Zimbra offers Open Source email server software and shared calendar for Linux and the Mac
Go Back   Zimbra :: Forums > Zimbra Collaboration Suite > Administrators

Welcome to the Zimbra :: Forums!
Welcome, if you would like to post a comment please register. We also encourage you to explore all things Zimbra with our team and members of the community.

Reply
 
LinkBack Thread Tools Search this Thread Display Modes
  #1 (permalink)  
Old 09-28-2009, 02:08 AM
Special Member
 
Posts: 166
Default [SOLVED] Submission 587 seems changed?

Hi All

I upgraded a zimbra oss server to 6.01 this weekend and now seems 587 submission port is not working. Looking in

/opt/zimbra/postfix/conf/master.cf.in

The layout has changed but it looks about right to me,

smtp inet n - n - - smtpd
465 inet n - n - - smtpd
-o smtpd_tls_wrappermode=yes
-o smtpd_sasl_auth_enable=yes
submission inet n - n - - smtpd
-o smtpd_etrn_restrictions=reject
-o smtpd_sasl_auth_enable=%%zimbraMtaSaslAuthEnable%%
-o smtpd_client_restrictions=permit_sasl_authenticate d,reject
-o smtpd_tls_security_level=%%zimbraMtaTlsSecurityLev el%%

With submission inet n line which should be the 587 port I believe.

I can telnet to port 587 ok but sending from a client on TLS gives 'Doesnt offer starttls in ehlo response' and SSL spends a lifetime doing nothing.

As the telnet suggested, sending plain text on 587 works fine....

Worked fine before on 5.0 but this seems different.

Any ideas?

K


Here's the final conf derived from above:

465 inet n - n - - smtpd
-o smtpd_tls_wrappermode=yes
-o smtpd_sasl_auth_enable=yes
submission inet n - n - - smtpd
-o smtpd_etrn_restrictions=reject
-o smtpd_sasl_auth_enable=yes
-o smtpd_client_restrictions=permit_sasl_authenticate d,reject
-o smtpd_tls_security_level=none

Last edited by kevindods; 09-28-2009 at 02:19 AM..
Reply With Quote
  #2 (permalink)  
Old 09-28-2009, 02:40 AM
Special Member
 
Posts: 166
Default

Found this posting in installation

TLS not being offered on SMTP after upgrade from 5.0.18 to 6.0.0

Which seems to solve the TLS issue for me. As zimbra user, run:

zmprov ms your.server.name zimbraMtaTlsSecurityLevel may
postfix reload

(Replace your.server.name with your server's name!)

587 now runs on TLS fine, havent found the bug report yet but will post here if I do.

K

Bug 41303 – TLS not being offered on SMTP after upgrade from 5.0.18 to 6.0.0

Last edited by kevindods; 09-28-2009 at 03:15 AM..
Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes


Similar Threads

Why Join?

Registering let's you ask questions, makes it easier to search, displays any files attached to posts, and notifies you about replies.

blog.zimbra.com




 

SEO by vBSEO ©2011, Crawlability, Inc.