Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.


Topics - B_Khuwera

Pages: [1]
1
hello,

i've been using zentyal 2.0 for mailserver since last year and working fine, activate TLS and authentication option for smtp in mail GUI,
allow relay only from local LAN, and only authenticated user from outside LAN. I check for open relay using mailradar.com as
i don't want the server to be open relay.
but due to ISP policy to block all outgoing from port 25, the server begin this issues. FYI we have static IP public.
they said they just block port 25, and they also open a mail relay on their port 587.
so i figured to use the smarthost and enter their relay address with :587 also using our account to login.
i work for some times,
but too bad their server seems cannot handle all email from their customer, so sometimes our mails is deferred,
and even bounced back. I already try to complaint about this but seems its not going to be resolve soon.

my question is, it is possible to use the port 587 for outgoing but not using smarthost?
because when I use the smarthost setting, i could see in mail.log that our server is sending mail using port 587,
but when I empty the smarthost, it got back to sending mail using port 25.

1. I enable the option submission inet n - - - - smtpd on master.cf.mas,
i can send only to our local user, when sending email outside, on log I see mailserver still using port 25.
i can receive email from outside, but cannot send email to outside.

below is some log when i use no 1 setting, and send email to outside.

Apr 22 23:42:48 WELLDONE2 postfix/smtpd[15113]: connect from unknown[111.94.127.137]
Apr 22 23:42:49 WELLDONE2 postfix/smtpd[15113]: setting up TLS connection from unknown[111.94.127.137]
Apr 22 23:42:50 WELLDONE2 postfix/smtpd[15113]: Anonymous TLS connection established from unknown[111.94.127.137]: TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)
Apr 22 23:42:51 WELLDONE2 postfix/smtpd[15113]: B256510046C0B: client=unknown[111.94.127.137], sasl_method=PLAIN, sasl_username=admin@welldone-communications.com
Apr 22 23:42:52 WELLDONE2 postfix/cleanup[14747]: B256510046C0B: message-id=<4F94335D.9000704@welldone-communications.com>
Apr 22 23:42:52 WELLDONE2 postfix/qmgr[14543]: B256510046C0B: from=<admin@welldone-communications.com>, size=898, nrcpt=1 (queue active)
Apr 22 23:42:52 WELLDONE2 amavis[3780]: (03780-02) ESMTP::10024 /var/lib/amavis/amavis-20120422T231704-03780: <admin@welldone-communications.com> -> <bouvy@padepokan-suralaya.co.cc> SIZE=898 Received: from mail.welldone-communications.com ([127.0.0.1]) by localhost (WELLDONE2.localdomain [127.0.0.1]) (amavisd-new, port 10024) with ESMTP for <bouvy@padepokan-suralaya.co.cc>; Sun, 22 Apr 2012 23:42:52 +0700 (WIT)
Apr 22 23:42:52 WELLDONE2 amavis[3780]: (03780-02) Checking: 3PMNyum3dRAS [111.94.127.137] <admin@welldone-communications.com> -> <bouvy@padepokan-suralaya.co.cc>
Apr 22 23:42:52 WELLDONE2 amavis[3780]: (03780-02) Open relay? Nonlocal recips but not originating: bouvy@padepokan-suralaya.co.cc
Apr 22 23:42:52 WELLDONE2 postfix/smtpd[15113]: disconnect from unknown[111.94.127.137]
Apr 22 23:42:53 WELLDONE2 postfix/smtpd[14812]: connect from localhost[127.0.0.1]
Apr 22 23:42:53 WELLDONE2 postfix/smtpd[14812]: 6C25810046C0C: client=localhost[127.0.0.1]
Apr 22 23:42:53 WELLDONE2 postfix/cleanup[14747]: 6C25810046C0C: message-id=<4F94335D.9000704@welldone-communications.com>
Apr 22 23:42:53 WELLDONE2 postfix/qmgr[14543]: 6C25810046C0C: from=<admin@welldone-communications.com>, size=1400, nrcpt=1 (queue active)
Apr 22 23:42:53 WELLDONE2 postfix/smtpd[14812]: disconnect from localhost[127.0.0.1]
Apr 22 23:42:53 WELLDONE2 amavis[3780]: (03780-02) FWD via SMTP: <admin@welldone-communications.com> -> <bouvy@padepokan-suralaya.co.cc>,BODY=7BIT 250 2.0.0 Ok, id=03780-02, from MTA([127.0.0.1]:10025): 250 2.0.0 Ok: queued as 6C25810046C0C
Apr 22 23:42:53 WELLDONE2 amavis[3780]: (03780-02) Passed, <admin@welldone-communications.com> -> <bouvy@padepokan-suralaya.co.cc>, quarantine 3PMNyum3dRAS, Message-ID: <4F94335D.9000704@welldone-communications.com>,
Apr 22 23:42:53 WELLDONE2 amavis[3780]: (03780-02) Hits: -0.199
Apr 22 23:42:53 WELLDONE2 amavis[3780]: (03780-02) Passed CLEAN, <admin@welldone-communications.com> -> <bouvy@padepokan-suralaya.co.cc>, Hits: -0.199, tag=0, tag2=5, kill=5, queued_as: 6C25810046C0C, 0/Y/0/0
Apr 22 23:42:53 WELLDONE2 postfix/smtp[14779]: B256510046C0B: to=<bouvy@padepokan-suralaya.co.cc>, relay=127.0.0.1[127.0.0.1]:10024, delay=2, delays=0.63/0/0/1.4, dsn=2.0.0, status=sent (250 2.0.0 Ok, id=03780-02, from MTA([127.0.0.1]:10025): 250 2.0.0 Ok: queued as 6C25810046C0C)
Apr 22 23:42:53 WELLDONE2 postfix/qmgr[14543]: B256510046C0B: removed
Apr 22 23:43:14 WELLDONE2 postfix/smtp[14548]: connect to aspmx.l.google.com[209.85.225.27]:25: Connection timed out
Apr 22 23:43:26 WELLDONE2 dovecot: pop3-login: Login: user=<admin@welldone-communications.com>, method=PLAIN, rip=111.94.127.137, lip=192.168.10.9, TLS
Apr 22 23:43:29 WELLDONE2 dovecot: POP3(admin@welldone-communications.com): Disconnected: Logged out top=0/0, retr=0/0, del=0/1399, size=60612792
Apr 22 23:43:35 WELLDONE2 postfix/smtp[14548]: connect to alt2.aspmx.l.google.com[74.125.45.27]:25: Connection timed out
Apr 22 23:43:56 WELLDONE2 postfix/smtp[14548]: connect to alt1.aspmx.l.google.com[209.85.225.27]:25: Connection timed out
Apr 22 23:44:17 WELLDONE2 postfix/smtp[14548]: connect to aspmx5.googlemail.com[74.125.157.27]:25: Connection timed out
Apr 22 23:44:38 WELLDONE2 postfix/smtp[14548]: connect to aspmx2.googlemail.com[74.125.43.27]:25: Connection timed out
Apr 22 23:44:38 WELLDONE2 postfix/smtp[14548]: 6C25810046C0C: to=<bouvy@padepokan-suralaya.co.cc>, relay=none, delay=105, delays=0.03/0/105/0, dsn=4.4.1, status=deferred (connect to aspmx2.googlemail.com[74.125.43.27]:25: Connection timed out)

2. I disable the #smtp inet n - - - - smtpd on master.cf.mas, change into 587 inet n - - - - smtpd,
i can send only to our local user, when sending email outside, on log I see mailserver still using port 25.
i cannot receive or send email from outside.

below is some log when i use no 2 setting, and send email to outside.

Apr 22 23:30:03 WELLDONE2 postfix/smtp[12018]: connect to alt2.gmail-smtp-in.l.google.com[173.194.73.26]:25: Connection timed out
Apr 22 23:30:24 WELLDONE2 postfix/smtp[12018]: connect to alt3.gmail-smtp-in.l.google.com[173.194.66.26]:25: Connection timed out
Apr 22 23:30:45 WELLDONE2 postfix/smtp[12018]: connect to alt4.gmail-smtp-in.l.google.com[173.194.65.26]:25: Connection timed out
Apr 22 23:30:45 WELLDONE2 postfix/smtp[12018]: B9D2B10046BE7: to=<cyrila06production@gmail.com>, relay=none, delay=191707, delays=191601/0.02/105/0, dsn=4.4.1, status=deferred (connect to alt4.gmail-smtp-in.l.google.com[173.194.65.26]:25: Connection timed out)
Apr 22 23:30:45 WELLDONE2 postfix/smtp[12018]: B9D2B10046BE7: to=<indralestarya@gmail.com>, relay=none, delay=191707, delays=191601/0.02/105/0, dsn=4.4.1, status=deferred (connect to alt4.gmail-smtp-in.l.google.com[173.194.65.26]:25: Connection timed out)

both setting is not using smarthost from our ISP.

Thanks.

2
Installation and Upgrades / some error in zentyal log ..
« on: November 01, 2011, 07:09:36 pm »
Hi all ..

i've got this inside /var/log/zentyal/zentyal/log everytime i reboot/start zentyal server

1. 2011/11/01 23:43:37 DEBUG> Base.pm:241 EBox::RemoteServices::Base::_queryServicesNameserver - Server mon.internal.cloud.zentyal.com not found via DNS server 10.200.0.4. Reason: query timed out

2. 2011/11/01 23:43:38 INFO> Service.pm:716 EBox::Module::Service::restartService - Restarting service for module: ntp
2011/11/01 23:43:45 ERROR> Sudo.pm:213 EBox::Sudo::_rootError - root command /usr/sbin/ntpdate ntp.ui.ac.id failed.
Error output:  1 Nov 23:43:45 ntpdate[4681]: no server suitable for synchronization found

1. Is that mean myserver.zentyal.me is not accessible ?
2. i thougt zentyal was using ntpd not ntpdate ... i try use ntpdate on cli .. error ..

Thanks n regards

3
Hello,

I just recently install Zentyal 2.2.1 ISO, updated all component necessary. I use it for gateway, proxy, PDC, DNS, DHCP and file server. it works fine for DHCP clients. but when i change some clients into static ip, it lost connections to internet.

i setup using transparent proxy checked, ad blocking checked, port change into 8182, default policy always denied.

in network object i create ¨dhcplist¨ for DHCP client, in http proxy object policy named ¨DHCPlist¨ is filter all time using new profile name ¨standart-user¨, which use antivirus checked, using default profile not checked and threshold option set to very strict.

also created a network object called ¨VIP¨, in http proxy object policy named ¨VIP¨ always allow all time using new profile name ¨vip-user¨, which use antivirus checked, using default profile not checked and Threshold option set to disabled.

My problem is .. all DHCP client can connect to internet without any problem, but VIP users that are using static IP not in DHCP range cannot connect to internet .. the setting for DHCPś client and staticś only different in IP, the gateway IP and DNS IP are using Zentyal DNS.

I checked proxy log, i do not see any traffics coming from VIP IP which are static, only traffic from DHCP client. I checked firewall log, i did not see any static VIP IP blocked.

i try to change the global proxy setting to always allow, the VIP IP still cannot open any website, but in their screen thereś a sign said waiting for ¨intended website¨

I use the same setting using previous zentyal 2.0.xx and itś works fine ..
I change it into 2.2 due to my interest to try the add blocking feature in proxy.

Please show me what did i do wrong or what should i do to figure out this problem ?

Regards

Solutions : after several try and errors, not using option -1 for unlimited option in http proxy - Bandwidth Throttling option, both delay pool 1 or delay pool 2.
Simply do not put any rule or do not use -1 for unlimited options as describe beside it or put some figure you want it as rule for your network object to use bandwitdh throttling.

4
Installation and Upgrades / vpn log is half empty
« on: October 05, 2010, 11:44:05 am »
Dear all

I am using eBox 1.4.2 for VPN and works fine ..and i try to use Zentyal 2.0.2 64-bit, all working but something in VPN log is different.. is just not able to show which certificate and its remote IP in GUI
What should i do ?

Regards,

Bouvy

5
Hello all,

I'm installing eBox 1.4 from ISO, still figure out other feature in eBox, so far its awesome
but something curious me, why accessing the eBox web GUI is slow,
both in eBox or workstation, considering its local web.
For every click on menu sidebar takes 2-3 minutes to open up,
saving process its takes up 4-5 minutes, restart the server almost 10 minutes.
but at the same time, accessing internet and stuff are working fine and fast.

Is there anything I can do to speedup this ? or perhaps its was normal condition ?

FYI : I'm using 2 WAN and 1 LAN configuration, standalone configuration, already try on
both Atom Dual Core and P4 Dual Core with 2Gb ram and 250Gb HDD.

Thanks for great solutions

Regards,
B Khuwera

Pages: [1]