Zimbra offers Open Source email server software and shared calendar for Linux and the Mac
Go Back   Zimbra :: Forums > Zimbra Collaboration Suite > Installation

Welcome to the Zimbra :: Forums!
Welcome, if you would like to post a comment please register. We also encourage you to explore all things Zimbra with our team and members of the community.

Reply
 
LinkBack Thread Tools Search this Thread Display Modes
  #1 (permalink)  
Old 11-15-2005, 02:07 PM
Intermediate Member
 
Posts: 19
Default MTA TLS authentication

Hi,

I've installed M2 version. The only problem I have now is a setting in MTA authentication. I've configured the MTA NOT to require TLS authentication but it still does.

Any thoughts ?
Reply With Quote
  #2 (permalink)  
Old 11-15-2005, 02:42 PM
Zimbra Employee
 
Posts: 4,792
Default

Did you restart the MTA?
Reply With Quote
  #3 (permalink)  
Old 11-15-2005, 03:18 PM
Intermediate Member
 
Posts: 19
Default

Ofcourse, several times. The option is unchecked on the administration web interface.
Reply With Quote
  #4 (permalink)  
Old 11-15-2005, 03:19 PM
Zimbra Employee
 
Posts: 4,792
Default

What does /var/log/zimbra.log say?
Reply With Quote
  #5 (permalink)  
Old 11-15-2005, 03:36 PM
Intermediate Member
 
Posts: 19
Default

Upon startup:

Nov 16 01:33:42 mvimap postfix/smtpd[19575]: initializing the server-side TLS engine
Nov 16 01:33:42 mvimap postfix/smtpd[19575]: warning: cannot get certificate from file /opt/zimbra/conf/smtpd.crt
Nov 16 01:33:42 mvimap postfix/smtpd[19575]: warning: TLS library problem: 19575:error:02001002:system library:fopen:No such file or directory:bss_file.c:259:fopen('/opt/zimbra/conf/smtpd.crt','r'):
Nov 16 01:33:42 mvimap postfix/smtpd[19575]: warning: TLS library problem: 19575:error:20074002:BIO routines:FILE_CTRL:system lib:bss_file.c:261:
Nov 16 01:33:42 mvimap postfix/smtpd[19575]: warning: TLS library problem: 19575:error:140DC002:SSL routines:SSL_CTX_use_certificate_chain_file:system lib:ssl_rsa.c:758:
Nov 16 01:33:42 mvimap postfix/smtpd[19575]: cannot load RSA certificate and key data

Upon mail send attempt:

Nov 16 01:35:38 mvimap postfix/smtpd[19583]: connect from CBL217-132-89-214.bb.netvision.net.il[217.132.89.214]
Nov 16 01:35:38 mvimap postfix/smtpd[19583]: warning: CBL217-132-89-214.bb.netvision.net.il[217.132.89.214]: SASL LOGIN authentication failed
Nov 16 01:35:38 mvimap postfix/smtpd[19583]: disconnect from CBL217-132-89-214.bb.netvision.net.il[217.132.89.214]
Reply With Quote
  #6 (permalink)  
Old 11-15-2005, 03:37 PM
Zimbra Employee
 
Posts: 4,792
Default

How are you restarting? zmcontrol restart?
Reply With Quote
  #7 (permalink)  
Old 11-15-2005, 03:41 PM
Intermediate Member
 
Posts: 19
Default

service zimbra stop
service zimbra start
Reply With Quote
  #8 (permalink)  
Old 11-16-2005, 09:16 AM
Intermediate Member
 
Posts: 19
Default Still does not work

Hi,

The problem still remains. I've tried to restart only mta component from within zimbra user shell, it did not help. MTA simply does not authenticate me if I am not using SSL. The same settings worked with the previous version.

Here is the output I get when restarting the MTA :

[zimbra@mvimap bin]$ ./zmmtactl stop
/opt/zimbra/amavisd/sbin/amavisd: no process killed
umount: it seems /opt/zimbra/amavisd/tmp is mounted multiple times
postfix/postfix-script: stopping the Postfix mail system
[zimbra@mvimap bin]$ ./zmmtactl start
DO: /opt/zimbra/postfix/sbin/postconf -e content_filter='smtp-amavis:[127.0.0.1]:10024'
DO: /opt/zimbra/postfix/sbin/postconf -e smtpd_sasl_auth_enable='yes'
DO: /opt/zimbra/postfix/sbin/postconf -e smtpd_tls_auth_only='no'
DO: /opt/zimbra/postfix/sbin/postconf -e disable_dns_lookups='no'
DO: /opt/zimbra/postfix/sbin/postconf -e message_size_limit='10240000'
DO: /opt/zimbra/postfix/sbin/postconf -e relayhost=''
DO: /opt/zimbra/postfix/sbin/postconf -e smtpd_recipient_restrictions='reject_non_fqdn_reci pient, permit_sasl_authenticated, permit_mynetworks, reject_invalid_hostname, reject_non_fqdn_hostname, reject_non_fqdn_sender, reject_unauth_destination, permit'
postfix/postfix-script: warning: not owned by root: /opt/zimbra/postfix-2.2.3/conf/main.cf
postfix/postfix-script: starting the Postfix mail system


Please help.
Reply With Quote
  #9 (permalink)  
Old 11-16-2005, 09:32 AM
raj raj is offline
Moderator
 
Posts: 768
Default

hi..just dumb Q..did you CHECK the plain TEXT login when you UNCHECKED SSL.
and also did you UNCHECK SSL on ALL services and Checked PLAIN TEXT by invendualy going to all services and then Stop and Start services.

Just trying to make sure you did that. if you did all that then big guys at zimbra are your saviours

I had to UNCHECK SSL on all Services and Checek PLAIN TEXT on all services and i have no issue.

Please update so we know.

Raj S Vrach
i2k2systems.com
Reply With Quote
  #10 (permalink)  
Old 11-16-2005, 09:49 AM
Intermediate Member
 
Posts: 19
Default

Hi,

There is no "Clear text login" checkbox on the MTA tab. About the rest services, I want IMAP and POP login to be available via SSL, but not SMTP.
Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes


Similar Threads

Why Join?

Registering let's you ask questions, makes it easier to search, displays any files attached to posts, and notifies you about replies.

blog.zimbra.com




 

SEO by vBSEO ©2011, Crawlability, Inc.