Page 3 of 4 FirstFirst 1234 LastLast
Results 21 to 30 of 37

Thread: [SOLVED] mail queue error in web admin ui

  1. #21
    Join Date
    Feb 2008
    Location
    San Francisco
    Posts
    360
    Rep Power
    7

    Default

    ok, killed the process, however the IP was already automatically banned by the firewall....

  2. #22
    Join Date
    Feb 2008
    Location
    San Francisco
    Posts
    360
    Rep Power
    7

    Default

    I your system was changing the :22 to :ssh
    How do I change it back?

  3. #23
    Join Date
    Feb 2008
    Location
    San Francisco
    Posts
    360
    Rep Power
    7

    Default

    OK....

    Change the ssh port with this:
    zmprov ms MAIL.DOMAIN.COM zimbraRemoteManagementPort 2222
    Added this:
    AllowUsers admin zimbra
    lsof -i | grep ssh
    sshd 19598 root 3u IPv6 2167219 TCP mail.domain.com:2222->192.168.1.191:53437 (ESTABLISHED)
    sshd 20011 root 3u IPv6 2168932 TCP *:2222 (LISTEN)
    Restarted ssh, refreshed web admin ui...

    ....still get same error...


  4. #24
    Join Date
    Jun 2007
    Location
    Quito, Ecuador
    Posts
    258
    Rep Power
    8

    Default

    This might do the trick:


    as zimbra user:

    zmsshkeygen

    zmupdateauthkeys


    zmprov ms mail.example.com zimbraRemoteManagementPort <ssh port>


    zmcontrol stop/start/status

  5. #25
    Join Date
    Feb 2007
    Location
    Portland, OR
    Posts
    1,147
    Rep Power
    10

    Default

    If you read earlier in the thread danny.sierra you will see that that was already tried and it didn't solve the issue.

    Nodoze did you find anything in the mentioned /var/log/secure? If you don't have that file (I don't on Ubuntu) you might try /var/log/auth.log.

  6. #26
    Join Date
    Feb 2008
    Location
    San Francisco
    Posts
    360
    Rep Power
    7

    Default

    Sorry it took me so long to get back to you, had to deal with some other server issues...

    my secure.log has this....

    Nov 9 09:51:58 mail sshd[13188]: pam_ldap: ldap_simple_bind Can't contact LDAP server
    Nov 9 09:51:58 mail sshd[13190]: fatal: Access denied for user zimbra by PAM account configuration
    Nov 9 09:52:51 mail sudo: zimbra : TTY=unknown ; PWD=/usr/libexec/webmin/cron ; USER=root ; COMMAND=/opt/zimbra/libexec/zmmailboxdmgr status
    Nov 9 09:52:51 mail sudo: zimbra : TTY=unknown ; PWD=/usr/libexec/webmin/cron ; USER=root ; COMMAND=/opt/zimbra/libexec/zmmtastatus
    What does it mean?

  7. #27
    Join Date
    Feb 2007
    Location
    Portland, OR
    Posts
    1,147
    Rep Power
    10

    Default

    Hmm... are user accounts on this server accessed via LDAP or the local users file? It looks like when Zimbra tries to open a ssh connection to itself it is getting an access denied by your PAM configuration.

    Try running this command as the zimbra user and see what you get. It should look like this:
    Code:
    zimbra@email:~$ ssh -p 12345 -i /opt/zimbra/.ssh/zimbra_identity localhost
    The authenticity of host '[localhost]:12345 ([127.0.0.1]:12345)' can't be established.
    RSA key fingerprint is 95:fa:10:74:ee:58:2f:56:03:f9:4c:85:cd:d8:f1:89.
    Are you sure you want to continue connecting (yes/no)?
    Also... looks like we both forgot that you already posted your /var/log/secure.log right here

  8. #28
    Join Date
    Feb 2008
    Location
    San Francisco
    Posts
    360
    Rep Power
    7

    Default

    Well... while you were posting I did this:

    su - zimbra
    then run
    ssh-keygen -t dsa

    Choose to save the generated keys at /opt/zimbra/.ssh/zimbra_identity
    do not give it a password

    then edit your /opt/zimbra/.ssh/authorized_keys file to use the text that is in the /opt/zimbra/.ssh/zimbra-identity.pub file. it replaces the old key text.

    that will permit zimbra to run remote ssh
    From: http://www.zimbra.com/forums/adminis...blems-ssh.html

    But still get the same error...I dunno if I have to restart the server to make it in effect...?

    I did:
    ssh -p 22 -i /opt/zimbra/.ssh/zimbra_identity localhost
    and got:
    The authenticity of host 'localhost (127.0.0.1)' can't be established.
    RSA key fingerprint is af:06:44:4f:5c:ff:c9:19:02:99:34:a9:f3:08:ab:9e.
    Are you sure you want to continue connecting (yes/no)? yes
    Warning: Permanently added 'localhost' (RSA) to the list of known hosts.
    Connection closed by 127.0.0.1
    Second try I got only:
    Connection closed by 127.0.0.1
    refeshed the browser, I still get the same error...

  9. #29
    Join Date
    Feb 2007
    Location
    Portland, OR
    Posts
    1,147
    Rep Power
    10

    Default

    It looks like the script that it is running is /opt/zimbra/libexec/zmqstat, what do you get when you run that as root?

    This is what I get:
    Code:
    root@email:~# /opt/zimbra/libexec/zmqstat
    hold=0
    corrupt=0
    deferred=0
    active=0
    incoming=0

  10. #30
    Join Date
    Feb 2008
    Location
    San Francisco
    Posts
    360
    Rep Power
    7

    Default

    Got the same thing:

    [root@mail /]# /opt/zimbra/libexec/zmqstat
    hold=0
    corrupt=0
    deferred=1
    active=0
    incoming=0

Similar Threads

  1. Mail deferred with Connection timed out
    By Miklos Kalman in forum Administrators
    Replies: 7
    Last Post: 11-17-2012, 06:11 AM
  2. Messages not being delivered
    By buee in forum Administrators
    Replies: 53
    Last Post: 10-23-2009, 11:28 AM
  3. [SOLVED] Fed 11 zcs install with existing apache
    By Lantzvillian in forum Installation
    Replies: 2
    Last Post: 10-05-2009, 12:11 PM
  4. fatal: Queue report unavailable - mail system is down
    By zzzzsg in forum Administrators
    Replies: 16
    Last Post: 08-24-2006, 03:31 AM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •