Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.


Messages - chunk.one

Pages: [1] 2
1
Installation and Upgrades / create certificate from shell?
« on: March 25, 2019, 04:46:31 pm »
I want to create certificates from command line with openssl command, but they should be integrated into Zentyal CA. What commands do I need to run?

Thank you!

2
Other modules / create certificates from command line?
« on: September 04, 2018, 01:01:56 pm »
Hi,

our Webinterface is very slow when it comes to certificates. We also want to automate it.

How can we create a certificate from shell/command with some options?

This answer helps a lot more than speeding up the Webinterface (we then don't need them).

Thank you :)

3
Other modules / showing certificates is slow as hell
« on: September 04, 2018, 12:58:48 pm »
Hi,

we have about 900 certificates created. Accessing them is slow as hell from the Webinterface. uwsgi runs with 50% CPU and 25% Mem only.

How to speed up?

Thanks :)

Edit: when I click anything in the webinterface, it looks like every time all about 900 certs will be parsed. For every single click! I've installed snoopy (apt install snoopy).
This should be the cause for. Some of the 900 log lines:

Sep  4 15:56:46 zentyal snoopy[3623]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3625]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3627]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3629]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3631]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3633]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3635]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3637]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3639]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3641]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3643]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3645]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3647]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3649]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3651]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3653]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3655]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3657]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3659]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3661]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3663]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3665]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3667]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3669]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3671]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3673]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3675]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3677]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3679]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3681]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3683]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3685]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3687]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3689]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3691]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3693]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3695]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:46 zentyal snoopy[3697]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:47 zentyal snoopy[3699]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:47 zentyal snoopy[3701]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:47 zentyal snoopy[3703]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:47 zentyal snoopy[3705]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:47 zentyal snoopy[3707]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:47 zentyal snoopy[3709]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:47 zentyal snoopy[3711]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:47 zentyal snoopy[3713]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:47 zentyal snoopy[3715]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:47 zentyal snoopy[3717]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:47 zentyal snoopy[3719]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:47 zentyal snoopy[3721]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:47 zentyal snoopy[3723]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:47 zentyal snoopy[3725]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:47 zentyal snoopy[3727]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl
Sep  4 15:56:47 zentyal snoopy[3729]: [uid:111 sid:1275 tty:(none) cwd:/ filename:/usr/bin/openssl]: /usr/bin/openssl


But anyway, my question about creating certs from command line is more important.

4
Installation and Upgrades / Re: Zarafa 7 update possible?
« on: July 04, 2011, 10:31:28 am »
From my point of view the dagent.mas file doesn't do and change anything now. You can ignore it now. But wait for answer from jsalamero.

Yesterday night I updated my productive private server from Zarafa 6 to 7. I do a Z-Push update too from 1.4.x to 1.5.3.

Everything is good :-) In future it's easier and faster to update Zarafa 7.x packages and Z-Push 1.5.x file from zarafa.com.

5
Installation and Upgrades / Re: Zarafa 7 update possible?
« on: July 03, 2011, 12:21:53 pm »
Now I've done a compare between Zarafa 6 and 7. I used Ubuntu 10.04 and Zarafa from this repository:
http://download.zarafa.com/community/final/

Here is what I found:
Quote
================================
File differences in /etc/default
================================

Zarafa 6
========

zarafa-dagent
zarafa-gateway
zarafa-ical
zarafa-indexer
zarafa-licensed
zarafa-monitor
zarafa-server
zarafa-spooler
zarafa-ssm

Zarafa 7
========

zarafa
zarafa-ssm

Info
====

- zarafa-ssm has the same content
- /etc/default/zarafa in now a single file and not zarfa-*

===============================
File differences in /etc/zarafa
===============================
(*.cfg only)

Zarafa 6 has additionally
=========================

ldapms.active-directory.cfg
ldapms.openldap.cfg

=================================
Config differences in /etc/zarafa
=================================
">" means: Zarafa 7 use this feature, but not Zarafa 6
"<" means: Zarafa 6 use this feature, but not Zarafa 7

==========
dagent.cfg
==========

Zarafa 7:
> # Log raw message to a file
> log_raw_message = no
>
> # Log raw messages path
> log_raw_message_path = /tmp

===========
gateway.cfg
===========

Zarafa 6:
# Enable if you have problems reading mail (mostly happens in <
# However, this will make the gateway much slower.            <
imap_always_generate = no                                     <

Zarafa 7:
>   # Override the e-mail charset and generate using utf-8 (when
>   imap_generate_utf8 = no
>
>   # Internally issue the expunge command to directly delete e-m
>   imap_expunge_on_delete = no

===========
indexer.cfg
===========

Zarafa 6:
# Synchronization method, enabling this option will stream    <
# messages from server for faster synchronization.         <
index_sync_stream   =   yes               <

=========================
ldap.active-directory.cfg
=========================

Zarafa 7:
>   # If a request want more objects than this value, it will dow
>   # full ldap tree (from the base with the search filter) and d
>   # wat was not required. This is faster for large requests.
>   # Default: 1000
>   ldap_filter_cutoff_elements = 1000

=================
ldap.openldap.cfg
=================

Zarafa 7:
>   # If a request want more objects than this value, it will dow
>   # full ldap tree (from the base with the search filter) and d
>   # wat was not required. This is faster for large requests.
>   # Default: 1000
>   ldap_filter_cutoff_elements = 1000

(no typo, same as active-directory)

================
ldap.propmap.cfg
================

Zarafa 7:
>   # PR_EC_ENABLED_FEATURES
>   0x67B3101E   =   zarafaEnabledFeatures
>
>   # PR_EC_DISABLED_FEATURES
>   0x67B4101E   =   zarafaDisabledFeatures

==========
server.cfg
==========

Zarafa 7:
>   # Override the default MySQL socket to access mysql locally
>   # Works only if the mysql_host value is empty or 'localhost'
>   mysql_socket      =

>   # Disable features for users. Default all features are enable
>   # list is space separated. Currently valid values: imap
>   disabled_features =

===========
spooler.cfg
===========

Zarafa 7:
>   # Port number for outgoing mailserver
>   smtp_port = 25

>   # Send all e-mail always using the UTF-8 charset.
>   # Normally, the requested charset is used, which can be any c
>   always_send_utf8 = no

Zentyal overwrite following files in Zarafa 6:
Quote
gateway.cfg.mas
ical.cfg.mas
indexer.cfg.mas
ldap.openldap.cfg.mas
monitor.cfg.mas
server.cfg.mas
spooler.cfg.mas

Now it should be easy to change the *.mas file if something special is needed. Please check the other files if this are the newer ones too (eg. ldap.propmap.cfg).

Sorry, I must cut. I've no time for today. Will have a look next few days when I update my "productive" server.

6
Installation and Upgrades / Re: Zarafa 7 update possible?
« on: July 03, 2011, 10:06:20 am »
May I know what is your previous version of zarafa? Are you using the one come with Zentyal or you install manually?
I used Zarafa 6.40.x from the standard Ubuntu partner repository.

Quote
My question is the same as yours, will I face any incompatibilty when I run Zarafa 7 in Zentyal 2.0?

There are new (other?) options in Zarafa 7 configuration files and Zentyal writes 6.40.x based config files. Next two days I'll compare the config files after a default Zarafa installation (without Zentyal). One with 6.40.9 installed and one with 7.0.0 installed. Then I see the differences and make a own stub file if needed.

7
Installation and Upgrades / Re: Zarafa 7 update possible?
« on: June 30, 2011, 09:06:53 pm »
Ok, now I copied my productive mails to the VM test machine, upgraded to Zarafa 7 and everything looks good till now! :)

Imap does list sometimes the original mailer instead of displaying everytime Zarafa as the X-Mailer (which is not true).

@Zentyal developers
Can I install Zarafa 7 in this way or do you know some incompatible options which I don't see at my one hour test?

Thanks!

8
Installation and Upgrades / Re: Zarafa 7 update possible?
« on: June 30, 2011, 05:02:18 pm »
It looks like it will work. Need to add following packages:
(apt-get install) libboost-filesystem1.40.0 libboost-system1.40.0 mktemp

Then download this one (for 64bit):
http://download.zarafa.com/community/final/7.0/7.0.0-27791/zcp-7.0.0-27791-ubuntu-10.04-x86_64-free.tar.gz

Unpack and install with dpkg -i *deb

After updating the MySQL tables, everything looks good (new install without any mail, contact, calendar).

Tommorow I'll try this with all mails and calendars from "production" server. I hope that Imap is really better in Zarafa 7.

9
Installation and Upgrades / Zarafa 7 update possible?
« on: June 27, 2011, 10:18:24 pm »
Is it possible to update to Zarafa 7 without problems? Zarafa 7.0 is released today:
www.zarafa.com

Thank you! (will try it next few days in a virtual machine)


10
No one know if it is possible to send a shell commands to Zentyal instead of clicking in the Zentyal GUI?

11
Quote
if you disable and re-enable each of the zarafa user accounts they then appear in the user list when you run zarafa-admin -l

I have the same problem after export configuration and files from one server and import it to another server.

Is it possible to script Zentyal functions instead of clicking in the WebGUI??
  • get user list with zarafa account enabled and start a script:
  • disable this users in zarafa
  • enable this users in zarafa

12
Installation and Upgrades / Re: Changelog of packages?
« on: April 26, 2011, 03:18:37 pm »
Great! I searched the forum, found some older threat with bad links, but not this one. Thank you!

13
Installation and Upgrades / Re: Optimize for low-spec machine?
« on: April 26, 2011, 09:11:48 am »
You can try 2.1 (beta of 2.2). But I noticed that 2.1 isn't much faster than 2.0. I hope this will be fixed in 2.2.

Is the newer redis database included in 2.1? I've deleted my last 2.1 virtual machine and can't look at it.

14
Installation and Upgrades / Changelog of packages?
« on: April 26, 2011, 08:59:21 am »
Is there any package changelog? It's ok if Zentyal overwrite something or set another default setting. But it's more useful to know the changes.

Thank you!

15
Installation and Upgrades / Re: Optimize for low-spec machine?
« on: April 25, 2011, 07:49:57 pm »
  • /usr/bin/perl /etc/init.d/ebox network status
  • /usr/bin/redis-server /var/lib/ebox/conf/redis.conf
The WebGUI is sometimes really slow, even on 2+ghz machines and redis database is one of the reason. I hope that Zentyal 2.2 fix this problem with a newer redis version. At work I use a lot WebGUIs and can't believe, that an usual admin gui is (sometimes) that slow like Zentyal.

Pages: [1] 2