /etc/tcprules.d/tcp.smtp and check that 
CHKUSER setting. if it is possible then paste your /etc/tcprules.d/tcp.smtp

contain..

Regards,
Ganesh

On Thu, Jul 30, 2009 at 1:27 AM, John Hansen wrote:


Hi,

I'm starting to do some testing on a new install. I set up a couple of test
accounts and when I log into Squirrelmail and try to send an email from one
test account to another on the same server in the same domain, I get this
response just after hitting the send button.


Message not sent. Server replied:

Unknown response
571 sorry, sender address has invalid format (#5.7.1 - chkuser)

Please advise.

Thanks,

John



Hi,

Contents of /etc/tcprules.d/tcp.smtp
This is the default entry for the tcp.smtp file, I haven't changed it from
the install only added the extra IP range from my network (10.) I was getting
the error before I added the extra IP range.

127.:allow,RELAYCLIENT="",DKSIGN="/var/qmail/control/domainkeys/%/private",RBLSMTPD="",NOP0FCHECK="1"
:allow,BADMIMETYPE="",BADLOADERTYPE="M",CHKUSER_RCPTLIMIT="50",CHKUSER_WRONGRCPTLIMIT="10",QMAILQUEUE="/var/qmail/bin/simscan",DKSIGN="/var/qmail/control/domainkeys/%/private",NOP0FCHECK="1"
10.:allow,RELAYCLIENT="",DKSIGN="/var/qmail/control/domainkeys/%/private",RBLSMTPD="",NOP0FCHECK="1"
:allow,BADMIMETYPE="",BADLOADERTYPE="M",CHKUSER_RCPTLIMIT="50",CHKUSER_WRONGRCPTLIMIT="10",QMAILQUEUE="/var/qmail/bin/simscan",DKSIGN="/var/qmail/control/domainkeys/%/private",NOP0FCHECK="1"

Thanks,
John



1) You shouldn't need to touch this file under most circumstances. You 
should only add your local network if you have an application that needs 
to submit messages but cannot authenticate. When this is the case, it's 
best to use a single IP address, not such a big range. This is a 
security risk.


2) The way you've specified it, the 2nd line will be true so your 3rd 
line will never take effect. The :allow... line should always be last.


I would go back to the stock settings in this file, then redo cdb again.

--
-Eric 'shubes'


-
Qmailtoaster is sponsored by Vickers Consulting Group 
(www.vickersconsulting.com)
   Vickers Consulting Group offers Qmailtoaster support and installations.
 If you need professional help with your setup, contact them today!
-
Please visit qmailtoaster.com for the latest news, updates, and packages.

 To unsubscribe, e-mail: qmailtoaster-list-unsubscr...@qmailtoaster.com

For additional commands, e-mail: qmailtoaster-list-h...@qmailtoaster.com




Re: [qmailtoaster] Message not sent

2009-07-30 Thread John Hansen
> >> John Hansen wrote:
> >>> Hi,
> >>>
> >>> I'm starting to do some testing on a new install. I set up a couple of 
> >>> test
> >>> accounts and when I log into Squirrelmail and try to send an email from 
> >>> one
> >>> test account to another on the same server in the same domain, I get this
> >>> response just after hitting the send button.
> >>>
> >>>
> >>> Message not sent. Server replied:
> >>>
> >>> Unknown response
> >>> 571 sorry, sender address has invalid format (#5.7.1 - chkuser)
> >>>
> >>> Please advise.
> >>>
> >>> Thanks,
> >>>
> >>> John
> >>>
> > Eric wrote: 
> >> If you show us the sender's address that would help.
> >>
> >> -- 
> >> -Eric 'shubes'
> > 
> > sender: t...@cotterschools.org
> > recipient: test...@cotterschools.org
> > 
> > The error message showed up in the senders window, not as an email, but as 
> > an
> > error message immediately after hitting the send button.
> > 
> > Both are test accounts I set up earlier.
> > 
> > DNS is pointing internally.
> > 
> > Let me know what else will help.
> > 
> >
Eric wrote: 
> Which client program?
> You need to use the whole email address as the account name 
> (including @cotterschools.org). Did you do so?
> 
> -- 
> -Eric 'shubes'

Squirrelmail.
No, I was only using the user name. When I went back and logged in using the
whole email address, it worked. Thanks.

-- 
This message has been scanned for viruses and
dangerous content by the Cotter Technology 
Department, and is believed to be clean.


-
Qmailtoaster is sponsored by Vickers Consulting Group 
(www.vickersconsulting.com)
Vickers Consulting Group offers Qmailtoaster support and installations.
  If you need professional help with your setup, contact them today!
-
 Please visit qmailtoaster.com for the latest news, updates, and packages.
 
  To unsubscribe, e-mail: qmailtoaster-list-unsubscr...@qmailtoaster.com
 For additional commands, e-mail: qmailtoaster-list-h...@qmailtoaster.com




Re: [qmailtoaster] Message not sent

2009-07-30 Thread John Hansen
> John Hansen wrote:
> > Ganesh wrote:
> > 
> >> Dear John,
> >>
> >>Kindly check your /etc/tcprules.d/tcp.smtp and check that 
> >> CHKUSER setting. if it is possible then paste your /etc/tcprules.d/tcp.smtp
> >> contain..
> >>
> >> Regards,
> >> Ganesh
> >>
> >> On Thu, Jul 30, 2009 at 1:27 AM, John Hansen 
> >> wrote:
> >>
> >>> Hi,
> >>>
> >>> I'm starting to do some testing on a new install. I set up a couple of 
> >>> test
> >>> accounts and when I log into Squirrelmail and try to send an email from 
> >>> one
> >>> test account to another on the same server in the same domain, I get this
> >>> response just after hitting the send button.
> >>>
> >>>
> >>> Message not sent. Server replied:
> >>>
> >>> Unknown response
> >>> 571 sorry, sender address has invalid format (#5.7.1 - chkuser)
> >>>
> >>> Please advise.
> >>>
> >>> Thanks,
> >>>
> >>> John
> > 
> > 
> > Hi,
> > 
> > Contents of /etc/tcprules.d/tcp.smtp
> > This is the default entry for the tcp.smtp file, I haven't changed it from
> > the install only added the extra IP range from my network (10.) I was 
> > getting
> > the error before I added the extra IP range.
> > 
> >
127.:allow,RELAYCLIENT="",DKSIGN="/var/qmail/control/domainkeys/%/private",RBLSMTPD="",NOP0FCHECK="1"
> >
:allow,BADMIMETYPE="",BADLOADERTYPE="M",CHKUSER_RCPTLIMIT="50",CHKUSER_WRONGRCPTLIMIT="10",QMAILQUEUE="/var/qmail/bin/simscan",DKSIGN="/var/qmail/control/domainkeys/%/private",NOP0FCHECK="1"
> >
10.:allow,RELAYCLIENT="",DKSIGN="/var/qmail/control/domainkeys/%/private",RBLSMTPD="",NOP0FCHECK="1"
> >
:allow,BADMIMETYPE="",BADLOADERTYPE="M",CHKUSER_RCPTLIMIT="50",CHKUSER_WRONGRCPTLIMIT="10",QMAILQUEUE="/var/qmail/bin/simscan",DKSIGN="/var/qmail/control/domainkeys/%/private",NOP0FCHECK="1"
> > 
> > Thanks,
> > John
> >
Eric wrote:
> 1) You shouldn't need to touch this file under most circumstances. 
> You should only add your local network if you have an application 
> that needs to submit messages but cannot authenticate. When this is 
> the case, it's best to use a single IP address, not such a big 
> range. This is a security risk.
> 
> 2) The way you've specified it, the 2nd line will be true so your 
> 3rd line will never take effect. The :allow... line should always be 
> last.
> 
> I would go back to the stock settings in this file, then redo cdb again.
> 
> -- 
> -Eric 'shubes'



Thanks. I will do that. The settings for 127. are stock settings. I will
remove the settings that start with 10., which are the lines I added.
John

-- 
This message has been scanned for viruses and
dangerous content by the Cotter Technology 
Department, and is believed to be clean.


-
Qmailtoaster is sponsored by Vickers Consulting Group 
(www.vickersconsulting.com)
Vickers Consulting Group offers Qmailtoaster support and installations.
  If you need professional help with your setup, contact them today!
-
 Please visit qmailtoaster.com for the latest news, updates, and packages.
 
  To unsubscribe, e-mail: qmailtoaster-list-unsubscr...@qmailtoaster.com
 For additional commands, e-mail: qmailtoaster-list-h...@qmailtoaster.com




[qmailtoaster] Hight Availability

2009-07-30 Thread Robin W. Sanchez C.
How or what kind of tools i need to configure a QmailToaster for FailOver

 

Thanks

 


Este correo electronico puede conteneder informacion confindencial y protegida 
legalmente bajo secreto profesional. La informacion esta dirigida solamente a 
la persona o entidad indicada como destinatario y su acceso por cualquier otra 
persona no esta autorizado. si ud
recibio este mensaje electronico por error, informeselo al remitente y borrelo. 
Aclaramos que los conceptos y opiniones comprendidos en este correo 
electronico, deben atribuirse exclusivamente a su auntor y no deben entenderse 
como necesariamente coincidentes con las de AIMAR, S.A. y en consecuencia, 
absolutamente
ajenos a la responsabilidad de sus directores y ejecutivos. en tanto no hayan 
participado de su confension y/o emision y quede esta participacion 
expresamente consignada en el mensaje
La divulgacion publica de este correo electronico,  como asi su copia, 
reproduccion total o parcial queda prohibida, dando lugar en caso de 
inobservancia de estas y todas las acciones legales que pudiesen corresponder. 




Re: [qmailtoaster] Hight Availability

2009-07-30 Thread Jake Vickers

Robin W. Sanchez C. wrote:


How or what kind of tools i need to configure a QmailToaster for FailOver

 


Thanks

 



There's an article on the wiki. On a commercial side I also offer 
high-availability and replication services (suitable for ISPs or 
corporate scenarios).
I'll also eventually do a video on some of these types of setups in the 
future.


[qmailtoaster] Re: Bulk user import script

2009-07-30 Thread PakOgah

Halo John,
I am replied to qmailtoaster list so everyone can also use it as 
reference for future use or correct me If I am making an error.

In your case, I have modified the script into below
===
#!/bin/sh
#
#  BULK USER ADDING FOR QMAIL TOASTER
#
# Created after I ran into an issue of creating 20,000 users on my toaster!
# Initial ideas come from a script that PakOgah "pako...@pala.bo-tak.info"
# helped me with.
# Still very manual, but Work in Progress
#
# Suggestions to akisa...@ucu.ac.ug
#
# Change a few variables and you are good to go
#
#
# Location of the users file
# Rememeber that the users file is in the format
# Firstname Lastname Username Password
USERS_FILE="/path/to/file.txt"
# The mail domain to which users are created
#
MAILDOMAIN="@domain.com"
# the vadduser command
QMAILADD="/home/vpopmail/bin/vadduser"
# Select a default password for all users
#PASS="mypass"
#Specify the Default Quota_in_bytes for your Users
# 10 MB = 10 x 1024 x 1024
QUOTA="10485760"
#Fun starts here No more variables to change below this line
cat ${USERS_FILE} | \
while read FIRSTNAME LASTNAME USERNAME PASSWORD
do
 echo "adding the user: $USERNAME"
   $QMAILADD -q $QUOTA -c "$FIRSTNAME $LASTNAME" 
$USERNAME$MAILDOMAIN $PASSWORD

done
#
===

John Hansen wrote:

Hi,

I'm looking at using this script for a bulk user import, but the users have
passwords all ready, so I don't want to use the same default password for
everyone. What changes would I need in the script so I can use it with a
separate password for each user?

I was thinking the format for the users file could just include the extra line
for the password.
Firstname Lastname Username Password


#!/bin/sh
#
#  BULK USER ADDING FOR QMAIL TOASTER
#
# Created after I ran into an issue of creating 20,000 users on my toaster!
# Initial ideas come from a script that PakOgah "pako...@pala.bo-tak.info"
# helped me with.
# Still very manual, but Work in Progress
#
# Suggestions to akisa...@ucu.ac.ug
#
# Change a few variables and you are good to go
#
#
# Location of the users file
# Rememeber that the users file is in the format
# Firstname Lastname Username
USERS_FILE="/path/to/file.txt"
# The mail domain to which users are created
#
MAILDOMAIN="@domain.com"
# the vadduser command
QMAILADD="/home/vpopmail/bin/vadduser"
# Select a default password for all users
PASS="mypass"
#Specify the Default Quota_in_bytes for your Users
# 10 MB = 10 x 1024 x 1024
QUOTA="10485760"
#Fun starts here No more variables to change below this line
cat ${USERS_FILE} | \
while read FIRSTNAME LASTNAME USERNAME
do
  echo "adding the user: $USERNAME"
$QMAILADD -q $QUOTA -c "$FIRSTNAME $LASTNAME" $USERNAME$MAILDOMAIN $PASS
done
#

Thanks,

John


  



-
Qmailtoaster is sponsored by Vickers Consulting Group 
(www.vickersconsulting.com)
   Vickers Consulting Group offers Qmailtoaster support and installations.
 If you need professional help with your setup, contact them today!
-
Please visit qmailtoaster.com for the latest news, updates, and packages.

 To unsubscribe, e-mail: qmailtoaster-list-unsubscr...@qmailtoaster.com

For additional commands, e-mail: qmailtoaster-list-h...@qmailtoaster.com