Displaying 20 results from an estimated 20000 matches similar to: "shutdown_clients has no effect on doveadm stop"
2019 Aug 31
1
CVE-2019-11500: Critical vulnerability in Dovecot and Pigeonhole
Daniel,
thanks so much for the detailed pointers.
So it turns out to be both the evil that is systemd and an overzealous
upgrade script.
Apollon, should I raise a Debian bug for this?
As for reasons, how do 50k proxy session on the proxy servers and 25k imap
processes on the mailbox servers sound?
Even on a server with just 6k users and 7k imap processes that causes a
massive load spike and a
2018 May 24
2
question on setting ulimit on debian
Hi,
I?ve been trying to increase the number of open files for the dovecot user on Debian 9 and have so far, failed! I?ve tried this:
# cat /etc/security/limits.d/limits_dovecot.conf
dovecot soft nofile 2048
dovecot hard nofile 8192
# cat /etc/systemd/system/dovecot.service.d/service.conf
LimitNOFILE=8192
But to no avail:
# prlimit -p 27208|grep -i
2014 Mar 31
1
Fwd: Dovecot not honoring configuration settings (auth failure)
boah how i hate that "reply all" attitude leading to break
"reply to list" and leads in off-list replies
-------- Original-Nachricht --------
Betreff: Re: [Dovecot] Dovecot not honoring configuration settings (auth failure)
Datum: Tue, 01 Apr 2014 00:02:42 +0200
Von: Reindl Harald <h.reindl at thelounge.net>
Organisation: the lounge interactive design
An: noloader at
2018 Apr 27
2
samba-tool ntacl sysvolcheck -> Too many open files
I just realize that i can't run a "samba-tool ntacl sysvolcheck" on my DC's (4.7.6):
ldb: unable to open modules directory '/usr/lib/x86_64-linux-gnu/ldb/modules/ldb' - Too many open files
ldb: unable to open modules directory '/usr/lib/x86_64-linux-gnu/samba/ldb' - Too many open files
.....
>From memory, it was just fine on samba 4.6
If I check system
2017 Mar 29
2
cannot login to imap under load
Hello,
>
> It does indeed run from systemd, so this is what's currently in the
> dovecot unit file ( /etc/systemd/system/dovecot.service ):
>
...
> [Service]
> Type=simple
> ExecStart=/usr/sbin/dovecot -F
> NonBlocking=yes
> TasksMax=10000
> LIMIT_NOFILE=10000
...
the parameter should be named
LimitNOFile=10000
(without the underscore), see
2015 Nov 12
1
systemd unit to start Samba as AD DC
Hi all,
Here is my [seem-to-be] working systemd unit to deal with Samba 4.
I'm using Samba 4.3.1 compiled mainly with no option except for
diredctories where I used --enable-fhs (and --prefix=/usr
--sysconfdir=/etc --localstatedir=/var).
samba-ad.service file content
------------------------------------------------------------------------------------
[Unit]
Description=Samba Active
2016 Feb 23
2
Change machine name without a reboot?
> From: Reindl Harald
>
> besides that you did not provide the info "embedded system" -
> when you
> have systemd you also have "systemctl restart
> whatever.service" and in
> PHP it would be passthru('command')
>
> you don't know how you restart a service via CLI - seriously?
I know how to do it through systemctl, but I was
2011 Mar 15
2
2.0.7 - missing SORT/THREAD
Obviously I did something wrong, but I don't have SORT and THREAD
Capabilities built into my 2.0.7 server (OpenSolaris 5.11 snv_134
i86pc i386 i86xpv Solaris)
What do I need to do?
* OK [CAPABILITY IMAP4rev1 LITERAL+ SASL-IR LOGIN-REFERRALS ID ENABLE
IDLE STARTTLS AUTH=PLAIN AUTH=LOGIN AUTH=DIGEST-MD5 AUTH=CRAM-MD5]
VFEmail.net ready.
1 CAPABILITY
* CAPABILITY IMAP4rev1 LITERAL+
2016 Jul 12
6
Option configure
Just backported 4.4.5 from debian sid to jessie. samba.service is masked
there. If running as an fileserver the services are started via
smbd.service,nmbd.service, winbind.service.
There is an samba-ad-dc script which is masked by default.
To get the ad-dc up and running with systemd one has to unmask
samba-ad-dc.service and mask smbd.service,nmbd.service, winbind.service.
This is the
2015 Aug 17
2
persistent change of max_stack_depth
Hi Jason,
On 14/08/15 16:45, Jason Warr wrote:
> On Fri, 2015-08-14 at 16:31 +0100, Michael H wrote:
>> Hi Thomas,
>>
>>
>>> Could anybody point me in the right direction for setting the kernel
>>> parameter, max_stack_depth, to 10240 for database tuning?
>>>
>>> I have currently set it by running 'ulimit -s 10240' but this does not
2015 Aug 14
4
persistent change of max_stack_depth
Hi Thomas,
> Could anybody point me in the right direction for setting the kernel
> parameter, max_stack_depth, to 10240 for database tuning?
>
> I have currently set it by running 'ulimit -s 10240' but this does not
> survive a reboot.
>
>
Thanks for the response, I've been nosing around that file recently but
noted the first two lines;
#This file sets the
2019 Aug 28
7
CVE-2019-11500: Critical vulnerability in Dovecot and Pigeonhole
Dear subscribers, we have been made aware of critical vulnerability in
Dovecot and Pigeonhole.
---
Open-Xchange Security Advisory 2019-08-14
?
Product: Dovecot
Vendor: OX Software GmbH
?
Internal reference: DOV-3278
Vulnerability type: Improper input validation (CWE-20)
Vulnerable version: All versions prior to 2.3.7.2 and 2.2.36.4
Vulnerable component: IMAP and ManageSieve protocol parsers
2018 Apr 05
4
Can’t authenticate any users after upgrade.
I?m in the process of upgrading an old server from Fedora 21 to something more modern. Now, Dovecot won?t let any client login to get their email.
PAM audit_log_acct_message() failed: Operation not permitted
imap-login: Disconnected (AUTH failed, 2 attempts in 10 secs): user=<username>, method=PLAIN, rip=192.168.1.94 lip=192.168.1.94, TLS, session=<sessionid>
# 2.3.1 (8e2f634):
2019 Jul 09
1
Orphaned processes after doveadm log reopen
On 8.7.2019 14.54, Tom Sommer via dovecot wrote:
>
> On 2019-07-08 13:36, Tom Sommer via dovecot wrote:
>> I rotate logs every night on my Director, running "doveadm log reopen"
>
> It happens on "/etc/init.d/dovecot restart", not "doveadm log reopen"
> - sorry
>
> So it happens when you run killproc on dovecot
>
> ---
> Tom
Do
2019 Aug 30
3
CVE-2019-11500: Critical vulnerability in Dovecot and Pigeonhole
Am 30.08.19 um 10:00 schrieb Christian Balzer via dovecot:
> When upgrading on Debian Stretch with the security fix packages all
> dovecot processes get killed and then restarted despite having
> "shutdown_clients = no" set.
This is systemd doing its "magic" (kill all control group processes),
see https://dovecot.org/pipermail/dovecot/2016-June/104546.html
for a
2016 Jul 12
1
Option configure
Am 12.07.2016 um 21:35 schrieb Rowland penny:
> On 12/07/16 20:25, Achim Gottinger wrote:
>> Just backported 4.4.5 from debian sid to jessie. samba.service is
>> masked there. If running as an fileserver the services are started
>> via smbd.service,nmbd.service, winbind.service.
>> There is an samba-ad-dc script which is masked by default.
>> To get the ad-dc up
2017 Sep 27
2
Fedora 27 rawhide, samba needs a restart to launch krb5kdc
On Tue, 26 Sep 2017 20:19:03 +0200
Marc Muehlfeld <mmuehlfeld at samba.org> wrote:
> Hi,
>
> As you said: It's Fedora 27 _rawhide_. You should report a bug:
> https://bugzilla.redhat.com/
> Please don't forget to attach logs, etc.
Ok, I just opened a bug over there. But in the meantime found out that:
Systemctl status samba.service shows the following as well:
2020 Sep 01
0
shutdown_clients ignored on Director upgrade/restart
When yum updates a Dovecot Director, it restarts all processes - however
a few imap-login and pop3-login processes hang because they are still
proxying connections.
It's like the now orphaned processes are stalled, and needs a kill -9 to
die.
This is a problem because those stalled connections are still connected
to backends, so when new connections are made from the same account,
they
2015 May 25
3
Typo in systemd commit HG 8dc79a437858
The apostrophes need to be removed from the LimitCORE example, otherwise the parameter will not be recognized:
$ cat /etc/systemd/system/dovecot.service.d/service.conf
[Service]
#Environment='OPTIONS=-p'
#LimitCORE=8192
LimitCORE=infinity
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 181 bytes
Desc:
2016 Jun 07
2
segfault in IMAP APPEND with compressed maildir
Hi!
After upgrading from Debian wheezy with (self compiled) dovecot 2.2.15
to Debian jessie with (self compiled) 2.2.24, I observe the following
segmentation fault in the logs:
Jun 7 09:23:09 imap dovecot: imap(user at example.com): Error: read(<imap client>) failed: read(size=8003) failed: Connection reset by peer (uid=0, box=trash)
Jun 7 09:23:09 imap dovecot: imap(user at