[postfix-es] Que le ocurre a mi tls/ssl y sasl ?

Jose Perez jperezme en telefonica.net
Lun Mar 17 17:22:22 CET 2003


Estoy probando el tema de la autenticacion sasl junto con tls pero no me funciona.Siempre me dice que Recipient address rejected.Access denied. Tengo postfix-2.0.6.Cyrus-sasl 2.1.12 y aplicado parche tls al postfix. 
Muchas gracias de antemano.

Si hago telnet maquina 25 con mi configuracion actual me muestra:

220 mail.aixpanish.com ESMTP Postfix/MJ-1.03 (2.0.6)
ehlo sdf
250-mail.aixpanish.com
250-PIPELINING
250-SIZE 5242880
250-ETRN
250-STARTTLS
250-XVERP
250 8BITMIME


Mi log es el siguiente:
Mar 17 17:19:10 aixsrv postfix/smtpd[16568]: connection established
Mar 17 17:19:10 aixsrv postfix/smtpd[16568]: master_notify: status 0
Mar 17 17:19:10 aixsrv postfix/smtpd[16568]: name_mask: resource
Mar 17 17:19:10 aixsrv postfix/smtpd[16568]: name_mask: software
Mar 17 17:19:10 aixsrv postfix/smtpd[16568]: name_mask: policy
Mar 17 17:19:10 aixsrv postfix/smtpd[16568]: connect from 62-36-65-61.dialup.uni2.es[62.36.65.61]
Mar 17 17:19:10 aixsrv postfix/smtpd[16568]: > 62-36-65-61.dialup.uni2.es[62.36.65.61]: 220 mail.aixpanish.com ESMTP Postfix/MJ-1.03 (2.0.6)
Mar 17 17:19:10 aixsrv postfix/smtpd[16568]: watchdog_pat: 200e5500
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: < 62-36-65-61.dialup.uni2.es[62.36.65.61]: EHLO intergatep
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: > 62-36-65-61.dialup.uni2.es[62.36.65.61]: 250-mail.aixpanish.com
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: > 62-36-65-61.dialup.uni2.es[62.36.65.61]: 250-PIPELINING
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: > 62-36-65-61.dialup.uni2.es[62.36.65.61]: 250-SIZE 5242880
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: > 62-36-65-61.dialup.uni2.es[62.36.65.61]: 250-ETRN
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: > 62-36-65-61.dialup.uni2.es[62.36.65.61]: 250-STARTTLS
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: match_hostname: 62-36-65-61.dialup.uni2.es ~? 127.0.0.1
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: match_hostaddr: 62.36.65.61 ~? 127.0.0.1
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: match_hostname: 62-36-65-61.dialup.uni2.es ~? 172.26.0.0/24
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: match_hostaddr: 62.36.65.61 ~? 172.26.0.0/24
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: match_list_match: 62-36-65-61.dialup.uni2.es: no match
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: match_list_match: 62.36.65.61: no match
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: > 62-36-65-61.dialup.uni2.es[62.36.65.61]: 250 8BITMIME
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: watchdog_pat: 200e5500
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: < 62-36-65-61.dialup.uni2.es[62.36.65.61]: MAIL FROM: <miusuario en aixpanish.com>
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: extract_addr: input: <miusuario en aixpanish.com>
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: extract_addr: result: miusuario en aixpanish.com
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: fsspace: .: block size 512, blocks free 31800
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: smtpd_check_size: blocks 512 avail 31800 min_free 0 size 0
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: connect to subsystem public/cleanup
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: public/cleanup socket: wanted attribute: queue_id
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: input attribute name: queue_id
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: input attribute value: 4E5E210D1
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: public/cleanup socket: wanted attribute: (list terminator)
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: input attribute name: (end)
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: send attr flags = 2
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: 4E5E210D1: client=62-36-65-61.dialup.uni2.es[62.36.65.61]
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: > 62-36-65-61.dialup.uni2.es[62.36.65.61]: 250 Ok
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: watchdog_pat: 200e5500
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: < 62-36-65-61.dialup.uni2.es[62.36.65.61]: RCPT TO: <otrousu en jazzfree.com>
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: extract_addr: input: <otrousu en jazzfree.com>
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: extract_addr: result: otrousu en jazzfree.com
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: generic_checks: START
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: generic_checks: name=permit_mynetworks
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: permit_mynetworks: 62-36-65-61.dialup.uni2.es 62.36.65.61
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: match_hostname: 62-36-65-61.dialup.uni2.es ~? 127.0.0.1
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: match_hostaddr: 62.36.65.61 ~? 127.0.0.1
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: match_hostname: 62-36-65-61.dialup.uni2.es ~? 172.26.0.0/24
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: match_hostaddr: 62.36.65.61 ~? 172.26.0.0/24
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: match_list_match: 62-36-65-61.dialup.uni2.es: no match
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: match_list_match: 62.36.65.61: no match
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: generic_checks: name=permit_mynetworks status=0
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: generic_checks: name=permit_sasl_authenticated
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: generic_checks: name=permit_sasl_authenticated status=0
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: generic_checks: name=reject
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: 4E5E210D1: reject: RCPT from 62-36-65-61.dialup.uni2.es[62.36.65.61]: 554 <otrousu en jazzfree.com>: Recipient address rejected: Access denied; from=<miusuario en aixpanish.com> to=<otrosusu en jazzfree.com> proto=ESMTP helo=<intergatep>
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: generic_checks: name=reject status=2
Mar 17 17:19:11 aixsrv postfix/smtpd[16568]: > 62-36-65-61.dialup.uni2.es[62.36.65.61]: 554 <otrousu en jazzfree.com>: Recipient address rejected: Access denied
Mar 17 17:19:12 aixsrv postfix/smtpd[16568]: watchdog_pat: 200e5500
Mar 17 17:19:12 aixsrv postfix/smtpd[16568]: < 62-36-65-61.dialup.uni2.es[62.36.65.61]: QUIT
Mar 17 17:19:12 aixsrv postfix/smtpd[16568]: > 62-36-65-61.dialup.uni2.es[62.36.65.61]: 221 Bye
Mar 17 17:19:12 aixsrv postfix/smtpd[16568]: smtpd_chat_notify: notify postmaster
Mar 17 17:19:12 aixsrv postfix/smtpd[16568]: connect to subsystem public/cleanup
Mar 17 17:19:12 aixsrv postfix/smtpd[16568]: public/cleanup socket: wanted attribute: queue_id
Mar 17 17:19:12 aixsrv postfix/smtpd[16568]: input attribute name: queue_id
Mar 17 17:19:12 aixsrv postfix/smtpd[16568]: input attribute value: AE9D110D2
Mar 17 17:19:12 aixsrv postfix/smtpd[16568]: public/cleanup socket: wanted attribute: (list terminator)
Mar 17 17:19:12 aixsrv postfix/smtpd[16568]: input attribute name: (end)
Mar 17 17:19:12 aixsrv postfix/smtpd[16568]: send attr flags = 0
Mar 17 17:19:12 aixsrv postfix/smtpd[16568]: public/cleanup socket: wanted attribute: status
Mar 17 17:19:12 aixsrv postfix/cleanup[16020]: AE9D110D2: message-id=<20030317171912.AE9D110D2 en mail.aixpanish.com>
Mar 17 17:19:12 aixsrv postfix/smtpd[16568]: input attribute name: status
Mar 17 17:19:12 aixsrv postfix/smtpd[16568]: input attribute value: 0
Mar 17 17:19:12 aixsrv postfix/smtpd[16568]: public/cleanup socket: wanted attribute: (list terminator)
Mar 17 17:19:12 aixsrv postfix/smtpd[16568]: input attribute name: reason
Mar 17 17:19:12 aixsrv postfix/smtpd[16568]: input attribute value: (end)
Mar 17 17:19:12 aixsrv postfix/smtpd[16568]: public/cleanup socket: wanted attribute: (list terminator)
Mar 17 17:19:12 aixsrv postfix/smtpd[16568]: input attribute name: (end)
Mar 17 17:19:12 aixsrv postfix/smtpd[16568]: disconnect from 62-36-65-61.dialup.uni2.es[62.36.65.61]
Mar 17 17:19:12 aixsrv postfix/smtpd[16568]: master_notify: status 1
Mar 17 17:19:12 aixsrv postfix/smtpd[16568]: connection closed
Mar 17 17:19:12 aixsrv postfix/smtpd[16568]: watchdog_stop: 200e5500
Mar 17 17:19:12 aixsrv postfix/smtpd[16568]: watchdog_start: 200e5500
Mar 17 17:19:12 aixsrv postfix/nqmgr[17646]: AE9D110D2: from=<double-bounce en mail.aixpanish.com>, size=857, nrcpt=1 (queue active)
Mar 17 17:19:12 aixsrv postfix/local[15394]: AE9D110D2: to=<root en aixpanish.com>, orig_to=<postmaster>, relay=local, delay=0, status=sent (mailbox)


Mi postconf -n:


alias_database = dbm:/etc/postfix/aliases
alias_maps = dbm:/etc/postfix/aliases
body_checks = regexp:/etc/postfix/body_checks
broken_sasl_auth_clients = yes
command_directory = /usr/sbin
config_directory = /etc/postfix
daemon_directory = /usr/libexec/postfix
default_destination_concurrency_limit = 10
disable_dns_lookups = no
disable_vrfy_command = yes
header_checks = regexp:/etc/postfix/header_checks
local_destination_concurrency_limit = 2
local_recipient_maps = $alias_maps unix:passwd.byname
mail_name = Postfix/MJ-1.03
mail_owner = postfix
mailbox_size_limit = 5242880
mailq_path = /usr/sbin/mailq
manpage_directory = /usr/local/man
maximal_queue_lifetime = 5d
message_size_limit = 5242880
mydestination = $myhostname localhost.$mydomain $mydomain mail.$mydomain
mydomain = aixpanish.com
myhostname = mail.aixpanish.com
mynetworks = 127.0.0.1 172.26.0.0/24
myorigin = $mydomain
newaliases_path = /usr/sbin/newaliases
notify_classes = resource, software, policy
queue_directory = /var/spool/postfix
readme_directory = /etc/postfix/readmefiles
relay_domains = $mydestination
sample_directory = /etc/postfix
sendmail_path = /usr/lib/sendmail
setgid_group = postdrop
smtp_tls_CAfile = /etc/postfix/cert/cacert.pem
smtp_tls_cert_file = /etc/postfix/cert/newcert.pem
smtp_tls_key_file = /etc/postfix/cert/keysin.pem
smtp_tls_session_cache_database = sdbm:/etc/postfix/smtp_scache
smtp_use_tls = yes
smtpd_banner = $myhostname ESMTP $mail_name ($mail_version)
smtpd_recipient_restrictions = permit_mynetworks, permit_sasl_authenticated, reject
smtpd_sasl_auth_enable = yes
smtpd_sasl_local_domain = $mydomain
smtpd_tls_CAfile = /etc/postfix/cert/cacert.pem
smtpd_tls_auth_only = yes
smtpd_tls_cert_file = /etc/postfix/cert/newcert.pem
smtpd_tls_key_file = /etc/postfix/cert/keysin.pem
smtpd_tls_session_cache_database = sdbm:/etc/postfix/smtpd_scache
smtpd_use_tls = yes
transport_maps = dbm:/etc/postfix/transport

-----------------------------------------------------------------------------
Tu portal de Aix en Español
http://aixpanish.com
-----------------------------------------------------------------------------
Singer KeyID: 0xC38C7298
------------ próxima parte ------------
Se ha borrado un adjunto en formato HTML...
URL: http://lists.wl0.org/pipermail/postfix-es/attachments/20030317/2d174682/attachment.htm


Más información sobre la lista de distribución Postfix-es