Search found 1701 matches

by L. Mark Stone
Mon Oct 01, 2018 2:04 pm
Forum: Administrators
Topic: Brute force attack & SPAM configuration
Replies: 20
Views: 9306

Re: Brute force attack & SPAM configuration

One strategy here is to configure account lockout policies such that DoSFilter (or fail2ban) starts throttling/blocking requests before the mailbox is locked out.

In that way, a legitimate remote user will not be locked out by a hacker doing a fast-paced dictionary attack.

Hope that helps,
Mark
by L. Mark Stone
Fri Sep 28, 2018 4:39 pm
Forum: Administrators
Topic: Is this normal?
Replies: 2
Views: 457

Re: Is this normal?

Brute force in progress, as DualBoot said.

This is a good use case for fail2ban or DoSFilter....

Hope that helps,
Mark
by L. Mark Stone
Sun Sep 23, 2018 11:21 pm
Forum: Administrators
Topic: AlwaysOnCluster
Replies: 5
Views: 432

Re: AlwaysOnCluster

There was an Always On demo shown at the Big Social in Texas in 2011(?). The demo worked great; the feature didn't scale and the code was never released. There are a lot of preferences and settings that reference old code. Sometimes it works; sometimes not. When Briefcase was first released, in addi...
by L. Mark Stone
Sun Sep 23, 2018 11:03 pm
Forum: General Questions
Topic: Configuring Gmail account
Replies: 6
Views: 10905

Re: Configuring Gmail account

You need to create a Google "App password" 1. Go to https://myaccount.google.com/security 2. Find this section on the page: Signing in to Google Password & sign-in method: Password 2-Step Verification App Passwords 3. Click on App passwords : https://myaccount.google.com/apppasswords ...
by L. Mark Stone
Thu Sep 20, 2018 2:18 pm
Forum: Administrators
Topic: SPF, Forwarding and SRS, the evil three :/
Replies: 8
Views: 1683

Re: SPF, Forwarding and SRS, the evil three :/

at first the WAD made sense but thinking a bit more about it I still think it doesn't. Here's an example, let's assume someone has a distribution list (accounting@example.com) and want's all mails going to account forwarded to two other email addresses, one of them maybe being some archiving stuff ...
by L. Mark Stone
Wed Sep 19, 2018 2:08 pm
Forum: Administrators
Topic: Force auth for internal users
Replies: 5
Views: 319

Re: Force auth for internal users

Please run: zmprov gs `zmhostname` zimbraMtaMyNetworks and check that the IP address of the device from which you are running your telnet tests is or is not listed in the networks above. By definition, Zimbra is an open relay for any device listed in zimbraMtaMyNetworks. This is working as designed ...
by L. Mark Stone
Wed Sep 19, 2018 1:58 pm
Forum: Administrators
Topic: Account compromised impossibile to stop spam
Replies: 17
Views: 979

Re: Account compromised impossibile to stop spam

Hi and tnx for the reply: My tests: Change password, zmcontrol restart, set active -> spam Changed password, set active, zmcontrol restar -> spam Changed password, zmcontrol stop, shutdown vm, set active -> spam Sounds like it could be the Mailsploit bug.... https://bugzilla.zimbra.com/show_bug.cgi...
by L. Mark Stone
Wed Sep 19, 2018 1:16 pm
Forum: Installation and Upgrade
Topic: Caution With Unattended Upgrades
Replies: 5
Views: 385

Re: Caution With Unattended Upgrades

Bill, Yes, disabling the Zimbra repo is another option, so maybe just a personal preference. I can run for example: apt-get update; apt list --upgradable and then just not upgrade any zimbra packages if I need to do a manual upgrade. Zimbra's updated packages do not yet restart their own dependent s...
by L. Mark Stone
Wed Sep 19, 2018 12:56 pm
Forum: Administrators
Topic: Migration Options
Replies: 13
Views: 2213

Re: Migration Options

So, just some clarification on the uid, gid and Zimbra ID comments above... Side by side migrations are absolutely supported by Zimbra using the ZeXtras Trial download on the old Network Edition Server to migrate to a new a Network Edition server (which already includes the ZeXtras Suite, rebranded ...
by L. Mark Stone
Tue Sep 18, 2018 2:56 pm
Forum: Administrators
Topic: Migration Options
Replies: 13
Views: 2213

Re: Migration Options

I get A+ on the Qualys SSL labs test with just a few minor tweaks no problem.

As re HSM volumes, I recall that at one point there was an issue with this, but that it had been fixed. Of the migrations I’ve done this year, none have had HSM issues.

Mark

Go to advanced search