swinstone (10 Июнь 2010 - 15:25) писал:
Ну надо смотреть все и выявлять ошибки связанные со службами, к примеру лог почты /var/log/maillog
Отправлено 11 Июнь 2010 - 11:32
Vicpo (11 Июнь 2010 - 09:30) писал:
Отправлено 14 Июнь 2010 - 09:34
Vicpo (11 Июнь 2010 - 09:30) писал:
Jun 7 11:50:16 swin-serv dovecot: Killed with signal 15 Jun 7 11:51:16 swin-serv dovecot: Killed with signal 15 Jun 7 11:56:30 swin-serv dovecot: Killed with signal 15 Jun 7 12:01:21 swin-serv dovecot: Killed with signal 15 Jun 7 13:05:23 swin-serv postfix/smtpd[3869]: warning: SASL: Connect to private/auth failed: Connection refused Jun 7 13:05:23 swin-serv postfix/smtpd[3881]: warning: SASL: Connect to private/auth failed: Connection refused Jun 7 13:05:24 swin-serv postfix/master[3632]: warning: process /usr/lib/postfix/smtpd pid 3869 exit status 1 Jun 7 13:05:24 swin-serv postfix/master[3632]: warning: /usr/lib/postfix/smtpd: bad command startup -- throttling Jun 7 13:05:24 swin-serv amavis[3851]: (03851-01) (!)FWD via SMTP: <sympa-request@swin-serv> -> <listmaster@swin-serv>, 451 4.5.0 From MTA([127.0.0.1]:10026) during fwd-connect (Negative greeting: at (eval 95) line 555, <GEN7> line 38.): id=03851-01 Jun 7 13:05:24 swin-serv amavis[3852]: (03852-01) (!)FWD via SMTP: <sympa-request@swin-serv> -> <listmaster@swin-serv>, 451 4.5.0 From MTA([127.0.0.1]:10026) during fwd-connect (Negative greeting: at (eval 95) line 555, <GEN7> line 38.): id=03852-01 Jun 7 13:05:24 swin-serv postfix/master[3632]: warning: process /usr/lib/postfix/smtpd pid 3881 exit status 1 Jun 7 13:06:12 swin-serv amavis[3851]: (03851-02) (!)rw_loop: leaving rw loop, no progress Jun 7 13:06:12 swin-serv amavis[3851]: (03851-02) (!)FWD via SMTP: <sympa-request@swin-serv> -> <listmaster@swin-serv>, 451 4.5.0 From MTA([127.0.0.1]:10026) during fwd-connect (errno=): id=03851-02 Jun 7 13:09:02 swin-serv postfix/trivial-rewrite[5298]: warning: do not list domain test.loc in BOTH mydestination and virtual_mailbox_domains Jun 7 13:09:03 swin-serv last message repeated 2 times Jun 7 13:10:58 swin-serv postfix/smtpd[5733]: warning: sys.kp.kz[192.168.1.10]: SASL LOGIN authentication failed: UGFzc3dvcmQ6 Jun 7 13:11:22 swin-serv postfix/smtpd[5733]: warning: sys.kp.kz[192.168.1.10]: SASL LOGIN authentication failed: UGFzc3dvcmQ6 Jun 7 13:11:28 swin-serv postfix/trivial-rewrite[5893]: warning: do not list domain test.loc in BOTH mydestination and virtual_mailbox_domains Jun 7 13:11:28 swin-serv last message repeated 2 times Jun 7 17:24:56 swin-serv dovecot: Killed with signal 15 Jun 14 08:40:41 swin-serv postfix/qmgr[3397]: warning: connect to transport retry: Connection refused Jun 14 08:40:53 swin-serv postfix/smtpd[3831]: warning: SASL: Connect to private/auth failed: No such file or directory Jun 14 08:40:53 swin-serv postfix/smtpd[3833]: warning: SASL: Connect to private/auth failed: No such file or directory Jun 14 08:40:54 swin-serv postfix/master[3391]: warning: process /usr/lib/postfix/smtpd pid 3831 exit status 1 Jun 14 08:40:54 swin-serv postfix/master[3391]: warning: /usr/lib/postfix/smtpd: bad command startup -- throttling Jun 14 08:40:54 swin-serv amavis[3827]: (03827-01) (!)FWD via SMTP: <sympa-request@swin-serv> -> <listmaster@swin-serv>, 451 4.5.0 From MTA([127.0.0.1]:10026) during fwd-connect (Negative greeting: at (eval 95) line 555, <GEN6> line 38.): id=03827-01 Jun 14 08:40:54 swin-serv postfix/master[3391]: warning: process /usr/lib/postfix/smtpd pid 3833 exit status 1 Jun 14 08:40:54 swin-serv amavis[3826]: (03826-01) (!)FWD via SMTP: <sympa-request@swin-serv> -> <listmaster@swin-serv>, 451 4.5.0 From MTA([127.0.0.1]:10026) during fwd-connect (Negative greeting: at (eval 95) line 555, <GEN6> line 38.): id=03826-01 Jun 14 08:40:57 swin-serv amavis[3827]: (03827-02) (!)FWD via SMTP: <sympa-request@swin-serv> -> <listmaster@swin-serv>, 451 4.5.0 From MTA([127.0.0.1]:10026) during fwd-connect (Error writing to socket: \320\236\320\261\321\200\321\213\320\262 \320\272\320\260\320\275\320\260\320\273\320\260 at (eval 95) line 182, <GEN6> line 76.): id=03827-02
