Gentoo Forums
Gentoo Forums
Gentoo Forums
Quick Search: in
[Postfix] Pas de tls (résolu)
View unanswered posts
View posts from last 24 hours

 
Reply to topic    Gentoo Forums Forum Index French
View previous topic :: View next topic  
Author Message
__hermes__
n00b
n00b


Joined: 19 Dec 2004
Posts: 8

PostPosted: Sun Dec 19, 2004 6:29 pm    Post subject: [Postfix] Pas de tls (résolu) Reply with quote

Bonjour,

j'ai suivi le howto sur le mise en place de postfix+sasl+mysql+domaines virtuels
Tout fonctionne nikel sauf le suport tls sur le smtpd. Que ce soit avec authentification ou sans le serveur smtp en mode tls ca fonctionne pas.
Le client email ne declenche même la sequence auth, j'ai plus de résultat en telnet.
voici mon fichier de config

Quote:

queue_directory = /var/spool/postfix
command_directory = /usr/sbin
daemon_directory = /usr/lib/postfix
mail_owner = postfix
unknown_local_recipient_reject_code = 550
debug_peer_level = 3
debugger_command =
PATH=/bin:/usr/bin:/usr/local/bin:/usr/X11R6/bin
xxgdb $daemon_directory/$process_name $process_id & sleep 5
sendmail_path = /usr/sbin/sendmail
newaliases_path = /usr/bin/newaliases
mailq_path = /usr/bin/mailq
setgid_group = postdrop
html_directory = no
manpage_directory = /usr/share/man
sample_directory = /etc/postfix
readme_directory = /usr/share/doc/postfix-2.1.5-r1/readme


myhostname = mypc.my.domain
mydomain = my.domain
mydestination = $myhostname, localhost.$mydomain, $mydomain
mynetworks = 192.168.1.0/24, 127.0.0.0/8

# relay_domains =
disable_dns_lookups = yes
default_destination_concurrency_limit = 10
local_destination_concurrency_limit = 20
home_mailbox = .maildir/
local_transport = local
local_recipient_maps = $alias_maps $virtual_mailbox_maps unix:passwd.byname
alias_database = hash:/etc/mail/aliases
alias_maps = mysql:/etc/postfix/mysql-aliases.cf

virtual_mailbox_base = /
virtual_minimum_uid = 1010
virtual_mailbox_domains = olyxmail.ath.cx
virtual_mailbox_maps = mysql:/etc/postfix/mysql-virtual-maps.cf
virtual_alias_maps = mysql:/etc/postfix/mysql-virtual.cf
virtual_uid_maps = static:1010
virtual_gid_maps = static:1010

#--------------------------------------------------------------
## SASL & SSL CONFIGURATION ##
#--------------------------------------------------------------
smtpd_sasl_auth_enable = yes
#smtpd_sasl2_auth_enable = yes
smtpd_sasl_security_options = noanonymous
broken_sasl_auth_clients = yes
smtpd_sasl_local_domain =
smtpd_recipient_restrictions =
permit_sasl_authenticated
permit_mynetworks,
reject_unauth_destination
smtp_use_tls = yes
smtp_tls_loglevel = 3
smtp_tls_note_starttls_offer = yes
smtp_tls_key_file = /etc/postfix/newreq.pem
smtp_tls_cert_file = /etc/postfix/newcert.pem
smtp_tls_CAfile = /etc/postfix/cacert.pem
smtp_tls_loglevel = 3

smtpd_use_tls = yes
#smtpd_enforce_tls = yes
#smtpd_tls_auth_only = yes
smtpd_tls_key_file = /etc/postfix/newreq.pem
smtpd_tls_cert_file = /etc/postfix/newcert.pem
smtpd_tls_CAfile = /etc/postfix/cacert.pem
smtpd_tls_loglevel = 3
smtpd_tls_received_header = yes
smtpd_tls_session_cache_timeout = 1800s
tls_random_source = dev:/dev/urandom

Et voici mon fichier de log qui me dit pas grand chose.
Si ce n'est ce match_list_match qui me dit rien.

Quote:

Dec 19 19:23:30 o0 postfix/smtpd[24256]: connect from ares.olyxnet.ath.cx[192.168.115.110]
Dec 19 19:23:30 o0 postfix/smtpd[24256]: match_list_match: ares.olyxnet.ath.cx: no match
Dec 19 19:23:30 o0 postfix/smtpd[24256]: match_list_match: 192.168.115.110: no match
Dec 19 19:23:30 o0 postfix/smtpd[24256]: match_list_match: ares.olyxnet.ath.cx: no match
Dec 19 19:23:30 o0 postfix/smtpd[24256]: match_list_match: 192.168.115.110: no match
Dec 19 19:23:30 o0 postfix/smtpd[24256]: > ares.olyxnet.ath.cx[192.168.115.110]: 220 o0.olyxnet.ath.cx ESMTP Postfi
x
Dec 19 19:23:30 o0 postfix/smtpd[24256]: watchdog_pat: 0x80a8a70
Dec 19 19:23:30 o0 postfix/smtpd[24256]: < ares.olyxnet.ath.cx[192.168.115.110]: EHLO [127.0.0.1]
Dec 19 19:23:30 o0 postfix/smtpd[24256]: > ares.olyxnet.ath.cx[192.168.115.110]: 250-o0.olyxnet.ath.cx
Dec 19 19:23:30 o0 postfix/smtpd[24256]: > ares.olyxnet.ath.cx[192.168.115.110]: 250-PIPELINING
Dec 19 19:23:30 o0 postfix/smtpd[24256]: > ares.olyxnet.ath.cx[192.168.115.110]: 250-SIZE 10240000
Dec 19 19:23:30 o0 postfix/smtpd[24256]: > ares.olyxnet.ath.cx[192.168.115.110]: 250-VRFY
Dec 19 19:23:30 o0 postfix/smtpd[24256]: > ares.olyxnet.ath.cx[192.168.115.110]: 250-ETRN
Dec 19 19:23:30 o0 postfix/smtpd[24256]: > ares.olyxnet.ath.cx[192.168.115.110]: 250-STARTTLS
Dec 19 19:23:30 o0 postfix/smtpd[24256]: > ares.olyxnet.ath.cx[192.168.115.110]: 250-AUTH LOGIN PLAIN
Dec 19 19:23:30 o0 postfix/smtpd[24256]: > ares.olyxnet.ath.cx[192.168.115.110]: 250-AUTH=LOGIN PLAIN
Dec 19 19:23:30 o0 postfix/smtpd[24256]: match_list_match: ares.olyxnet.ath.cx: no match
Dec 19 19:23:30 o0 postfix/smtpd[24256]: match_list_match: 192.168.115.110: no match
Dec 19 19:23:30 o0 postfix/smtpd[24256]: > ares.olyxnet.ath.cx[192.168.115.110]: 250 8BITMIME
Dec 19 19:23:30 o0 postfix/smtpd[24256]: watchdog_pat: 0x80a8a70
Dec 19 19:23:32 o0 postfix/smtpd[24256]: smtp_get: EOF
Dec 19 19:23:32 o0 postfix/smtpd[24256]: lost connection after EHLO from ares.olyxnet.ath.cx[192.168.115.110]
Dec 19 19:23:32 o0 postfix/smtpd[24256]: disconnect from ares.olyxnet.ath.cx[192.168.115.110]


Je comprends pas et je suis collé.


Last edited by __hermes__ on Mon Dec 20, 2004 6:04 pm; edited 3 times in total
Back to top
View user's profile Send private message
kernelsensei
Bodhisattva
Bodhisattva


Joined: 22 Feb 2004
Posts: 5619
Location: Woustviller/Moselle/FRANCE (49.07°N;7.02°E)

PostPosted: Sun Dec 19, 2004 7:47 pm    Post subject: Reply with quote

tu peux modifier ton titre stp, merci !

[IMPORTANT] Comment se servir du forum !!
_________________
$ ruby -e'puts " .:@BFegiklnorst".unpack("x4ax7aaX6ax5aX15ax4aax6aaX7ax2aX5aX8 \
axaX3ax8aX4ax6aX3aX6ax3ax3aX9ax4ax2aX9axaX6ax3aX2ax4ax3aX4aXaX12ax10aaX7a").join'
Back to top
View user's profile Send private message
__hermes__
n00b
n00b


Joined: 19 Dec 2004
Posts: 8

PostPosted: Sun Dec 19, 2004 8:09 pm    Post subject: Reply with quote

Ci ca peut aider j'ai du nouveau si j'active dans /etc/postfix/main.cf
Quote:

smtpd_tls_wrappermode = yes

Voila ce que j'obtiens dans les logs :
Quote:

Dec 19 21:06:20 o0 postfix/smtpd[16841]: setting up TLS connection from ares.olyxnet.ath.cx[192.168.115.110]
Dec 19 21:06:20 o0 postfix/smtpd[16841]: SSL_accept:before/accept initialization
Dec 19 21:06:20 o0 postfix/smtpd[16841]: read from 080AFE40 [080B9550] (11 bytes => -1 (0xFFFFFFFF))
Dec 19 21:06:20 o0 postfix/smtpd[16841]: SSL_accept:error in SSLv2/v3 read client hello A
Back to top
View user's profile Send private message
__hermes__
n00b
n00b


Joined: 19 Dec 2004
Posts: 8

PostPosted: Mon Dec 20, 2004 6:09 pm    Post subject: Hum Hum Reply with quote

Eh bien parfois les réponses aux problèmes semblent bien *****. Ca me fait penser qu'avant de crier au loup pour une indisponibilité serveur on vérifie sa connectique. Donc le fin mot ... Après avoir fait des test distants je me suis rendu compte que ça passait nikel. Le problème étatit donc local. Mes stations sont sous windows (eh oui je sais ..) et l'antivirus avast bien que très bien ne supporte pas le tls et part default il fait office de proxy mail pour les filtrer donc hop je coupe avast et hop ca fonctionne.

Bon ca faisait que 4 jours que j'etais dessus ...
Back to top
View user's profile Send private message
Display posts from previous:   
Reply to topic    Gentoo Forums Forum Index French All times are GMT
Page 1 of 1

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum