<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Surgical Diversions &#187; osx-server</title>
	<atom:link href="http://thefragens.com/blog/tag/osx-server/feed/" rel="self" type="application/rss+xml" />
	<link>http://thefragens.com/blog</link>
	<description>My time out of the operating room.</description>
	<lastBuildDate>Mon, 01 Mar 2010 05:21:11 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>New IP Address</title>
		<link>http://thefragens.com/blog/2009/12/new-ip-address/</link>
		<comments>http://thefragens.com/blog/2009/12/new-ip-address/#comments</comments>
		<pubDate>Wed, 16 Dec 2009 22:26:25 +0000</pubDate>
		<dc:creator>Andy</dc:creator>
				<category><![CDATA[computer]]></category>
		<category><![CDATA[osx-server]]></category>

		<guid isPermaLink="false">http://thefragens.com/blog/?p=659</guid>
		<description><![CDATA[Well, as a cost saving measure and because we really weren&#8217;t using more than one, we&#8217;ve cut back to a single IP address. Time Warner Cable is the biz Internet provider. They&#8217;ve been very helpful in setting up reverse DNS lookups and PTR records, but at the same time the transfer to the new IP [...]


Related posts:<ol><li><a href='http://thefragens.com/blog/2002/01/47/' rel='bookmark' title='Permanent Link: '></a> <small>I&#8217;ve been having problems with Airport Base Stations recently. I...</small></li>
<li><a href='http://thefragens.com/blog/2006/09/customer-service/' rel='bookmark' title='Permanent Link: Customer Service'>Customer Service</a> <small>I have to give great kudos to Wendy of the...</small></li>
</ol>

Related posts brought to you by <a href='http://mitcho.com/code/yarpp/' onclick="urchinTracker('/outgoing/mitcho.com/code/yarpp/?referer=');">Yet Another Related Posts Plugin</a>.]]></description>
			<content:encoded><![CDATA[<p>Well, as a cost saving measure and because we really weren&#8217;t using more than one, we&#8217;ve cut back to a single IP address. Time Warner Cable is the biz Internet provider. They&#8217;ve been very helpful in setting up reverse DNS lookups and PTR records, but at the same time the transfer to the new IP really screwed with the cable modem.</p>

<p>I spent many hours with some very nice people at TWC tech support, like Jan, but what eventually fixed the problem was changing the fixed IP I was assigned to another fixed IP.</p>

<p>Long and short is everything, mail, web, etc. seems to be back up and running.</p>


<p>Related posts:<ol><li><a href='http://thefragens.com/blog/2002/01/47/' rel='bookmark' title='Permanent Link: '></a> <small>I&#8217;ve been having problems with Airport Base Stations recently. I...</small></li>
<li><a href='http://thefragens.com/blog/2006/09/customer-service/' rel='bookmark' title='Permanent Link: Customer Service'>Customer Service</a> <small>I have to give great kudos to Wendy of the...</small></li>
</ol></p>
<p>Related posts brought to you by <a href='http://mitcho.com/code/yarpp/' onclick="urchinTracker('/outgoing/mitcho.com/code/yarpp/?referer=');">Yet Another Related Posts Plugin</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://thefragens.com/blog/2009/12/new-ip-address/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Fail2ban on Leopard Server</title>
		<link>http://thefragens.com/blog/2009/09/fail2ban-on-leopard-server/</link>
		<comments>http://thefragens.com/blog/2009/09/fail2ban-on-leopard-server/#comments</comments>
		<pubDate>Thu, 24 Sep 2009 23:52:25 +0000</pubDate>
		<dc:creator>Andy</dc:creator>
				<category><![CDATA[code]]></category>
		<category><![CDATA[osx-server]]></category>

		<guid isPermaLink="false">http://thefragens.com/blog/?p=630</guid>
		<description><![CDATA[So here I am running my own server &#8212; for almost 2 years now. It&#8217;s been a real learning experience and I&#8217;ve tried to share. My latest add-on has been fail2ban. I got tired of looking into my logs and seeing where script kiddies or bots were trying to take control of my server. Fortunately, [...]


