Where communities thrive


  • Join over 1.5M+ people
  • Join over 100K+ communities
  • Free without limits
  • Create your own community
People
Activity
  • Jun 27 08:53

    andris9 on master

    prefer user email as the userna… Merge pull request #405 from no… (compare)

  • Jun 27 08:53
    andris9 closed #405
  • Jun 27 08:53
    andris9 opened #405
  • Jun 27 08:49

    andris9 on feature-queue-plugins

    prefer user email as the userna… (compare)

  • Jun 21 08:14

    andris9 on master

    Include user id and origin IP a… Merge pull request #404 from no… (compare)

  • Jun 21 08:14
    andris9 closed #404
  • Jun 21 08:14
    andris9 opened #404
  • Jun 21 08:13

    andris9 on feature-queue-plugins

    Include user id and origin IP a… (compare)

  • Jun 21 07:35

    andris9 on master

    Added partial support for runni… Merge pull request #403 from no… (compare)

  • Jun 21 07:35
    andris9 closed #403
  • Jun 21 07:33
    andris9 opened #403
  • Jun 21 07:30

    andris9 on feature-queue-plugins

    Added partial support for runni… (compare)

  • Jun 18 16:30
    snyk-bot opened #402
  • Jun 18 16:29

    andris9 on snyk-fix-68b2d74ecdf111abae90b87485782a88

    fix: package.json to reduce vul… (compare)

  • Jun 18 16:29

    andris9 on snyk-fix-68b2d74ecdf111abae90b87485782a88

    (compare)

  • Jun 18 09:17
    ukwuezeobinna commented #401
  • Jun 15 09:20
    randrusiak closed #401
  • Jun 15 09:20
    randrusiak commented #401
  • Jun 14 15:07
    andris9 commented #401
  • Jun 14 10:07
    randrusiak opened #401
Mohammed M R Zourob
@dash7ou
hm let me check that again to make sure no problem with 465 port
wait there is something strange that happened, when I run curl -v smtps://my.domain from same instance its give me success response @louis:laureys.me
Louis
@louis:laureys.me
[m]
You mean the same instance that's hosting containers?
Mohammed M R Zourob
@dash7ou
yup but not used smtp://localhost, using domain name smtps://my.domain
Louis
@louis:laureys.me
[m]
Linux should route that internally if the hostname is set correctly. So that probably means amazon is indeed blocking port 465
Mohammed M R Zourob
@dash7ou
I do not think so there is anything on internet says aws block port 465
Andris Reinman
@andris9
you can also use openssl to test tls ports
$ openssl s_client -crlf -connect smtp.gmail.com:465
...
220 smtp.gmail.com ESMTP h19sm1432911lfu.138 - gsmtp
any other response - you are firewalled and can't use these ports
Mohammed M R Zourob
@dash7ou
@andris9
139933307688256:error:0200206F:system library:connect:Connection refused:../crypto/bio/b_sock2.c:110:
139933307688256:error:2008A067:BIO routines:BIO_connect:connect error:../crypto/bio/b_sock2.c:111:
connect:errno=111
Louis
@louis:laureys.me
[m]
Same error unsurprisingly haha
Mohammed M R Zourob
@dash7ou
@louis:laureys.me Is there any config i need to check it in config folder ?
Louis
@louis:laureys.me
[m]
Your wildduck config is correct.
I can keep repeating it, but something is blocking access to port 465 ;)
Mohammed M R Zourob
@dash7ou
ya when I use webmail send and receive emails working fine
Louis
@louis:laureys.me
[m]
Well yeah, that doesn't use port 465
Mohammed M R Zourob
@dash7ou
yup I know that its using local network
Mohammed M R Zourob
@dash7ou
@louis:laureys.me I discovered what exactly the issue, its blocked connect to smtp from local host when I try to connect to smtp from other instance its working fine.
@louis:laureys.me "hello" is a reserved username this issue show up when I try to create hello@x.x
Mohammed M R Zourob
@dash7ou
@andris9 If u have any suggestions pls told me
Andris Reinman
@andris9
There is no limitations on usernames if you are creating accounts directly via the API. Username limitation is only when using the public signup form to prevent malicious users to register addresses like postmaster@domain and then taking over the domain name etc.
Mohammed M R Zourob
@dash7ou
Ya I have created it use api and its working fine thanks @andris9
dkbr-lab
@dkbr-lab
You can also register usernames containing @ via the API, which for my usage purposes is helpful. It can cause a few other quirks elsewhere, however, as username validation errors can occur.
Mohammed M R Zourob
@dash7ou

@andris9 is this config in pools.toml in zone-mat folder config effect my connection to smtp from any where

local IP addresses that can be used for outbound tcp connections
Server process must be able to locally bind to these addresses

[[default]]
address="0.0.0.0"
name="x.email"

Andris Reinman
@andris9
"0.0.0.0" means that default IP is used for routing (you might have multiple IP's set up). "x.email" is used with "EHLO x.email" command when establishing connections to MX servers
Mohammed M R Zourob
@dash7ou
I can not understand what accully happened there when I try other instance its working fine, but now I am trying to connect to it use smtp client but its not working.. @andris9
Is there any file I need to check it to make sure connection not blocked in config file ?
@andris9
set to true to start in TLS mode if using port 465
this probably does not work as TLS support with 465 in ZoneMTA is a bit buggy
secure=false
@andris9 this need to be true ?
feeder.tom file in zone-mta folder
Andris Reinman
@andris9
by default nothing is blocked. wildduck installer is tested on digitalocean servers. for testing you can also set up a server in digitalocean, run the installer, see if evrything works and then compare it with your actual server if there are any differences. eg. sometimes security features like AppArmor block things in unexpected ways
default SMTP port is 587
you can test it like this:
openssl s_client -starttls smtp -crlf -connect 1.2.3.4:587
Mohammed M R Zourob
@dash7ou
I have test that on instance Ip direct with 587 before working fine but when I use domain name + port 465 for smtp its not working @andris9
Andris Reinman
@andris9
this is because by default wildduck users port 587, not 465 for SMTP MSA server
if you you want to use 465, then change the port number and also set secure=true
Mohammed M R Zourob
@dash7ou
treafik redirect connection from 465 to 587 @andris9
Louis
@louis:laureys.me
[m]
We already talked about this dash7ou ;)
Traefik seems to be working fine, you'll need to figure out yourself what's going wrong with your networking.
Mohammed M R Zourob
@dash7ou
Thanks @louis:laureys.me , I am working on this
Mohammed M R Zourob
@dash7ou

@louis:laureys.me I noticed something I think the issue with traefik because HTTPS connection work but when I try
openssl s_client -crlf -starttls smtp -connect cudy.email:465 ==> failed

openssl s_client -crlf -starttls pop3 -connect cudy.email:995 ==> failed
openssl s_client -crlf -starttls imap -connect cudy.email:993 => give me CONNECTED(00000003)

@andris9 What do u think ?

Andris Reinman
@andris9
when connecting to TLS ports, do not use the STARTTLS syntax
# tls ports (465, 993, 995)
$ openssl s_client -crlf -connect <host>:<port>
# starttls ports (587, 110)
openssl s_client -crlf -starttls <proto> -connect <host>:<port>
Louis
@louis:laureys.me
[m]
I still think curl is easier to use hahaha.
Mohammed M R Zourob
@dash7ou
@louis:laureys.me 995, 993 working fine still 465 not working :(
@andris9
Louis
@louis:laureys.me
[m]
Have you asked amazon yet? :)
Mohammed M R Zourob
@dash7ou
I have checked vpc out & income bound and security group every thing fine
@louis:laureys.me
Louis
@louis:laureys.me
[m]
Sure, but have you actually asked them? haha
They can block things without it showing in your dashboard