Search found 266 matches

by BradC
Sat Apr 08, 2023 4:00 pm
Forum: Administrators
Topic: What's a long-term CE/OSE user to do?
Replies: 9
Views: 5329

Re: What's a long-term CE/OSE user to do?

2) Most of the important-to-me Zimbra components are still open source; the thing they have stopped doing is packaging everything together as an easy install.  There are several community rebuilds of Zimbra 9.0 (and now 10.0) that are likely just as "good" as the Community Edition packagi...
by BradC
Fri Apr 07, 2023 9:14 am
Forum: Installation and Upgrade
Topic: Zimbra 8.8.15 Patch 39
Replies: 16
Views: 5905

Re: Zimbra 8.8.15 Patch 39

I can confirm this resolves the problem on 9.0.0.

Thanks!
by BradC
Fri Apr 07, 2023 6:27 am
Forum: Installation and Upgrade
Topic: Zimbra 8.8.15 Patch 39
Replies: 16
Views: 5905

Re: Zimbra 8.8.15 Patch 39

If I try and send as noreply@mine.com I get the error. I can send as the default me@mine.com and me@mine2.com without error. noreply@mine.com works prior to P32. Now I can not recall for the life of me how I created that Persona because I can find no way to do it now and I suspect it's an artefact o...
by BradC
Fri Apr 07, 2023 1:01 am
Forum: Installation and Upgrade
Topic: Zimbra 8.8.15 Patch 39
Replies: 16
Views: 5905

Re: Zimbra 8.8.15 Patch 39

Can we check below details for account where issue is happening. zmprov gg -g usr <account>@<domain-name> zmprov ga <account>@<domain-name> | grep -i PrefFrom zmprov ga <account>@<domain-name> | grep -i AnyFrom This is not restricted to users with zimbraAllowAnyFromAddress enabled. zimbra@ztest:~$ ...
by BradC
Thu Apr 06, 2023 1:09 pm
Forum: Installation and Upgrade
Topic: Zimbra 8.8.15 Patch 39
Replies: 16
Views: 5905

Re: Zimbra 8.8.15 Patch 39

I spooled up a test system and can confirm it's broken on Patch 9.0.0_P32 if I try and send an E-mail from a persona.
by BradC
Thu Apr 06, 2023 1:04 pm
Forum: Administrators
Topic: cpio & pax
Replies: 3
Views: 634

Re: cpio & pax

after installing PAX you can remove cpio. I'm pretty sure removing cpio was a modus operandi of the intrusion to prevent someone else compromising the already compromised server, and removing cpio broke initramfs generation on Redhat based distributions. Are you *really really* sure removing cpio w...
by BradC
Thu Apr 06, 2023 1:01 pm
Forum: Administrators
Topic: Whitelist Zimbra mta server
Replies: 7
Views: 2060

Re: Whitelist Zimbra mta server

please have a look at https://wiki.zimbra.com/wiki/IP_Address_whitelisting That page says :" Warning, this page is out of date, and contains extremely invalid and incorrect information even for releases where it was once valid ." and hasn't been updated in 8 years. If it was out of date 8...
by BradC
Thu Apr 06, 2023 8:34 am
Forum: Administrators
Topic: Server Compromised
Replies: 3
Views: 1194

Re: Server Compromised

V9 P30 should not have been vulnerable to any of the currently supposed exploit vectors.

This would be an interesting one for someone to investigate because exploiting the ClamAV vulnerability to drop code would have been much harder than exploiting some of the previous vulnerabilities.
by BradC
Tue Apr 04, 2023 8:28 am
Forum: Administrators
Topic: Down for maintenence, administrators see /opt/zimbra/status.txt
Replies: 62
Views: 85954

Re: Down for maintenence, administrators see /opt/zimbra/status.txt

Anyone can confirm that if i upgraded to the patch 38 and i dont have any suspicious jsp file my system is safe? Given at this point nobody has any conclusive evidence as to how they got in, then no. You're probably as safe as you can be while still remaining exposed to the outside world, but until...
by BradC
Tue Apr 04, 2023 5:36 am
Forum: Users
Topic: error displaying email messages
Replies: 7
Views: 4770

Re: error displaying email messages

Probably silly question, but are you absolutely sure the backups are corrupted also? I'd have thought the way the smartscan works it should miss what is effectively "silent corruption" of the blobs. Answering myself, if the software has encrypted everything writeable by the Zimbra user th...