You can subscribe to this list here.
2002 |
Jan
|
Feb
|
Mar
|
Apr
|
May
|
Jun
|
Jul
|
Aug
|
Sep
|
Oct
|
Nov
|
Dec
(7) |
---|---|---|---|---|---|---|---|---|---|---|---|---|
2003 |
Jan
(26) |
Feb
(29) |
Mar
(27) |
Apr
(61) |
May
(179) |
Jun
(176) |
Jul
(243) |
Aug
(270) |
Sep
(147) |
Oct
(161) |
Nov
(110) |
Dec
(132) |
2004 |
Jan
(161) |
Feb
(114) |
Mar
(190) |
Apr
(79) |
May
(265) |
Jun
(269) |
Jul
(176) |
Aug
(159) |
Sep
(138) |
Oct
(45) |
Nov
(85) |
Dec
(80) |
2005 |
Jan
(145) |
Feb
(65) |
Mar
(49) |
Apr
(80) |
May
(136) |
Jun
(134) |
Jul
(408) |
Aug
(107) |
Sep
(75) |
Oct
(32) |
Nov
(42) |
Dec
(28) |
2006 |
Jan
(74) |
Feb
(134) |
Mar
(804) |
Apr
(984) |
May
(829) |
Jun
(427) |
Jul
(397) |
Aug
(745) |
Sep
(176) |
Oct
(564) |
Nov
(748) |
Dec
(1052) |
2007 |
Jan
(984) |
Feb
(678) |
Mar
(568) |
Apr
(434) |
May
(644) |
Jun
(396) |
Jul
(655) |
Aug
(693) |
Sep
(497) |
Oct
(411) |
Nov
(316) |
Dec
(310) |
2008 |
Jan
(192) |
Feb
(169) |
Mar
(141) |
Apr
(55) |
May
(143) |
Jun
(157) |
Jul
(136) |
Aug
(187) |
Sep
(131) |
Oct
(228) |
Nov
(227) |
Dec
(144) |
2009 |
Jan
(205) |
Feb
(211) |
Mar
(302) |
Apr
(186) |
May
(99) |
Jun
(127) |
Jul
(74) |
Aug
(18) |
Sep
(110) |
Oct
(61) |
Nov
(149) |
Dec
(186) |
2010 |
Jan
(108) |
Feb
(135) |
Mar
(85) |
Apr
(109) |
May
(115) |
Jun
(176) |
Jul
(81) |
Aug
(210) |
Sep
(76) |
Oct
(41) |
Nov
(69) |
Dec
(78) |
2011 |
Jan
(65) |
Feb
(48) |
Mar
(78) |
Apr
(34) |
May
(78) |
Jun
(92) |
Jul
(42) |
Aug
(40) |
Sep
(175) |
Oct
(26) |
Nov
(22) |
Dec
(15) |
2012 |
Jan
(20) |
Feb
(24) |
Mar
(20) |
Apr
(13) |
May
(29) |
Jun
(22) |
Jul
(12) |
Aug
(14) |
Sep
(22) |
Oct
(51) |
Nov
(74) |
Dec
(45) |
2013 |
Jan
(10) |
Feb
(40) |
Mar
(17) |
Apr
(59) |
May
(186) |
Jun
(67) |
Jul
(25) |
Aug
(51) |
Sep
(67) |
Oct
(47) |
Nov
(70) |
Dec
(39) |
2014 |
Jan
(41) |
Feb
(32) |
Mar
(67) |
Apr
(58) |
May
(89) |
Jun
(36) |
Jul
(59) |
Aug
(50) |
Sep
(86) |
Oct
(43) |
Nov
(43) |
Dec
(31) |
2015 |
Jan
(43) |
Feb
(40) |
Mar
(35) |
Apr
(23) |
May
(24) |
Jun
(45) |
Jul
(26) |
Aug
(38) |
Sep
(38) |
Oct
(17) |
Nov
(15) |
Dec
(21) |
2016 |
Jan
(28) |
Feb
(81) |
Mar
(157) |
Apr
(59) |
May
(9) |
Jun
(30) |
Jul
(77) |
Aug
(44) |
Sep
(64) |
Oct
(31) |
Nov
(26) |
Dec
(59) |
2017 |
Jan
(27) |
Feb
(56) |
Mar
(24) |
Apr
(14) |
May
(31) |
Jun
(35) |
Jul
(19) |
Aug
(7) |
Sep
(11) |
Oct
(2) |
Nov
(15) |
Dec
(22) |
2018 |
Jan
(13) |
Feb
(9) |
Mar
|
Apr
(4) |
May
(8) |
Jun
(11) |
Jul
(26) |
Aug
(14) |
Sep
(5) |
Oct
(2) |
Nov
(11) |
Dec
(7) |
2019 |
Jan
(5) |
Feb
(4) |
Mar
(5) |
Apr
(1) |
May
(7) |
Jun
(15) |
Jul
|
Aug
(4) |
Sep
|
Oct
(6) |
Nov
(20) |
Dec
(14) |
2020 |
Jan
(11) |
Feb
|
Mar
(32) |
Apr
(3) |
May
(14) |
Jun
(8) |
Jul
|
Aug
(9) |
Sep
(14) |
Oct
(5) |
Nov
(1) |
Dec
|
2021 |
Jan
(13) |
Feb
|
Mar
(6) |
Apr
(6) |
May
(18) |
Jun
(3) |
Jul
(7) |
Aug
(20) |
Sep
(20) |
Oct
(3) |
Nov
(5) |
Dec
|
2022 |
Jan
(7) |
Feb
(4) |
Mar
(7) |
Apr
(2) |
May
(1) |
Jun
|
Jul
|
Aug
(3) |
Sep
(4) |
Oct
(1) |
Nov
|
Dec
|
2023 |
Jan
(5) |
Feb
(2) |
Mar
|
Apr
(3) |
May
(3) |
Jun
(3) |
Jul
|
Aug
|
Sep
|
Oct
|
Nov
(2) |
Dec
|
2024 |
Jan
|
Feb
|
Mar
|
Apr
|
May
|
Jun
|
Jul
(3) |
Aug
(8) |
Sep
(2) |
Oct
(3) |
Nov
(7) |
Dec
(4) |
2025 |
Jan
(4) |
Feb
(5) |
Mar
|
Apr
(3) |
May
|
Jun
