Search found 18 matches

by bvillers
Thu Jun 10, 2021 5:55 pm
Forum: Administrators
Topic: Can you help determine how an account, support@mymaildomain.net, is SPAMMING 300,000 emails
Replies: 7
Views: 4663

Re: Can you help determine how an account, support@mymaildomain.net, is SPAMMING 300,000 emails

After reviewing zimbra.log, I provided some log excerpts to tech support. They provided following wiki articles: https://wiki.zimbra.com/wiki/Enforcing_a_match_between_FROM_address_and_sasl_username_8.5 [the next one essentially repeats above article] http://wiki.zimbra.com/wiki/Rejecting_false_%22m...
by bvillers
Tue Jun 08, 2021 5:42 pm
Forum: Administrators
Topic: Can you help determine how an account, support@mymaildomain.net, is SPAMMING 300,000 emails
Replies: 7
Views: 4663

Re: Can you help determine how an account, support@mymaildomain.net, is SPAMMING 300,000 emails

Located culprit in /var/log/zimbra.log file: There are 100k entries like these. I'm not yet sure what to do besides changing the password for our user, email-user@myemaildomain.net. I changed pwd. Need to protect against recurrence. Let me know if you have additional suggestions. Thanks for your hel...
by bvillers
Tue Jun 08, 2021 1:58 pm
Forum: Administrators
Topic: Can you help determine how an account, support@mymaildomain.net, is SPAMMING 300,000 emails
Replies: 7
Views: 4663

Re: Can you help determine how an account, support@mymaildomain.net, is SPAMMING 300,000 emails

Via https://mxtoolbox.com, I checked whether server is open relay: Test results state "Not an open relay" Test Result SMTP Banner Check Reverse DNS does not match SMTP Banner More Info SMTP Reverse DNS Mismatch OK - 123.123.123.125 resolves to myemaildomain.net SMTP Valid Hostname OK - Rev...
by bvillers
Tue Jun 08, 2021 1:42 pm
Forum: Administrators
Topic: Can you help determine how an account, support@mymaildomain.net, is SPAMMING 300,000 emails
Replies: 7
Views: 4663

Can you help determine how an account, support@mymaildomain.net, is SPAMMING 300,000 emails

Newbie, here. Can you help determine how an account, support@mymaildomain.net, is SPAMMING 300,000 emails Successfully performed in-place upgrade from community (v.8.8) to Enterprise ZCS (v.9.0) two months ago. I have had constant DDOS and SPAM attacks on the ZCS server. Gotten blacklisted by severa...
by bvillers
Tue Aug 04, 2020 2:42 pm
Forum: Administrators
Topic: Identify IP of attackers - block hack attempts
Replies: 1
Views: 1888

Identify IP of attackers - block hack attempts

Logs: /var/log/maillog tail -f maillog | grep ': SASL PLAIN authentication failed: ' /var/log/zimbra.log tail -f zimbra.log | grep ']: SASL LOGIN authentication failed: authentication failure' /opt/zimbra/log/mailbox.log tail -f mailbox.log | grep ' authentication failed for ' The above gives me pot...
by bvillers
Tue Aug 04, 2020 2:18 pm
Forum: Installation and Upgrade
Topic: Cannot successfully import from Comm 8.8.8 to Ntwk 8.15
Replies: 0
Views: 2203

Cannot successfully import from Comm 8.8.8 to Ntwk 8.15

We are unable to successfully import to Network Version 8.15 Able to successfully Export from current version: Community Version: Version 8.8.8_GA_2009.FOSS (build 20180322150747) But, Import throws error. Tech Support folks acknowledge error as bug. They suggest using IMAPSYNC. Has anyone else expe...
by bvillers
Thu Feb 13, 2020 1:35 pm
Forum: General Questions
Topic: [Solved] Ldap MDB file corrupted
Replies: 7
Views: 36414

Re: [Solved] Ldap MDB file corrupted

The link provided in the solution is no longer available: https://community.zimbra.com/collaboration/f/1886/t/1091407 It is purported to have solution of problem: Starting ldap: Failed. Failed to start slapd. Attempting to debug start to determine error. mdb_db_open: database "": mdb_dbi_o...