Results 1 to 8 of 8

Thread: Admin Server Remote Access

  1. #1
    msmcknight is offline Senior Member
    Join Date
    May 2009
    Posts
    57
    Rep Power
    6

    Default Admin Server Remote Access

    Hi everyone,

    I am trying to access the ZCS admin server remotely from the internet. The actual hostname of the server is not resolvable from the internet. For example, the actual hostname might be zimbra.example.com, but from the internet I connect to zhost.example.com.

    When I try to connect to port 7071, I get the main ZCS login screen... not the admin login. This is bizarre to me since the ZCS user webmail is not listening on port 7071.

    If I connect from the internal network to port 7071, I get the admin login screen.

    I am at a loss as to how I can connect to 7071 and end up at the ZCS login screen listening on 8080. The only thing I can think of is that the apache backend config has something wrong with it.

    The installation is a stock 5.0.16 on RH5.3 and I have made no significant customizations.

    If anyone has any ideas on how/why this is happening and how to fix it,I would appreciate anytips.

    Thanks to all in advance.
    -Michael

  2. #2
    phoenix is offline Zimbra Consultant & Moderator
    Join Date
    Sep 2005
    Location
    Vannes, France
    Posts
    23,470
    Rep Power
    56

    Default

    Have you got port 7071 forwarded correctly through your firewall or NAT router?
    Regards


    Bill


    Acompli: A new adventure for Co-Founder KevinH.

  3. #3
    msmcknight is offline Senior Member
    Join Date
    May 2009
    Posts
    57
    Rep Power
    6

    Default

    Yes. The external address, ie port 5071 is directing to the actual port 7071. The crazy thing is that the web browser shows port 5071 -- netstat -an shows port 7071 but the ZCS webmail login is what I get.

    Another interesting thing I just noticed... I can login when connecting to this mystery port, but once logged in, I cant do anything. If I click on a message, for example, ZCS gives me an:

    "A network error has occurred."

    The details mention
    system failure: request not allowed on port 7071
    code: service failure

    The error does seem to indicate that I am connected to port 7071.

    Very odd and I'm at a total loss!

    Thanks,
    Michael

  4. #4
    3RiversTechAdmin's Avatar
    3RiversTechAdmin is offline Special Member
    Join Date
    Oct 2006
    Posts
    100
    Rep Power
    8

    Default

    I would recommend against exposing yourself the way you are. Instead you should use ssh port forwarding (or VPN).

    Here is an example of how you would use ssh port forwarding from a Linux machine outside your office.

    sshServer - server running ssh
    XXX - port ssh on sshServer is exposed on
    zimbraServer - server running zimbra

    execute:
    ssh -p XXX -l username -L 7071:zimbraServer:7071 sshServer cat -

    Then go to: https://localhost:7071 in your web browser

  5. #5
    msmcknight is offline Senior Member
    Join Date
    May 2009
    Posts
    57
    Rep Power
    6

    Default

    Hi,

    Yes, I agree completely that an SSH tunnel would be the most secure option, unfortunately I wont always be where I'll have SSH access. Sometimes I may have to address an issue remotely from a blackberry, a internet cafe, etc. We understand the risks, but for now, we really need to get to the admin console directly.

    Thanks,
    -Michael

  6. #6
    msmcknight is offline Senior Member
    Join Date
    May 2009
    Posts
    57
    Rep Power
    6

    Default

    Hi folks,

    Any other thoughts on this issue? I can't get it to work at all and no matter what I try, I keep ending up and the general ZCS login screen.

    To me, this looks like a web-server config issue. Meaning that the webserver seems to be matching the connection based on the URL attempted rather than connecting based on the destination port. I cant be sure though since I'm not that familiar with ZCS and how it works under-the-covers.

    If anyone can help shed light on this... or maybe try to reproduce it to see if they have the same problem, it would be great.

    In any case, thanks to you all in advance.
    -Michael

  7. #7
    veronica is offline Outstanding Member
    Join Date
    Jun 2008
    Posts
    594
    Rep Power
    8

    Default

    Why dont you use zimbraPublicServiceHostname to access from public ?

  8. #8
    msmcknight is offline Senior Member
    Join Date
    May 2009
    Posts
    57
    Rep Power
    6

    Default

    I've tried using the public service name for the primary domain, but I dont see one for the admin server. Is there a public service name setting for the admin server?

    Thanks,
    Michael

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Similar Threads

  1. How to: cold standby server (no cluster)
    By fisch09 in forum Installation
    Replies: 50
    Last Post: 02-18-2014, 10:51 AM
  2. Zimbra HTTP remote access through DMZ
    By milesteg in forum Installation
    Replies: 6
    Last Post: 01-09-2009, 03:52 PM
  3. [SOLVED] Build Zimbra..a little problem...
    By Abdelmonam Kouka in forum Developers
    Replies: 33
    Last Post: 05-22-2008, 05:10 AM
  4. Restore Backup to Remote Server
    By folioguru in forum Administrators
    Replies: 1
    Last Post: 09-24-2007, 01:46 PM
  5. Error 256 on Installation
    By RuinExplorer in forum Installation
    Replies: 5
    Last Post: 10-19-2006, 09:19 AM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •