[Postfixbuch-users] smtpd-auth auf ein neues
Carsten Laun-De Lellis
carsten.delellis at delellis.net
Mo Jul 13 20:24:01 CEST 2009
> -----Ursprüngliche Nachricht-----
> Von: postfixbuch-users-bounces at listen.jpberlin.de [mailto:postfixbuch-
> users-bounces at listen.jpberlin.de] Im Auftrag von Patrick Ben Koetter
> Gesendet: Montag, 13. Juli 2009 16:36
> An: postfixbuch-users at listen.jpberlin.de
> Betreff: Re: [Postfixbuch-users] smtpd-auth auf ein neues
>
> * Carsten Laun-De Lellis <postfixbuch-users at listen.jpberlin.de>:
> > Hallo alle zusammen
> >
> >
> >
> > Ich hatte vor ca. 2 Wochen schon mal gepostet, da ich Probleme mit
> > smptd-auth habe und habe keinen blassen Schimmer, wo ich in meiner
> Konfig
> > hinfassen muss, damit dies richtig funzt. Habe den Rechner nun
> nochmal neu
> > aufgesetzt, aber immer noch die gleichen Probleme.
> >
> >
> >
> > Die Daten zu der Installation könnte Ihr dem Auszug aus saslfinger
> > entnehmen. Zusätzlich habe ich noch einen Auszug aus dem mysql, dem
> mail und
> > dem messages log angehängt. Das Problem ist, dass beim sql server gar
> keine
> > Anfrage anzukommen scheint. Dies gilt jedoch nur für die
> Authentifizierung.
> > Für andere Abfragen, wie maildirectory, forwardings, usw sehe ich die
> SQL
> > Statements im Log. Habe wirklich keine Idee, wo ich da momentan
> hinpacken
> > muss.
>
> apparmor angeschaltet?
[>]
Apparmor ist nicht eingeschaltet, da Paket bei der Installation abgewählt.
>
> p at rick
>
>
>
> >
> >
> >
> >
> >
> > saslfinger - postfix Cyrus sasl configuration Mon Jul 13 14:29:02
> CEST 2009
> >
> > version: 1.0.2
> >
> > mode: server-side SMTP AUTH
> >
> >
> >
> > -- basics --
> >
> > Postfix: 2.5.5
> >
> > System: Welcome to openSUSE 11.1 - Kernel \r (\l).
> >
> >
> >
> > -- smtpd is linked to --
> >
> > libsasl2.so.2 => /usr/lib/libsasl2.so.2 (0xb7e7c000)
> >
> >
> >
> > -- active SMTP AUTH and TLS parameters for smtpd --
> >
> > broken_sasl_auth_clients = yes
> >
> > smtpd_sasl_auth_enable = yes
> >
> > smtpd_sasl_authenticated_header = yes
> >
> > smtpd_sasl_local_domain =
> >
> > smtpd_sasl_security_options = noanonymous
> >
> >
> >
> > -- listing of /etc/sasl2 --
> >
> > total 20
> >
> > drwxr-xr-x 2 root root 4096 Jul 13 14:23 .
> >
> > drwxr-xr-x 99 root root 12288 Jul 13 14:19 ..
