Page MenuHomeDevCentral
Feed Advanced Search

Jan 20 2017

dereckson added a revision to T232: Deploy Sympa to serve lists.nasqueron.org: D849: Configure Sympa.
Jan 20 2017, 11:26 · Mail, Murasil
dereckson added a comment to T232: Deploy Sympa to serve lists.nasqueron.org.

Steps 2 and 3 have been done this Thursday.

Jan 20 2017, 09:04 · Mail, Murasil
dereckson updated the title for P240 Database update by Sympa from untitled to Database update by Sympa.
Jan 20 2017, 09:00 · Mail
dereckson created P240 Database update by Sympa.
Jan 20 2017, 08:59 · Mail

Jan 18 2017

dereckson added a comment to T232: Deploy Sympa to serve lists.nasqueron.org.

Sympa software in installed in /var/lib/sympa.

Jan 18 2017, 19:39 · Mail, Murasil
dereckson added a comment to T232: Deploy Sympa to serve lists.nasqueron.org.
  1. Install sympa on the mailserver lxc container
  2. Define two virtual maps in Postfix with virtual_alias_maps, one for our users domains (managed by vma.nasqueron.org), one for our mailing lists domains (managed by Sympa)
  3. Follow https://tribut.de/blog/sympa-and-postfix/ per T232#6384
  4. Configure a test@lists.nasqueron.org list
  5. Configure a second test@lists.ook.space list to determine multidomain works
Jan 18 2017, 09:47 · Mail, Murasil
dereckson removed a project from T232: Deploy Sympa to serve lists.nasqueron.org: Nasqueron Docker deployment squad.
Jan 18 2017, 09:34 · Mail, Murasil
dereckson moved T232: Deploy Sympa to serve lists.nasqueron.org from Backlog to Working on on the Murasil board.
Jan 18 2017, 09:33 · Mail, Murasil
dereckson closed T236: Set lists.nasqueron.org DNS records, a subtask of T232: Deploy Sympa to serve lists.nasqueron.org, as Resolved.
Jan 18 2017, 09:25 · Mail, Murasil
dereckson renamed T232: Deploy Sympa to serve lists.nasqueron.org from Deploy a Sympa Docker container on Dwellers to serve lists.nasqueron.org to Deploy Sympa to serve lists.nasqueron.org.
Jan 18 2017, 08:27 · Mail, Murasil
dereckson moved T232: Deploy Sympa to serve lists.nasqueron.org from Backlog - On hold pending T1475 to Working on on the Mail board.
Jan 18 2017, 08:23 · Mail, Murasil
dereckson added a project to T232: Deploy Sympa to serve lists.nasqueron.org: Mail.
Jan 18 2017, 08:23 · Mail, Murasil

Jan 17 2017

dereckson added a comment to T1117: [autoconfig] Allow to provide dynamic replies per user.

For the autodiscover format used by Outlook and Android, we can also include in Protocol blocks this information:

Jan 17 2017, 06:31 · Mail

Jan 16 2017

dereckson added a comment to T1114: Allow Outlook to autodiscover mail server configuration.

DNS configuration

Jan 16 2017, 13:56 · Mail
dereckson closed T1113: Provide an autoconfig.nasqueron.org configuration server for mail user agents as Resolved.

Autoconfig document are published, so step 1 is done.

Jan 16 2017, 13:55 · Mail
dereckson triaged T1117: [autoconfig] Allow to provide dynamic replies per user as Low priority.
Jan 16 2017, 13:46 · Mail
dereckson created T1117: [autoconfig] Allow to provide dynamic replies per user.
Jan 16 2017, 13:46 · Mail
dereckson created T1116: [autoconfig] Allow to provide dynamic replies per domain.
Jan 16 2017, 13:43 · Mail
dereckson closed T1114: Allow Outlook to autodiscover mail server configuration as Resolved by committing rAUTOCONFIG7d347908bb3e: Publish autodiscover settings for Outlook.
Jan 16 2017, 13:36 · Mail
dereckson added a revision to T1114: Allow Outlook to autodiscover mail server configuration: D842: Publish autodiscover settings for Outlook.
Jan 16 2017, 13:34 · Mail
dereckson added a revision to T1113: Provide an autoconfig.nasqueron.org configuration server for mail user agents: D840: Initial configuration document.
Jan 16 2017, 12:34 · Mail
dereckson triaged T1113: Provide an autoconfig.nasqueron.org configuration server for mail user agents as Normal priority.
Jan 16 2017, 12:34 · Mail
dereckson claimed T1114: Allow Outlook to autodiscover mail server configuration.
Jan 16 2017, 12:34 · Mail
dereckson claimed T1113: Provide an autoconfig.nasqueron.org configuration server for mail user agents.
Jan 16 2017, 12:34 · Mail
dereckson created T1114: Allow Outlook to autodiscover mail server configuration.
Jan 16 2017, 09:26 · Mail
dereckson closed T1110: Dovecot isn't restarted after new certificate deployment as Resolved by committing rOPSd76d6d5b16d6: Restart IMAP server too when deploying new mail SSL certificate.
Jan 16 2017, 07:04 · Nasqueron Operations Squad, Mail
dereckson added revisions to T919: Propagate Let's encrypt certificate to mail server: D836: Restart IMAP server too when deploying new mail SSL certificate, D694: Allow to update SMTP server certificates.
Jan 16 2017, 06:18 · Mail
dereckson created T1113: Provide an autoconfig.nasqueron.org configuration server for mail user agents.
Jan 16 2017, 05:57 · Mail
dereckson claimed T1112: Provide RFC 6186 SRV Records for mail.nasqueron.org to ease client configuration.

Done, to test.

Jan 16 2017, 05:16 · Mail
dereckson moved T1108: Allow to send mail through SMTP outside nasqueron.org network when logged in from Working on to Pending review on the Mail board.

Configured on port 587 on mail.nasqueron.org.

Jan 16 2017, 05:10 · Mail
dereckson moved T1112: Provide RFC 6186 SRV Records for mail.nasqueron.org to ease client configuration from Backlog - On hold pending T1475 to Working on on the Mail board.
Jan 16 2017, 05:09 · Mail
dereckson created T1112: Provide RFC 6186 SRV Records for mail.nasqueron.org to ease client configuration.
Jan 16 2017, 05:07 · Mail
dereckson closed T1111: Documentation: how to connect to mail server with Thunderbird? as Resolved.

There is something we can do for better user experience: use https://tools.ietf.org/html/rfc6186 to provide DNS records about configuration

Jan 16 2017, 04:58 · Mail

Jan 15 2017

dereckson added a comment to T1111: Documentation: how to connect to mail server with Thunderbird?.

Screenshot from 2017-01-15 12-47-46.png (308×849 px, 47 KB)

Jan 15 2017, 11:49 · Mail
dereckson created T1111: Documentation: how to connect to mail server with Thunderbird?.
Jan 15 2017, 11:23 · Mail
dereckson updated the task description for T1110: Dovecot isn't restarted after new certificate deployment.
Jan 15 2017, 10:25 · Nasqueron Operations Squad, Mail
dereckson updated the task description for T1110: Dovecot isn't restarted after new certificate deployment.
Jan 15 2017, 10:25 · Nasqueron Operations Squad, Mail
dereckson added a revision to T1110: Dovecot isn't restarted after new certificate deployment: D836: Restart IMAP server too when deploying new mail SSL certificate.
Jan 15 2017, 10:25 · Nasqueron Operations Squad, Mail
dereckson triaged T1110: Dovecot isn't restarted after new certificate deployment as Unbreak Now! priority.
Jan 15 2017, 10:22 · Nasqueron Operations Squad, Mail
dereckson moved T405: Test Flockport mail server from Backlog to RC / beta / virtually adopted on the Product evaluation board.
Jan 15 2017, 07:26 · Product evaluation, User-Sandlayth, Mail
dereckson added a project to T405: Test Flockport mail server: Product evaluation.
Jan 15 2017, 07:23 · Product evaluation, User-Sandlayth, Mail
dereckson moved T1105: Evaluate if Zammad wouldn't be useful from Backlog to Nope / later on the Product evaluation board.
Jan 15 2017, 07:23 · Product evaluation, Nasqueron Docker deployment squad, Mail
dereckson added a project to T1105: Evaluate if Zammad wouldn't be useful: Product evaluation.
Jan 15 2017, 07:23 · Product evaluation, Nasqueron Docker deployment squad, Mail
dereckson closed T1105: Evaluate if Zammad wouldn't be useful as Resolved.
Jan 15 2017, 07:13 · Product evaluation, Nasqueron Docker deployment squad, Mail
dereckson closed T1105: Evaluate if Zammad wouldn't be useful, a subtask of T1104: Create a mail desk service, as Resolved.
Jan 15 2017, 07:13 · Nasqueron Operations Squad, Mail
dereckson added a comment to T1105: Evaluate if Zammad wouldn't be useful.
NOTE: An important thing to stress upon: there is a migration path from OTRS to Zammad.
Jan 15 2017, 07:13 · Product evaluation, Nasqueron Docker deployment squad, Mail

Jan 14 2017

dereckson updated the task description for T1108: Allow to send mail through SMTP outside nasqueron.org network when logged in.
Jan 14 2017, 23:32 · Mail
dereckson created T1108: Allow to send mail through SMTP outside nasqueron.org network when logged in.
Jan 14 2017, 23:31 · Mail
dereckson moved T424: Prepare a OTRS Docker image from Backlog to New images on the Docker images board.
Jan 14 2017, 21:46 · Docker images, Mail
dereckson added a comment to T1105: Evaluate if Zammad wouldn't be useful.

DNS
desk.nasqueron.org. 86400 IN CNAME www3.nasqueron.org.

Jan 14 2017, 21:41 · Product evaluation, Nasqueron Docker deployment squad, Mail
dereckson added a comment to T1105: Evaluate if Zammad wouldn't be useful.

Port assignment: 22080

Jan 14 2017, 21:32 · Product evaluation, Nasqueron Docker deployment squad, Mail
dereckson created T1105: Evaluate if Zammad wouldn't be useful.
Jan 14 2017, 21:21 · Product evaluation, Nasqueron Docker deployment squad, Mail
dereckson added a comment to T424: Prepare a OTRS Docker image.

There is a repository created on GitHub, but not here: https://github.com/nasqueron/docker-otrs

Jan 14 2017, 20:21 · Docker images, Mail
dereckson added a parent task for T424: Prepare a OTRS Docker image: T1104: Create a mail desk service.
Jan 14 2017, 20:16 · Docker images, Mail
dereckson added subtasks for T1104: Create a mail desk service: T424: Prepare a OTRS Docker image, T474: 502 page for an OTRS instance.
Jan 14 2017, 20:16 · Nasqueron Operations Squad, Mail
dereckson added parent tasks for T1104: Create a mail desk service: T968: Switch Docker containers MAINTAINER to docker Nasqueron mail, T889: Provide a way to handle code of conduct violation, T884: Welcome mail from VMA offers to contact a no-reply mail, T943: Have a workflow to process subscriptions.
Jan 14 2017, 20:16 · Nasqueron Operations Squad, Mail
dereckson added a subtask for T884: Welcome mail from VMA offers to contact a no-reply mail: T1104: Create a mail desk service.
Jan 14 2017, 20:16 · Mail
dereckson updated the task description for T1104: Create a mail desk service.
Jan 14 2017, 20:12 · Nasqueron Operations Squad, Mail
dereckson created T1104: Create a mail desk service.
Jan 14 2017, 20:12 · Nasqueron Operations Squad, Mail
dereckson added a project to T424: Prepare a OTRS Docker image: Docker images.
Jan 14 2017, 20:09 · Docker images, Mail
dereckson closed T463: Add DKIM to mailserver as Resolved by committing rOPSd78171d57fdb: Deploy OpenDKIM on mail server.
Jan 14 2017, 19:41 · Mail
dereckson added a revision to T463: Add DKIM to mailserver: D833: Deploy OpenDKIM on mail server.
Jan 14 2017, 13:08 · Mail
dereckson added a comment to T463: Add DKIM to mailserver.

DKIM works according a port25 check.

Jan 14 2017, 12:27 · Mail
dereckson added a comment to T463: Add DKIM to mailserver.

DNS configuration

Jan 14 2017, 11:56 · Mail
dereckson added a comment to T463: Add DKIM to mailserver.

DKIM selectors will follow the dénomination systématique and so the first DNS entries will be unium._domainkey.domain.tld.

Jan 14 2017, 11:06 · Mail
dereckson added a comment to T463: Add DKIM to mailserver.

SPF correctly configured through postfix-policyd-spf-python.

Jan 14 2017, 09:12 · Mail
dereckson closed T834: Upgrade vma.nasqueron.org from 3.0.12 to 3.0.15 as Resolved.
Jan 14 2017, 08:06 · Nasqueron Docker deployment squad, Servers, Mail
dereckson claimed T834: Upgrade vma.nasqueron.org from 3.0.12 to 3.0.15.

2016-12-28 01:58 < Dereckson> [mailserver] Update vma. per https://github.com/opensolutions/ViMbAdmin/wiki/Updating

Jan 14 2017, 08:06 · Nasqueron Docker deployment squad, Servers, Mail
dereckson closed T1102: vma send "Could not send settings email" — 5.7.0 Must issue a STARTTLS command first as Resolved.
Jan 14 2017, 07:58 · Mail
dereckson closed T1103: SMTP mail.nasqueron.org requires STARTTLS while RFC 2487 and RFC 3207 forbid this behavior as Resolved.

/etc/postfix/main.cf setting has been switched back to smtpd_tls_security_level = may, mail server restarted.

Jan 14 2017, 07:57 · security, Mail
dereckson closed T1103: SMTP mail.nasqueron.org requires STARTTLS while RFC 2487 and RFC 3207 forbid this behavior, a subtask of T1102: vma send "Could not send settings email" — 5.7.0 Must issue a STARTTLS command first, as Resolved.
Jan 14 2017, 07:57 · Mail
dereckson added a comment to T1102: vma send "Could not send settings email" — 5.7.0 Must issue a STARTTLS command first.

After T1103 has been enforced, mail has correctly been sent:

Jan 14 2017, 07:56 · Mail
dereckson added a project to T1103: SMTP mail.nasqueron.org requires STARTTLS while RFC 2487 and RFC 3207 forbid this behavior: security.
Jan 14 2017, 07:53 · security, Mail
dereckson created T1103: SMTP mail.nasqueron.org requires STARTTLS while RFC 2487 and RFC 3207 forbid this behavior.
Jan 14 2017, 07:53 · security, Mail
dereckson added a comment to T1102: vma send "Could not send settings email" — 5.7.0 Must issue a STARTTLS command first.

So, vmailadmin tries through Zend framework to use our STMP server.

Jan 14 2017, 07:15 · Mail
dereckson renamed T1102: vma send "Could not send settings email" — 5.7.0 Must issue a STARTTLS command first from vma send "Could not send settings email" to vma send "Could not send settings email" — 5.7.0 Must issue a STARTTLS command first.
Jan 14 2017, 07:14 · Mail
dereckson added a comment to T1102: vma send "Could not send settings email" — 5.7.0 Must issue a STARTTLS command first.

This error means MailboxController::_sendSettingsEmail method return false.

Jan 14 2017, 07:10 · Mail
dereckson created T1102: vma send "Could not send settings email" — 5.7.0 Must issue a STARTTLS command first.
Jan 14 2017, 07:03 · Mail
dereckson added a comment to T405: Test Flockport mail server.

@Sandlayth Can you do some of the items noted in the previous comment?

Jan 14 2017, 07:01 · Product evaluation, User-Sandlayth, Mail
dereckson closed T404: Install a mail server on Dwellers as Resolved.

IPv6 excluded (something rather important), this is done.

Jan 14 2017, 07:00 · User-Sandlayth, Mail
dereckson closed T404: Install a mail server on Dwellers, a subtask of T4: Setup fauve services, as Resolved.
Jan 14 2017, 07:00 · Servers, Mail, Grip migration
dereckson closed T404: Install a mail server on Dwellers, a subtask of T402: Redirect @bioty.co mail to another mail address, as Resolved.
Jan 14 2017, 07:00 · Mail, bioty.co hosting

Nov 3 2016

dereckson closed T1038: Renewed Let's encrypt certificate hasn't been deployed to SMTP as Resolved.

Certificate has correctly been deployed.

Nov 3 2016, 14:26 · Mail
dereckson merged T1039: Renewed Let's encrypt certificate hasn't been deployed to SMTP into T1038: Renewed Let's encrypt certificate hasn't been deployed to SMTP.
Nov 3 2016, 14:25 · Mail
dereckson merged task T1039: Renewed Let's encrypt certificate hasn't been deployed to SMTP into T1038: Renewed Let's encrypt certificate hasn't been deployed to SMTP.
Nov 3 2016, 14:25 · Mail
dereckson renamed T1039: Renewed Let's encrypt certificate hasn't been deployed to SMTP from openssl s_client -connect mail.nasqueron.org:25 -starttls smtp CONNECTED(00000003) depth=2 O = Digital Signature Trust Co., CN = DST Root CA X3 verify return:1 depth=1 C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 verify return:1 depth=0 CN = mail.nasqueron.org verify error:num=10:certificate has expired notAfter=Aug 19 12:17:00 2016 GMT verify return:1 depth=0 CN = mail.nasqueron.org notAfter=Aug 19 12:17:00 2016 GMT verify return:1 --- Certificate chain 0 s:/CN=mail.nasqueron.org i:/C=US/O=Let's Encrypt/CN=Let's Encrypt Authority X3 1 s:/C=US/O=Let's Encrypt/CN=Let's Encrypt Authority X3 i:/O=Digital Signature Trust Co./CN=DST Root CA X3 --- Server certificate -----BEGIN CERTIFICATE----- MIIFCDCCA/CgAwIBAgISAwmPgfV3EE3NRzcMsY3/Q7EYMA0GCSqGSIb3DQEBCwUA MEoxCzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1MZXQncyBFbmNyeXB0MSMwIQYDVQQD ExpMZXQncyBFbmNyeXB0IEF1dGhvcml0eSBYMzAeFw0xNjA1MjExMjE3MDBaFw0x NjA4MTkxMjE3MDBaMB0xGzAZBgNVBAMTEm1haWwubmFzcXVlcm9uLm9yZzCCASIw DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAOs1fFUfm4X5Tygisxn01igTlO5P J9e31oma4QBVXMF1515weV2rLiGUCOE7nxOyZGq9N24/5vtu+IieD9V+mosmok7z ci9ANsMwdjmvDjJUQ2jELMhPfE7Dd+8/Ew0ruNqv/d55xTRUxKf9YmbGmQTQDoeO oZBxbPVCfh+NgZsOMEOwlvbSOLHI5fuTDrKi009ql4SxahcCwk510cBx1ZfI9bzO emhSbqoVy4UkhTLScLXe0Qd5MGNKPzH7kmfDe2UNhyS7i7OkM2Vmfj3sUCJTgwCq qEUi3Nq3AyfixMry3ntgrjDitZb9x6Osd+G0jl06apZjlUE+D/RTvtQ0RI0CAwEA AaOCAhMwggIPMA4GA1UdDwEB/wQEAwIFoDAdBgNVHSUEFjAUBggrBgEFBQcDAQYI KwYBBQUHAwIwDAYDVR0TAQH/BAIwADAdBgNVHQ4EFgQUsUXiyIT3quSfpZHKxgEi q2CRyBYwHwYDVR0jBBgwFoAUqEpqYwR93brm0Tm3pkVl7/Oo7KEwcAYIKwYBBQUH AQEEZDBiMC8GCCsGAQUFBzABhiNodHRwOi8vb2NzcC5pbnQteDMubGV0c2VuY3J5 cHQub3JnLzAvBggrBgEFBQcwAoYjaHR0cDovL2NlcnQuaW50LXgzLmxldHNlbmNy eXB0Lm9yZy8wHQYDVR0RBBYwFIISbWFpbC5uYXNxdWVyb24ub3JnMIH+BgNVHSAE gfYwgfMwCAYGZ4EMAQIBMIHmBgsrBgEEAYLfEwEBATCB1jAmBggrBgEFBQcCARYa aHR0cDovL2Nwcy5sZXRzZW5jcnlwdC5vcmcwgasGCCsGAQUFBwICMIGeDIGbVGhp cyBDZXJ0aWZpY2F0ZSBtYXkgb25seSBiZSByZWxpZWQgdXBvbiBieSBSZWx5aW5n IFBhcnRpZXMgYW5kIG9ubHkgaW4gYWNjb3JkYW5jZSB3aXRoIHRoZSBDZXJ0aWZp Y2F0ZSBQb2xpY3kgZm91bmQgYXQgaHR0cHM6Ly9sZXRzZW5jcnlwdC5vcmcvcmVw b3NpdG9yeS8wDQYJKoZIhvcNAQELBQADggEBAIkaUL0KebdS1bYEu5hOL+c+QewB OI/U1euJjwsp4lftAKLeX2tzm9pg15nT7h1BFVj0FmaAyuQQOa1arp5Lq9/+SiPg rlgHCg3AzHU7tp8ssRMx8Z8yAT+riTLdheYLnlwPdHo5ZexbD8caSJ0gW82IFdkK DjyrXhXDfQuffgeme1x9KN5LD1ctR57XUpBuk8ZCGFsj5xKdXlMTHeslsVOs0KRD 6XjQPFmRPegGh7dim+2ssNyXDW4K/3ISTNZNLs9AcLU9Qt9ES6Fka9e3o6x4WUHU OQBUpLJ4t8Fyk99qoaeO3ra31wPThfn1Krh947iH6345eAwbrPs7nskAKJo= -----END CERTIFICATE----- subject=/CN=mail.nasqueron.org issuer=/C=US/O=Let's Encrypt/CN=Let's Encrypt Authority X3 --- No client certificate CA names sent Peer signing digest: SHA512 Server Temp Key: ECDH, P-256, 256 bits --- SSL handshake has read 3372 bytes and written 466 bytes --- New, TLSv1/SSLv3, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : ECDHE-RSA-AES256-GCM-SHA384 Session-ID: 0A93A8D87FD72B052F94835018362D0B2B0B6A26F921E507B7F4E43C36A09842 Session-ID-ctx: Master-Key: 4CC5AE9D75E879C03741369D086F7882874B18C355150963C05794CBD09F3D9436D67D63C762D9D5EFC9B5E4213A737B Key-Arg : None PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 3600 (seconds) TLS session ticket: 0000 - 27 1f fe 69 ae ef da e2-6f 26 db ba 33 13 f4 4c '..i....o&..3..L 0010 - f9 08 a2 8e 8d 7a c1 0e-61 07 f8 0e 37 17 45 36 .....z..a...7.E6 0020 - 3f d3 77 cb 0d 95 e4 80-e7 49 27 15 ad 56 1f b5 ?.w......I'..V.. 0030 - 08 2c 53 96 d9 04 51 a6-a6 18 c9 49 19 c7 db 75 .,S...Q....I...u 0040 - 98 db 0e 1c fe 5c 2c 61-57 da e0 88 e6 f4 f9 b8 .....\,aW....... 0050 - d7 35 be 7d cf 37 d1 47-6d f2 8c 85 ee 9c 2a f5 .5.}.7.Gm.....*. 0060 - 07 3e 44 59 61 e0 b5 7f-a1 1e 9b e9 74 a8 37 f1 .>DYa.......t.7. 0070 - 98 b5 bf 8a df a5 2e 66-ab 40 46 e2 5e 59 55 c2 .......f.@F.^YU. 0080 - 03 44 8c 63 15 cd ee 15-19 d1 0c 5b f2 dc bd 81 .D.c.......[.... 0090 - 2c ba b5 b7 d1 a2 09 ed-25 db dd 6d 2f e9 5f ce ,.......%..m/._. Start Time: 1478179147 Timeout : 300 (sec) Verify return code: 10 (certificate has expired) --- 250 DSN to Renewed Let's encrypt certificate hasn't been deployed to SMTP.
Nov 3 2016, 14:24 · Mail
dereckson renamed T1038: Renewed Let's encrypt certificate hasn't been deployed to SMTP from openssl s_client -connect mail.nasqueron.org:25 -starttls smtp CONNECTED(00000003) depth=2 O = Digital Signature Trust Co., CN = DST Root CA X3 verify return:1 depth=1 C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 verify return:1 depth=0 CN = mail.nasqueron.org verify error:num=10:certificate has expired notAfter=Aug 19 12:17:00 2016 GMT verify return:1 depth=0 CN = mail.nasqueron.org notAfter=Aug 19 12:17:00 2016 GMT verify return:1 --- Certificate chain 0 s:/CN=mail.nasqueron.org i:/C=US/O=Let's Encrypt/CN=Let's Encrypt Authority X3 1 s:/C=US/O=Let's Encrypt/CN=Let's Encrypt Authority X3 i:/O=Digital Signature Trust Co./CN=DST Root CA X3 --- Server certificate -----BEGIN CERTIFICATE----- MIIFCDCCA/CgAwIBAgISAwmPgfV3EE3NRzcMsY3/Q7EYMA0GCSqGSIb3DQEBCwUA MEoxCzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1MZXQncyBFbmNyeXB0MSMwIQYDVQQD ExpMZXQncyBFbmNyeXB0IEF1dGhvcml0eSBYMzAeFw0xNjA1MjExMjE3MDBaFw0x NjA4MTkxMjE3MDBaMB0xGzAZBgNVBAMTEm1haWwubmFzcXVlcm9uLm9yZzCCASIw DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAOs1fFUfm4X5Tygisxn01igTlO5P J9e31oma4QBVXMF1515weV2rLiGUCOE7nxOyZGq9N24/5vtu+IieD9V+mosmok7z ci9ANsMwdjmvDjJUQ2jELMhPfE7Dd+8/Ew0ruNqv/d55xTRUxKf9YmbGmQTQDoeO oZBxbPVCfh+NgZsOMEOwlvbSOLHI5fuTDrKi009ql4SxahcCwk510cBx1ZfI9bzO emhSbqoVy4UkhTLScLXe0Qd5MGNKPzH7kmfDe2UNhyS7i7OkM2Vmfj3sUCJTgwCq qEUi3Nq3AyfixMry3ntgrjDitZb9x6Osd+G0jl06apZjlUE+D/RTvtQ0RI0CAwEA AaOCAhMwggIPMA4GA1UdDwEB/wQEAwIFoDAdBgNVHSUEFjAUBggrBgEFBQcDAQYI KwYBBQUHAwIwDAYDVR0TAQH/BAIwADAdBgNVHQ4EFgQUsUXiyIT3quSfpZHKxgEi q2CRyBYwHwYDVR0jBBgwFoAUqEpqYwR93brm0Tm3pkVl7/Oo7KEwcAYIKwYBBQUH AQEEZDBiMC8GCCsGAQUFBzABhiNodHRwOi8vb2NzcC5pbnQteDMubGV0c2VuY3J5 cHQub3JnLzAvBggrBgEFBQcwAoYjaHR0cDovL2NlcnQuaW50LXgzLmxldHNlbmNy eXB0Lm9yZy8wHQYDVR0RBBYwFIISbWFpbC5uYXNxdWVyb24ub3JnMIH+BgNVHSAE gfYwgfMwCAYGZ4EMAQIBMIHmBgsrBgEEAYLfEwEBATCB1jAmBggrBgEFBQcCARYa aHR0cDovL2Nwcy5sZXRzZW5jcnlwdC5vcmcwgasGCCsGAQUFBwICMIGeDIGbVGhp cyBDZXJ0aWZpY2F0ZSBtYXkgb25seSBiZSByZWxpZWQgdXBvbiBieSBSZWx5aW5n IFBhcnRpZXMgYW5kIG9ubHkgaW4gYWNjb3JkYW5jZSB3aXRoIHRoZSBDZXJ0aWZp Y2F0ZSBQb2xpY3kgZm91bmQgYXQgaHR0cHM6Ly9sZXRzZW5jcnlwdC5vcmcvcmVw b3NpdG9yeS8wDQYJKoZIhvcNAQELBQADggEBAIkaUL0KebdS1bYEu5hOL+c+QewB OI/U1euJjwsp4lftAKLeX2tzm9pg15nT7h1BFVj0FmaAyuQQOa1arp5Lq9/+SiPg rlgHCg3AzHU7tp8ssRMx8Z8yAT+riTLdheYLnlwPdHo5ZexbD8caSJ0gW82IFdkK DjyrXhXDfQuffgeme1x9KN5LD1ctR57XUpBuk8ZCGFsj5xKdXlMTHeslsVOs0KRD 6XjQPFmRPegGh7dim+2ssNyXDW4K/3ISTNZNLs9AcLU9Qt9ES6Fka9e3o6x4WUHU OQBUpLJ4t8Fyk99qoaeO3ra31wPThfn1Krh947iH6345eAwbrPs7nskAKJo= -----END CERTIFICATE----- subject=/CN=mail.nasqueron.org issuer=/C=US/O=Let's Encrypt/CN=Let's Encrypt Authority X3 --- No client certificate CA names sent Peer signing digest: SHA512 Server Temp Key: ECDH, P-256, 256 bits --- SSL handshake has read 3372 bytes and written 466 bytes --- New, TLSv1/SSLv3, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : ECDHE-RSA-AES256-GCM-SHA384 Session-ID: 0A93A8D87FD72B052F94835018362D0B2B0B6A26F921E507B7F4E43C36A09842 Session-ID-ctx: Master-Key: 4CC5AE9D75E879C03741369D086F7882874B18C355150963C05794CBD09F3D9436D67D63C762D9D5EFC9B5E4213A737B Key-Arg : None PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 3600 (seconds) TLS session ticket: 0000 - 27 1f fe 69 ae ef da e2-6f 26 db ba 33 13 f4 4c '..i....o&..3..L 0010 - f9 08 a2 8e 8d 7a c1 0e-61 07 f8 0e 37 17 45 36 .....z..a...7.E6 0020 - 3f d3 77 cb 0d 95 e4 80-e7 49 27 15 ad 56 1f b5 ?.w......I'..V.. 0030 - 08 2c 53 96 d9 04 51 a6-a6 18 c9 49 19 c7 db 75 .,S...Q....I...u 0040 - 98 db 0e 1c fe 5c 2c 61-57 da e0 88 e6 f4 f9 b8 .....\,aW....... 0050 - d7 35 be 7d cf 37 d1 47-6d f2 8c 85 ee 9c 2a f5 .5.}.7.Gm.....*. 0060 - 07 3e 44 59 61 e0 b5 7f-a1 1e 9b e9 74 a8 37 f1 .>DYa.......t.7. 0070 - 98 b5 bf 8a df a5 2e 66-ab 40 46 e2 5e 59 55 c2 .......f.@F.^YU. 0080 - 03 44 8c 63 15 cd ee 15-19 d1 0c 5b f2 dc bd 81 .D.c.......[.... 0090 - 2c ba b5 b7 d1 a2 09 ed-25 db dd 6d 2f e9 5f ce ,.......%..m/._. Start Time: 1478179147 Timeout : 300 (sec) Verify return code: 10 (certificate has expired) --- 250 DSN to Renewed Let's encrypt certificate hasn't been deployed to SMTP.
Nov 3 2016, 13:36 · Mail
dereckson created T1038: Renewed Let's encrypt certificate hasn't been deployed to SMTP.
Nov 3 2016, 13:22 · Mail
dereckson created T1039: Renewed Let's encrypt certificate hasn't been deployed to SMTP.
Nov 3 2016, 13:22 · Mail

Aug 20 2016

dereckson added a project to T404: Install a mail server on Dwellers: User-Sandlayth.
Aug 20 2016, 16:46 · User-Sandlayth, Mail
dereckson added a project to T405: Test Flockport mail server: User-Sandlayth.
Aug 20 2016, 16:45 · Product evaluation, User-Sandlayth, Mail

Jul 15 2016

dereckson placed T424: Prepare a OTRS Docker image up for grabs.
Jul 15 2016, 10:41 · Docker images, Mail
dereckson placed T420: Deploy IPv6 for mail.nasqueron.org up for grabs.

Not currently working on this.

Jul 15 2016, 10:35 · IPv6, Nasqueron Docker deployment squad, Mail
dereckson added a comment to P80 ipv6enabler.sh to mirror udp4/tcp4 to udp6/tcp6 (suggested by PtitGNU).

To use for T420, 127.0.0.1 should be replaced by the lxc mailserver container IP.

Jul 15 2016, 10:35 · Nasqueron Docker deployment squad, Mail

Jul 11 2016

dereckson created T919: Propagate Let's encrypt certificate to mail server.
Jul 11 2016, 11:17 · Mail

Jul 1 2016

dereckson moved T885: Offer a recover password feature for mailboxes from Backlog to Add services on the Auth Grove board.
Jul 1 2016, 19:30 · Auth Grove, Mail

Jun 28 2016

dereckson created T885: Offer a recover password feature for mailboxes.
Jun 28 2016, 01:54 · Auth Grove, Mail
dereckson created T884: Welcome mail from VMA offers to contact a no-reply mail.
Jun 28 2016, 01:52 · Mail

May 31 2016

dereckson closed T817: Deploy renewed SSL certificate for mail.nasqueron.org to the mail server LXC container as Resolved.

That doesn't need any Postfix restart.

May 31 2016, 21:19 · Nasqueron Docker deployment squad, Mail, Servers
dereckson raised the priority of T817: Deploy renewed SSL certificate for mail.nasqueron.org to the mail server LXC container from High to Unbreak Now!.
May 31 2016, 20:52 · Nasqueron Docker deployment squad, Mail, Servers