注释掉 postfix main.cf 里的 smtp_tls_security_level 参数,重启或 reload postfix 服务即可。
P.S. 它落后了。
一直想用 letsencrypt 没时间搞,每天杂事太多。
支持 Red Hat Enterprise Linux, CentOS, Scientific Linux, Debian, Ubuntu, FreeBSD, OpenBSD
您尚未登陆。 请选择登陆或是注册一个新账号。
iRedMail 开源邮件服务解决方案 » 由 hackerzyh 发表的文章
注释掉 postfix main.cf 里的 smtp_tls_security_level 参数,重启或 reload postfix 服务即可。
P.S. 它落后了。
一直想用 letsencrypt 没时间搞,每天杂事太多。
==== 必填信息。没有填写将不予回复 ====
- iRedMail 版本号:0.9.5-1
- 使用哪个数据库存储用户帐号:mysql
- 使用的 Linux/BSD 发行版名称及版本号:DEBIAN8
- 与您的问题相关的日志信息:
E5D9CE0B9A 17625588 Tue Sep 20 10:32:54 liyingying@mydomain01.com
(host mx.c1.icoremail.net[] said: 421 Read data from client error (in reply to end of DATA command))
域名 mydomian01.com 是用iRdmail-0.9.5-1管理的
域名 mydomain02.com.cn 是在尚易 租用的邮件服务。
每天mydomain01.com的服务器很多 421 read data from client error 的错误,和尚易沟通了半个月,对法回复我如下:
十分抱歉,让您久等了。目前研发工程师给出了临时的解决方案,建议发件时连接我们服务器投递邮件不要使用ssl连接与starttls 加密连接,请您尝试。谢谢!
PS: mydomain01.com的证书是从 startssl.com 申请证书,到明年4月25日到期。
==== 必填信息。没有填写将不予回复 ====
- iRedMail 版本号:
- 使用哪个数据库存储用户帐号(OpenLDAP,MySQL,PostgreSQL):
- 使用的 Linux/BSD 发行版名称及版本号:
- 与您的问题相关的日志信息:
==== ==== 必填信息。没有填写将不予回复 ====
- iRedMail 版本号:
- 使用哪个数据库存储用户帐号(OpenLDAP,MySQL,PostgreSQL):
- 使用的 Linux/BSD 发行版名称及版本号:
- 与您的问题相关的日志信息:
==== ==== 必填信息。没有填写将不予回复 ====
- iRedMail 版本号:0.9.5-1
- 使用哪个数据库存储用户帐号: mysql
- 使用的 Linux/BSD 发行版名称及版本号:Debian 8.0
- 与您的问题相关的日志信息:
# python wblist_admin.py --account test@example.com --outbound --list --blacklist
* Establishing SQL connection.
* List all outbound blacklist for account: test@example.com
#python wblist_admin.py --account test@example.com --outbound --delete --blacklist mlist@example.com
* Establishing SQL connection.
* Delete outbound blacklist for account: test@mehow.my
delete_wblist() takes at least 2 arguments (3 given)
- iRedMail 版本号:0.9.5-1
- 使用哪个数据库存储用户帐号 MySQL
- 使用的 Linux/BSD 发行版名称及版本号: debian8.5
- 与您的问题相关的日志信息: iredapd日志如下
2016-06-16 09:39:12 DEBUG smtp session: encryption_keysize=0
2016-06-16 09:39:12 DEBUG Skip plugin: reject_null_sender (protocol_state != END-OF-MESSAGE)
2016-06-16 09:39:12 DEBUG Skip plugin: reject_sender_login_mismatch (protocol_state != END-OF-MESSAGE)
2016-06-16 09:39:12 DEBUG Skip plugin: greylisting (protocol_state != END-OF-MESSAGE)
2016-06-16 09:39:12 DEBUG --> Apply plugin: throttle
2016-06-16 09:39:12 DEBUG Sender domain (@mehow.com) is same as recipient domain, skip throttling.
2016-06-16 09:39:12 DEBUG <-- Result: DUNNO
2016-06-16 09:39:12 DEBUG Skip plugin: sql_alias_access_policy (protocol_state != END-OF-MESSAGE)
2016-06-16 09:39:12 DEBUG Skip plugin: amavisd_wblist (protocol_state != END-OF-MESSAGE)
2016-06-16 09:39:12 DEBUG Session ended
2016-06-16 09:39:12 INFO [] END-OF-MESSAGE, postmaster@mehow.com -> mlist@mehow.com, DUNNO
2016-06-16 09:48:43 DEBUG smtp session: request=smtpd_access_policy
2016-06-16 09:48:43 DEBUG smtp session: protocol_state=END-OF-MESSAGE
2016-06-16 09:48:43 DEBUG smtp session: protocol_name=ESMTP
2016-06-16 09:48:43 DEBUG smtp session: recipient_count=1
2016-06-16 09:48:43 DEBUG smtp session: queue_id=A6A7D9FFDD
2016-06-16 09:48:43 DEBUG smtp session: instance=2a04.57620576.979f2.0
2016-06-16 09:48:43 DEBUG smtp session: size=3972
2016-06-16 09:48:43 DEBUG smtp session: etrn_domain=
2016-06-16 09:48:43 DEBUG smtp session: stress=
2016-06-16 09:48:43 DEBUG smtp session: sasl_method=
2016-06-16 09:48:43 DEBUG smtp session: sasl_username=
2016-06-16 09:48:43 DEBUG smtp session: sasl_sender=
2016-06-16 09:48:43 DEBUG smtp session: ccert_subject=
2016-06-16 09:48:43 DEBUG smtp session: ccert_issuer=
2016-06-16 09:48:43 DEBUG smtp session: ccert_fingerprint=
2016-06-16 09:48:43 DEBUG smtp session: ccert_pubkey_fingerprint=
2016-06-16 09:48:43 DEBUG smtp session: encryption_protocol=TLSv1.2
2016-06-16 09:48:43 DEBUG smtp session: encryption_cipher=ECDHE-RSA-AES256-GCM-SHA384
2016-06-16 09:48:43 DEBUG smtp session: encryption_keysize=256
2016-06-16 09:48:43 DEBUG Skip plugin: reject_null_sender (protocol_state != END-OF-MESSAGE)
2016-06-16 09:48:43 DEBUG Skip plugin: reject_sender_login_mismatch (protocol_state != END-OF-MESSAGE)
2016-06-16 09:48:43 DEBUG Skip plugin: greylisting (protocol_state != END-OF-MESSAGE)
2016-06-16 09:48:43 DEBUG --> Apply plugin: throttle
2016-06-16 09:48:43 DEBUG Bypass sender throttling (No sasl_username).
2016-06-16 09:48:43 DEBUG Check recipient throttling.
2016-06-16 09:48:43 DEBUG [SQL] Query throttle setting:
2016-06-16 09:48:43 DEBUG [SQL] Query result:
2016-06-16 09:48:43 DEBUG No recipient throttle setting.
2016-06-16 09:48:43 DEBUG <-- Result: DUNNO
2016-06-16 09:48:43 DEBUG Skip plugin: sql_alias_access_policy (protocol_state != END-OF-MESSAGE)
2016-06-16 09:48:43 DEBUG Skip plugin: amavisd_wblist (protocol_state != END-OF-MESSAGE)
2016-06-16 09:48:43 DEBUG Session ended
2016-06-16 09:48:43 INFO [113.98.*.*] END-OF-MESSAGE, zhangyh@163.com -> mlist@mehow.com, DUNNO
表mailbox 字段信息如下
| username | allowedsenders | rejectedsenders | allowedrecipients | rejectedrecipients |
| mlist@mehow.com | test@mehow.com | @. | @mehow.com | @. |
无法控制只允许test@mehow.com 发送邮件到 mlist@mehow.com
amavisd_wblist 插件已启用。
==== 必填信息。没有填写将不予回复 ====
- iRedMail 版本号:0.9.5-1
- 使用哪个数据库存储用户帐号 MySQL
- 使用的 Linux/BSD 发行版名称及版本号: Debian 8.5
- 与您的问题相关的日志信息:
在IRedmail 0.8.6 版本里面的 插件 sql_user_restrictions.py 在 0.9.5-1里面找不到了,是集成到那个插件了吗?