> >
> > -rw------- 1 root root 283 Jul 13 14:23 smtpd.conf
> >
> >
> >
> > -- content of /etc/sasl2/smtpd.conf --
> >
> > pwcheck_method: auxprop
> >
> > mech_list: plain login
> >
> > log_level: 7
> >
> > #auxprop parameters
> >
> > auxprop_plugin: sql
> >
> > sql_engine: mysql
> >
> > sql_hostname: localhost
> >
> > sql_database: mail
> >
> > sql_user: --- replaced ---
> >
> > sql_passwd: --- replaced ---
> >
> > sql_select: SELECT password FROM virtual_users where username = '%u'
> >
> > sql_usessl: no
> >
> >
> >
> > -- active services in /etc/postfix/master.cf --
> >
> > # service type private unpriv chroot wakeup maxproc command +
> args
> >
> > # (yes) (yes) (yes) (never) (100)
> >
> > smtp inet n - - - - smtpd
> >
> >
> >
> > pickup fifo n - - 60 1 pickup
> >
> > cleanup unix n - - - 0 cleanup
> >
> > qmgr fifo n - n 300 1 qmgr
> >
> > tlsmgr unix - - - 1000? 1 tlsmgr
> >
> > rewrite unix - - - - - trivial-
> rewrite
> >
> > bounce unix - - - - 0 bounce
> >
> > defer unix - - - - 0 bounce
> >
> > trace unix - - - - 0 bounce
> >
> > verify unix - - - - 1 verify
> >
> > flush unix n - - 1000? 0 flush
> >
> > proxymap unix - - n - - proxymap
> >
> > proxywrite unix - - n - 1 proxymap
> >
> > smtp unix - - - - - smtp
> >
> > relay unix - - - - - smtp
> >
> > -o smtp_fallback_relay=
> >
> > showq unix n - - - - showq
> >
> > error unix - - - - - error
> >
> > retry unix - - - - - error
> >
> > discard unix - - - - - discard
> >
> > local unix - n n - - local
> >
> > virtual unix - n n - - virtual
> >
> > lmtp unix - - - - - lmtp
> >
> > anvil unix - - - - 1 anvil
> >
> > scache unix - - - - 1 scache
> >
> > maildrop unix - n n - - pipe
> >
> > flags=DRhu user=vmail argv=/usr/bin/maildrop -d ${recipient}
> >
> > uucp unix - n n - - pipe
> >
> > flags=Fqhu user=uucp argv=uux -r -n -z -a$sender - $nexthop!rmail
> > ($recipient)
> >
> > ifmail unix - n n - - pipe
> >
> > flags=F user=ftn argv=/usr/lib/ifmail/ifmail -r $nexthop
> ($recipient)
> >
> > bsmtp unix - n n - - pipe
> >
> > flags=Fq. user=bsmtp argv=/usr/lib/bsmtp/bsmtp -t$nexthop -f$sender
> > $recipient
> >
> > scalemail-backend unix - n n - 2 pipe
> >
> > flags=R user=scalemail argv=/usr/lib/scalemail/bin/scalemail-store
> > ${nexthop} ${user} ${extension}
> >
> > mailman unix - n n - - pipe
> >
> > flags=FR user=list argv=/usr/lib/mailman/bin/postfix-to-mailman.py
> >
> > ${nexthop} ${user}
> >
> >
> >
> > amavisd-new unix - - n - 2 smtp
> >
> > -o smtp_data_done_timeout=1200s
> >
> > -o disable_dns_lookups=yes
> >
> >
> >
> > 127.0.0.1:10025 inet n - n - - smtpd
> >
> > -o content_filter=
> >
> > -o local_recipient_maps=
> >
> > -o relay_recipient_maps=
> >
> > -o smtpd_restriction_classes=
> >
> > -o smtpd_client_restrictions=
> >
> > -o smtpd_helo_restrictions=
> >
> > -o smtpd_sender_restrictions=
> >
> > -o smtpd_recipient_restrictions=permit_mynetworks,reject
> >
> > -o mynetworks=127.0.0.0/8
> >
> >
> >
> > -- mechanisms on localhost --
> >
> > 250-AUTH PLAIN LOGIN
> >
> > 250-AUTH=PLAIN LOGIN
> >
> >
> >
> > -- end of saslfinger output --
> >
> >
> >
> >
> >
> >
> >
> > /var/log/mail
> >
> > Jul 13 16:05:38 S000010 postfix/smtpd[4708]: warning: dict_nis_init:
> NIS
> > domain name not set - NIS lookups disabled
> >
> > Jul 13 16:05:38 S000010 postfix/smtpd[4708]: connect from