|
Jul
|
Aug
|
Sep
|
Oct
|
Nov
|
Dec
|
S | M | T | W | T | F | S |
---|---|---|---|---|---|---|
|
1
(1) |
2
(1) |
3
|
4
(2) |
5
(3) |
6
|
7
|
8
|
9
|
10
|
11
|
12
|
13
|
14
|
15
|
16
|
17
|
18
|
19
|
20
|
21
|
22
|
23
|
24
|
25
|
26
(1) |
27
|
28
|
29
|
30
|
|
|
|
|
From: Geoff N. <ge...@gn...> - 2020-06-26 04:09:52
|
Hi. I am using Wazuh (ossec fork) as an HIDS on a machine running ASSP. It has a rule where it will monitor open ports. A couple of the assp udp ports change. The output looks like this: Rule: 533 fired (level 7) -> "Listened ports status (netstat) changed (new port opened or closed)." Portion of the log(s): ossec: output: 'netstat listening ports': tcp 0.0.0.0:22 0.0.0.0:* 863/sshd tcp6 :::22 :::* 863/sshd tcp 0.0.0.0:25 0.0.0.0:* 2305/perl udp 0.0.0.0:123 0.0.0.0:* 1658/ntpd udp 127.0.0.1:123 0.0.0.0:* 1658/ntpd udp 192.168.90.10:123 0.0.0.0:* 1658/ntpd udp6 ::1:123 :::* 1658/ntpd udp6 :::123 :::* 1658/ntpd tcp 0.0.0.0:125 0.0.0.0:* 1621/master tcp 0.0.0.0:465 0.0.0.0:* 2305/perl tcp 0.0.0.0:2525 0.0.0.0:* 2305/perl tcp 127.0.0.1:3306 0.0.0.0:* 1258/mysqld udp 0.0.0.0:42540 0.0.0.0:* 2305/perl *udp 0.0.0.0:47142 0.0.0.0:* 2305/perl* *udp 0.0.0.0:49514 0.0.0.0:* 2305/perl* udp 0.0.0.0:49534 0.0.0.0:* 2305/perl udp 0.0.0.0:54808 0.0.0.0:* 2305/perl tcp 0.0.0.0:55553 0.0.0.0:* 2305/perl another time it looks like: Rule: 533 fired (level 7) -> "Listened ports status (netstat) changed (new port opened or closed)." Portion of the log(s): ossec: output: 'netstat listening ports': tcp 0.0.0.0:22 0.0.0.0:* 863/sshd tcp6 :::22 :::* 863/sshd tcp 0.0.0.0:25 0.0.0.0:* 2305/perl udp 0.0.0.0:123 0.0.0.0:* 1658/ntpd udp 127.0.0.1:123 0.0.0.0:* 1658/ntpd udp 192.168.90.10:123 0.0.0.0:* 1658/ntpd udp6 ::1:123 :::* 1658/ntpd udp6 :::123 :::* 1658/ntpd tcp 0.0.0.0:125 0.0.0.0:* 1621/master tcp 0.0.0.0:465 0.0.0.0:* 2305/perl tcp 0.0.0.0:2525 0.0.0.0:* 2305/perl tcp 127.0.0.1:3306 0.0.0.0:* 1258/mysqld *udp 0.0.0.0:42139 0.0.0.0:* 2305/perl* udp 0.0.0.0:42540 0.0.0.0:* 2305/perl udp 0.0.0.0:49534 0.0.0.0:* 2305/perl *udp 0.0.0.0:52302 0.0.0.0:* 2305/perl* udp 0.0.0.0:54808 0.0.0.0:* 2305/perl tcp 0.0.0.0:55553 0.0.0.0:* 2305/perl tcp 0.0.0.0:55555 0.0.0.0:* 2305/perl Is there anyway to keep a static list of UDP ports so it doesn't trigger a wazuh alert? thanks, Geoff |
From: James M. <ji...@so...> - 2020-06-05 18:24:34
|
On 2020-06-04 11:32 PM, Ercolino De Spiacico wrote: > So defined that normal password in Thunderbird means PLAIN as I see from the > logs my ASSP tries to log using LOGIN. Regardless looking at the supported AUTH > list they are all supported: > > AUTH PLAIN LOGIN DIGEST-MD5 CRAM-MD5 > When "Normal Password" is selected, TB uses either PLAIN or Login for send authentication. TB prefers whichever is the most secure, in this case LOGIN. (LOGIN is just base64 encoded.) Selecting "Encrypted Password" allows TB to move up the chain a bit to CRAM-MD5 or DIGEST-MD5. > Thunderbird does work with the same username and password I'm using in ASSP so > they are correct indeed. > No spurious leading/trailing whitespace? A screenshot of your settings may help, or a copy/paste from the config file. An option is to use ASSP's debug mode. It dumps a lot of information that helps with tracing the problem. -- James Moe moe dot james at sohnen-moe dot com 520.743.3936 Think. |
From: Ercolino De S. <bel...@ho...> - 2020-06-05 14:39:27
|
Since I wasn't able to make ASSP authenticate I ended up using stunnel for TLS and use sasl on postfix to perform the authentication. ASSP is still playing a bit part in the email flow, just a shame I couldn't fix the auth issue as it would have been simpler. Regardless is this can help other users this is what it looks like: +------------------------------+ +------------------------------+ | Internet emails | | email clients | +-----+-----------------+------+ +-----+------------------+-----+ ^ | | | |25 | | | | | | | +-----+------------+ | | | | MailJet | | | | +-----+------------+ | | | ^ | | | |587 +------+------+ +-----+------------------+-----+ | |fail2ban assp| | fail2ban postfix sasl | | +------+------+ +-----+------------------+-----+ | | | | +-----+------------+ | | | | stunnel | | | | +-----+------------+ |25 645|587 |993 ^ | | | |11125 | | | | v v v +-----+-----------------+------+ 125 +-----+------------------+-----+ | +------------->+ | | ASSP | | Postfix | | +<-------------+ | +------------------------------+ 225 +------------------------------+ 🙂 ________________________________ From: Ercolino De Spiacico <bel...@ho...> Sent: 05 June 2020 07:32 AM To: For Users of ASSP <ass...@li...> Subject: Re: [Assp-user] TLS outbound So defined that normal password in Thunderbird means PLAIN as I see from the logs my ASSP tries to log using LOGIN. Regardless looking at the supported AUTH list they are all supported: AUTH PLAIN LOGIN DIGEST-MD5 CRAM-MD5 Thunderbird does work with the same username and password I'm using in ASSP so they are correct indeed. Can this be a char encoding issue or something? Or can ASSP be forced to use PLAIN perhaps? Don't know what to think about any more... Did anybody ever used MailJet with ASSP? It's a free service to send up to 200 email/day perfect for personal usage. ________________________________ From: James Moe via Assp-user <ass...@li...> Sent: 04 June 2020 10:02 PM To: For Users of ASSP <ass...@li...> Cc: James Moe <ji...@so...> Subject: Re: [Assp-user] TLS outbound On 2020-06-04 5:53 AM, Ercolino De Spiacico wrote: > I have set the the ASSP RelayHost to: > SSL:in-v3.mailjet.com:587 > populated the RelayAuthUser and RelayAuthPass accordingly, and I now get this > error in the ASSP logs: > > Jun-04-20 13:31:36 m1-73895-03416 [Worker_1] [TLS-out] 46.x.x.252 info: > authentication - login is used > Jun-04-20 13:31:43 m1-73895-03416 [Worker_1] [TLS-out] 46.x.x.252 [SMTP > Error] 535 5.7.8 Error: authentication failed: UGFzc3dvcmQ6 > > The very same RelayHost:port + username/password works just fine if I set this > directly in e.g. Thunderbird selecting "Normal Password" whatever that means but > I guess is the same as LOGIN. > "Normal Password" means authentication is done in the clear. Not really a problem if a secure connection is established previously, which your log shows is the case. Are you sure the name/pass are EXACTLY the same? > I'm confused because MailJet as per output above says to support many > authentication mechanism including LOGIN but eventually it doesn't like it. Is > there any way to force a different AUTH mechanism outbound in the RelayHost > setup of ASSP? > Yes. Tell Thunderbird to use anything except "Normal Password." "Encrypted Password" is a reasonable choice. (Although "OAuth2" might be a challenge to setup.) -- James Moe moe dot james at sohnen-moe dot com 520.743.3936 Think. _______________________________________________ Assp-user mailing list Ass...@li... https://lists.sourceforge.net/lists/listinfo/assp-user |
From: Ercolino De S. <bel...@ho...> - 2020-06-05 06:32:26
|
So defined that normal password in Thunderbird means PLAIN as I see from the logs my ASSP tries to log using LOGIN. Regardless looking at the supported AUTH list they are all supported: AUTH PLAIN LOGIN DIGEST-MD5 CRAM-MD5 Thunderbird does work with the same username and password I'm using in ASSP so they are correct indeed. Can this be a char encoding issue or something? Or can ASSP be forced to use PLAIN perhaps? Don't know what to think about any more... Did anybody ever used MailJet with ASSP? It's a free service to send up to 200 email/day perfect for personal usage. ________________________________ From: James Moe via Assp-user <ass...@li...> Sent: 04 June 2020 10:02 PM To: For Users of ASSP <ass...@li...> Cc: James Moe <ji...@so...> Subject: Re: [Assp-user] TLS outbound On 2020-06-04 5:53 AM, Ercolino De Spiacico wrote: > I have set the the ASSP RelayHost to: > SSL:in-v3.mailjet.com:587 > populated the RelayAuthUser and RelayAuthPass accordingly, and I now get this > error in the ASSP logs: > > Jun-04-20 13:31:36 m1-73895-03416 [Worker_1] [TLS-out] 46.x.x.252 info: > authentication - login is used > Jun-04-20 13:31:43 m1-73895-03416 [Worker_1] [TLS-out] 46.x.x.252 [SMTP > Error] 535 5.7.8 Error: authentication failed: UGFzc3dvcmQ6 > > The very same RelayHost:port + username/password works just fine if I set this > directly in e.g. Thunderbird selecting "Normal Password" whatever that means but > I guess is the same as LOGIN. > "Normal Password" means authentication is done in the clear. Not really a problem if a secure connection is established previously, which your log shows is the case. Are you sure the name/pass are EXACTLY the same? > I'm confused because MailJet as per output above says to support many > authentication mechanism including LOGIN but eventually it doesn't like it. Is > there any way to force a different AUTH mechanism outbound in the RelayHost > setup of ASSP? > Yes. Tell Thunderbird to use anything except "Normal Password." "Encrypted Password" is a reasonable choice. (Although "OAuth2" might be a challenge to setup.) -- James Moe moe dot james at sohnen-moe dot com 520.743.3936 Think. _______________________________________________ Assp-user mailing list Ass...@li... https://lists.sourceforge.net/lists/listinfo/assp-user |
From: James M. <ji...@so...> - 2020-06-04 21:02:22
|
On 2020-06-04 5:53 AM, Ercolino De Spiacico wrote: > I have set the the ASSP RelayHost to: > SSL:in-v3.mailjet.com:587 > populated the RelayAuthUser and RelayAuthPass accordingly, and I now get this > error in the ASSP logs: > > Jun-04-20 13:31:36 m1-73895-03416 [Worker_1] [TLS-out] 46.x.x.252 info: > authentication - login is used > Jun-04-20 13:31:43 m1-73895-03416 [Worker_1] [TLS-out] 46.x.x.252 [SMTP > Error] 535 5.7.8 Error: authentication failed: UGFzc3dvcmQ6 > > The very same RelayHost:port + username/password works just fine if I set this > directly in e.g. Thunderbird selecting "Normal Password" whatever that means but > I guess is the same as LOGIN. > "Normal Password" means authentication is done in the clear. Not really a problem if a secure connection is established previously, which your log shows is the case. Are you sure the name/pass are EXACTLY the same? > I'm confused because MailJet as per output above says to support many > authentication mechanism including LOGIN but eventually it doesn't like it. Is > there any way to force a different AUTH mechanism outbound in the RelayHost > setup of ASSP? > Yes. Tell Thunderbird to use anything except "Normal Password." "Encrypted Password" is a reasonable choice. (Although "OAuth2" might be a challenge to setup.) -- James Moe moe dot james at sohnen-moe dot com 520.743.3936 Think. |
From: Ercolino De S. <bel...@ho...> - 2020-06-04 12:53:21
|
Thank you, so here's the score. the SMTP provider gives this: [root@centos8 assp]# telnet in-v3.mailjet.com 25 Trying 104.199.96.85... Connected to in-v3.mailjet.com. Escape character is '^]'. 220 in.mailjet.com ESMTP Mailjet EHLO test.com 250-smtpin.mailjet.com 250-PIPELINING 250-SIZE 15728640 250-VRFY 250-ETRN 250-STARTTLS 250-AUTH PLAIN LOGIN DIGEST-MD5 CRAM-MD5 250-AUTH=PLAIN LOGIN DIGEST-MD5 CRAM-MD5 250-ENHANCEDSTATUSCODES 250-8BITMIME 250 SMTPUTF8 I have set the the ASSP RelayHost to: SSL:in-v3.mailjet.com:587 populated the RelayAuthUser and RelayAuthPass accordingly, and I now get this error in the ASSP logs: Jun-04-20 13:31:36 m1-73895-03416 [Worker_1] [TLS-out] 46.x.x.252 info: authentication - login is used Jun-04-20 13:31:43 m1-73895-03416 [Worker_1] [TLS-out] 46.x.x.252 [SMTP Error] 535 5.7.8 Error: authentication failed: UGFzc3dvcmQ6 The very same RelayHost:port + username/password works just fine if I set this directly in e.g. Thunderbird selecting "Normal Password" whatever that means but I guess is the same as LOGIN. I'm confused because MailJet as per output above says to support many authentication mechanism including LOGIN but eventually it doesn't like it. Is there any way to force a different AUTH mechanism outbound in the RelayHost setup of ASSP? Or am I perhaps looking in the wrong place to fix this? Thank! ________________________________ From: Thomas Eckardt <Tho...@th...> Sent: 02 June 2020 05:55 AM To: For Users of ASSP <ass...@li...> Subject: Re: [Assp-user] TLS outbound assp is man in the middle - both connections are handled independent - assp tries to use the highest possible encryption mode for each connection Thomas Von: "Ercolino De Spiacico" <bel...@ho...> An: "ass...@li..." <ass...@li...> Datum: 01.06.2020 13:31 Betreff: [Assp-user] TLS outbound ________________________________ I have been trying to set up ASSP to use MailJet outbound. I have two questions in regards: 1) say I have postfix using ASSP as relay host and sends standard emails on port 25, if ASSP is set up with doTLS and relay hosts with TLS details is this meant to work end to end or do I really have to have the same communication type "postfix -> ASSP" as well as "ASSP -> MailJet" ? e,g, both must plain or TLS but not a mix-and-match right? 2) regardless of the first question, as a test I have set both connection to be TLS, my emails stay in the postfix queue with the following ASSP log errors (SSLDebug Levl 3): Jun-01-20 12:14:06 [Worker_1] SSL-DEBUG: .../IO/Socket/SSL.pm:1638: don't start handshake: IO::Socket::SSL=GLOB(0xa12afa0) Jun-01-20 12:14:06 [Worker_1] SSL-DEBUG: .../IO/Socket/SSL.pm:1031: no socket yet Jun-01-20 12:14:06 [Worker_1] SSL-DEBUG: .../IO/Socket/SSL.pm:1033: accept created normal socket IO::Socket::SSL=GLOB(0x7efd2ec084d8) Jun-01-20 12:14:06 [Worker_1] SSL-DEBUG: .../IO/Socket/SSL.pm:1043: will not start SSL handshake yet Jun-01-20 12:14:06 [Worker_1] SSL-DEBUG: .../IO/Socket/SSL.pm:1061: starting sslifying Jun-01-20 12:14:06 [Worker_1] SSL-DEBUG: .../IO/Socket/SSL.pm:1109: Net::SSLeay::accept -> -1 Jun-01-20 12:14:11 [Worker_1] Error: Worker_1 accept_SSL to client 127.0.0.1 failed IO::Socket::SSL=GLOB(0xa12afa0) (timeout: 5 s) : SSL wants a read first also mailq adds some extra info. root@centos7~# mailq -Queue ID- --Size-- ----Arrival Time---- -Sender/Recipient------- A6E1D1260FC 691 Mon Jun 1 12:14:05 se...@xx... (lost connection with 127.0.0.1[127.0.0.1] while receiving the initial server greeting) destination@yyyyyyy.yyy Thanks _______________________________________________ Assp-user mailing list Ass...@li... https://lists.sourceforge.net/lists/listinfo/assp-user DISCLAIMER: ******************************************************* This email and any files transmitted with it may be confidential, legally privileged and protected in law and are intended solely for the use of the individual to whom it is addressed. This email was multiple times scanned for viruses. There should be no known virus in this email! ******************************************************* |
From: Thomas E. <Tho...@th...> - 2020-06-02 04:56:08
|
assp is man in the middle - both connections are handled independent - assp tries to use the highest possible encryption mode for each connection Thomas Von: "Ercolino De Spiacico" <bel...@ho...> An: "ass...@li..." <ass...@li...> Datum: 01.06.2020 13:31 Betreff: [Assp-user] TLS outbound I have been trying to set up ASSP to use MailJet outbound. I have two questions in regards: 1) say I have postfix using ASSP as relay host and sends standard emails on port 25, if ASSP is set up with doTLS and relay hosts with TLS details is this meant to work end to end or do I really have to have the same communication type "postfix -> ASSP" as well as "ASSP -> MailJet" ? e,g, both must plain or TLS but not a mix-and-match right? 2) regardless of the first question, as a test I have set both connection to be TLS, my emails stay in the postfix queue with the following ASSP log errors (SSLDebug Levl 3): Jun-01-20 12:14:06 [Worker_1] SSL-DEBUG: .../IO/Socket/SSL.pm:1638: don't start handshake: IO::Socket::SSL=GLOB(0xa12afa0) Jun-01-20 12:14:06 [Worker_1] SSL-DEBUG: .../IO/Socket/SSL.pm:1031: no socket yet Jun-01-20 12:14:06 [Worker_1] SSL-DEBUG: .../IO/Socket/SSL.pm:1033: accept created normal socket IO::Socket::SSL=GLOB(0x7efd2ec084d8) Jun-01-20 12:14:06 [Worker_1] SSL-DEBUG: .../IO/Socket/SSL.pm:1043: will not start SSL handshake yet Jun-01-20 12:14:06 [Worker_1] SSL-DEBUG: .../IO/Socket/SSL.pm:1061: starting sslifying Jun-01-20 12:14:06 [Worker_1] SSL-DEBUG: .../IO/Socket/SSL.pm:1109: Net::SSLeay::accept -> -1 Jun-01-20 12:14:11 [Worker_1] Error: Worker_1 accept_SSL to client 127.0.0.1 failed IO::Socket::SSL=GLOB(0xa12afa0) (timeout: 5 s) : SSL wants a read first also mailq adds some extra info. root@centos7~# mailq -Queue ID- --Size-- ----Arrival Time---- -Sender/Recipient------- A6E1D1260FC 691 Mon Jun 1 12:14:05 se...@xx... (lost connection with 127.0.0.1[127.0.0.1] while receiving the initial server greeting) destination@yyyyyyy.yyy Thanks _______________________________________________ Assp-user mailing list Ass...@li... https://lists.sourceforge.net/lists/listinfo/assp-user DISCLAIMER: ******************************************************* This email and any files transmitted with it may be confidential, legally privileged and protected in law and are intended solely for the use of the individual to whom it is addressed. This email was multiple times scanned for viruses. There should be no known virus in this email! ******************************************************* |
From: Ercolino De S. <bel...@ho...> - 2020-06-01 11:29:15
|
I have been trying to set up ASSP to use MailJet outbound. I have two questions in regards: 1) say I have postfix using ASSP as relay host and sends standard emails on port 25, if ASSP is set up with doTLS and relay hosts with TLS details is this meant to work end to end or do I really have to have the same communication type "postfix -> ASSP" as well as "ASSP -> MailJet" ? e,g, both must plain or TLS but not a mix-and-match right? 2) regardless of the first question, as a test I have set both connection to be TLS, my emails stay in the postfix queue with the following ASSP log errors (SSLDebug Levl 3): Jun-01-20 12:14:06 [Worker_1] SSL-DEBUG: .../IO/Socket/SSL.pm:1638: don't start handshake: IO::Socket::SSL=GLOB(0xa12afa0) Jun-01-20 12:14:06 [Worker_1] SSL-DEBUG: .../IO/Socket/SSL.pm:1031: no socket yet Jun-01-20 12:14:06 [Worker_1] SSL-DEBUG: .../IO/Socket/SSL.pm:1033: accept created normal socket IO::Socket::SSL=GLOB(0x7efd2ec084d8) Jun-01-20 12:14:06 [Worker_1] SSL-DEBUG: .../IO/Socket/SSL.pm:1043: will not start SSL handshake yet Jun-01-20 12:14:06 [Worker_1] SSL-DEBUG: .../IO/Socket/SSL.pm:1061: starting sslifying Jun-01-20 12:14:06 [Worker_1] SSL-DEBUG: .../IO/Socket/SSL.pm:1109: Net::SSLeay::accept -> -1 Jun-01-20 12:14:11 [Worker_1] Error: Worker_1 accept_SSL to client 127.0.0.1 failed IO::Socket::SSL=GLOB(0xa12afa0) (timeout: 5 s) : SSL wants a read first also mailq adds some extra info. root@centos7~# mailq -Queue ID- --Size-- ----Arrival Time---- -Sender/Recipient------- A6E1D1260FC 691 Mon Jun 1 12:14:05 se...@xx... (lost connection with 127.0.0.1[127.0.0.1] while receiving the initial server greeting) destination@yyyyyyy.yyy Thanks |