*) 设置一个正确的时区。
*) 用 ntp 命令同步系统时钟。
我应该设置那个时区啊,? 如果我设置的时区不是CST的话,会不会影响客户端收到邮件显示时间?
- iRedMail 版本号: 0.9.2
- 使用哪个数据库存储用户帐号:mysql
- 使用的 Linux/BSD 发行版名称及版本号:debian 7
- 与您的问题相关的日志信息:
在OS里面 输入date返回时间
root@exmail:~# date
2015年 08月 14日 星期五 09:05:16 CST
2015-08-14 01:05:54 postmaster@mailmehow.com Login success
解决办法 去电信公司 申请了 从IP到domian的解析后,然后打开趋势科技 https://ers.trendmicro.com/reputations 查询,在查询结果页面申诉自己的ip从DUL移除。 至此,问题解决了。
是要做反向解析, 很多公司的邮件服务器都没有做反向解析,不照样正常使用。
WHOIS 是 DNS 注册商/服务商那里修改的。和你修改域名的 A/MX 记录基本是同一个地方。
已经设置了 域名状态 :禁止转移/禁止更新
2. Add a statement in WHOIS information indicating the space is statically assigned. 这个是要在哪里添加?
方法1 Add the rDNS......
至于方法 2. Add a statement in WHOIS information indicating the space is statically assigned.
==== 必填信息。没有填写将不予回复 ====
- iRedMail 版本号:0.8.7
- 使用哪个数据库存储用户帐号:MySQL
- 使用的 Linux/BSD 发行版名称及版本号:Debian7
- 与您的问题相关的日志信息:
<JSoria#iag.org>: host in.sjc.mx.trendmicro.com[216.99.131.***] said: 550
5.7.1 Service unavailable; Client host [113.98.228.***] blocked using Trend
Micro RBL+. Please see
http://www.mail-abuse.com/cgi-bin/looku … 8.228.***; Mail
from 113.98.228.*** blocked using Trend Micro Email Reputation database.
Please see <http://www.mail-abuse.com/cgi-bin/lookup?113.98.228.***> (in
reply to RCPT TO command)
<Bing.Cao#wsplastic.com.au>: host mail.wsplastics.com.au[150.101.196.**]
550 5.7.1 Your email messages have been blocked by the recipient OR by
Trend Micro Email Reputation Service. Contact the recipient or his/her
administrator using alternate means to resolve the issue. (in reply to RCPT
TO command)
113.98.228.*** is listed on the Trend Micro Dynamic User List (DUL) because it appears to be an IP address not clearly labeled as static.
This email is designed to help you solve the problem.
If you are an ISP, you can
1. Add the rDNS of this IP to clearly indicate static.
ex: mail.mail-abuse.com (O)
99-47-70-150.dynamic-IP.mail-abuse.com (X)
2. Add a statement in WHOIS information indicating the space is
statically assigned.
If you are an end user, please check your email configuration (STEP 1 below). If that does not stop the IP from being blocked, you can contact your ISP for further action (STEP 2 below).
Here are two things to check about your mail configuration:
Email Client
Check that the Outgoing Mail Server (SMTP) setting on your email client (such as Outlook Express or Mail) is using the outgoing mail server for your ISP. Most ISPs require that you use their mail server to avoid spamming incidents.
Email Server or Proxy Server
If you run a mail server on your computer, or if your local network uses a proxy server, set the SMTP Gateway setting on the mail server or proxy server to your ISP's outgoing mail server. This will force your mail server or proxy server to send all outgoing mail to the ISP first, and then the ISP will relay it to its final destination.
Note: If you are a RoadRunner business customer, you may need to contact your ISP to get your business IP marked as static. They will then let Trend know of the change.
If the step above does not solve the blocking issue, the rDNS for the IP may need to be corrected to clearly indicate it is a static IP.
Trend's Spam Investigations team can work with your ISP to solve the problem. You can find the correct email address to use when contacting your ISP to use by going to the following web page and typing in your IP address:
Then click on the Domain owner info (Whois /Abuse) link and look for an email address. You can use this address to contact your ISP and ask them to work with Trend Micro.
The ISP can start this process by sending an email from their Domain owner email address to dul@mail-abuse.com.
Thank you for contacting Trend Micro and we hope this email has helped you to resolve the IP blocking issue.
Kind regards,
The Trend Micro Spam Investigation (TMSI) team California, USA and Manila, The Philippines
忘记自己手动更行了 openssl_1.0.1g 造成无法升级。
解决办法,从debian 官网下载了 openssl_1.0.1e 手动安装,就可以使用apt-get 更新了
no zuo no die
- iRedMail 版本号:0.8.5
- 使用哪个数据库存储用户帐号:MySQL:
- 使用的 Linux/BSD 发行版名称及版本号:debian 7.4
debian 升级时候提示一下错误
root@exmail:/etc/apt# apt-get upgrade
正在读取软件包列表... 完成
正在读取状态信息... 完成
您也许需要运行“apt-get -f install”来修正上面的错误。
openssl : 依赖: libc6 (>= 2.15) 但是 2.13-38+deb7u1 已经安装
E: 不能满足依赖关系。不妨试一下 -f 选项。
root@exmail:/etc/apt# apt-get -f install
正在读取软件包列表... 完成
正在读取状态信息... 完成
正在更正依赖关系... 完成
libdate-manip-perl libtommath0 libyaml-syck-perl
Use 'apt-get autoremove' to remove them.
altermime bsd-mailx ca-certificates dovecot-core dovecot-imapd dovecot-managesieved dovecot-mysql
dovecot-pop3d dovecot-sieve liblwp-protocol-https-perl libwww-perl logwatch openssl postfix postfix-mysql
postfix-pcre spamassassin ssl-cert
升级了 0 个软件包,新安装了 0 个软件包,要卸载 18 个软件包,有 15 个软件包未被升级。
有 1 个软件包没有被完全安装或卸载。
解压缩后将会空出 20.8 MB 的空间。
#deb http://mirrors.163.com/debian wheezy main contrib non-free
#deb http://mirrors.163.com/debian wheezy-proposed-updates main contrib non-free
#deb-src http://mirrors.163.com/debian wheezy main contrib non-free
#deb-src http://mirrors.163.com/debian wheezy-proposed-updates main contrib non-free
#deb http://mirrors.163.com/debian-security wheezy/updates main contrib non-free
#deb-src http://mirrors.163.com/debian-security wheezy/updates main contrib non-free
#deb http://ftp.cn.debian.org/debian squeeze-updates main contrib non-free
今天中午12点 我再次启用了mydomain1.com域名的dkim的txt记录
Jan 20 15:48:12 exmail postfix/qmgr[28156]: C9EE226415C5: from=<lkmould_c@lkm.com.hk>, size=1839, nrcpt=1 (queue active)
Jan 20 15:48:17 exmail postfix/qmgr[28156]: 73CED26415DE: from=<lkmould_c@lkm.com.hk>, size=2602, nrcpt=1 (queue active)
Jan 20 15:48:17 exmail amavis[32589]: (32589-17) Passed CLEAN {RelayedInternal}, LOCAL []:14939 [] <lkmould_c@lkm.com.hk> -> <zw_xu@mydomain1.com>, Queue-ID: C9EE226415C5, mail_id: zblZEBRiRtPx, Hits: 3.146, size: 1839, queued_as: 73CED26415DE, 4568 ms
Jan 20 15:49:23 exmail postfix/qmgr[28156]: CF3FF26415EC: from=<lkmould_c@lkm.com.hk>, size=1967, nrcpt=1 (queue active)
Jan 20 15:49:29 exmail postfix/qmgr[28156]: 2E61326415F5: from=<lkmould_c@lkm.com.hk>, size=2730, nrcpt=1 (queue active)
Jan 20 15:49:29 exmail amavis[1268]: (01268-05) Passed CLEAN {RelayedInternal}, LOCAL []:55802 [] <lkmould_c@lkm.com.hk> -> <zw_xu@mydomain1.com>, Queue-ID: CF3FF26415EC, mail_id: VleJYHUXJ6Eu, Hits: 3.146, size: 1966, queued_as: 2E61326415F5, 4720 ms
Jan 20 15:50:29 exmail postfix/qmgr[28156]: CC2AC26415FA: from=<lkmould_c@lkm.com.hk>, size=1396, nrcpt=1 (queue active)
Jan 20 15:50:33 exmail postfix/qmgr[28156]: 802E926415FB: from=<lkmould_c@lkm.com.hk>, size=1934, nrcpt=1 (queue active)
Jan 20 15:50:33 exmail amavis[1268]: (01268-13) Passed CLEAN {RelayedInternal}, LOCAL []:29470 [] <lkmould_c@lkm.com.hk> -> <zw_xu@mydomain1.com>, Queue-ID: CC2AC26415FA, mail_id: MQ9zwXO7yf30, Hits: 1.415, size: 1395, queued_as: 802E926415FB, 4548 ms
下面的sieve.log日志 是在上周五取消了dkim的txt记录以后,今天中午12点我又启用了dkim记录,发现mail.log日志里显示<lkmould_c@lkm.com.hk> -> <zw_xu@mydomain1.com> Passed CLEAN,而在sieve.log里面没有显示 into mailbox
root@exmail:~# cat /var/log/sieve.log | grep 'lkm'
Jan 20 09:45:32 lda(sunym@mailmehow.com): Info: msgid=<201401200949205787068@lkm.com.hk>: saved mail to INBOX
Jan 20 10:12:13 lda(zw_xu@mydomain1.com): Info: sieve: msgid=<201401200949205787068@lkm.com.hk>: stored mail into mailbox 'INBOX'
这个用户是否有 sieve 脚本将邮件过滤了?或者转发之类的。
来自 @lkm.com.hk 的邮件是否实际被投递到了收件箱?检查一下 /var/log/sieve.log 里的日志看看。
第一帖里面有 sieve.log
Jan 17 15:07:59 lda(zw_xu@mydomain1.com): Info: sieve: msgid=<201401171034126250732@lkm.com.hk>: stored mail into mailbox 'INBOX'
Jan 17 15:09:38 lda(zw_xu@mydomain1.com): Info: sieve: msgid=<201401171226409067184@lkm.com.hk>: stored mail into mailbox 'INBOX'
zw_xu@mydomain1.com 无法在web 收件箱里面 或者outlook收件箱里面看到来自 @lkm.com.hk的邮件
==== 必填信息。没有填写将不予回复 ====
- iRedMail 版本号:0.8.5
- 使用哪个数据库存储用户帐号:MySQL
- 使用的 Linux/BSD 发行版名称及版本号:Debian 7
- 与您的问题相关的日志信息:
mail.log 日志
Jan 17 15:55:08 exmail postfix/qmgr[28156]: 56EC52640923: from=<lkmould_c@lkm.com.hk>, size=1843, nrcpt=1 (queue active)
Jan 17 15:55:13 exmail postfix/qmgr[28156]: 0324F2641514: from=<lkmould_c@lkm.com.hk>, size=2606, nrcpt=1 (queue active)
Jan 17 15:55:13 exmail amavis[31757]: (31757-02) Passed CLEAN {RelayedInternal}, LOCAL []:7111 [] <lkmould_c@lkm.com.hk> -> <zw_xu@mydomain1.com>, Queue-ID: 56EC52640923, mail_id: m374W5CR19GD, Hits: 3.146, size: 1843, queued_as: 0324F2641514, 4530 ms
Jan 17 15:56:22 exmail postfix/qmgr[28156]: 349552640923: from=<lkmould_c@lkm.com.hk>, size=1182, nrcpt=1 (queue active)
Jan 17 15:56:26 exmail postfix/qmgr[28156]: E107B2641514: from=<lkmould_c@lkm.com.hk>, size=1720, nrcpt=1 (queue active)
Jan 17 15:56:26 exmail amavis[31757]: (31757-05) Passed CLEAN {RelayedInternal}, LOCAL []:50797 [] <lkmould_c@lkm.com.hk> -> <zw_xu@mydomain1.com>, Queue-ID: 349552640923, mail_id: p9UdHY7II3SH, Hits: 1.415, size: 1182, queued_as: E107B2641514, 4546 ms
Jan 18 09:30:21 exmail cbpolicyd[22232]: module=Greylisting, action=pass, host=, helo=uhy.lkm.com.hk, from=lkmould_c@lkm.com.hk, to=sunym@mydomain2.com, reason=authenticated
Jan 18 09:30:21 exmail postfix/cleanup[22703]: CD4E32640078: message-id=<201401180934135464575@lkm.com.hk>
Jan 18 09:30:22 exmail postfix/qmgr[28156]: CD4E32640078: from=<lkmould_c@lkm.com.hk>, size=5612, nrcpt=1 (queue active)
Jan 18 09:30:27 exmail postfix/cleanup[22703]: 81CBA2640FD7: message-id=<201401180934135464575@lkm.com.hk>
Jan 18 09:30:27 exmail postfix/qmgr[28156]: 81CBA2640FD7: from=<lkmould_c@lkm.com.hk>, size=6076, nrcpt=1 (queue active)
sieve.log 日志
msgid=<201401131501177189327@lkm.com.hk>: saved mail to INBOX
Jan 17 09:59:57 lda(sunym@mydomain2.com): Info: msgid=<201401171003396258379@lkm.com.hk>: saved mail to INBOX
Jan 17 10:30:34 lda(sunym@mydomain2.com): Info: msgid=<201401171034126250732@lkm.com.hk>: saved mail to INBOX
Jan 17 12:22:57 lda(sunym@mydomain2.com): Info: msgid=<201401171226409067184@lkm.com.hk>: saved mail to INBOX
Jan 17 15:07:59 lda(zw_xu@mydomain1.com): Info: sieve: msgid=<201401171034126250732@lkm.com.hk>: stored mail into mailbox 'INBOX'
Jan 17 15:09:38 lda(zw_xu@mydomain1.com): Info: sieve: msgid=<201401171226409067184@lkm.com.hk>: stored mail into mailbox 'INBOX'
Jan 18 09:30:27 lda(sunym@mydomain1.com): Info: msgid=<201401180934135464575@lkm.com.hk>: saved mail to INBOX
sunym@mydomain2.com 这个邮箱能收到来自 @lkm.com.hk 邮件
zw_xu@mydomain1.com 这个邮箱不能接受来自 @lkm.com.hk邮件
你说奇怪不 这两个域都在同一个服务器上, 除了 mydomain1 在域名isp上设置有dkim 而mydomain2上面没有设置 这点区别外,这两个域名没有任何区别
iRedMail 开源邮件服务解决方案 » 由 hackerzyh 发表的文章
Powered by PunBB, supported by Informer Technologies, Inc.
Currently installed 3 official extensions. Copyright © 2003–2010 PunBB.
页面生成时间 0.013 秒, 共执行查询 73 条