> > unknown[10.242.2.6]
> >
> > Jul 13 16:05:39 S000010 postfix/smtpd[4708]: warning:
> unknown[10.242.2.6]:
> > SASL LOGIN authentication failed: authentication failure
> >
> > Jul 13 16:05:39 S000010 postfix/smtpd[4708]: lost connection after
> AUTH from
> > unknown[10.242.2.6]
> >
> > Jul 13 16:05:39 S000010 postfix/smtpd[4708]: disconnect from
> > unknown[10.242.2.6]
> >
> > Jul 13 16:05:40 S000010 postfix/smtpd[4708]: connect from
> > unknown[10.242.2.6]
> >
> > Jul 13 16:05:41 S000010 postfix/smtpd[4708]: warning:
> unknown[10.242.2.6]:
> > SASL LOGIN authentication failed: authentication failure
> >
> > Jul 13 16:05:41 S000010 postfix/smtpd[4708]: lost connection after
> AUTH from
> > unknown[10.242.2.6]
> >
> > Jul 13 16:05:41 S000010 postfix/smtpd[4708]: disconnect from
> > unknown[10.242.2.6]
> >
> > Jul 13 16:05:47 S000010 imapd: Connection, ip=[::ffff:10.242.2.6]
> >
> > Jul 13 16:05:47 S000010 postfix/smtpd[4708]: connect from
> > unknown[10.242.2.6]
> >
> > Jul 13 16:05:48 S000010 postfix/smtpd[4708]: warning:
> unknown[10.242.2.6]:
> > SASL LOGIN authentication failed: authentication failure
> >
> > Jul 13 16:05:48 S000010 postfix/smtpd[4708]: lost connection after
> AUTH from
> > unknown[10.242.2.6]
> >
> > Jul 13 16:05:48 S000010 postfix/smtpd[4708]: disconnect from
> > unknown[10.242.2.6]
> >
> > Jul 13 16:05:49 S000010 postfix/smtpd[4708]: connect from
> > unknown[10.242.2.6]
> >
> > Jul 13 16:05:49 S000010 postfix/smtpd[4708]: warning:
> unknown[10.242.2.6]:
> > SASL LOGIN authentication failed: authentication failure
> >
> > Jul 13 16:05:49 S000010 postfix/smtpd[4708]: lost connection after
> AUTH from
> > unknown[10.242.2.6]
> >
> > Jul 13 16:05:49 S000010 postfix/smtpd[4708]: disconnect from
> > unknown[10.242.2.6]
> >
> >
> >
> >
> >
> > /var/log/mysqld.log
> >
> > 090713 15:09:20 20 Quit
> >
> > 090713 15:12:55 21 Quit
> >
> > 090713 15:26:22 22 Connect root at localhost on mail
> >
> > 22 Query select domain from
> > virtual_mailbox_domains where domain = 'delellis.net'
> >
> > 23 Connect root at localhost on mail
> >
> > 23 Query select virtual_mailbox from
> > virtual_users where username = 'carsten.delellis at delellis.net' and
> > active='1'
> >
> > 24 Connect root at localhost on mail
> >
> > 24 Query select virtual_uid from
> virtual_users
> > where username = 'carsten.delellis at delellis.net' and active = '1'
> >
> > 25 Connect root at localhost on mail
> >
> > 25 Query select virtual_gid from
> virtual_users
> > where username = 'carsten.delellis at delellis.net' and active = '1'
> >
> > 090713 15:27:22 23 Quit
> >
> > 24 Quit
> >
> > 25 Quit
> >
> > 090713 16:05:38 26 Connect root at localhost on
> >
> > 26 Init DB mail
> >
> > 26 Query SELECT username, "", password,
> > virtual_uid, virtual_gid, virtual_mailbox_base, virtual_mailbox, "",
> > username, "" FROM virtual_users WHERE username =
> > 'carsten.delellis at delellis.net'
> >
> > 090713 16:05:47 27 Connect root at localhost on
> >
> > 27 Init DB mail
> >
> > 27 Query SELECT username, "", password,
> > virtual_uid, virtual_gid, virtual_mailbox_base, virtual_mailbox, "",
> > username, "" FROM virtual_users WHERE username =
> > 'carsten.delellis at delellis.net'
> >
> > 090713 16:10:38 26 Quit
> >
> > 090713 16:10:47 27 Quit
> >
> >
> >
> > /var/log/messages
> >
> > Jul 13 16:05:48 S000010 postfix/smtpd[4708]: sql plugin couldn't
> connect to
> > any host
> >
> > Jul 13 16:05:49 S000010 postfix/smtpd[4708]: sql plugin Parse the
> username
> > carsten.delellis at delellis.net
> >
> > Jul 13 16:05:49 S000010 postfix/smtpd[4708]: sql plugin try and
> connect to a
> > host
> >
> > Jul 13 16:05:49 S000010 postfix/smtpd[4708]: sql plugin trying to
> open db
> > 'mail' on host ''
> >
> > Jul 13 16:05:49 S000010 postfix/smtpd[4708]: sql plugin could not
> connect to
> > host
> >
> > Jul 13 16:05:49 S000010 postfix/smtpd[4708]: sql plugin couldn't
> connect to
> > any host
> >
> > Jul 13 16:05:49 S000010 postfix/smtpd[4708]: sql plugin Parse the
> username
> > carsten.delellis at delellis.net
> >
> > Jul 13 16:05:49 S000010 postfix/smtpd[4708]: sql plugin try and
> connect to a
> > host
> >
> > Jul 13 16:05:49 S000010 postfix/smtpd[4708]: sql plugin trying to
> open db
> > 'mail' on host ''
> >
> > Jul 13 16:05:49 S000010 postfix/smtpd[4708]: sql plugin could not
> connect to
> > host
> >
> > Jul 13 16:05:49 S000010 postfix/smtpd[4708]: sql plugin couldn't
> connect to
> > any host
> >
> > Jul 13 16:05:49 S000010 postfix/smtpd[4708]: sql plugin Parse the
> username
> > carsten.delellis at delellis.net
> >
> > Jul 13 16:05:49 S000010 postfix/smtpd[4708]: sql plugin try and
> connect to a
> > host
> >
> > Jul 13 16:05:49 S000010 postfix/smtpd[4708]: sql plugin trying to
> open db
> > 'mail' on host ''
> >
> > Jul 13 16:05:49 S000010 postfix/smtpd[4708]: sql plugin could not
> connect to
> > host
> >
> > Jul 13 16:05:49 S000010 postfix/smtpd[4708]: sql plugin couldn't
> connect to
> > any host
> >
> > Jul 13 16:05:49 S000010 postfix/smtpd[4708]: sql plugin Parse the
> username
> > carsten.delellis at delellis.net
> >
> > Jul 13 16:05:49 S000010 postfix/smtpd[4708]: sql plugin try and
> connect to a
> > host
> >
> > Jul 13 16:05:49 S000010 postfix/smtpd[4708]: sql plugin trying to
> open db
> > 'mail' on host ''
> >
> > Jul 13 16:05:49 S000010 postfix/smtpd[4708]: sql plugin could not
> connect to
> > host
> >
> > Jul 13 16:05:49 S000010 postfix/smtpd[4708]: sql plugin couldn't
> connect to
> > any host
> >
> >
> >
> > Carsten Laun-De Lellis
> > Dipl.-Ing. Elektrotechnik
> > Certified Information Systems Auditor (CISA)
> >
> > Hauptstrasse 13
> > D-67705 Trippstadt
> >
> > Phone: +49 (6306) 992140
> > Mobile: +49 (1520) 9889178
> > email: carsten.delellis at delellis.net
> >
> >
> >
>
> > --
> > _______________________________________________
> > Postfixbuch-users -- http://www.postfixbuch.de
> > Heinlein Professional Linux Support GmbH
> >
> > Postfixbuch-users at listen.jpberlin.de
> > https://listi.jpberlin.de/mailman/listinfo/postfixbuch-users
>
> --
> state of mind
> Digitale Kommunikation
>
> http://www.state-of-mind.de
>
> Franziskanerstraße 15 Telefon +49 89 3090 4664
> 81669 München Telefax +49 89 3090 4666
>
> Amtsgericht München Partnerschaftsregister PR 563
> --
> _______________________________________________
> Postfixbuch-users -- http://www.postfixbuch.de
> Heinlein Professional Linux Support GmbH
>
> Postfixbuch-users at listen.jpberlin.de
> https://listi.jpberlin.de/mailman/listinfo/postfixbuch-users
Mehr Informationen über die Mailingliste Postfixbuch-users