Jun 14 08:40:34 swin-serv postfix/postfix-script[3390]: starting the Postfix mail system Jun 14 08:40:36 swin-serv postfix/master[3391]: daemon started -- version 2.5.5, configuration /etc/postfix Jun 14 08:40:36 swin-serv postfix/qmgr[3397]: 516C56A0F8: from=<sympa-request@swin-serv>, size=938, nrcpt=1 (queue active) Jun 14 08:40:36 swin-serv postfix/qmgr[3397]: 4EABF6A0F7: from=<sympa-request@swin-serv>, size=938, nrcpt=1 (queue active) Jun 14 08:40:36 swin-serv postfix/qmgr[3397]: 7E5A16A0F9: from=<sympa-request@swin-serv>, size=938, nrcpt=1 (queue active) Jun 14 08:40:36 swin-serv postfix/smtp[3408]: 516C56A0F8: to=<listmaster@swin-serv>, relay=none, delay=588317, delays=588311/6.6/0.04/0, dsn=4.4.3, status=deferred (Host or domain name not found. Name service error for name=swin-serv type=A: Host not found, try again) Jun 14 08:40:41 swin-serv postfix/cleanup[3503]: E5E2F69E46: message-id=<20100614024035.E5E2F69E46@test.loc> Jun 14 08:40:41 swin-serv amavis[3459]: starting. /usr/sbin/amavisd at test.loc amavisd-new-2.6.1 (20080629), Unicode aware, LC_CTYPE="ru_RU.UTF-8", LANG="ru_RU.UTF-8" Jun 14 08:40:41 swin-serv postfix/smtp[3408]: 7E5A16A0F9: to=<listmaster@swin-serv>, relay=none, delay=588319, delays=588317/2.3/0/0, dsn=4.4.3, status=deferred (Host or domain name not found. Name service error for name=swin-serv type=A: Host not found, try again) Jun 14 08:40:41 swin-serv postfix/smtp[3435]: 4EABF6A0F7: to=<listmaster@swin-serv>, relay=none, delay=588320, delays=588311/8.4/0/0, dsn=4.4.3, status=deferred (Host or domain name not found. Name service error for name=swin-serv type=A: Host not found, try again) Jun 14 08:40:41 swin-serv postfix/qmgr[3397]: E5E2F69E46: from=<>, size=3024, nrcpt=1 (queue active) Jun 14 08:40:41 swin-serv amavis[3459]: Perl version 5.010000 Jun 14 08:40:41 swin-serv postfix/bounce[3436]: 516C56A0F8: sender delay notification: E5E2F69E46 Jun 14 08:40:41 swin-serv postfix/cleanup[3503]: 69AC969E4B: message-id=<20100614024040.69AC969E4B@test.loc> Jun 14 08:40:41 swin-serv postfix/cleanup[3549]: 6DC9069E4D: message-id=<20100614024040.6DC9069E4D@test.loc> Jun 14 08:40:42 swin-serv postfix/qmgr[3397]: E5E2F69E46: to=<sympa-request@swin-serv>, relay=none, delay=6.9, delays=4.6/2.3/0/0, dsn=4.3.0, status=deferred (mail transport unavailable) Jun 14 08:40:42 swin-serv postfix/bounce[3436]: 4EABF6A0F7: sender delay notification: 69AC969E4B Jun 14 08:40:42 swin-serv postfix/qmgr[3397]: 6DC9069E4D: from=<>, size=3024, nrcpt=1 (queue active) Jun 14 08:40:42 swin-serv postfix/bounce[3505]: 7E5A16A0F9: sender delay notification: 6DC9069E4D Jun 14 08:40:42 swin-serv postfix/qmgr[3397]: 6DC9069E4D: to=<sympa-request@swin-serv>, relay=none, delay=2.4, delays=1.8/0.59/0/0, dsn=4.4.3, status=deferred (delivery temporarily suspended: Host or domain name not found. Name service error for name=swin-serv type=A: Host not found, try again) Jun 14 08:40:42 swin-serv postfix/qmgr[3397]: 69AC969E4B: from=<>, size=3024, nrcpt=1 (queue active) Jun 14 08:40:42 swin-serv postfix/qmgr[3397]: 69AC969E4B: to=<sympa-request@swin-serv>, relay=none, delay=2.5, delays=2.4/0.14/0/0, dsn=4.4.3, status=deferred (delivery temporarily suspended: Host or domain name not found. Name service error for name=swin-serv type=A: Host not found, try again) Jun 14 08:40:48 swin-serv amavis[3751]: Net::Server: Group Not Defined. Defaulting to EGID '423 423' Jun 14 08:40:48 swin-serv amavis[3751]: Net::Server: User Not Defined. Defaulting to EUID '82' Jun 14 08:40:48 swin-serv postfix/pickup[3396]: D56DD69E92: uid=0 from=<sympa-request@swin-serv> Jun 14 08:40:48 swin-serv amavis[3751]: Module Amavis::Conf 2.103 Jun 14 08:40:48 swin-serv amavis[3751]: Module BerkeleyDB 0.34 Jun 14 08:40:48 swin-serv amavis[3751]: Module Compress::Zlib 2.015 Jun 14 08:40:48 swin-serv amavis[3751]: Module Crypt::OpenSSL::RSA 0.25 Jun 14 08:40:48 swin-serv amavis[3751]: Module DBI 1.607 Jun 14 08:40:48 swin-serv amavis[3751]: Module DB_File 1.817 Jun 14 08:40:48 swin-serv amavis[3751]: Module Digest::MD5 2.36_01 Jun 14 08:40:48 swin-serv amavis[3751]: Module Digest::SHA 5.47 Jun 14 08:40:48 swin-serv amavis[3751]: Module Digest::SHA1 2.11 Jun 14 08:40:48 swin-serv amavis[3751]: Module MIME::Entity 5.427 Jun 14 08:40:48 swin-serv amavis[3751]: Module MIME::Parser 5.427 Jun 14 08:40:48 swin-serv amavis[3751]: Module MIME::Tools 5.427 Jun 14 08:40:48 swin-serv amavis[3751]: Module Mail::DKIM 0.32 Jun 14 08:40:48 swin-serv amavis[3751]: Module Mail::Header 2.04 Jun 14 08:40:48 swin-serv amavis[3751]: Module Mail::Internet 2.04 Jun 14 08:40:48 swin-serv amavis[3751]: Module Mail::SPF v2.005 Jun 