Re: [SOGo] Login/password reset

2016-09-08 Thread Gerhard Gaussling

Hello,

some further information. I hope someone can give me some hints.

Kind regards

Gerhard Gaußling

https://sogo.nu/files/docs/SOGoInstallationGuide.html#_authentication_using_ldap

root@srv-mail:/tmp# sudo -u sogo sogo-tool dump-defaults
<0x0x97e6ae8[SOGoProductLoader]> SOGo products loaded from 
'/usr/lib/GNUstep/SOGo':
<0x0x97e6ae8[SOGoProductLoader]>   MailerUI.SOGo, SchedulerUI.SOGo, 
ContactsUI.SOGo, PreferencesUI.SOGo, Appointments.SOGo, 
MailPartViewers.SOGo, Mailer.SOGo, AdministrationUI.SOGo, MainUI.SOGo, 
Contacts.SOGo, CommonUI.SOGo
[so-category-info] did not find exported SoClass 'SOGo' in product 
<0x0x98cf5f0[SoProduct]: loaded code-loaded 
bundle=/usr/lib/GNUstep/SOGo/MainUI.SOGo #classes=8 #categories=4 
rm=0x0x98d1bf0>!

{
NGImap4DisableIMAP4Pooling = YES;
NGUseUTF8AsURLEncoding = YES;
OCSFolderInfoURL = 
"mysql://sogo:sogopasswd@localhost:5432/sogo/sogo_folder_info";
OCSSessionsFolderURL = 
"mysql://sogo:sogopasswd@localhost:5432/sogo/sogo_session_folder";

SOGoACLsSendEMailNotifications = NO;
SOGoAppointmentSendEMailNotifications = YES;
SOGoAuthenticationMethod = LDAP;
SOGoCalendarCategories = (
Besprechung,
"Termin im Haus",
"Termin ausser Haus",
Jahrestag,
Urlaub
);
SOGoDoNotFetchMailHeader = YES;
SOGoDraftsFolderName = Drafts;
SOGoFirstDayOfWeek = 1;
SOGoFoldersSendEMailNotifications = NO;
SOGoForceIMAPLoginWithEmail = no;
SOGoForwardEnabled = YES;
SOGoIMAPServer = "192.168.70.3:143";
SOGoLDAPContactInfoAttribute = YES;
SOGoLanguage = German;
SOGoLoginModule = Calendar;
SOGoMailComposeMessageType = html;
SOGoMailDisableETag = YES;
SOGoMailDomain = "hwg.local";
SOGoMailMessageCheck = "every_5_minutes";
SOGoMailMessageForwarding = inline;
SOGoMailUseOutlookStyleReplies = YES;
SOGoMailingMechanism = smtp;
SOGoOtherUsersFolderName = "Other Users";
SOGoProfileURL = 
"mysql://sogo:sogopasswd@localhost:5432/sogo/sogo_user_profile";

SOGoSMTPServer = "192.168.70.15";
SOGoSentFolderName = Sent;
SOGoSharedFolderName = "Shared Folders";
SOGoSuperUsernames = (
hopp,
elzer,
hwg
);
SOGoTimeZone = "Europe/Berlin";
SOGoTrashFolderName = Trash;
SOGoUserSources = (
{
CNFieldName = cn;
IDFieldName = cn;
UIDFieldName = sAMAccountName;
baseDN = "cn=Users,ou=HWG-MEDIA,DC=hwg,DC=local";
bindDN = "cn=Administrator,cn=users,dc=hwg,dc=local";
bindFields = (
sAMAccountName
);
bindPassword = qwerty;
canAuthenticate = YES;
displayName = "HWG alle Mitarbeiter";
hostname = "192.168.70.200:389";
id = directory;
isAddressBook = no;
port = 389;
type = ldap;
}
);
SOGoVacationEnabled = YES;
SxVMemLimit = 1024;
WOMessageUseUTF8 = YES;
WOParsersUseUTF8 = YES;
WOPort = 2;
}
root@srv-mail:/tmp#


root@srv-mail:/tmp# tail -n50 -f /var/log/sogo/sogo.log
[...]
Sep 08 14:32:12 sogod [11245]: version 2.3.12 (build @shiva.inverse 
201606101136) -- starting
Sep 08 14:32:12 sogod [11245]: vmem size check enabled: shutting down 
app when vmem > 1024 MB
Sep 08 14:32:12 sogod [11245]: <0x0xb8f1cfb8[SOGoProductLoader]> SOGo 
products loaded from '/usr/lib/GNUstep/SOGo':
Sep 08 14:32:12 sogod [11245]: <0x0xb8f1cfb8[SOGoProductLoader]>   
MailerUI.SOGo, SchedulerUI.SOGo, ContactsUI.SOGo, PreferencesUI.SOGo, 
Appointments.SOGo, MailPartViewers.SOGo, Mailer.SOGo, 
AdministrationUI.SOGo, MainUI.SOGo, Contacts.SOGo, CommonUI.SOGo
Sep 08 14:32:12 sogod [11245]: <0x0xb904bb40[WOWatchDog]> listening on 
*:2
Sep 08 14:32:12 sogod [11245]: <0x0xb904bb40[WOWatchDog]> watchdog 
process pid: 11245
Sep 08 14:32:12 sogod [11245]: <0x0xb74ac8c0[WOWatchDogChild]> watchdog 
request timeout set to 10 minutes
Sep 08 14:32:12 sogod [11245]: <0x0xb904bb40[WOWatchDog]> preparing 3 
children
Sep 08 14:32:12 sogod [11245]: <0x0xb904bb40[WOWatchDog]> child spawned 
with pid 11263
Sep 08 14:32:12 sogod [11245]: <0x0xb904bb40[WOWatchDog]> child spawned 
with pid 11264
Sep 08 14:32:12 sogod [11245]: <0x0xb904bb40[WOWatchDog]> child spawned 
with pid 11265
Sep 08 14:32:41 sogod [11265]: <0x0xb8f08350[SOGoCache]> Cache cleanup 
interval set every 300.00 seconds
Sep 08 14:32:41 sogod [11265]: <0x0xb8f08350[SOGoCache]> Using host(s) 
'localhost' as server(s)
Sep 08 14:32:41 sogod [11265]: [ERROR] <0x0xb8ec6bd8[NGBundleManager]> 
could not create bundle for path: 
'/usr/share/GNUstep/Libraries/gnustep-base/Versions/1.22/Resources/SSL.bundle'
Sep 08 14:32:41 sogod [11265]: SOGoRootPage Login from '127.0.0.1' for 
user 'Administrator' might not have worked - password policy: 65535  
grace: -1  expire: -1  bound: 0
Sep 08 14:32:41 sogod [11265]: 127.0.0.1 "POST /SOGo/connect HTTP/1.1" 
403 34/49 0.032 - - 3M



Am 06.

[SOGo] Login/password reset

2016-09-06 Thread Gerhard Gaussling

Hello,

I got issues to login in sogo. We switched last year from lotus notes to 
kerio

and upgraded/switched our active directory domain controler from WS2003 to
WS2012 and changed the domain name. We used sogo on a testing basis from 
2012
to ~2014, but the server was all the time online. After the switch to 
the new

domain I noticed, that I could no longer view older emails, due to login
issues to the old mail-server (debian/postfix/sogo).

Therfor I tried to solve that issue and first upgraded the server from 
squeeze
to wheezy. Then I tried to cange all instances in /etc from the older 
domain
name to the new one. Now I'm able to list ldap infos froim the new 
domain, but

I'mn not able to login to the sogo webinterface. I tried the admin pass and
sogo/sogo credentials, but the login returns an error like

Sep 06 12:44:24 sogod [4103]: 127.0.0.1 "POST /SOGo/connect HTTP/1.1" 
403 34/49 0.004 - - 0
Sep 06 12:44:40 sogod [4103]: SOGoRootPage Login from '127.0.0.1' for 
user 'Administrator' might not have worked - password policy: 65535  
grace: -1  expire: -1  bound: 0
Sep 06 12:44:40 sogod [4103]: 127.0.0.1 "POST /SOGo/connect HTTP/1.1" 
403 34/49 0.004 - - 0
Sep 06 12:46:40 sogod [4103]: SOGoRootPage Login from '127.0.0.1' for 
user 'sogo' might not have worked - password policy: 65535 grace: -1  
expire: -1  bound: 0
Sep 06 12:46:40 sogod [4103]: 127.0.0.1 "POST /SOGo/connect HTTP/1.1" 
403 34/36 0.004 - - 36K



ii  sogo:i386  2.3.12-1

Description:Debian GNU/Linux 7.11 (wheezy)
Release:7.11
Codename:   wheezy

The culprit might be also a change in ldap binding to the AD, though I 
don't know.


root@srv-mail:/tmp# smbldap-passwd
04DC: LdapErr: DSID-0C090748, comment: In order to perform this 
operation a successful bind must be completed on the connection., data 
0, v2580 at /usr/share/perl5/smbldap_tools.pm line 430.
root@srv-mail:/tmp# net rpc 
testjoinJoin to 'HWG' is OK
root@srv-mail:/tmp# testparm > 
/tmp/smb.conf.before Load smb config files 
from /etc/samba/smb.conf

rlimit_max: increasing rlimit_max (1024) to minimum Windows limit (16384)
Processing section "[homes]"
Processing section "[printers]"
Processing section "[print$]"
Processing section "[share]"
Loaded services file OK.
WARNING: The setting 'security=ads' should NOT be combined with the 
'password server' parameter.

(by default Samba will discover the correct DC to contact automatically).
Server role: ROLE_DOMAIN_MEMBER
Press enter to see a dump of your service definitions


Kind regards

Gerhard Gaußling


--
users@sogo.nu
https://inverse.ca/sogo/lists