設置 Postfix+Dovecot 從數據庫讀取
我正在嘗試設置Postfix和Dovecot,後者將虛擬使用者儲存在 MySQL 數據庫中,遵循本指南(但在這裡我回顧一下所有內容,因為我在評論後修復的指南中有一些“錯誤”)。序言:我從 Ubuntu 儲存庫安裝了、
Postfix
和Dovecot
。postfix-mysql``dovecot-mysql
讓我們從 Postfix 配置開始:
smtpd_banner = $myhostname ESMTP $mail_name (Ubuntu) biff = no readme_directory = no myhostname = localhost alias_maps = hash:/etc/aliases alias_database = hash:/etc/aliases mydestination = localhost relayhost = mynetworks = 127.0.0.0/8 [::ffff:127.0.0.0]/104 [::1]/128 mailbox_size_limit = 0 recipient_delimiter = + inet_interfaces = all relay_domains = * virtual_alias_maps = proxy:mysql:/etc/postfix/virtual_alias_maps.cf virtual_mailbox_domains = proxy:mysql:/etc/postfix/virtual_mailbox_domains.cf virtual_mailbox_maps = proxy:mysql:/etc/postfix/virtual_mailbox_maps.cf virtual_mailbox_base = /home/vmail virtual_mailbox_limit = 512000000 virtual_minimum_uid = 5000 virtual_transport = virtual virtual_uid_maps = static:5000 virtual_gid_maps = static:5000 local_transport = virtual local_recipient_maps = $virtual_mailbox_maps transport_maps = hash:/etc/postfix/transport smtpd_sasl_auth_enable = yes smtpd_sasl_type = dovecot smtpd_sasl_path = /var/run/dovecot/auth-client smtpd_recipient_restrictions = permit_mynetworks, permit_sasl_authenticated, reject_unauth_destination smtpd_relay_restrictions = permit_mynetworks, permit_sasl_authenticated, reject_unauth_destination smtpd_sasl_security_options = noanonymous smtpd_sasl_tls_security_options = $smtpd_sasl_security_options smtpd_tls_auth_only = yes smtpd_tls_cert_file = /etc/ssl/private/server.crt smtpd_tls_key_file = /etc/ssl/private/server.key smtpd_sasl_local_domain = $myhostname broken_sasl_auth_clients = yes smtpd_tls_loglevel = 1
然後我創建了使用者
vmail
來儲存電子郵件:groupadd -g 5000 vmail useradd -u 5000 -g vmail -s /usr/bin/nologin -d /home/vmail -m vmail
以及 MySQL 數據庫和使用者來儲存有關域和虛擬使用者的資訊:
CREATE DATABASE postfix_db; USE postfix_db; CREATE USER postfix_user@localhost IDENTIFIED BY 'password'; GRANT ALL ON postfix_db.* TO postfix_user@localhost; FLUSH PRIVILEGES;
然後我創建了與域、轉發和使用者相關的表:
CREATE TABLE `domains` ( `domain` varchar(50) NOT NULL default "", PRIMARY KEY (`domain`), UNIQUE KEY `domain` (`domain`) ); CREATE TABLE `forwardings` ( `source` varchar(80) NOT NULL default "", `destination` text NOT NULL, PRIMARY KEY (`source`) ); CREATE TABLE `users` ( `email` varchar(80) NOT NULL default "", `password` varchar(20) NOT NULL default "", `quota` varchar(20) NOT NULL default '20971520', `domain` varchar(255) NOT NULL default "", UNIQUE KEY `email` (`email`) );
我在表中添加了我的域(正確設置了 A 和 MX 記錄):
INSERT INTO `domains` VALUES ('virtualdomain.tld');
以及與該域相關的帳戶:
INSERT INTO `users` VALUES ('info@virtualdomain.tld', ENCRYPT('password'), '20971520', 'virtualdomain.tld');
然後我創建了一個自簽名證書:
cd /etc/ssl/private/ openssl genpkey -algorithm RSA -pkeyopt rsa_keygen_bits:2048 -out server.key chmod 400 server.key openssl req -new -key server.key -out server.csr openssl x509 -req -days 365 -in server.csr -signkey server.key -out server.crt chmod 444 server.crt
然後是我在 Postfix 配置中引用的文件:
/etc/postfix/virtual_alias_maps.cf
user = postfix_user password = hunter2 hosts = localhost dbname = postfix_db table = domains select_field = domain where_field = domain
/etc/postfix/virtual_mailbox_domains.cf
user = postfix_user password = hunter2 hosts = localhost dbname = postfix_db table = forwardings select_field = destination where_field = source
/etc/postfix/virtual_mailbox_maps.cf
user = postfix_user password = hunter2 hosts = localhost dbname = postfix_db table = users select_field = concat(domain,'/',email,'/') where_field = email
進而
touch /etc/postfix/transport postmap /etc/postfix/transport
現在我刪除了預設的 Dovecot 配置文件,將其替換為:
protocols = imap auth_mechanisms = plain passdb { driver = sql args = /etc/dovecot/dovecot-sql.conf } userdb { driver = sql args = /etc/dovecot/dovecot-sql.conf } service auth { unix_listener auth-client { group = postfix mode = 0660 user = postfix } user = root } mail_home = /home/vmail/%d/%u mail_location = maildir:~ ssl_cert = </etc/ssl/private/server.crt ssl_key = </etc/ssl/private/server.key
我創建了
/etc/dovecot/dovecot-sql.conf
文件:driver = mysql connect = host=localhost dbname=postfix_db user=postfix_user password=hunter2 # The new name for MD5 is MD5-CRYPT so you might need to change this depending on version default_pass_scheme = MD5-CRYPT # Get the mailbox user_query = SELECT '/home/vmail/%d/%u' as home, 'maildir:/home/vmail/%d/%u' as mail, 5000 AS uid, 5000 AS gid, concat('dirsize:storage=', quota) AS quota FROM users WHERE email = '%u' # Get the password password_query = SELECT email as user, password, '/home/vmail/%d/%u' as userdb_home, 'maildir:/home/vmail/%d/%u' as userdb_mail, 5000 as userdb_uid, 5000 as userdb_gid FROM users WHERE email = '%u' # If using client certificates for authentication, comment the above and uncomment the following #password_query = SELECT null AS password, ‘%u’ AS user
…最後重新啟動 dovecot 和後綴:
service postfix dovecot restart
問題是,當我嘗試向 發送電子郵件時
info@virtualdomain.tld
,我在日誌中看到:NOQUEUE: reject: RCPT from blablabla.com[xxx.xxx.xxx.xxx]: 451 4.3.0 <info@virtualdomain.tld>: Temporary lookup failure; from=<my@email.tld> to=<info@virtualdomain.tld> proto=ESMTP helo=<blablabla.com>
並且郵件因錯誤而退回
550 5.1.1 "Recipient address rejected: User unknown in virtual alias table"
看起來,你的
virtual_alias_maps
和virtual_mailbox_domains
被交換了。嘗試重命名它們mv /etc/postfix/virtual_alias_maps.cf /tmp/virtual_mailbox_domains.tmp mv /etc/postfix/virtual_mailbox_domains.cf /etc/postfix/virtual_alias_maps.cf mv /tmp/virtual_mailbox_domains.tmp /etc/postfix/virtual_mailbox_domains.cf
別忘了跑
postfix reload
。
我確定 Dovecot 是創建 auth 文件的那個,因為 postfix 與 dovecot 對話,dovecot 進行身份驗證,因此在您的“dovecot.conf”中添加:
path = /var/run/dovecot/auth-client
像這樣進入客戶端塊:
service auth { unix_listener auth-client { path = /var/run/dovecot/auth-client group = postfix mode = 0660 user = postfix }
或者
service auth { unix_listener /var/run/dovecot/auth-client { group = postfix mode = 0660 user = postfix }
重啟鴿舍
檢查是否創建了 /var/run/dovecot/auth-client
輸入
ls -l /var/run/dovecot/auth-client
以確認。然後重試。