amavisd-new: Fehler connection refused

hubutz

Registered User
Hallo zusammen,

ich habe jetzt amavisd-new bei mir eingerichtet, ich habe Debian Etch am laufen.
Ich bekomme allerdings immer diesen Fehler hier:

Code:
pr 13 12:57:52 root postfix/qmgr[17068]: 796313894FA: to=<ab@ab.cd>, orig_to=<ab@ab.cd>, relay=none, delay=1.   3, delays=1.3/0.01/0/0, dsn=4.4.1, status=deferred (delivery temporarily suspended: connect to 10.0.1.1[10.0.1.1]: Connection refused

Wobei es kein Loopbackdevice gbt, ich dafür aber die private IP 10.0.1.1 habe.

Hier mal meine main.cf und master.cf sowie die 50-user
Code:
cat main.cf
smtpd_banner = $myhostname ESMTP $mail_name (Debian/GNU)
biff = no
append_dot_mydomain = no
myhostname = HOSTNAME
mydomain = HOSTNAME
mydestination = $myhostname $mydomain localhost localhost.$mydomain
mynetworks = 127.0.0.0/8, 10.0.0.0/8, 192.168.0.0/16
alias_maps = $alias_database
smtpd_recipient_restrictions = permit_mynetworks permit_sasl_authenticated reject_unauth_destination
virtual_mailbox_base = /var/kunden/mail/
virtual_mailbox_maps = mysql:/etc/postfix/mysql-virtual_mailbox_maps.cf
virtual_mailbox_domains = mysql:/etc/postfix/mysql-virtual_mailbox_domains.cf
virtual_alias_domains =
virtual_alias_maps = mysql:/etc/postfix/mysql-virtual_alias_maps.cf
virtual_uid_maps = static:2000
virtual_gid_maps = static:2000
smtpd_sasl_auth_enable = yes
smtpd_sasl_local_domain = $myhostname
smtpd_sasl_security_options = noanonymous
broken_sasl_auth_clients = yes
content_filter = amavis:[10.0.1.1]:10024

smtpd_recipient_restrictions = permit_mynetworks,
  permit_sasl_authenticated,
  reject_unauth_destination,
  reject_non_fqdn_sender,
  reject_non_fqdn_recipient,
  reject_unknown_recipient_domain,
  reject_unknown_sender_domain,
  check_policy_service inet:10.0.1.1:12525,
  permit
smtpd_data_restrictions = reject_unauth_pipelining
#smtpd_helo_restrictions = reject_invalid_hostname, reject_non_fqdn_hostname
smtpd_helo_required = yes
smtpd_delay_reject = yes

Code:
cat master.cf
#
# Postfix master process configuration file.  For details on the format
# of the file, see the master(5) manual page (command: "man 5 master").
#
# ==========================================================================
# service type  private unpriv  chroot  wakeup  maxproc command + args
#               (yes)   (yes)   (yes)   (never) (100)
# ==========================================================================
smtp      inet  n       -       -       -       -       smtpd
#submission inet n       -       -       -       -       smtpd
#  -o smtpd_enforce_tls=yes
#  -o smtpd_sasl_auth_enable=yes
#  -o smtpd_client_restrictions=permit_sasl_authenticated,reject
#smtps     inet  n       -       -       -       -       smtpd
#  -o smtpd_tls_wrappermode=yes
#  -o smtpd_sasl_auth_enable=yes
#  -o smtpd_client_restrictions=permit_sasl_authenticated,reject
#628      inet  n       -       -       -       -       qmqpd
pickup    fifo  n       -       -       60      1       pickup
cleanup   unix  n       -       -       -       0       cleanup
qmgr      fifo  n       -       n       300     1       qmgr
#qmgr     fifo  n       -       -       300     1       oqmgr
tlsmgr    unix  -       -       -       1000?   1       tlsmgr
rewrite   unix  -       -       -       -       -       trivial-rewrite
bounce    unix  -       -       -       -       0       bounce
defer     unix  -       -       -       -       0       bounce
trace     unix  -       -       -       -       0       bounce
verify    unix  -       -       -       -       1       verify
flush     unix  n       -       -       1000?   0       flush
proxymap  unix  -       -       n       -       -       proxymap
smtp      unix  -       -       -       -       -       smtp
# When relaying mail as backup MX, disable fallback_relay to avoid MX loops
relay     unix  -       -       -       -       -       smtp
        -o fallback_relay=
#       -o smtp_helo_timeout=5 -o smtp_connect_timeout=5
showq     unix  n       -       -       -       -       showq
error     unix  -       -       -       -       -       error
discard   unix  -       -       -       -       -       discard
local     unix  -       n       n       -       -       local
virtual   unix  -       n       n       -       -       virtual
lmtp      unix  -       -       -       -       -       lmtp
anvil     unix  -       -       -       -       1       anvil
scache    unix  -       -       -       -       1       scache
amavis    unix  -       -       n       -       2       smtp
  -o smtp_tls_security_level=none -o smtp_data_done_timeout=1200 -o smtp_send_xforward_command=yes
#
# ====================================================================
# Interfaces to non-Postfix software. Be sure to examine the manual
# pages of the non-Postfix software to find out what options it wants.
#
# Many of the following services use the Postfix pipe(8) delivery
# agent.  See the pipe(8) man page for information about ${recipient}
# and other message envelope options.
# ====================================================================
#
# maildrop. See the Postfix MAILDROP_README file for details.
# Also specify in main.cf: maildrop_destination_recipient_limit=1
#
maildrop  unix  -       n       n       -       -       pipe
  flags=DRhu user=vmail argv=/usr/bin/maildrop -d ${recipient}
#
# See the Postfix UUCP_README file for configuration details.
#
uucp      unix  -       n       n       -       -       pipe
  flags=Fqhu user=uucp argv=uux -r -n -z -a$sender - $nexthop!rmail ($recipient)
#
# Other external delivery methods.
#
ifmail    unix  -       n       n       -       -       pipe
  flags=F user=ftn argv=/usr/lib/ifmail/ifmail -r $nexthop ($recipient)
bsmtp     unix  -       n       n       -       -       pipe
  flags=Fq. user=bsmtp argv=/usr/lib/bsmtp/bsmtp -t$nexthop -f$sender $recipient
scalemail-backend unix  -       n       n       -       2       pipe
  flags=R user=scalemail argv=/usr/lib/scalemail/bin/scalemail-store ${nexthop} ${user} ${extension}
mailman   unix  -       n       n       -       -       pipe
  flags=FR user=list argv=/usr/lib/mailman/bin/postfix-to-mailman.py
  ${nexthop} ${user}
#Amavis
10.0.1.1:10025 inet n - n - - smtpd
  -o content_filter=
  -o local_recipient_maps=
  -o relay_recipient_maps=
  -o smtpd_tls_security_level=none
  -o smtpd_restriction_classes=
  -o smtpd_client_restrictions=permit_mynetworks,reject
  -o smtpd_helo_restrictions=
  -o smtpd_sender_restrictions=
  -o smtpd_recipient_restrictions=permit_mynetworks,reject
  -o mynetworks=10.0.0.0/16
  -o strict_rfc821_envelopes=yes
  -o smtpd_error_sleep_time=0
  -o smtpd_soft_error_limit=1001
  -o smtpd_hard_error_limit=1000

Code:
cat /etc/amavis/conf.d/50-user
use strict;

#
# Place your configuration directives here.  They will override those in
# earlier files.
#
# See /usr/share/doc/amavisd-new/ for documentation and examples of
# the directives you can use in this file
#

$forward_method = 'smtp:10.0.1.1:10025';
$notify_method = $forward_method;
$inet_socket_port = 10024;
$inet_socket_bind = '10.0.1.1';
@inet_acl = qw( 10.0.1.1 );

#------------ Do not modify anything below this line -------------
1;  # insure a defined return

Hat von euch jemand ne Idee ob sich da ein Fehler eingeschlichen hat? Wäre echt toll den zu finden!

Liebe Grüße,
hubutz
 
Wobei es kein Loopbackdevice gbt
Kein Loopbackdevice würde ich als eine _sehr_ strange Konfiguration ansehen.

Ist Amavisd-new gestartet? Die Konfig sieht soweit plausibel aus.
Was ergibt
Code:
ps aux|grep amavisd

Mit
Code:
netstat -n tcp <port>
kannst du die IPs der Prozesse bekommen, die einen Port gebunden haben. Damit dann mal checken, dass die 10024 von amavis und die 10025 von Postfix gebunden sind.
 
Huhu,
ich habe heute morgen direkt noch gefunden, dass man in der main.cf mal folgendes hinzugügen könnte:
inet_interfaces = all

seit dem gehts (scheinbar).

Im übrigen läuft amavisd-new und die Ausgaben von netstat kann ich nicht interpretieren, hänge sie aber mal an :)

Code:
root:/var/log# netstat -n tcp 10024
Aktive Internetverbindungen (ohne Server)
Proto Recv-Q Send-Q Local Address           Foreign Address         State
tcp        0      0 78.47.55.7:80           84.56.108.140:1094      TIME_WAIT
tcp        0    132 78.47.55.7:22           204.104.55.241:20844    VERBUNDEN
tcp        0      0 78.47.55.7:39301        83.140.172.212:6668     VERBUNDEN
tcp        0      0 78.47.55.7:80           81.173.141.73:1104      TIME_WAIT
tcp        0      0 78.47.55.7:80           81.173.141.73:1105      TIME_WAIT
udp        0      0 78.47.55.7:54828        213.133.98.97:53        VERBUNDEN
udp      360      0 78.47.55.7:54830        213.133.98.97:53        VERBUNDEN
udp        0      0 78.47.55.7:54842        213.133.98.97:53        VERBUNDEN
udp        0      0 78.47.55.7:54843        213.133.98.97:53        VERBUNDEN
Aktive Sockets in der UNIX Domäne (ohne Server)
Proto RefZäh Flaggen     Typ        Zustand       I-Node Pfad
unix  19     [ ]         DGRAM                    169413443 /dev/log
unix  2      [ ]         DGRAM                    185243232
unix  3      [ ]         STREAM     VERBUNDEN     185243230 private/rewrite
unix  3      [ ]         STREAM     VERBUNDEN     185243229
unix  3      [ ]         STREAM     VERBUNDEN     185243221 private/rewrite
unix  3      [ ]         STREAM     VERBUNDEN     185243220
unix  2      [ ]         DGRAM                    185243210
unix  2      [ ]         DGRAM                    185243194
unix  2      [ ]         DGRAM                    185243184
unix  3      [ ]         STREAM     VERBUNDEN     185243190 private/rewrite
unix  3      [ ]         STREAM     VERBUNDEN     185243183
unix  2      [ ]         DGRAM                    185243175
unix  3      [ ]         STREAM     VERBUNDEN     185243021 /var/run/mysqld/mysqld.sock
unix  3      [ ]         STREAM     VERBUNDEN     185243020
unix  2      [ ]         DGRAM                    185237332
unix  2      [ ]         DGRAM                    185237331
unix  2      [ ]         DGRAM                    185237315
unix  2      [ ]         DGRAM                    185237271
unix  2      [ ]         DGRAM                    185237265
unix  3      [ ]         STREAM     VERBUNDEN     185237261
unix  3      [ ]         STREAM     VERBUNDEN     185237260
unix  3      [ ]         STREAM     VERBUNDEN     185237256
unix  3      [ ]         STREAM     VERBUNDEN     185237255
unix  3      [ ]         STREAM     VERBUNDEN     185237252
unix  3      [ ]         STREAM     VERBUNDEN     185237251
unix  3      [ ]         STREAM     VERBUNDEN     185237248
unix  3      [ ]         STREAM     VERBUNDEN     185237247
unix  3      [ ]         STREAM     VERBUNDEN     185237244
unix  3      [ ]         STREAM     VERBUNDEN     185237243
unix  3      [ ]         STREAM     VERBUNDEN     185237240
unix  3      [ ]         STREAM     VERBUNDEN     185237239
unix  3      [ ]         STREAM     VERBUNDEN     185237236
unix  3      [ ]         STREAM     VERBUNDEN     185237235
unix  3      [ ]         STREAM     VERBUNDEN     185237232
unix  3      [ ]         STREAM     VERBUNDEN     185237231
unix  3      [ ]         STREAM     VERBUNDEN     185237228
unix  3      [ ]         STREAM     VERBUNDEN     185237227
unix  3      [ ]         STREAM     VERBUNDEN     185237224
unix  3      [ ]         STREAM     VERBUNDEN     185237223
unix  3      [ ]         STREAM     VERBUNDEN     185237220
unix  3      [ ]         STREAM     VERBUNDEN     185237219
unix  3      [ ]         STREAM     VERBUNDEN     185237216
unix  3      [ ]         STREAM     VERBUNDEN     185237215
unix  3      [ ]         STREAM     VERBUNDEN     185237212
unix  3      [ ]         STREAM     VERBUNDEN     185237211
unix  3      [ ]         STREAM     VERBUNDEN     185237208
unix  3      [ ]         STREAM     VERBUNDEN     185237207
unix  3      [ ]         STREAM     VERBUNDEN     185237204
unix  3      [ ]         STREAM     VERBUNDEN     185237203
unix  3      [ ]         STREAM     VERBUNDEN     185237200
unix  3      [ ]         STREAM     VERBUNDEN     185237199
unix  3      [ ]         STREAM     VERBUNDEN     185237196
unix  3      [ ]         STREAM     VERBUNDEN     185237195
unix  3      [ ]         STREAM     VERBUNDEN     185237192
unix  3      [ ]         STREAM     VERBUNDEN     185237191
unix  3      [ ]         STREAM     VERBUNDEN     185237188
unix  3      [ ]         STREAM     VERBUNDEN     185237187
unix  3      [ ]         STREAM     VERBUNDEN     185237184
unix  3      [ ]         STREAM     VERBUNDEN     185237183
unix  3      [ ]         STREAM     VERBUNDEN     185237180
unix  3      [ ]         STREAM     VERBUNDEN     185237179
unix  3      [ ]         STREAM     VERBUNDEN     185237176
unix  3      [ ]         STREAM     VERBUNDEN     185237175
unix  3      [ ]         STREAM     VERBUNDEN     185237172
unix  3      [ ]         STREAM     VERBUNDEN     185237171
unix  3      [ ]         STREAM     VERBUNDEN     185237168
unix  3      [ ]         STREAM     VERBUNDEN     185237166
unix  3      [ ]         STREAM     VERBUNDEN     185237163
unix  3      [ ]         STREAM     VERBUNDEN     185237162
unix  3      [ ]         STREAM     VERBUNDEN     185237159
unix  3      [ ]         STREAM     VERBUNDEN     185237158
unix  3      [ ]         STREAM     VERBUNDEN     185237155
unix  3      [ ]         STREAM     VERBUNDEN     185237154
unix  3      [ ]         STREAM     VERBUNDEN     185237152
unix  3      [ ]         STREAM     VERBUNDEN     185237151
unix  3      [ ]         STREAM     VERBUNDEN     185237148
unix  3      [ ]         STREAM     VERBUNDEN     185237147
unix  3      [ ]         STREAM     VERBUNDEN     185237145
unix  3      [ ]         STREAM     VERBUNDEN     185237144
unix  2      [ ]         DGRAM                    185237136
unix  3      [ ]         STREAM     VERBUNDEN     177444081
unix  3      [ ]         STREAM     VERBUNDEN     177444080
unix  3      [ ]         STREAM     VERBUNDEN     177444049
unix  3      [ ]         STREAM     VERBUNDEN     177444048
unix  3      [ ]         STREAM     VERBUNDEN     177416176
unix  3      [ ]         STREAM     VERBUNDEN     177416175
unix  2      [ ]         DGRAM                    177389907
unix  2      [ ]         DGRAM                    169413919
unix  2      [ ]         DGRAM                    169413863
unix  2      [ ]         DGRAM                    169413834
unix  2      [ ]         DGRAM                    169413612
unix  2      [ ]         DGRAM                    169413482
root:/var/log# netstat -n tcp 10025
Aktive Internetverbindungen (ohne Server)
Proto Recv-Q Send-Q Local Address           Foreign Address         State
tcp        0      0 78.47.55.7:80           84.56.108.140:1094      TIME_WAIT
tcp        0    132 78.47.55.7:22           204.104.55.241:20844    VERBUNDEN
tcp        0      0 78.47.55.7:39301        83.140.172.212:6668     VERBUNDEN
tcp        0      0 78.47.55.7:80           81.173.141.73:1104      TIME_WAIT
tcp        0      0 78.47.55.7:80           81.173.141.73:1105      TIME_WAIT
tcp        0      0 78.47.55.7:80           81.173.141.73:1110      VERBUNDEN
udp        0      0 78.47.55.7:54828        213.133.98.97:53        VERBUNDEN
udp      360      0 78.47.55.7:54830        213.133.98.97:53        VERBUNDEN
udp        0      0 78.47.55.7:54842        213.133.98.97:53        VERBUNDEN
udp        0      0 78.47.55.7:54843        213.133.98.97:53        VERBUNDEN
Aktive Sockets in der UNIX Domäne (ohne Server)
Proto RefZäh Flaggen     Typ        Zustand       I-Node Pfad
unix  19     [ ]         DGRAM                    169413443 /dev/log
unix  2      [ ]         DGRAM                    185243232
unix  3      [ ]         STREAM     VERBUNDEN     185243230 private/rewrite
unix  3      [ ]         STREAM     VERBUNDEN     185243229
unix  3      [ ]         STREAM     VERBUNDEN     185243221 private/rewrite
unix  3      [ ]         STREAM     VERBUNDEN     185243220
unix  2      [ ]         DGRAM                    185243210
unix  2      [ ]         DGRAM                    185243194
unix  2      [ ]         DGRAM                    185243184
unix  3      [ ]         STREAM     VERBUNDEN     185243190 private/rewrite
unix  3      [ ]         STREAM     VERBUNDEN     185243183
unix  2      [ ]         DGRAM                    185243175
unix  3      [ ]         STREAM     VERBUNDEN     185243021 /var/run/mysqld/mysqld.sock
unix  3      [ ]         STREAM     VERBUNDEN     185243020
unix  2      [ ]         DGRAM                    185237332
unix  2      [ ]         DGRAM                    185237331
unix  2      [ ]         DGRAM                    185237315
unix  2      [ ]         DGRAM                    185237271
unix  2      [ ]         DGRAM                    185237265
unix  3      [ ]         STREAM     VERBUNDEN     185237261
unix  3      [ ]         STREAM     VERBUNDEN     185237260
unix  3      [ ]         STREAM     VERBUNDEN     185237256
unix  3      [ ]         STREAM     VERBUNDEN     185237255
unix  3      [ ]         STREAM     VERBUNDEN     185237252
unix  3      [ ]         STREAM     VERBUNDEN     185237251
unix  3      [ ]         STREAM     VERBUNDEN     185237248
unix  3      [ ]         STREAM     VERBUNDEN     185237247
unix  3      [ ]         STREAM     VERBUNDEN     185237244
unix  3      [ ]         STREAM     VERBUNDEN     185237243
unix  3      [ ]         STREAM     VERBUNDEN     185237240
unix  3      [ ]         STREAM     VERBUNDEN     185237239
unix  3      [ ]         STREAM     VERBUNDEN     185237236
unix  3      [ ]         STREAM     VERBUNDEN     185237235
unix  3      [ ]         STREAM     VERBUNDEN     185237232
unix  3      [ ]         STREAM     VERBUNDEN     185237231
unix  3      [ ]         STREAM     VERBUNDEN     185237228
unix  3      [ ]         STREAM     VERBUNDEN     185237227
unix  3      [ ]         STREAM     VERBUNDEN     185237224
unix  3      [ ]         STREAM     VERBUNDEN     185237223
unix  3      [ ]         STREAM     VERBUNDEN     185237220
unix  3      [ ]         STREAM     VERBUNDEN     185237219
unix  3      [ ]         STREAM     VERBUNDEN     185237216
unix  3      [ ]         STREAM     VERBUNDEN     185237215
unix  3      [ ]         STREAM     VERBUNDEN     185237212
unix  3      [ ]         STREAM     VERBUNDEN     185237211
unix  3      [ ]         STREAM     VERBUNDEN     185237208
unix  3      [ ]         STREAM     VERBUNDEN     185237207
unix  3      [ ]         STREAM     VERBUNDEN     185237204
unix  3      [ ]         STREAM     VERBUNDEN     185237203
unix  3      [ ]         STREAM     VERBUNDEN     185237200
unix  3      [ ]         STREAM     VERBUNDEN     185237199
unix  3      [ ]         STREAM     VERBUNDEN     185237196
unix  3      [ ]         STREAM     VERBUNDEN     185237195
unix  3      [ ]         STREAM     VERBUNDEN     185237192
unix  3      [ ]         STREAM     VERBUNDEN     185237191
unix  3      [ ]         STREAM     VERBUNDEN     185237188
unix  3      [ ]         STREAM     VERBUNDEN     185237187
unix  3      [ ]         STREAM     VERBUNDEN     185237184
unix  3      [ ]         STREAM     VERBUNDEN     185237183
unix  3      [ ]         STREAM     VERBUNDEN     185237180
unix  3      [ ]         STREAM     VERBUNDEN     185237179
unix  3      [ ]         STREAM     VERBUNDEN     185237176
unix  3      [ ]         STREAM     VERBUNDEN     185237175
unix  3      [ ]         STREAM     VERBUNDEN     185237172
unix  3      [ ]         STREAM     VERBUNDEN     185237171
unix  3      [ ]         STREAM     VERBUNDEN     185237168
unix  3      [ ]         STREAM     VERBUNDEN     185237166
unix  3      [ ]         STREAM     VERBUNDEN     185237163
unix  3      [ ]         STREAM     VERBUNDEN     185237162
unix  3      [ ]         STREAM     VERBUNDEN     185237159
unix  3      [ ]         STREAM     VERBUNDEN     185237158
unix  3      [ ]         STREAM     VERBUNDEN     185237155
unix  3      [ ]         STREAM     VERBUNDEN     185237154
unix  3      [ ]         STREAM     VERBUNDEN     185237152
unix  3      [ ]         STREAM     VERBUNDEN     185237151
unix  3      [ ]         STREAM     VERBUNDEN     185237148
unix  3      [ ]         STREAM     VERBUNDEN     185237147
unix  3      [ ]         STREAM     VERBUNDEN     185237145
unix  3      [ ]         STREAM     VERBUNDEN     185237144
unix  2      [ ]         DGRAM                    185237136
unix  3      [ ]         STREAM     VERBUNDEN     177444081
unix  3      [ ]         STREAM     VERBUNDEN     177444080
unix  3      [ ]         STREAM     VERBUNDEN     177444049
unix  3      [ ]         STREAM     VERBUNDEN     177444048
unix  3      [ ]         STREAM     VERBUNDEN     177416176
unix  3      [ ]         STREAM     VERBUNDEN     177416175
unix  2      [ ]         DGRAM                    177389907
unix  2      [ ]         DGRAM                    169413919
unix  2      [ ]         DGRAM                    169413863
unix  2      [ ]         DGRAM                    169413834
unix  2      [ ]         DGRAM                    169413612
unix  2      [ ]         DGRAM                    169413482

Aber danke für deine Hilfe. Ich hoffe das war wirklich der Fehler! :)

Liebe Grüße,
hubutz
 
seit dem gehts (scheinbar)
Scheinbar oder anscheinend? ;)

die Ausgaben von netstat kann ich nicht interpretieren
Liegt vermutlich daran, dass ich eigentlich "fuser" gemeint hatte (mit identischen Parametern) :rolleyes:

Wenn's geht ist ja super. Könnten schon die inet_interfaces gewesen sein. Kann sein, dass default nur localhost gebunden wird oder gar kein Interface.
 
Also es geht scheinbar, denn ich bekomme keine Fehlermeldung mehr, allerdings.... scheint Amavis keine Mails zu scannen - zumindest schreibt er keine Header. Aber das bekomme ich vllt auch noch irgendwie raus :))

Ich denke das liegt an der 50-user? Muss mal schauen, ob ich dem netten Amavis irgenwo ein Log entlocken kann, was es im Moment mit Mails tut :)

Grüße
 
Back
Top