14 08:40:48 swin-serv amavis[3751]: Module Mail::SPF::Query 1.999001 Jun 14 08:40:48 swin-serv amavis[3751]: Module Mail::SpamAssassin 3.002005 Jun 14 08:40:48 swin-serv amavis[3751]: Module Net::DNS 0.63 Jun 14 08:40:48 swin-serv amavis[3751]: Module Net::LDAP 0.38 Jun 14 08:40:48 swin-serv amavis[3751]: Module Net::Server 0.97 Jun 14 08:40:48 swin-serv amavis[3751]: Module NetAddr::IP 4.007 Jun 14 08:40:48 swin-serv amavis[3751]: Module Razor2::Client::Version 2.84 Jun 14 08:40:48 swin-serv amavis[3751]: Module Time::HiRes 1.9711 Jun 14 08:40:48 swin-serv amavis[3751]: Module URI 1.37 Jun 14 08:40:48 swin-serv amavis[3751]: Module Unix::Syslog 1.1 Jun 14 08:40:48 swin-serv amavis[3751]: Amavis::DB code loaded Jun 14 08:40:48 swin-serv amavis[3751]: Amavis::Cache code loaded Jun 14 08:40:48 swin-serv amavis[3751]: SQL base code NOT loaded Jun 14 08:40:48 swin-serv amavis[3751]: SQL::Log code NOT loaded Jun 14 08:40:48 swin-serv amavis[3751]: SQL::Quarantine NOT loaded Jun 14 08:40:48 swin-serv amavis[3751]: Lookup::SQL code NOT loaded Jun 14 08:40:48 swin-serv amavis[3751]: Lookup::LDAP code loaded Jun 14 08:40:48 swin-serv amavis[3751]: AM.PDP-in proto code loaded Jun 14 08:40:48 swin-serv amavis[3751]: SMTP-in proto code loaded Jun 14 08:40:48 swin-serv amavis[3751]: Courier proto code NOT loaded Jun 14 08:40:48 swin-serv amavis[3751]: SMTP-out proto code loaded Jun 14 08:40:48 swin-serv amavis[3751]: Pipe-out proto code NOT loaded Jun 14 08:40:48 swin-serv amavis[3751]: BSMTP-out proto code NOT loaded Jun 14 08:40:48 swin-serv amavis[3751]: Local-out proto code loaded Jun 14 08:40:48 swin-serv amavis[3751]: OS_Fingerprint code NOT loaded Jun 14 08:40:48 swin-serv amavis[3751]: ANTI-VIRUS code loaded Jun 14 08:40:48 swin-serv amavis[3751]: ANTI-SPAM code loaded Jun 14 08:40:48 swin-serv amavis[3751]: ANTI-SPAM-SA code loaded Jun 14 08:40:48 swin-serv amavis[3751]: Unpackers code NOT loaded Jun 14 08:40:48 swin-serv amavis[3751]: DKIM code loaded Jun 14 08:40:48 swin-serv amavis[3751]: Tools code NOT loaded Jun 14 08:40:48 swin-serv amavis[3751]: Found $file at /usr/bin/file Jun 14 08:40:48 swin-serv amavis[3751]: No $dspam, not using it Jun 14 08:40:48 swin-serv amavis[3751]: No $altermime, not using it Jun 14 08:40:48 swin-serv amavis[3751]: Internal decoder for .mail Jun 14 08:40:48 swin-serv amavis[3751]: Internal decoder for .asc Jun 14 08:40:48 swin-serv amavis[3751]: Internal decoder for .uue Jun 14 08:40:48 swin-serv amavis[3751]: Internal decoder for .hqx Jun 14 08:40:48 swin-serv amavis[3751]: Internal decoder for .ync Jun 14 08:40:48 swin-serv postfix/cleanup[3503]: D56DD69E92: message-id=<20100614024048.D56DD69E92@test.loc> Jun 14 08:40:48 swin-serv amavis[3751]: No decoder for .F tried: unfreeze, freeze -d, melt, fcat Jun 14 08:40:48 swin-serv amavis[3751]: Found decoder for .Z at /usr/bin/uncompress Jun 14 08:40:48 swin-serv amavis[3751]: Found decoder for .gz at /usr/bin/gzip -d Jun 14 08:40:48 swin-serv amavis[3751]: Found decoder for .bz2 at /usr/bin/bzip2 -d Jun 14 08:40:49 swin-serv amavis[3751]: Found decoder for .lzo at /usr/bin/lzop -d Jun 14 08:40:49 swin-serv amavis[3751]: Found decoder for .rpm at /usr/bin/rpm2cpio Jun 14 08:40:49 swin-serv amavis[3751]: Found decoder for .cpio at /usr/bin/pax Jun 14 08:40:49 swin-serv amavis[3751]: Found decoder for .tar at /usr/bin/pax Jun 14 08:40:49 swin-serv amavis[3751]: Found decoder for .deb at /usr/bin/ar Jun 14 08:40:49 swin-serv amavis[3751]: Internal decoder for .zip Jun 14 08:40:49 swin-serv amavis[3751]: No decoder for .7z tried: 7zr, 7za, 7z Jun 14 08:40:49 swin-serv amavis[3751]: Found decoder for .rar at /usr/bin/unrar Jun 14 08:40:49 swin-serv amavis[3751]: No decoder for .arj tried: arj, unarj Jun 14 08:40:49 swin-serv amavis[3751]: Found decoder for .arc at /usr/bin/nomarch Jun 14 08:40:49 swin-serv amavis[3751]: No decoder for .zoo tried: zoo, unzoo Jun 14 08:40:49 swin-serv amavis[3751]: Found decoder for .lha at /usr/bin/lha Jun 14 08:40:49 swin-serv amavis[3751]: Found decoder for .cab at /usr/bin/cabextract Jun 14 08:40:49 swin-serv amavis[3751]: Found decoder for .tnef at /usr/bin/tnef Jun 14 08:40:49 swin-serv amavis[3751]: Found decoder for .exe at /usr/bin/unrar; /usr/bin/lha Jun 14 08:40:49 swin-serv amavis[3751]: Using primary internal av scanner code for ClamAV-clamd Jun 14 08:40:49 swin-serv amavis[3751]: Found secondary av scanner ClamAV-clamscan at /usr/bin/clamscan Jun 14 08:40:49 swin-serv postfix/qmgr[3397]: D56DD69E92: from=<sympa-request@swin-serv>, size=514, nrcpt=1 (queue active) Jun 14 08:40:49 swin-serv postfix/pickup[3396]: 38CB669E82: uid=0 from=<sympa-request@swin-serv> Jun 14 08:40:49 swin-serv postfix/cleanup[3549]: 38CB669E82: message-id=<20100614024049.38CB669E82@test.loc> Jun 14 08:40:49 swin-serv amavis[3751]: Creating db in /var/lib/amavis/db/; BerkeleyDB 0.34, libdb 4.6 Jun 14 08:40:49 swin-serv postfix/qmgr[3397]: 38CB669E82: from=<sympa-request@swin-serv>, size=514, nrcpt=1 (queue active) Jun 14 08:40:51 swin-serv postfix/pickup[3396]: 2DFBF69E94: uid=0 from=<sympa-request@swin-serv> Jun 14 08:40:51 swin-serv postfix/cleanup[3503]: 2DFBF69E94: message-id=<20100614024051.2DFBF69E94@test.loc> Jun 14 08:40:51 swin-serv postfix/qmgr[3397]: 2DFBF69E94: from=<sympa-request@swin-serv>, size=514, nrcpt=1 (queue active) Jun 14 08:40:54 swin-serv amavis[3827]: (03827-01) Blocked MTA-BLOCKED, <sympa-request@swin-serv> -> <listmaster@swin-serv>, quarantine: spam-c6IoYNoX7-+V.gz, Message-ID: <20100614024049.38CB669E82@test.loc>, mail_id: c6IoYNoX7-+V, Hits: 5.58, size: 514, 1999 ms Jun 14 08:40:54 swin-serv amavis[3826]: (03826-01) Blocked MTA-BLOCKED, <sympa-request@swin-serv> -> <listmaster@swin-serv>, quarantine: spam-lrEyzgstYE6J.gz, Message-ID: <20100614024048.D56DD69E92@test.loc>, mail_id: lrEyzgstYE6J, Hits: 5.58, size: 514, 2025 ms Jun 14 08:40:56 swin-serv dovecot: Dovecot v1.1.6 starting up Jun 14 08:40:57 swin-serv postfix/smtp[3789]: 38CB669E82: to=<listmaster@swin-serv>, relay=127.0.0.1[127.0.0.1]:10025, delay=5.7, delays=0.98/0.01/2.7/2, dsn=4.5.0, status=deferred (host 127.0.0.1[127.0.0.1] said: 451 4.5.0 From MTA([127.0.0.1]:10026) during fwd-connect (Negative greeting: at (eval 95) line 555, <GEN6> line 38.): id=03827-01 (in reply to end of DATA command)) Jun 14 08:40:57 swin-serv postfix/smtp[3783]: D56DD69E92: to=<listmaster@swin-serv>, relay=127.0.0.1[127.0.0.1]:10025, delay=5.8, delays=0.5/0.07/3.2/2, dsn=4.5.0, status=deferred (host 127.0.0.1[127.0.0.1] said: 451 4.5.0 From MTA([127.0.0.1]:10026) during fwd-connect (Negative greeting: at (eval 95) line 555, <GEN6> line 38.): id=03826-01 (in reply to end of DATA command)) Jun 14 08:40:57 swin-serv amavis[3827]: (03827-02) Blocked MTA-BLOCKED, <sympa-request@swin-serv> -> <listmaster@swin-serv>, quarantine: spam-cyYkw089sHt6.gz, Message-ID: <20100614024051.2DFBF69E94@test.loc>, mail_id: cyYkw089sHt6, Hits: 5.58, size: 514, 220 ms Jun 14 08:40:57 swin-serv postfix/smtp[3789]: 2DFBF69E94: to=<listmaster@swin-serv>, relay=127.0.0.1[127.0.0.1]:10025, delay=6.7, delays=0.53/5.9/0.07/0.22, dsn=4.5.0, status=deferred (host 127.0.0.1[127.0.0.1] said: 451 4.5.0 From MTA([127.0.0.1]:10026) during fwd-connect (Error writing to socket: \320\236\320\261\321\200\321\213\320\262 \320\272\320\260\320\275\320\260\320\273\320\260 at (eval 95) line 182, <GEN6> line 76.): id=03827-02 (in reply to end of DATA command)) Jun 14 08:44:17 swin-serv postfix/scache[3939]: statistics: start interval Jun 14 08:40:57 Jun 14 08:44:17 swin-serv postfix/scache[3939]: statistics: domain lookup hits=0 miss=1 success=0% Jun 14 08:44:17 swin-serv postfix/scache[3939]: statistics: address lookup hits=0 miss=1 success=0% Jun 14 08:44:17 swin-serv postfix/scache[3939]: statistics: max simultaneous domains=1 addresses=1 connection=1
un 7 12:01:22 swin-serv dovecot: Fatal: auth(default): Unknown passdb driver 'ldap' (typo, or Dovecot was built without support for it? Check with dovecot --build-options) Jun 7 12:01:22 swin-serv dovecot: Fatal: Auth process died too early - shutting down Jun 7 12:01:22 swin-serv dovecot: Fatal: auth(default): Unknown passdb driver 'ldap' (typo, or Dovecot was built without support for it? Check with dovecot --build-options) Jun 7 12:01:22 swin-serv dovecot: Fatal: Auth process died too early - shutting down Jun 7 13:05:23 swin-serv postfix/smtpd[3869]: fatal: no SASL authentication mechanisms Jun 7 13:05:23 swin-serv postfix/smtpd[3881]: fatal: no SASL authentication mechanisms Jun 14 08:40:53 swin-serv postfix/smtpd[3831]: fatal: no SASL authentication mechanisms Jun 14 08:40:53 swin-serv postfix/smtpd[3833]: fatal: no SASL authentication mechanisms
Iskander (12 Июнь 2010 - 12:59) писал:
# slapd.conf template include /usr/share/openldap/schema/core.schema include /usr/share/openldap/schema/cosine.schema include /usr/share/openldap/schema/corba.schema include /usr/share/openldap/schema/inetorgperson.schema include /usr/share/openldap/schema/java.schema include /usr/share/openldap/schema/krb5-kdc.schema include /usr/share/openldap/schema/kerberosobject.schema ## include /usr/share/openldap/schema/misc.schema include /usr/share/openldap/schema/nis.schema include /usr/share/openldap/schema/openldap.schema include /usr/share/openldap/schema/autofs.schema include /usr/share/openldap/schema/samba.schema ## include /usr/share/openldap/schema/kolab.schema include /usr/share/openldap/schema/evolutionperson.schema include /usr/share/openldap/schema/calendar.schema include /usr/share/openldap/schema/sudo.schema ## include /usr/share/openldap/schema/dnszone.schema ## include /usr/share/openldap/schema/dhcp.schema include /usr/share/openldap/schema/dyngroup.schema include /usr/share/openldap/schema/ppolicy.schema include /etc/openldap/schema/local.schema ### Add for MDS include /etc/openldap/schema/mmc.schema include /etc/openldap/schema/mail.schema include /etc/openldap/schema/dnszone.schema include /etc/openldap/schema/dhcp.schema pidfile /var/run/ldap/slapd.pid argsfile /var/run/ldap/slapd.args moduleload back_monitor.la moduleload syncprov.la moduleload ppolicy.la #moduleload refint.la TLSCertificateFile /etc/ssl/openldap/ldap.pem TLSCertificateKeyFile /etc/ssl/openldap/ldap.pem TLSCACertificateFile /etc/ssl/openldap/ldap.pem #loglevel 256 database bdb suffix "dc=test,dc=kz" directory /var/lib/ldap checkpoint 256 5 # 32Mbytes, can hold about 10k posixAccount entries dbconfig set_cachesize 0 33554432 1 dbconfig set_lg_bsize 2097152 cachesize 1000 idlcachesize 3000 index objectClass eq index uidNumber,gidNumber,memberuid,member eq index uid eq,subinitial index cn,mail,surname,givenname eq,subinitial index sambaSID eq,sub index sambaDomainName,displayName,sambaGroupType eq index sambaSIDList eq index krb5PrincipalName eq index uniqueMember pres,eq index zoneName,relativeDomainName eq index sudouser eq,sub index entryCSN,entryUUID eq index dhcpHWAddress,dhcpClassData eq overlay syncprov syncprov-checkpoint 100 10 syncprov-sessionlog 100 overlay ppolicy ppolicy_default "cn=default,ou=Password Policies,dc=test,dc=kz" # uncomment if you want to automatically update group # memberships when an user is removed from the tree # Also uncomment the refint.la moduleload above #overlay refint #refint_attributes member #refint_nothing "uid=LDAP Admin,ou=System Accounts,dc=example,dc=com" authz-regexp "gidNumber=0\\\+uidNumber=0,cn=peercred,cn=external,cn=auth" "uid=Account Admin,ou=System Accounts,dc=test,dc=kz" authz-regexp ^uid=([^,]+),cn=[^,]+,cn=auth$ uid=$1,ou=People,dc=test,dc=kz include /etc/openldap/mandriva-dit-access.conf database monitor access to dn.subtree="cn=Monitor" by group.exact="cn=LDAP Monitors,ou=System Groups,dc=test,dc=kz" read by group.exact="cn=LDAP Admins,ou=System Groups,dc=test,dc=kz" read by * none
#--------------------------------------------------------------------------
# LDAP Schema for amavisd-new Jacques Supcik, PhD
#----------------------------- IP-Plus Internet Services
# Release 1.2.2 Swisscom Enterprise Solutions Ltd
# 30 May 2004 3050 Bern - Switzerland
#--------------------------------------------------------------------------
# Copyright © 2004 Jacques Supcik, Swisscom Enterprise Solutions Ltd.
# Permission is granted to copy, distribute and/or modify this document
# under the terms of the GNU Free Documentation License, Version 1.2
# or any later version published by the Free Software Foundation;
# with no Invariant Sections, no Front-Cover Texts, and no Back-Cover Texts.
# A copy of the license is included in the section entitled "GNU
# Free Documentation License".
#--------------------------------------------------------------------------
# Changes made to LDAP Schema to make it import and play nicely with
# Novell NDS - Michael Tracey, SONOPRESS USA, LLC April 07 2005
# ( uncomment each dn:, changetype:, add:, add X-NDS-NAME attribute, replace
# "attributetype" by "attributetypes:" and "objectclasse" by "objectclasses:"
# (plural,colon), and unwrap each attributetypes: and objectclasses: )
#--------------------------------------------------------------------------
# 1.3.6.1.4.1.15312 Jozef Stefan Institute's OID
# 1.3.6.1.4.1.15312.2 amavisd-new
# 1.3.6.1.4.1.15312.2.2 amavisd-new LDAP Elements
# 1.3.6.1.4.1.15312.2.2.1 AttributeTypes
# 1.3.6.1.4.1.15312.2.2.2 ObjectClasses
# 1.3.6.1.4.1.15312.2.2.3 Syntax Definitions
#--------------------------------------------------------------------------
# Attribute Types
#-----------------
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.1
NAME 'amavisVirusLover'
DESC 'Virus Lover'
EQUALITY booleanMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.7
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.2
NAME 'amavisBannedFilesLover'
DESC 'Banned Files Lover'
EQUALITY booleanMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.7
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.3
NAME 'amavisBypassVirusChecks'
DESC 'Bypass Virus Check'
EQUALITY booleanMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.7
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.4
NAME 'amavisBypassSpamChecks'
DESC 'Bypass Spam Check'
EQUALITY booleanMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.7
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.5
NAME 'amavisSpamTagLevel'
DESC 'Spam Tag Level'
EQUALITY caseIgnoreIA5Match
SUBSTR caseIgnoreIA5SubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{256}
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.6
NAME 'amavisSpamTag2Level'
DESC 'Spam Tag2 Level'
EQUALITY caseIgnoreIA5Match
SUBSTR caseIgnoreIA5SubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{256}
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.7
NAME 'amavisSpamKillLevel'
DESC 'Spam Kill Level'
EQUALITY caseIgnoreIA5Match
SUBSTR caseIgnoreIA5SubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{256}
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.8
NAME 'amavisSpamModifiesSubj'
DESC 'Modifies Subject on spam'
EQUALITY booleanMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.7
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.9
NAME 'amavisWhitelistSender'
DESC 'White List Sender'
EQUALITY caseIgnoreIA5Match
SUBSTR caseIgnoreIA5SubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{256} )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.10
NAME 'amavisBlacklistSender'
DESC 'Black List Sender'
EQUALITY caseIgnoreIA5Match
SUBSTR caseIgnoreIA5SubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{256} )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.11
NAME 'amavisSpamQuarantineTo'
DESC 'Spam Quarantine to'
EQUALITY caseIgnoreIA5Match
SUBSTR caseIgnoreIA5SubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{256}
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.12
NAME 'amavisSpamLover'
DESC 'Spam Lover'
EQUALITY booleanMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.7
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.13
NAME 'amavisBadHeaderLover'
DESC 'Bad Header Lover'
EQUALITY booleanMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.7
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.14
NAME 'amavisBypassBannedChecks'
DESC 'Bypass Banned Files Check'
EQUALITY booleanMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.7
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.15
NAME 'amavisBypassHeaderChecks'
DESC 'Bypass Header Check'
EQUALITY booleanMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.7
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.16
NAME 'amavisVirusQuarantineTo'
DESC 'Virus quarantine location'
EQUALITY caseIgnoreIA5Match
SUBSTR caseIgnoreIA5SubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{256}
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.17
NAME 'amavisBannedQuarantineTo'
DESC 'Banned Files quarantine location'
EQUALITY caseIgnoreIA5Match
SUBSTR caseIgnoreIA5SubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{256}
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.18
NAME 'amavisBadHeaderQuarantineTo'
DESC 'Bad Header quarantine location'
EQUALITY caseIgnoreIA5Match
SUBSTR caseIgnoreIA5SubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{256}
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.19
NAME 'amavisLocal'
DESC 'Is user considered local'
EQUALITY booleanMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.7
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.20
NAME 'amavisMessageSizeLimit'
DESC 'Message size limit'
EQUALITY caseIgnoreIA5Match
SUBSTR caseIgnoreIA5SubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{256}
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.21
NAME 'amavisWarnVirusRecip'
DESC 'Notify virus recipients'
EQUALITY booleanMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.7
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.22
NAME 'amavisWarnBannedRecip'
DESC 'Notify banned file recipients'
EQUALITY booleanMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.7
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.23
NAME 'amavisWarnBadHeaderRecip'
DESC 'Notify bad header recipients'
EQUALITY booleanMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.7
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.24
NAME 'amavisVirusAdmin'
DESC 'Virus admin'
EQUALITY caseIgnoreIA5Match
SUBSTR caseIgnoreIA5SubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{256}
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.25
NAME 'amavisNewVirusAdmin'
DESC 'New virus admin'
EQUALITY caseIgnoreIA5Match
SUBSTR caseIgnoreIA5SubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{256}
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.26
NAME 'amavisSpamAdmin'
DESC 'Spam admin'
EQUALITY caseIgnoreIA5Match
SUBSTR caseIgnoreIA5SubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{256}
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.27
NAME 'amavisBannedAdmin'
DESC 'Banned file admin'
EQUALITY caseIgnoreIA5Match
SUBSTR caseIgnoreIA5SubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{256}
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.28
NAME 'amavisBadHeaderAdmin'
DESC 'Bad header admin'
EQUALITY caseIgnoreIA5Match
SUBSTR caseIgnoreIA5SubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{256}
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.29
NAME 'amavisBannedRuleNames'
DESC 'Banned rule names'
EQUALITY caseIgnoreIA5Match
SUBSTR caseIgnoreIA5SubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{256}
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.30
NAME 'amavisSpamDsnCutoffLevel'
DESC 'Spam DSN Cutoff Level'
EQUALITY caseIgnoreIA5Match
SUBSTR caseIgnoreIA5SubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{256}
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.31
NAME 'amavisSpamQuarantineCutoffLevel'
DESC 'Spam Quarantine Cutoff Level'
EQUALITY caseIgnoreIA5Match
SUBSTR caseIgnoreIA5SubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{256}
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.32
NAME 'amavisSpamSubjectTag'
DESC 'Spam Subject Tag'
EQUALITY caseExactIA5Match
SUBSTR caseExactSubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{256}
SINGLE-VALUE )
#dn: cn=schema
#changetype: modify
#add: attributetypes
attributetype ( 1.3.6.1.4.1.15312.2.2.1.33
NAME 'amavisSpamSubjectTag2'
DESC 'Spam Subject Tag2'
EQUALITY caseExactIA5Match
SUBSTR caseExactSubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{256}
SINGLE-VALUE )
# Classes
#---------
# amavisAccount
# This class is an auxiliary class, this mean that the class will be added
# to a structural class. Usually, the structural class is the class that
# represent the mail account itself (e.g. an inetOrgPerson)
#dn: cn=schema
#changetype: modify
#add: objectclasses
objectclass ( 1.3.6.1.4.1.15312.2.2.2.1
NAME 'amavisAccount' AUXILIARY
DESC 'Amavisd Account'
SUP top
MAY ( amavisVirusLover $ amavisBypassVirusChecks $
amavisSpamLover $ amavisBypassSpamChecks $
amavisBannedFilesLover $ amavisBypassBannedChecks $
amavisBadHeaderLover $ amavisBypassHeaderChecks $
amavisSpamTagLevel $ amavisSpamTag2Level $ amavisSpamKillLevel $
amavisWhitelistSender $ amavisBlacklistSender $
amavisSpamQuarantineTo $ amavisVirusQuarantineTo $
amavisBannedQuarantineTo $ amavisBadHeaderQuarantineTo $
amavisSpamModifiesSubj $ amavisLocal $ amavisMessageSizeLimit $
amavisWarnVirusRecip $ amavisWarnBannedRecip $
amavisWarnBadHeaderRecip $ amavisVirusAdmin $ amavisNewVirusAdmin $
amavisSpamAdmin $ amavisBannedAdmin $ amavisBadHeaderAdmin $
amavisBannedRuleNames $
amavisSpamDsnCutoffLevel $ amavisSpamQuarantineCutoffLevel $
amavisSpamSubjectTag $ amavisSpamSubjectTag2 $
cn $ description ) )
Iskander (12 Июнь 2010 - 12:59) писал:
# See /usr/share/postfix/main.cf.dist for a commented, more complete version
smtpd_banner = $myhostname ESMTP $mail_name (Mandriva MES5)
biff = no
# appending .domain is the MUA's job.
append_at_myorigin = yes
append_dot_mydomain = no
myhostname = test.loc
alias_maps = hash:/etc/postfix/aliases, hash:/var/lib/sympa/aliases
alias_database = hash:/etc/postfix/aliases, hash:/var/lib/sympa/aliases
mydomain = test.loc
myorigin = test.loc
mydestination = test.loc, test, localhost.localdomain, localhost
relayhost =
mynetworks = 127.0.0.1/32
mailbox_size_limit = 0
recipient_delimiter = +
inet_interfaces = all
luser_relay =
delay_warning_time = 4h
maximal_queue_lifetime = 10d
mailbox_size_limit = 0
message_size_limit = 15728640
# LDAP Transport
transport_map = ldap:/etc/postfix/ldap-transport.cf
# Virtual Domains Control
virtual_mailbox_domains = ldap:/etc/postfix/ldap-domains.cf
virtual_mailbox_maps = ldap:/etc/postfix/ldap-accounts.cf
virtual_mailbox_base =
virtual_alias_maps = ldap:/etc/postfix/ldap-aliases.cf, ldap:/etc/postfix/ldap-maildrop.cf
virtual_alias_domains =
virtual_minimum_uid = 100
virtual_uid_maps = static:vmail
virtual_gid_maps = static:mail
# Dovecot LDA
virtual_transport = dovecot
dovecot_destination_recipient_limit = 1
# TLS parameters
smtpd_use_tls = yes
smtpd_tls_loglevel = 1
smtpd_tls_cert_file = /etc/ssl/mmc-wizard/certs/smtpd.pem
smtpd_tls_key_file = /etc/ssl/mmc-wizard/private/smtpd.key
# Enable SASL authentication for the smtpd daemon
smtpd_sasl_auth_enable = yes
smtpd_sasl_type = dovecot
smtpd_sasl_path = private/auth
# Fix some outlook's bugs
broken_sasl_auth_clients = yes
# Reject anonymous connections
smtpd_sasl_security_options = noanonymous
smtpd_sasl_local_domain =
# Wait until the RCPT TO command before evaluating restrictions
smtpd_delay_reject = yes
# Basics Restrictions
smtpd_helo_required = yes
strict_rfc821_envelopes = yes
content_filter = amavis:[127.0.0.1]:10025
smtpd_recipient_restrictions =
permit_mynetworks,
permit_sasl_authenticated,
reject_non_fqdn_recipient,
reject_unknown_recipient_domain,
reject_unauth_destination,
permit
smtpd_helo_restrictions =
permit_mynetworks,
permit_sasl_authenticated,
# outlook clients limits
# reject_non_fqdn_hostname,
# reject_invalid_hostname,
permit
smtpd_sender_restrictions =
permit_mynetworks,
permit_sasl_authenticated,
reject_non_fqdn_sender,
reject_unknown_sender_domain,
permit
smtpd_client_restrictions =
permit_mynetworks,
permit_sasl_authenticated,
reject_rbl_client bl.spamcop.net,
reject_rbl_client dnsbl.njabl.org,
reject_rbl_client cbl.abuseat.org,
reject_rbl_client sbl-xbl.spamhaus.org,
permit
smtpd_data_restrictions =
reject_unauth_pipelining,
permit
Отправлено 14 Июнь 2010 - 10:36
Отправлено 14 Июнь 2010 - 12:07
Iskander (14 Июнь 2010 - 10:36) писал:
Отправлено 14 Июнь 2010 - 12:22
swinstone (14 Июнь 2010 - 12:07) писал:
Отправлено 16 Июнь 2010 - 08:47
Отправлено 16 Июнь 2010 - 09:21
Отправлено 16 Июнь 2010 - 09:41
swinstone (16 Июнь 2010 - 08:47) писал:
Отправлено 17 Июнь 2010 - 10:17
swinstone (16 Июнь 2010 - 17:03) писал: