OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Re: broken mua? (postfix with dovecot-auth)

From: Alexandre Balistrieri (balisir.inpe.br)
Date: Wed Jun 27 2007 - 09:37:30 CDT


On Wednesday 27 June 2007, Udo Rader wrote:
> On Wed, 2007-06-27 at 11:07 -0300, Alexandre Balistrieri wrote:
> > On Tuesday 26 June 2007, Alexandre Balistrieri wrote:
> > > On Tuesday 26 June 2007, mouss wrote:
> > > > [reposting to list]
> > > >
> > > > Alexandre Balistrieri wrote:
> > > > > On Monday 25 June 2007, mouss wrote:
> > > > >> outlook doesn't support PLAIN. it needs LOGIN. see the SASL
> > > > >> README, or google.
> > > > >
> > > > > Do I need to compile postfix with cyrus-sasl using --enable-login?
> > > > > I did it today morning:
> > > > > make -f Makefile.init
> > > > > makefiles 'CCARGS=-DHAS_MYSQL -I/usr/include/mysql -DUSE_SASL_AUTH
> > > > > -I/usr/local/include/sasl -DDEF_SERVER_SASL_TYPE=\"dovecot\"'
> > > > > 'AUXLIBS=-L/usr/lib/mysql -lmysqlclient -lz -lm -L/usr/local/lib
> > > > > -lsasl2'
> > > > >
> > > > > Only dovecot is not enough?
> > > >
> > > > Better read
> > > > http://www.postfix.org/SASL_README.html#server_dovecot
> > > >
> > > > Edit your dovecot.conf and look for "mechanisms". the lines should
> > > > look like this:
> > > >
> > > > auth default {
> > > > mechanisms = plain login
> > >
> > > I did not noticed 'plain login'. Only plain :-(
> > >
> > > > Then restart dovecot and postfix.
> > >
> > > Thanks Mouss.
> > >
> > > I did it. Today night i will be testing the new settings with OutOfLook
> > > :-)
> >
> > OutOfLook seems to make an unknown 'helo'
> >
> > maillog line showing reject access from internet:
> > ---------------------------------------------------------------
> > Jun 26 21:41:15 localhost postfix/smtpd[826]: NOQUEUE: reject: RCPT from
> > 201-74-143-18-sj.cpe.vivax.com.br[201.74.143.18]: 554 5.7.1 <larissa>:
> > Helo command rejected: Host not found; from=<balisir.inpe.br>
> > to=<abalistrierivivax.com.br> proto=ESMTP helo=<larissa>
> >
> > I had to put permit_sasl_authenticated in all smtpd (client, helo,
> > sender, recipient) restrictions that i use.
>
> prove it, show your current postconf -n

--
[]s
Alexandre Balistrieri