Page 1 of 2 12 LastLast
Results 1 to 10 of 11

Thread: Cannot SASL authenticate to server

  1. #1
    crichell is offline Junior Member
    Join Date
    Dec 2005
    Location
    Denver, Colorado
    Posts
    8
    Rep Power
    9

    Default Cannot SASL authenticate to server

    I am having trouble sending email to my ISP's smtp server from the web client. My ISP is expecting a plain username and password.

    My postfix main.cf tail

    smtpd_sasl_auth_enable = yes
    smtpd_tls_auth_only = yes
    disable_dns_lookups = yes
    message_size_limit = 10240000
    relayhost = smtp.mydomain.com
    smtp_sasl_auth_enable = yes
    smtp_sasl_password_maps = hash:/opt/zimbra/conf/relay_password
    smtp_sasl_mechanism_filter = plain
    smtp_tls_enforce_peername = no
    smtp_use_tls = no

    Username and password in 'relay_password' is correct

    Error in var/log/zimbra.log

    Dec 28 19:53:04 zimbra postfix/smtp[29914]: warning: SASL authentication failure: No worthy mechs found
    Dec 28 19:53:04 zimbra postfix/smtp[29914]: DBE0A1040741: to=, relay=smtp.mydomain.com[XXX.XXX.XX.XXX], delay=6, status=deferred (Authentication failed: cannot SASL authenticate to server smtp.mydomain.com[XXX.XXX.XX.XXX]: no mechanism available)

    Thanks in advance for your help
    btw - Zimbra is impressive thus far
    Carl Richell | System76 | http://system76.com

  2. #2
    marcmac is offline Expert Member
    Join Date
    Sep 2005
    Posts
    2,103
    Rep Power
    13

    Default smtp auth

    Try adding your ISPs mailhost to debug_peer_list and increasing the debug_peer_level to 3, then restart postfix.

  3. #3
    crichell is offline Junior Member
    Join Date
    Dec 2005
    Location
    Denver, Colorado
    Posts
    8
    Rep Power
    9

    Default

    Quote Originally Posted by marcmac
    Try adding your ISPs mailhost to debug_peer_list and increasing the debug_peer_level to 3, then restart postfix.
    Where is debug_peer_list? How do increase debug level to 3? -Thanks

    #find / debug_peer_list

    returns find: debug_peer_list: No such file or directory
    Last edited by crichell; 12-28-2005 at 01:40 PM.
    Carl Richell | System76 | http://system76.com

  4. #4
    marcmac is offline Expert Member
    Join Date
    Sep 2005
    Posts
    2,103
    Rep Power
    13

    Default postconf

    postconf -e debug_peer_list=mail.host.com
    postconf -e debug_peer_level=3
    postfix reload

    This should increase what's logged for the smtp auth transaction

    (man 5 postconf will tell you everything you ever wanted to know).

  5. #5
    crichell is offline Junior Member
    Join Date
    Dec 2005
    Location
    Denver, Colorado
    Posts
    8
    Rep Power
    9

    Default

    Quote Originally Posted by marcmac
    Try adding your ISPs mailhost to debug_peer_list and increasing the debug_peer_level to 3, then restart postfix.
    OK now here's zimbra.log output - at least what looks relevant

    Dec 28 20:48:13 zimbra postfix/qmgr[7186]: 71751104073F: from=, size=1573, nrcpt=1 (queue active)
    Dec 28 20:48:18 zimbra postfix/smtp[7189]: < smtp.myrelay.com[XXX.202.23.141]: 220 jose031.ISPMAILSERVER.com ESMTP Sendmail 8.13.1/8.13.1; Wed, 28 D$Dec 28 20:48:18 zimbra postfix/smtp[7189]: > smtp.myrelay.com[XXX.202.23.141]: EHLO zimbra.MYLOCALDOMAIN.local
    Dec 28 20:48:18 zimbra postfix/smtp[7189]: vstream_fflush_some: fd 13 flush 25
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: < smtp.myrelay.com[XXX.202.23.141]: 220 jose031.ISPMAILSERVER.com ESMTP Sendmail 8.13.1/8.13.1; Wed, 28 D$Dec 28 20:48:18 zimbra postfix/smtp[7188]: > smtp.myrelay.com[XXX.202.23.141]: EHLO zimbra.MYLOCALDOMAIN.local
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: vstream_fflush_some: fd 13 flush 25
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: vstream_buf_get_ready: fd 13 got 212
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: < smtp.myrelay.com[XXX.202.23.141]: 250-jose031.ISPMAILSERVER.com Hello [XX.42.246.XXX], pleased to meet $Dec 28 20:48:18 zimbra postfix/smtp[7188]: < smtp.myrelay.com[XXX.202.23.141]: 250-ENHANCEDSTATUSCODES
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: < smtp.myrelay.com[XXX.202.23.141]: 250-PIPELINING
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: < smtp.myrelay.com[XXX.202.23.141]: 250-8BITMIME
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: < smtp.myrelay.com[XXX.202.23.141]: 250-SIZE
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: < smtp.myrelay.com[XXX.202.23.141]: 250-DSN
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: < smtp.myrelay.com[XXX.202.23.141]: 250-ETRN
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: < smtp.myrelay.com[XXX.202.23.141]: 250-AUTH PLAIN LOGIN
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: < smtp.myrelay.com[XXX.202.23.141]: 250-DELIVERBY
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: < smtp.myrelay.com[XXX.202.23.141]: 250 HELP
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: match_string: PLAIN ~? plain
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: match_string: LOGIN ~? plain
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: match_list_match: LOGIN: no match
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: server features: 0x102f size 0
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: Using ESMTP PIPELINING, TCP send buffer size is 4096
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: maps_find: smtp_sasl_passwd: hash:/opt/zimbra/conf/relay_password(0,100): smtp.myrelay.com = username:password
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: smtp_sasl_passwd_lookup: host `smtp.myrelay.com' user `username' pass 'password'
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: starting new SASL client
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: name_mask: noplaintext
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: name_mask: noanonymous
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: smtp_sasl_authenticate: smtp.myrelay.com[XXX.202.23.141]: SASL mechanisms PLAIN
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: warning: SASL authentication failure: No worthy mechs found

    a little further down

    Dec 28 20:48:18 zimbra postfix/smtp[7189]: send attr reason = Authentication failed: cannot SASL authenticate to server smtp.myrelay.com[XXX.202.23.141]: n$
    Dec 28 20:48:18 zimbra postfix/smtp[7189]: private/defer socket: wanted attribute: status
    Dec 28 20:48:18 zimbra postfix/smtp[7189]: vstream_fflush_some: fd 14 flush 277
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: vstream_buf_get_ready: fd 14 got 10
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: input attribute name: status
    Dec 28 20:48:18 zimbra postfix/smtp[7188]: input attribute value: 0

    Looks like the correct user name and password is being passed - it's a bit Greek to me
    Last edited by crichell; 12-28-2005 at 02:19 PM.
    Carl Richell | System76 | http://system76.com

  6. #6
    marcmac is offline Expert Member
    Join Date
    Sep 2005
    Posts
    2,103
    Rep Power
    13

    Default smtp_sasl_mechanism_filter

    The logs you sent were very helpful - I think that smtp_sasl_authentication_filter is the problem. Your ISPs mailserver is advertising plain and login, but you're only permitting plain - try resetting that:
    postconf -e smtp_sasl_authentication_filter=
    postfix reload

  7. #7
    crichell is offline Junior Member
    Join Date
    Dec 2005
    Location
    Denver, Colorado
    Posts
    8
    Rep Power
    9

    Default

    Quote Originally Posted by marcmac
    The logs you sent were very helpful - I think that smtp_sasl_authentication_filter is the problem. Your ISPs mailserver is advertising plain and login, but you're only permitting plain - try resetting that:
    postconf -e smtp_sasl_authentication_filter=
    postfix reload
    I noticed this as well and changed it (postconf -e smtp_sasl_authentication_filter=) - i'm getting the same error after reload

    main.cf
    smtpd_tls_auth_only = yes
    disable_dns_lookups = yes
    message_size_limit = 10240000
    relayhost = smtp.myrelay.com
    smtp_sasl_auth_enable = yes
    smtp_sasl_password_maps = hash:/opt/zimbra/conf/relay_password
    smtp_sasl_mechanism_filter =
    smtp_tls_enforce_peername = no
    smtp_use_tls = no
    debug_peer_list = smtp.myrelay.com

    the error after reload and sending another email

    Dec 28 21:37:21 zimbra postfix/smtp[16054]: smtp_sasl_authenticate: smtp.myrelay.com[XXX.202.23.141]: SASL mechanisms PLAIN LOGIN
    Dec 28 21:37:21 zimbra postfix/smtp[16054]: warning: SASL authentication failure: No worthy mechs found
    Last edited by crichell; 12-28-2005 at 02:50 PM.
    Carl Richell | System76 | http://system76.com

  8. #8
    marcmac is offline Expert Member
    Join Date
    Sep 2005
    Posts
    2,103
    Rep Power
    13

    Default smtp_sasl_security_options

    apparently, smtp_sasl_security_options defaults to noplaintext, noanonymous - can you set that, too?

    postconf -e smtp_sasl_security_options=
    postfix reload

  9. #9
    crichell is offline Junior Member
    Join Date
    Dec 2005
    Location
    Denver, Colorado
    Posts
    8
    Rep Power
    9

    Default

    Quote Originally Posted by marcmac
    apparently, smtp_sasl_security_options defaults to noplaintext, noanonymous - can you set that, too?

    postconf -e smtp_sasl_security_options=
    postfix reload
    That's it marcmac - Thanks for your help
    Carl Richell | System76 | http://system76.com

  10. #10
    robertsonphoto is offline Junior Member
    Join Date
    Apr 2006
    Posts
    7
    Rep Power
    8

    Default

    When we use postconf -e ... whatever

    Do these changes remain in place across reboots? I thought zimbra redid all of the configurations at startup.

    Thanks!!

Page 1 of 2 12 LastLast

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Similar Threads

  1. initializing ldap...FAILED(256)ERROR
    By manjunath in forum Installation
    Replies: 39
    Last Post: 06-07-2013, 10:27 AM
  2. Zimbra fails after working for 2 weeks
    By Linsys in forum Administrators
    Replies: 10
    Last Post: 10-07-2008, 12:42 AM
  3. need advice on configuring zimbra to work with fax server
    By pheonix1t in forum Administrators
    Replies: 0
    Last Post: 07-11-2007, 07:46 PM
  4. Error 256 on Installation
    By RuinExplorer in forum Installation
    Replies: 5
    Last Post: 10-19-2006, 09:19 AM
  5. Replies: 18
    Last Post: 03-20-2006, 02:22 PM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •