Unterschiede
Hier werden die Unterschiede zwischen zwei Versionen angezeigt.
Beide Seiten der vorigen Revision Vorhergehende Überarbeitung Nächste Überarbeitung | Vorhergehende Überarbeitung | ||
centos:mail_c7:postfix3_8 [09.02.2019 20:35. ] – django | centos:mail_c7:postfix3_8 [18.11.2024 19:13. ] (aktuell) – Externe Bearbeitung 127.0.0.1 | ||
---|---|---|---|
Zeile 8: | Zeile 8: | ||
Beide Lösungen sind vom Grundsatz her gleich aufgebaut - basieren doch beide auf grundlegende folgende Struktur. | Beide Lösungen sind vom Grundsatz her gleich aufgebaut - basieren doch beide auf grundlegende folgende Struktur. | ||
- | < | + | <uml> |
skinparam defaultFontName Courier | skinparam defaultFontName Courier | ||
Zeile 40: | Zeile 40: | ||
Dass dies nicht unbedingt stimmt, wollen wir uns an Hand des nachfolgenden Konfigurationsbeispiels genauer ansehen. Werfen wir als erstes noch einmal kurz einen Blick auf das zuvor gezeigte Schaubild - zum besseren Verständnis, | Dass dies nicht unbedingt stimmt, wollen wir uns an Hand des nachfolgenden Konfigurationsbeispiels genauer ansehen. Werfen wir als erstes noch einmal kurz einen Blick auf das zuvor gezeigte Schaubild - zum besseren Verständnis, | ||
- | < | + | <uml> |
skinparam defaultFontName Courier | skinparam defaultFontName Courier | ||
Zeile 461: | Zeile 461: | ||
Werfen wir auch hier erst einen Blick auf das Eingangs gezeigte **[[centos: | Werfen wir auch hier erst einen Blick auf das Eingangs gezeigte **[[centos: | ||
- | < | + | <uml> |
skinparam defaultFontName Courier | skinparam defaultFontName Courier | ||
Zeile 765: | Zeile 765: | ||
===== Testen ===== | ===== Testen ===== | ||
+ | Zum leichteren Testen der Authentifizierung greifen wir auf das " | ||
+ | |||
==== Authentifizierungsoptionen ==== | ==== Authentifizierungsoptionen ==== | ||
- | <WRAP center round todo 30%> | + | Als erstes testen wir, ob und ggf. welche SASL-Mechanismen unser Postfix SMTP-Server nun anbietet. Dazu geben wir beim nachfolgenden Programmaufruf bewusst erst einmal ein falsches Passwort an, da wir unseren Blick erst einmal auf die angebotenen |
- | FIXME FIXME FIXME | + | # |
- | * //**... working in progres!**// | + | |
- | FIXME FIXME FIXME | + | |
- | </ | + | |
- | Als erstes testen wir, ob und ggf. welche SASL-Mechanismen unser Postfix SMTP-Server nun anbietet. Dazu öffnet | + | |
- | # | + | |
- | < | + | |
- | Connected | + | |
- | Escape character is ' | + | |
- | 220 mx01.nausch.org | + | |
- | EHLO foo | + | |
- | 250-mx01.nausch.org | + | |
- | 250-PIPELINING | + | |
- | 250-SIZE 52428800 | + | |
- | 250-ETRN | + | |
- | 250-STARTTLS | + | |
- | 250-AUTH PLAIN LOGIN DIGEST-MD5 CRAM-MD5 NTLM | + | |
- | 250-AUTH=PLAIN LOGIN DIGEST-MD5 CRAM-MD5 NTLM | + | |
- | 250-ENHANCEDSTATUSCODES | + | |
- | 250 8BITMIME | + | |
- | quit | + | |
- | 221 2.0.0 Bye | + | |
- | Connection closed by foreign host. | + | |
- | </ | + | |
- | An der zweiten Zeile '' | + | < |
+ | === Connected to 10.0.0.80. | ||
+ | <- 220 mx1.nausch.org ESMTP Postfix | ||
+ | -> EHLO vml000080.dmz.nausch.org | ||
+ | < | ||
+ | <- 250-PIPELINING | ||
+ | <- 250-SIZE 52428800 | ||
+ | <- 250-ETRN | ||
+ | <- 250-STARTTLS | ||
+ | <- 250-ENHANCEDSTATUSCODES | ||
+ | <- 250-8BITMIME | ||
+ | <- 250-DSN | ||
+ | <- 250 SMTPUTF8 | ||
+ | -> STARTTLS | ||
+ | <- 220 2.0.0 Ready to start TLS | ||
+ | === TLS started with cipher TLSv1.2: | ||
+ | === TLS no local certificate set | ||
+ | === TLS peer DN="/ | ||
+ | ~> EHLO vml000080.dmz.nausch.org | ||
+ | <~ 250-mx1.nausch.org | ||
+ | <~ 250-PIPELINING | ||
+ | <~ 250-SIZE 52428800 | ||
+ | <~ 250-ETRN | ||
+ | <~ 250-AUTH | ||
+ | <~ 250-AUTH=PLAIN LOGIN DIGEST-MD5 CRAM-MD5 NTLM | ||
+ | <~ 250-ENHANCEDSTATUSCODES | ||
+ | <~ 250-8BITMIME | ||
+ | <~ 250-DSN | ||
+ | <~ 250 SMTPUTF8 | ||
+ | ~> AUTH CRAM-MD5 | ||
+ | <~ 334 PDI1NTEzNjUyNDE3Njk3MDguMTU0OTc4MzcyN0B2bWwwMDAwNzcuZG16Lm5hdXNjaC5vcmc+ | ||
+ | ~> ZGphbmdvQG1haWxzZXJ2ZXIuZ3VydSA4NTEzMzE4M2YxZjhiZDRjNzc2N2Q2MGM2ODc4ODhmYw== | ||
+ | <~* 535 5.7.8 Error: authentication failed: PDI1NTEzNjUyNDE3Njk3MDguMTU0OTc4MzcyN0B2bWwwMDAwNzcuZG16Lm5hdXNjaC5vcmc+. Contact your postmaster/ | ||
+ | *** No authentication type succeeded | ||
+ | ~> QUIT | ||
+ | <~ 221 2.0.0 Bye | ||
+ | === Connection closed with remote host.</ | ||
- | ==== Test der Authentifizierung ==== | + | Natürlich wird der erfolglose Verbindungsaufbau auch entsprechend mit einem **//warning//** im Maillog protokolliert. |
- | Zum leichteren Testen der Authentifizierung greifen wir auf das " | + | |
- | Nach Aufruf von **swaks** werden wir nach dem zugehörigen Passwort gefragt. Anschließend sehen wir den SMTP-Dialog zwischen dem Cilene " | + | < |
+ | Feb 10 08:28:47 vml000080 postfix/ | ||
+ | Feb 10 08:28:49 vml000080 | ||
+ | Feb 10 08:28:49 vml000080 postfix/ | ||
- | # swaks --to django@nausch.org --from michael@nausch.org --auth | + | Unser Server bietet uns also folgende Authentifizierungs-Mechanismen an: |
+ | * PLAIN | ||
+ | * LOGIN | ||
+ | * DIGEST-MD5 | ||
+ | * CRAM-MD5 | ||
+ | * NTLM | ||
- | | + | An der zweiten Zeile '' |
- | < | + | ==== Test der Authentifizierung ==== |
- | === Connected to 10.0.0.87. | + | Nun testen wir die unterschiedlichen Authentifizierungsvarianten, |
- | <- 220 mx01.nausch.org ESMTP Postfix | + | <WRAP center round tip 80%> |
- | -> EHLO vml000087.dmz.nausch.org | + | Bei den einzelnen Tests geben wir aber das Passwort __nicht__ als Option in der Befehlszeile mit, schließlich wollen wir ja nicht, dass in der bash-History dieses entsprechend auffindbar ist! |
- | <- 250-mx01.nausch.org | + | </ |
+ | === PLAIN === | ||
+ | Als erstes testen wir den **PLAIN**-Mechanismus: | ||
+ | Nach Aufruf von **swaks** werden wir nach dem zugehörigen Passwort gefragt. Anschließend sehen wir den SMTP-Dialog zwischen dem Client " | ||
+ | |||
+ | # swaks --to django@nausch.org --from michael@nausch.org --auth PLAIN --auth-user michael@nausch.org --protocol ESMTPS \\ | ||
+ | | ||
+ | |||
+ | Password: DAx1d13g31l354u! | ||
+ | |||
+ | < | ||
+ | === Connected to 10.0.0.80. | ||
+ | <- 220 mx1.nausch.org ESMTP Postfix | ||
+ | -> EHLO vml000080.dmz.nausch.org | ||
+ | <- 250-mx1.nausch.org | ||
<- 250-PIPELINING | <- 250-PIPELINING | ||
<- 250-SIZE 52428800 | <- 250-SIZE 52428800 | ||
<- 250-ETRN | <- 250-ETRN | ||
<- 250-STARTTLS | <- 250-STARTTLS | ||
- | <- 250-AUTH PLAIN LOGIN CRAM-MD5 DIGEST-MD5 NTLM | ||
- | <- 250-AUTH=PLAIN LOGIN CRAM-MD5 DIGEST-MD5 NTLM | ||
<- 250-ENHANCEDSTATUSCODES | <- 250-ENHANCEDSTATUSCODES | ||
<- 250-8BITMIME | <- 250-8BITMIME | ||
- | <- 250 DSN | + | <- 250-DSN |
- | | + | <- 250 SMTPUTF8 |
- | < | + | |
- | | + | < |
- | < | + | === TLS started with cipher TLSv1.2: |
- | -> RGQ0bWRkMyE= | + | === TLS no local certificate set |
- | <- 235 2.7.0 Authentication successful | + | === TLS peer DN="/ |
- | -> MAIL FROM:< | + | ~> EHLO vml000080.dmz.nausch.org |
- | <- 250 2.1.0 Ok | + | <~ 250-mx1.nausch.org |
- | -> RCPT TO:< | + | <~ 250-PIPELINING |
- | <- 250 2.1.5 Ok | + | <~ 250-SIZE 52428800 |
- | -> DATA | + | <~ 250-ETRN |
- | <- 354 End data with < | + | <~ 250-AUTH PLAIN LOGIN DIGEST-MD5 CRAM-MD5 NTLM |
- | -> Date: Tue, 28 Oct 2014 22:59:26 +0100 | + | <~ 250-AUTH=PLAIN LOGIN DIGEST-MD5 CRAM-MD5 NTLM |
- | -> To: django@nausch.org | + | <~ 250-ENHANCEDSTATUSCODES |
- | -> From: michael@nausch.org | + | <~ 250-8BITMIME |
- | -> Subject: test Tue, 28 Oct 2014 22:59:26 +0100 | + | <~ 250-DSN |
- | -> X-Mailer: swaks v20130209.0 jetmore.org/ | + | <~ 250 SMTPUTF8 |
- | -> X-Test: test email | + | ~> AUTH PLAIN AG1pY2hhZWxAbmF1c2NoLm9yZwBEQXgxZDEzZzMxbDM1NHUh |
- | -> | + | <~ 235 2.7.0 Authentication successful |
- | -> This is a test mailing | + | ~> MAIL FROM:< |
- | -> | + | <~ 250 2.1.0 Ok |
- | -> . | + | ~> RCPT TO:< |
- | <- 250 2.0.0 Ok: queued as DE611C00088 | + | <~ 250 2.1.5 Ok |
- | -> QUIT | + | ~> DATA |
- | <- 221 2.0.0 Bye | + | <~ 354 End data with < |
+ | ~> Date: Sun, 10 Feb 2019 09:40:26 +0100 | ||
+ | ~> To: django@nausch.org | ||
+ | ~> From: michael@nausch.org | ||
+ | ~> Subject: test Sun, 10 Feb 2019 09:40:26 +0100 | ||
+ | ~> Message-Id: < | ||
+ | ~> X-Mailer: swaks v20170101.0 jetmore.org/ | ||
+ | ~> X-Test: test email | ||
+ | ~> | ||
+ | ~> This is a test mailing | ||
+ | ~> | ||
+ | ~> . | ||
+ | <~ 250 2.0.0 Ok: queued as 0F3B560008B | ||
+ | ~> QUIT | ||
+ | <~ 221 2.0.0 Bye | ||
=== Connection closed with remote host. | === Connection closed with remote host. | ||
</ | </ | ||
Zeile 848: | Zeile 897: | ||
# less / | # less / | ||
- | < | + | < |
- | Oct 28 22:59:34 vml000087 | + | Feb 10 09:40:36 vml000080 |
- | Oct 28 22:59:34 vml000087 | + | Feb 10 09:40:36 vml000080 postfix/ |
- | Oct 28 22:59:34 vml000087 | + | Feb 10 09:40:36 vml000080 |
- | Oct 28 22:59:34 vml000087 | + | Feb 10 09:40:36 vml000080 |
- | Oct 28 22:59:35 vml000087 postfix/ | + | Feb 10 09:40:36 vml000080 |
- | Oct 28 22:59:35 vml000087 postfix/ | + | |
</ | </ | ||
- | **swaks** beherrscht natürlich auch das Verfahren **CRAM-MD5**: | + | === LOGIN === |
- | # swaks --to django@nausch.org --from michael@nausch.org --auth CRAM-MD5 --auth-user michael@nausch.org --header-X-Test "test email" --server 10.0.0.87 | + | Als nächstes testen wir die Variante LOGIN - hier wird im Gegensatz zum vorheringen Auth-Mechanismus PLAIN die Anmeldekennung und das zugehörige Passwort zusammen in einem String sondern separat übergeben. |
- | Password: DAx1d13g31l354u! | + | # swaks --to django@nausch.org --from michael@nausch.org --auth PLAIN --auth-user michael@nausch.org --protocol ESMTPS \\ |
+ | | ||
- | < | + | Password: DAx1d13g31l354u! |
- | === Connected to 10.0.0.87. | + | |
- | <- 220 mx01.nausch.org ESMTP Postfix | + | < |
- | -> EHLO vml000087.dmz.nausch.org | + | === Connected to 10.0.0.80. |
- | <- 250-mx01.nausch.org | + | <- 220 mx1.nausch.org ESMTP Postfix |
+ | -> EHLO vml000080.dmz.nausch.org | ||
+ | <- 250-mx1.nausch.org | ||
<- 250-PIPELINING | <- 250-PIPELINING | ||
<- 250-SIZE 52428800 | <- 250-SIZE 52428800 | ||
<- 250-ETRN | <- 250-ETRN | ||
<- 250-STARTTLS | <- 250-STARTTLS | ||
- | <- 250-AUTH PLAIN LOGIN CRAM-MD5 DIGEST-MD5 NTLM | ||
- | <- 250-AUTH=PLAIN LOGIN CRAM-MD5 DIGEST-MD5 NTLM | ||
<- 250-ENHANCEDSTATUSCODES | <- 250-ENHANCEDSTATUSCODES | ||
<- 250-8BITMIME | <- 250-8BITMIME | ||
- | <- 250 DSN | + | <- 250-DSN |
- | -> AUTH CRAM-MD5 | + | <- 250 SMTPUTF8 |
- | < | + | |
- | -> bWljaGP1ffp4ffFlbEBuYXVzY2MwNzczOTg2ZmQ1ZjP1ffp4ffUzOWNkOWE0YTM1ZGMx | + | <- 220 2.0.0 Ready to start TLS |
- | <- 235 2.7.0 Authentication successful | + | === TLS started with cipher TLSv1.2: |
- | -> MAIL FROM:< | + | === TLS no local certificate set |
- | <- 250 2.1.0 Ok | + | === TLS peer DN="/ |
- | -> RCPT TO:< | + | ~> EHLO vml000080.dmz.nausch.org |
- | <- 250 2.1.5 Ok | + | <~ 250-mx1.nausch.org |
- | -> DATA | + | <~ 250-PIPELINING |
- | <- 354 End data with < | + | <~ 250-SIZE 52428800 |
- | -> Date: Tue, 28 Oct 2014 22:51:47 +0100 | + | <~ 250-ETRN |
- | -> To: django@nausch.org | + | <~ 250-AUTH PLAIN LOGIN DIGEST-MD5 |
- | -> From: michael@nausch.org | + | <~ 250-AUTH=PLAIN LOGIN DIGEST-MD5 CRAM-MD5 NTLM |
- | -> Subject: test Tue, 28 Oct 2014 22:51:47 +0100 | + | <~ 250-ENHANCEDSTATUSCODES |
- | -> X-Mailer: swaks v20130209.0 jetmore.org/ | + | <~ 250-8BITMIME |
- | -> X-Test: test email | + | <~ 250-DSN |
- | -> | + | <~ 250 SMTPUTF8 |
- | -> This is a test mailing | + | ~> AUTH LOGIN |
- | -> | + | <~ 334 VXNlcm5hbWU6 |
- | -> . | + | ~> bWljaGFlbEBuYXVzY2gub3Jn |
- | <- 250 2.0.0 Ok: queued as CCB35C00088 | + | <~ 334 UGFzc3dvcmQ6 |
- | -> QUIT | + | ~> REF4MWQxM2czMWwzNTR1IQ== |
- | <- 221 2.0.0 Bye | + | <~ 235 2.7.0 Authentication successful |
- | === Connection closed with remote host. | + | ~> MAIL FROM:< |
- | </ | + | <~ 250 2.1.0 Ok |
+ | ~> RCPT TO:< | ||
+ | <~ 250 2.1.5 Ok | ||
+ | ~> DATA | ||
+ | <~ 354 End data with < | ||
+ | ~> Date: Sun, 10 Feb 2019 10:02:32 +0100 | ||
+ | ~> To: django@nausch.org | ||
+ | ~> From: michael@nausch.org | ||
+ | ~> Subject: test Sun, 10 Feb 2019 10:02:32 +0100 | ||
+ | ~> Message-Id: < | ||
+ | ~> X-Mailer: swaks v20170101.0 jetmore.org/ | ||
+ | ~> X-Test: test email | ||
+ | ~> | ||
+ | ~> This is a test mailing | ||
+ | ~> | ||
+ | ~> . | ||
+ | <~ 250 2.0.0 Ok: queued as 27AC960008B | ||
+ | ~> QUIT | ||
+ | <~ 221 2.0.0 Bye | ||
+ | === Connection closed with remote host.</ | ||
- | Maillog: | + | Im Maillog |
- | < | + | |
- | Oct 28 22:51:51 vml000087 | + | # less / |
- | Oct 28 22:51:51 vml000087 | + | < |
- | Oct 28 22:51:51 vml000087 | + | Feb 10 10:02:39 vml000080 |
- | Oct 28 22:51:51 vml000087 | + | Feb 10 10:02:39 vml000080 postfix/ |
- | Oct 28 22:51:51 vml000087 | + | Feb 10 10:02:39 vml000080 |
- | Oct 28 22:51:51 vml000087 | + | Feb 10 10:02:39 vml000080 |
+ | Feb 10 10:02:39 vml000080 | ||
+ | Feb 10 10:02:40 vml000080 | ||
+ | Feb 10 10:02:40 vml000080 | ||
</ | </ | ||
- | Zu guter Letzt testen wir noch das Verfahren **NTLM**. | + | === DIGEST-MD5 === |
- | # swaks --to django@nausch.org --from michael@nausch.org | + | Als nächstes |
- | Password: DAx1d13g31l354u! | + | # swaks --to django@nausch.org --from michael@nausch.org --auth DIGEST-MD5 --auth-user michael@nausch.org --protocol ESMTPS \\ |
+ | | ||
- | < | + | Password: DAx1d13g31l354u! |
- | === Connected to 10.0.0.87. | + | |
- | <- 220 mx01.nausch.org ESMTP Postfix | + | < |
- | -> EHLO vml000087.dmz.nausch.org | + | === Connected to 10.0.0.80. |
- | <- 250-mx01.nausch.org | + | <- 220 mx1.nausch.org ESMTP Postfix |
+ | -> EHLO vml000080.dmz.nausch.org | ||
+ | <- 250-mx1.nausch.org | ||
<- 250-PIPELINING | <- 250-PIPELINING | ||
<- 250-SIZE 52428800 | <- 250-SIZE 52428800 | ||
<- 250-ETRN | <- 250-ETRN | ||
<- 250-STARTTLS | <- 250-STARTTLS | ||
- | <- 250-AUTH PLAIN LOGIN CRAM-MD5 DIGEST-MD5 NTLM | ||
- | <- 250-AUTH=PLAIN LOGIN CRAM-MD5 DIGEST-MD5 NTLM | ||
<- 250-ENHANCEDSTATUSCODES | <- 250-ENHANCEDSTATUSCODES | ||
<- 250-8BITMIME | <- 250-8BITMIME | ||
- | <- 250 DSN | + | <- 250-DSN |
- | | + | <- 250 SMTPUTF8 |
- | < | + | |
- | | + | < |
- | < | + | === TLS started with cipher TLSv1.2: |
- | | + | === TLS no local certificate set |
- | <- 235 2.7.0 Authentication successful | + | === TLS peer DN="/ |
- | -> MAIL FROM:< | + | ~> EHLO vml000080.dmz.nausch.org |
- | <- 250 2.1.0 Ok | + | <~ 250-mx1.nausch.org |
- | -> RCPT TO:< | + | <~ 250-PIPELINING |
- | <- 250 2.1.5 Ok | + | <~ 250-SIZE 52428800 |
- | -> DATA | + | <~ 250-ETRN |
- | <- 354 End data with < | + | <~ 250-AUTH PLAIN LOGIN DIGEST-MD5 CRAM-MD5 NTLM |
- | -> Date: Tue, 28 Oct 2014 22:55:33 +0100 | + | <~ 250-AUTH=PLAIN LOGIN DIGEST-MD5 CRAM-MD5 NTLM |
- | -> To: django@nausch.org | + | <~ 250-ENHANCEDSTATUSCODES |
- | -> From: michael@nausch.org | + | <~ 250-8BITMIME |
- | -> Subject: test Tue, 28 Oct 2014 22:55:33 +0100 | + | <~ 250-DSN |
- | -> X-Mailer: swaks v20130209.0 jetmore.org/ | + | <~ 250 SMTPUTF8 |
- | -> X-Test: test email | + | ~> AUTH DIGEST-MD5 |
- | -> | + | <~ 334 cmVhbG09IiIsbm9uYGYtOCIsYWx2U9Inh0MUNJbmlwR0VNamNySmN2NndO9wPSJhdXRoIixjaGFyc2V0PSJ1dnb3JpdGhtPSJtZDUtc2dXc9PSIscWVzcyI= |
- | -> This is a test mailing | + | ~> Y2hhcnNldD11dm9uY2U9IjgGYtOCxjbwNzJkMTcwNDMxYTlkODkwMGE4Yjk5ZDdhNDQ5YjY4IixkaWtdXJpPSJzbXRwLdlc3QzEwLjAuMC44MCIsbmM9MDAwMDAwMDEsbm9uY2U9Inh0MUNJbmlwR0VNdOdXc9PSIscW9wPWF1dGgscmVhbG09IiIscmVzcG9uc2U9M2U2MTJhODc5MTgzZjNiZmRhYTdkY2EyMzZkNTdhZDYsdXNlcm5hbWU9Im1pY2hhZWxAbmF1c2NoLm9yZyamNySmN2NnI= |
- | -> | + | <~ 334 cYXV0anNwD0zMWE1ZDQzMWQwOTMjUzMJiYTU2ZjcwjcyZDIzMjg0Yg== |
- | -> . | + | ~> |
- | <- 250 2.0.0 Ok: queued as BDD65C00088 | + | <~ 235 2.7.0 Authentication successful |
- | -> QUIT | + | ~> MAIL FROM:< |
- | <- 221 2.0.0 Bye | + | <~ 250 2.1.0 Ok |
- | === Connection closed with remote host. | + | ~> RCPT TO:< |
+ | <~ 250 2.1.5 Ok | ||
+ | ~> DATA | ||
+ | <~ 354 End data with < | ||
+ | ~> Date: Sun, 10 Feb 2019 10:11:45 +0100 | ||
+ | ~> To: django@nausch.org | ||
+ | ~> From: michael@nausch.org | ||
+ | ~> Subject: test Sun, 10 Feb 2019 10:11:45 +0100 | ||
+ | ~> Message-Id: < | ||
+ | ~> X-Mailer: swaks v20170101.0 jetmore.org/ | ||
+ | ~> X-Test: test email | ||
+ | ~> | ||
+ | ~> This is a test mailing | ||
+ | ~> | ||
+ | ~> . | ||
+ | <~ 250 2.0.0 Ok: queued as 4EC6160008B | ||
+ | ~> QUIT | ||
+ | <~ 221 2.0.0 Bye | ||
+ | === Connection closed with remote host.</ | ||
+ | |||
+ | |||
+ | Im Maillog wird die erfolgreiche Authentifizierung und die weitere Verarbeitung unserer Mail entsprechend dokumentiert. | ||
+ | |||
+ | # less / | ||
+ | < | ||
+ | Feb 10 10:11:51 vml000080 postfix/ | ||
+ | Feb 10 10:11:51 vml000080 postfix/ | ||
+ | Feb 10 10:11:51 vml000080 postfix/ | ||
+ | Feb 10 10:11:51 vml000080 postfix/ | ||
+ | Feb 10 10:11:51 vml000080 postfix/ | ||
</ | </ | ||
- | Maillog: | + | === CRAM-MD5 === |
- | < | + | Nun testen wir die Variante [[https:// |
- | Oct 28 22:55:37 vml000087 | + | |
- | Oct 28 22:55:37 vml000087 | + | # swaks --to django@nausch.org --from michael@nausch.org --auth PLAIN --auth-user michael@nausch.org --protocol ESMTPS \\ |
- | Oct 28 22:55:37 vml000087 | + | |
- | Oct 28 22:55:37 vml000087 | + | |
- | Oct 28 22:55:38 vml000087 postfix/ | + | Password: DAx1d13g31l354u! |
- | Oct 28 22:55:38 vml000087 postfix/ | + | |
+ | < | ||
+ | === Connected to 10.0.0.80. | ||
+ | <- 220 mx1.nausch.org ESMTP Postfix | ||
+ | -> EHLO vml000080.dmz.nausch.org | ||
+ | <- 250-mx1.nausch.org | ||
+ | <- 250-PIPELINING | ||
+ | <- 250-SIZE 52428800 | ||
+ | <- 250-ETRN | ||
+ | <- 250-STARTTLS | ||
+ | <- 250-ENHANCEDSTATUSCODES | ||
+ | <- 250-8BITMIME | ||
+ | <- 250-DSN | ||
+ | <- 250 SMTPUTF8 | ||
+ | -> STARTTLS | ||
+ | <- 220 2.0.0 Ready to start TLS | ||
+ | === TLS started with cipher TLSv1.2:ECDHE-RSA-AES256-GCM-SHA384: | ||
+ | === TLS no local certificate set | ||
+ | === TLS peer DN="/ | ||
+ | ~> EHLO vml000080.dmz.nausch.org | ||
+ | <~ 250-mx1.nausch.org | ||
+ | <~ 250-PIPELINING | ||
+ | <~ 250-SIZE 52428800 | ||
+ | <~ 250-ETRN | ||
+ | <~ 250-AUTH PLAIN LOGIN DIGEST-MD5 CRAM-MD5 NTLM | ||
+ | <~ 250-AUTH=PLAIN LOGIN DIGEST-MD5 CRAM-MD5 NTLM | ||
+ | <~ 250-ENHANCEDSTATUSCODES | ||
+ | <~ 250-8BITMIME | ||
+ | <~ 250-DSN | ||
+ | <~ 250 SMTPUTF8 | ||
+ | ~> AUTH CRAM-MD5 | ||
+ | <~ 334 PDk1MDgTcywMzE4OMTkzMjIuMTU0B2bWwwMDAwNzcuZG16Lm0OTc5MDUyM5hdXNjaC5vcmc+ | ||
+ | ~> bGFlbEWljaBuYXVzY2gub3JnIGI2ZhODEyNmJlODY4MDM2YTZmY2YTM1OGQyMzJmNWFk | ||
+ | <~ 235 2.7.0 Authentication successful | ||
+ | ~> MAIL FROM:< | ||
+ | <~ 250 2.1.0 Ok | ||
+ | ~> RCPT TO:< | ||
+ | <~ 250 2.1.5 Ok | ||
+ | ~> DATA | ||
+ | <~ 354 End data with < | ||
+ | ~> Date: Sun, 10 Feb 2019 10:21:54 +0100 | ||
+ | ~> To: django@nausch.org | ||
+ | ~> From: michael@nausch.org | ||
+ | ~> Subject: test Sun, 10 Feb 2019 10:21:54 +0100 | ||
+ | ~> Message-Id: < | ||
+ | ~> X-Mailer: swaks v20170101.0 jetmore.org/ | ||
+ | ~> X-Test: test email | ||
+ | ~> | ||
+ | ~> This is a test mailing | ||
+ | ~> | ||
+ | ~> . | ||
+ | <~ 250 2.0.0 Ok: queued as 5F28060008B | ||
+ | ~> QUIT | ||
+ | <~ 221 2.0.0 Bye | ||
+ | === Connection closed with remote host.</ | ||
+ | |||
+ | Im Maillog wird die erfolgreiche Authentifizierung und die weitere Verarbeitung unserer Mail entsprechend dokumentiert. | ||
+ | |||
+ | # less / | ||
+ | < | ||
+ | Feb 10 10:22:03 vml000080 postfix/ | ||
+ | Feb 10 10:22:03 vml000080 | ||
+ | Feb 10 10:22:03 vml000080 | ||
+ | Feb 10 10:22:03 vml000080 | ||
+ | Feb 10 10:22:03 vml000080 | ||
</ | </ | ||
+ | === NTLM === | ||
+ | Zu guter Letzt testen wir nun noch die Variante [[https:// | ||
+ | # swaks --to django@nausch.org --from michael@nausch.org --auth NTLM --auth-user michael@nausch.org --protocol ESMTPS \\ | ||
+ | | ||
+ | Password: DAx1d13g31l354u! | ||
+ | |||
+ | < | ||
+ | === Connected to 10.0.0.80. | ||
+ | <- 220 mx1.nausch.org ESMTP Postfix | ||
+ | -> EHLO vml000080.dmz.nausch.org | ||
+ | <- 250-mx1.nausch.org | ||
+ | <- 250-PIPELINING | ||
+ | <- 250-SIZE 52428800 | ||
+ | <- 250-ETRN | ||
+ | <- 250-STARTTLS | ||
+ | <- 250-ENHANCEDSTATUSCODES | ||
+ | <- 250-8BITMIME | ||
+ | <- 250-DSN | ||
+ | <- 250 SMTPUTF8 | ||
+ | -> STARTTLS | ||
+ | <- 220 2.0.0 Ready to start TLS | ||
+ | === TLS started with cipher TLSv1.2: | ||
+ | === TLS no local certificate set | ||
+ | === TLS peer DN="/ | ||
+ | ~> EHLO vml000080.dmz.nausch.org | ||
+ | <~ 250-mx1.nausch.org | ||
+ | <~ 250-PIPELINING | ||
+ | <~ 250-SIZE 52428800 | ||
+ | <~ 250-ETRN | ||
+ | <~ 250-AUTH PLAIN LOGIN DIGEST-MD5 CRAM-MD5 NTLM | ||
+ | <~ 250-AUTH=PLAIN LOGIN DIGEST-MD5 CRAM-MD5 NTLM | ||
+ | <~ 250-ENHANCEDSTATUSCODES | ||
+ | <~ 250-8BITMIME | ||
+ | <~ 250-DSN | ||
+ | <~ 250 SMTPUTF8 | ||
+ | ~> AUTH NTLM | ||
+ | <~ 334 | ||
+ | ~> TlNTUAABAARMTVAAB6IAAAAAAAAAAAAAAAAAAAAAAAA= | ||
+ | <~ 334 TlRMTVNTAAMAAUAACAAwADAAAAAFAoIA5Q0rDZLB/ | ||
+ | ~> TlRMTVNTUAAYAEAADAAAAGAAAAAYABgAWAAAADAAMABwAAAAJAAkAKAAAAAkACQAxAAAAAAAAACoAAAABJSaXkYUsXiQKCAMmxYEq5Ym+GwRwCtYI1znaLYKVgk5jYxd5ICe6NxyXV0+t2oEFNVuxwA3AC4AZABHYAbQBsADAAMAAwADAANtAHoALgBuAGEAdQBzAGMAaAAuAG8AcgBnAG0AaQBjAGgAYQBlAGwAQABuAGEAdQBz8AcgBnAG0AaQBjAGgAYQBlAGwAQABuAGEAdQBzAGMAaAAuAG8AcgBAGMAaAAuAGnAA== | ||
+ | <~ 235 2.7.0 Authentication successful | ||
+ | ~> MAIL FROM:< | ||
+ | <~ 250 2.1.0 Ok | ||
+ | ~> RCPT TO:< | ||
+ | <~ 250 2.1.5 Ok | ||
+ | ~> DATA | ||
+ | <~ 354 End data with < | ||
+ | ~> Date: Sun, 10 Feb 2019 10:29:20 +0100 | ||
+ | ~> To: django@nausch.org | ||
+ | ~> From: michael@nausch.org | ||
+ | ~> Subject: test Sun, 10 Feb 2019 10:29:20 +0100 | ||
+ | ~> Message-Id: < | ||
+ | ~> X-Mailer: swaks v20170101.0 jetmore.org/ | ||
+ | ~> X-Test: test email | ||
+ | | ||
+ | ~> This is a test mailing | ||
+ | | ||
+ | ~> . | ||
+ | <~ 250 2.0.0 Ok: queued as 5BB7E60008B | ||
+ | ~> QUIT | ||
+ | <~ 221 2.0.0 Bye | ||
+ | === Connection closed with remote host.</ | ||
+ | Auch dieser erfolgreiche Vebindungsaufbau wird im Maillog entsprechend protokolliert. | ||
+ | |||
+ | # less / | ||
+ | < | ||
+ | Feb 10 10:29:27 vml000080 postfix/ | ||
+ | Feb 10 10:29:27 vml000080 postfix/ | ||
+ | Feb 10 10:29:27 vml000080 postfix/ | ||
+ | Feb 10 10:29:27 vml000080 postfix/ | ||
+ | Feb 10 10:29:27 vml000080 postfix/ | ||
+ | </ | ||
====== Links ====== | ====== Links ====== | ||
- | | + | / |
- | * **⇒ [[centos: | + | * **⇒ [[centos: |
* **[[centos: | * **[[centos: | ||
* **[[wiki: | * **[[wiki: | ||
* **[[http:// | * **[[http:// | ||
- | /* ~~AUTOTWEET: | ||