ALT Linux sysadmins discussion
 help / color / mirror / Atom feed
From: Bratyakin Sergey <sergey@zorya.com.ua>
To: ALT Linux sysadmin discuss <sysadmins@lists.altlinux.org>
Subject: Re: [Sysadmins] Postfix in chroot can't resolv client name in ALT Server 4.0.1
Date: Wed, 19 Mar 2008 09:05:12 +0200
Message-ID: <47E0BB28.1020205@zorya.com.ua> (raw)
In-Reply-To: <m3tzj344so.fsf@vvk.distance.ru>

Vladimir V. Kamarzin пишет:
>>>>>> On 19 Mar 2008 at 10:57 "BS" == Bratyakin Sergey writes:
> 
> BS> Помогите решить проблему.
> BS> Сервер 4.0.1
> BS> Установлен postfix, все работает, но
> BS> не определяет имена клиентов.
> BS> При подключении клиентов всегда пишет в лог такое:
> BS> Mar 17 15:28:38 smtp postfix/smtpd[17993]: disconnect from
> BS> unknown[83.4.217.144]
> BS> Mar 17 15:28:39 smtp postfix/smtpd[17991]: connect from
> BS> unknown[91.50.68.110]
> BS> Mar 17 15:28:44 smtp postfix/smtpd[17991]: 6483B30009E:
> BS> client=unknown[91.50.68.110]
> BS> Mar 17 15:28:45 smtp postfix/smtpd[17976]: connect from unknown[62.90.46.50]
> 
> Идентичен ли /var/spool/postfix/etc/resolv.conf системному /etc/resolv.conf ?
> 
Абсолютно идентичен
Вот результат postfix check
[root@smtp etc]# postfix check
postfix/postfix-script: warning: /etc/postfix/main.cf: unknown 
parameter: maildrop_destination_recipient_limit
[root@smtp etc]# 


вот содержимое /var/spool/postfix/etc/resolv.conf
[root@smtp etc]# cat /var/spool/postfix/etc/resolv.conf
nameserver 127.0.0.1

К тому же если выполнить
tcpdump -i lo port 53 -n
То результат
tcpdump: verbose output suppressed, use -v or -vv for full protocol decode
listening on lo, link-type EN10MB (Ethernet), capture size 96 bytes
08:51:48.457040 IP 127.0.0.1.57509 > 127.0.0.1.domain: 56897+ A? 
45.28.177.205.list.dsbl.org. (45)
08:51:48.550444 IP 127.0.0.1.domain > 127.0.0.1.57509: 56897 NXDomain 
0/1/0 (97)
08:51:48.550536 IP 127.0.0.1.57509 > 127.0.0.1.domain: 23072+ A? 
45.28.177.205.cbl.abuseat.org. (47)
08:51:48.617295 IP 127.0.0.1.domain > 127.0.0.1.57509: 23072 NXDomain 
0/1/0 (95)
08:51:48.617399 IP 127.0.0.1.57509 > 127.0.0.1.domain: 43711+ A? 
45.28.177.205.sbl.spamhaus.org. (48)
То есть rbl проверки выполняет, а вот не разрешаются имена клиентов по IP

Если поменять в master.conf chroot = n
то имена клиентов по IP начинают разрешаться
Уму не приложу где собака зарыта




  reply	other threads:[~2008-03-19  7:05 UTC|newest]

Thread overview: 17+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2008-03-19  5:57 Bratyakin Sergey
2008-03-19  6:16 ` Vladimir V. Kamarzin
2008-03-19  7:05   ` Bratyakin Sergey [this message]
2008-03-19  9:14     ` Vladimir V. Kamarzin
2008-03-19 10:02       ` Bratyakin Sergey
2008-03-19  7:14   ` Bratyakin Sergey
2008-03-19 10:07   ` Dmitry V. Levin
2008-03-19 10:21     ` Bratyakin Sergey
2008-03-19 10:26       ` Dmitry V. Levin
2008-03-19 10:55         ` Bratyakin Sergey
2008-03-19 11:28           ` Vladimir V. Kamarzin
2008-03-19 12:15             ` Bratyakin Sergey
2008-03-20  5:44               ` Bratyakin Sergey
2008-03-20  5:53                 ` Dmitry V. Levin
2008-03-20  6:25                   ` Bratyakin Sergey
2008-03-20  6:32                 ` Peter Evdokimov
2008-03-20  7:24                   ` Bratyakin Sergey

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=47E0BB28.1020205@zorya.com.ua \
    --to=sergey@zorya.com.ua \
    --cc=sysadmins@lists.altlinux.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link

ALT Linux sysadmins discussion

This inbox may be cloned and mirrored by anyone:

	git clone --mirror http://lore.altlinux.org/sysadmins/0 sysadmins/git/0.git

	# If you have public-inbox 1.1+ installed, you may
	# initialize and index your mirror using the following commands:
	public-inbox-init -V2 sysadmins sysadmins/ http://lore.altlinux.org/sysadmins \
		sysadmins@lists.altlinux.org sysadmins@lists.altlinux.ru sysadmins@lists.altlinux.com
	public-inbox-index sysadmins

Example config snippet for mirrors.
Newsgroup available over NNTP:
	nntp://lore.altlinux.org/org.altlinux.lists.sysadmins


AGPL code for this site: git clone https://public-inbox.org/public-inbox.git