RE: [qmailtoaster] ETRN (Store and Forward)

2009-08-29 Thread James Ecker
No, if the VPN is established from inside the firewall to the outside there doesn't need to be any open ports. > To: qmailtoaster-list@qmailtoaster.com > From: e...@shubes.net > Date: Sat, 29 Aug 2009 07:23:57 -0700 > Subject: Re: [qmailtoaster] ETRN (Store and Forward) > > That's not a bad id

Re: [qmailtoaster] 511 error after server move (on one domain only)

2009-08-29 Thread Sean Humphries
Guys thanks for all your help. I guess that domains zone file was corrupt, I deleted it and recreated it and all is well now. Glad it was one of my smaller domains :) > There are two types of dns servers. One serves as a lookup service > (caching or recursive server), and the other is an authori

Re: [qmailtoaster] 511 error after server move (on one domain only)

2009-08-29 Thread Eric Shubert
There are two types of dns servers. One serves as a lookup service (caching or recursive server), and the other is an authoritative server that contains the definitive domain/host (zone) information. The two types can be combined in a single server, but that is not a recommended configuration.

Re: [qmailtoaster] 511 error after server move (on one domain only)

2009-08-29 Thread Sean Humphries
OK using the host command all of my domains return records except the one with sending issues. If the host cmd returns no records does the problem point to the dns server or is it an issue on the localhost? I am using a dns server that is local on the network and it seems to be configured correct

Re: [qmailtoaster] re: harvesting

2009-08-29 Thread Constantin IOAJA
Maxwell Smart wrote: Constantin, Is that your OSSEC excerpt? What is the corresponding .conf look like? A wiki page for fail2ban and OSSEC would be nice. Inclusion in the QTP would be excellent too. The latest version of Webmin would be nice too. I will see if I can come up with some write

Re: [qmailtoaster] 511 error after server move (on one domain only)

2009-08-29 Thread Maxwell Smart
Nice tip Eric. I never used the host callout. #dig example.com MX will also work. Eric Shubert wrote: Or: # host example.com should show: example.com has address nn.nn.nn.nn example.com mail is handled by 'nn' 'mailhost' Then you can dig 'mailhost'. The DNS record for 'mailhost' needs to be

Re: [qmailtoaster] ETRN (Store and Forward)

2009-08-29 Thread Eric Shubert
aledr wrote: On Sat, Aug 29, 2009 at 11:23 AM, Eric Shubert wrote: That's not a bad idea. I recommend using OpenVPN, as it works well with/between windoze and linux. IPSec is problematic, especially between different implementations of it. I'm wondering though. The VPN is going to need an open

Re: [qmailtoaster] 511 error after server move (on one domain only)

2009-08-29 Thread Eric Shubert
Or: # host example.com should show: example.com has address nn.nn.nn.nn example.com mail is handled by 'nn' 'mailhost' Then you can dig 'mailhost'. The DNS record for 'mailhost' needs to be a type A record (not a cname). Maxwell Smart wrote: Have you done a dig to find out what the DNS is rep

Re: [qmailtoaster] 511 error after server move (on one domain only)

2009-08-29 Thread Maxwell Smart
Have you done a dig to find out what the DNS is reporting? # dig mail.example.com or # dig example.com ANY @your dns server address. CJ Sean Humphries wrote: Hi Moved a server using qtp-backup and restore. Server moved to a new ip address and domain. I am having an issue with one domain sen

Re: [qmailtoaster] ETRN (Store and Forward)

2009-08-29 Thread aledr
On Sat, Aug 29, 2009 at 11:23 AM, Eric Shubert wrote: > That's not a bad idea. I recommend using OpenVPN, as it works well > with/between windoze and linux. IPSec is problematic, especially between > different implementations of it. > > I'm wondering though. The VPN is going to need an open port to

[qmailtoaster] 511 error after server move (on one domain only)

2009-08-29 Thread Sean Humphries
Hi Moved a server using qtp-backup and restore. Server moved to a new ip address and domain. I am having an issue with one domain sending mail. the error is 511 sorry, can't find a valid MX for sender domain (#5.1.1 - chkuser) I know this is a dns issue but I checked everything I can think of a

Re: [qmailtoaster] Fail2Ban - Qmail & Vpopmail [centos]

2009-08-29 Thread Maxwell Smart
Great work Ole. I have fail2ban installed and I will test the vpopmail, since I am only using it for ssh and ftp right now. CJ Ole N.Johansen wrote: *Install fail2ban:* wget http://sourceforge.net/projects/fail2ban/files/fail2ban-stable/fail2ban-0.8.3/fail2ban-0.8.3.tar.bz2/download tar

Re: [qmailtoaster] ETRN (Store and Forward)

2009-08-29 Thread Eric Shubert
That's not a bad idea. I recommend using OpenVPN, as it works well with/between windoze and linux. IPSec is problematic, especially between different implementations of it. I'm wondering though. The VPN is going to need an open port to run across, no? So why couldn't the toaster simply send th

RE: [qmailtoaster] ETRN (Store and Forward)

2009-08-29 Thread James Ecker
Thank you everyone for your ideas. I am going to try and setup a VPN between the QmailToaster and the Exchange Server. Once the VPN is established I am going to try and route email through the VPN. This is presuming I am able to pass traffic through VPN initiated by the server. I will let every

[qmailtoaster] Fail2Ban - Qmail & Vpopmail [centos]

2009-08-29 Thread Ole N.Johansen
Install fail2ban: wget http://sourceforge.net/projects/fail2ban/files/fail2ban-stable/fail2ban-0.8. 3/fail2ban-0.8.3.tar.bz2/download tar -xjvf fail2ban-0.8.3.tar.bz2 cd fail2ban-0.8.3 python setup.py install vi /etc/fail2ban/jail.conf Enable only the sections you need and do them on

Re: [qmailtoaster] ETRN (Store and Forward)

2009-08-29 Thread Jake Vickers
James Ecker wrote: I have a client with an Exchange server that just recently move to a location with high speed Internet, but they are behind a hosted firewall that does not allow the email to be delivered directly. The appropriate changes have been requested, but they need a temporary soluti

Re: [qmailtoaster] TLS_connect_failed: Plesk mailserver

2009-08-29 Thread Jake Vickers
Michael Colvin wrote: If you won't want to pay $15, don't want to contact the other server's admin, or you can't just get that domain's hosting yourself, you might consider setting up another qmail server w/o tls, possibly on a virtual machine or something, and use smtproutes on your main server,

Re: [qmailtoaster] ETRN (Store and Forward)

2009-08-29 Thread Ganesh.payelkar
Dear James, As per Eric it is good idea to put 1 qmail server to accept mail from outside and then tell him to send mail to your exchange and vice varsa Either you write smtproute or just write fetchmail to push mail to exchange. Correct me if i am wrong.

RE: [qmailtoaster] re: harvesting

2009-08-29 Thread Ole N.Johansen
Eric, I will do that, just have to test the configuration out first. -Original Message- From: news [mailto:n...@ger.gmane.org] On Behalf Of Eric Shubert Sent: 29. august 2009 00:51 To: qmailtoaster-list@qmailtoaster.com Subject: Re: [qmailtoaster] re: harvesting Not stupid really. I don'