exim+dovecot+ldap[ad win2008r2] timeout при аутентификации
Добавлено: 2013-09-27 16:53:52
Постоянный таймаут при подключении через веб-интерфейс roundcube и вообще любой MUA
/var/log/debug.log
/var/log/maillog
где может быть косяк? где рыть?
egrep -v '(^#|^$)' /usr/local/etc/dovecot/dovecot-ldap.conf
/var/log/debug.log
Код: Выделить всё
Sep 27 17:35:18 post dovecot: auth: Debug: auth client connected (pid=67024)
Sep 27 17:35:18 post dovecot: auth: Debug: client in: AUTH 2 PLAIN service=imap secured session=sJyyjl3nFAB/AAAB lip=127.0.0.1 rip=127.0.0.1 lport=143 rport=43284 resp=<hidden>
Sep 27 17:35:18 post dovecot: auth: Debug: ldap(npu3pak,127.0.0.1,<sJyyjl3nFAB/AAAB>): bind search: base=DC=domain,DC=local filter=(&(objectClass=user)(SamAccountName=npu3pak))
Sep 27 17:35:18 post dovecot: auth: Debug: ldap(npu3pak,127.0.0.1,<sJyyjl3nFAB/AAAB>): result: sAMAccountName=npu3pak
Sep 27 17:38:18 post dovecot: auth: Debug: client in: CANCEL 2
Код: Выделить всё
Sep 27 17:37:48 post dovecot: auth: Error: PLAIN(npu3pak,127.0.0.1,<sJyyjl3nFAB/AAAB>): Request 67024.2 timeouted after 150 secs, state=1
Sep 27 17:38:18 post dovecot: imap-login: Disconnected: Inactivity during authentication (disconnected while authenticating, waited 180 secs): user=<>, method=PLAIN, rip=127.0.0.1, lip=127.0.0.1, secured, session=<sJyyjl3nFAB/AAAB>Код: Выделить всё
# 2.1.10: /usr/local/etc/dovecot/dovecot.conf
# OS: FreeBSD 9.1-RELEASE-p7 amd64
auth_mechanisms = plain login
auth_username_format = %Ln
disable_plaintext_auth = no
mail_debug = yes
auth_debug = yes
auth_verbose = yes
first_valid_gid = 26
first_valid_uid = 26
last_valid_gid = 26
last_valid_uid = 26
mail_location = maildir:%h
ssl_cert = </etc/ssl/certs/dovecot.pem
ssl_key = </etc/ssl/private/dovecot.pem
passdb {
args = /usr/local/etc/dovecot/dovecot-ldap.conf
driver = ldap
}
plugin {
autocreate = Trash
autocreate2 = Junk
autocreate3 = Sent
autocreate4 = Drafts
autosubscribe = Trash
autosubscribe2 = Junk
autosubscribe3 = Sent
autosubscribe4 = Drafts
sieve = ~/.dovecot.sieve
sieve_before = /usr/local/etc/exim/filters/sieve-filter
sieve_dir = ~/sieve
sieve_global_dir = /usr/local/etc/exim/filters/
sieve_global_path = /usr/local/etc/exim/filters/sieve-filter
}
protocols = imap sieve
service auth {
unix_listener auth-client {
group = mail
mode = 0660
user = mailnull
}
unix_listener auth-master {
group = mail
mode = 0660
user = mailnull
}
user = root
}
service imap-login {
service_count = 0
process_min_avail = 10
process_limit = 30
vsz_limit = 64M
}
userdb {
args = /usr/local/etc/dovecot/dovecot-ldap.conf
driver = ldap
}
protocol imap {
imap_client_workarounds = delay-newmail tb-extra-mailbox-sep
mail_plugin_dir = /usr/local/lib/dovecot
mail_plugins = autocreate
}
protocol lda {
info_log_path = /var/log/dovecot/dovecot-deliver.log
log_path = /var/log/dovecot/dovecot-deliver.log
mail_plugin_dir = /usr/local/lib/dovecot
mail_plugins = sieve
syslog_facility = mail
Код: Выделить всё
hosts = 10.0.2.118:389
dn = unixAU@domain.local
dnpass = LdaP,AutH
auth_bind = yes
base = DC=domain,DC=local
scope = subtree
user_filter = (&(objectClass=user)(SamAccountName=%u))
pass_attrs = SamAccountName=user,clearPassword=password
pass_filter = (&(objectClass=user)(SamAccountName=%u))
iterate_filter = (objectClass=user)