Related posts:<ol><li><a href='http://thefragens.com/blog/2008/06/forwarding-email-in-leopard-server-part-2/' rel='bookmark' title='Permanent Link: Forwarding Email in Leopard Server, part 2'>Forwarding Email in Leopard Server, part 2</a> <small>I&#8217;ve previously written about problems with Leopard server and forwarding...</small></li>
<li><a href='http://thefragens.com/blog/2008/02/forwarding-email-in-leopard-server/' rel='bookmark' title='Permanent Link: Forwarding Email in Leopard Server'>Forwarding Email in Leopard Server</a> <small>OK, to put it mildly the Workgroup Manager and Email...</small></li>
<li><a href='http://thefragens.com/blog/2007/12/leopard-server-dhcp-nat/' rel='bookmark' title='Permanent Link: Leopard Server DHCP-NAT'>Leopard Server DHCP-NAT</a> <small>Well, I&#8217;m finally getting most of the initial stuff for...</small></li>
</ol>

Related posts brought to you by <a href='http://mitcho.com/code/yarpp/' onclick="urchinTracker('/outgoing/mitcho.com/code/yarpp/?referer=');">Yet Another Related Posts Plugin</a>.]]></description>
			<content:encoded><![CDATA[<p>So here I am running my own server &#8212; for almost 2 years now. It&#8217;s been a real learning experience and I&#8217;ve tried to share. My latest add-on has been <a href="http://www.fail2ban.org/wiki/index.php/Main_Page" onclick="urchinTracker('/outgoing/www.fail2ban.org/wiki/index.php/Main_Page?referer=');">fail2ban</a>. I got tired of looking into my logs and seeing where script kiddies or bots were trying to take control of my server. Fortunately, none have.</p>

<p>After a bit of googling, I found fail2ban. It&#8217;s a collection of python scripts.</p>

<p>&gt; Fail2ban scans log files like /var/log/pwdfail or /var/log/apache/error_log and bans IP that makes too many password failures. It updates firewall rules to reject the IP address.</p>

<p>There are a few tricks I&#8217;ve discovered along the way to make it work on my installation and likely on Mac OS X Server in general.</p>

<p>First is that fail2ban creates a PID and socket file in a directory that it fails to create. Yeah, that&#8217;s a <a href="https://sourceforge.net/tracker/?func=detail&amp;aid=2013282&amp;group_id=121032&amp;atid=689044" onclick="urchinTracker('/outgoing/sourceforge.net/tracker/?func=detail_amp_aid=2013282_amp_group_id=121032_amp_atid=689044&amp;referer=');">bug</a>. Since I didn&#8217;t want to mess around with the actual scripts in the program, I created a plist that issues the <code>mkdir /var/run/fail2ban</code> command. I placed this in /System/Library/LaunchDaemons and set it to Run at Load. <a href="https://sourceforge.net/projects/lingon/files/" onclick="urchinTracker('/outgoing/sourceforge.net/projects/lingon/files/?referer=');">Lingon</a> is your friend, but&#8217;s now inactive. <img src='http://thefragens.com/blog/wp-includes/images/smilies/icon_sad.gif' alt=':-(' class='wp-smiley' /> </p>

<p>After creating the file you have to use the command line to move it to the /System/Library/LaunchDaemons directory. I also created another launchd plist to reload fail2ban every day. I did this because I run multiple virtual websites and the error logs for those sites get rotated and the names have some time code or something tacked on the end of the filename.</p>

<p>OK, problem 1 solved. Next I discovered that since fail2ban is really running on a multitude of linux boxes all the different methods of IP tracking, sorting etc. were really useless on my OS X Server. I run ipfw firewall and fortunately there&#8217;s a module for that in fail2ban. Unfortunately it&#8217;s not quite set up correctly, at least it wasn&#8217;t for me. I had to tweak it a bit.</p>

<p>What this means is that your <code>action</code> is always going to be <code>ipfw</code>. I tweaked the <code>ipfw.conf</code> file a bit. Now it does the following.</p>

<ol>
<li>Logs it&#8217;s action to ipfw.log</li>
<li>Adds a rulenum to the ipfw command. I did this because some other rule in my setup was allowing the IP before my deny could take effect. By lowering the rulenum my deny now fires off first.</li>
<li>Abstracted the protocol (tcp, udp) to pass as a variable. Just in case something you want to block isn&#8217;t <code>tcp</code>.</li>
</ol>

<p>I also created another filter as I found many times some machine would excessively hit my Apache server looking for nonexistent files. Since it sounds like something a bot would do I decided to ban it. This was the simple creation of a new filter.</p>

<p>I created a <code>jail.local</code> file to hold all my prefs and through trial and error discovered that the examples of how to <code>call</code> for a jail weren&#8217;t working for me. Perhaps I just didn&#8217;t understand the examples. I soon discovered that parameters for the <code>jail action</code> needed to be passed inside of square brackets in the prefs.</p>

<p>I&#8217;m sure, if you&#8217;ve gotten this far that you&#8217;re either very confused by this whole post or that you&#8217;ve had an epiphany. To further the epiphany along <a href="http://thefragens.com/pub/fail2ban-osx.zip">I&#8217;ve uploaded my file changes</a>.</p>

<p>You should be able to figure out what file goes where from the folder structure of the upload.</p>

<p>A couple of things in summary to remember. First, turn on your server&#8217;s firewall. Then make sure you change your server&#8217;s local IP address in the files to match your own. That&#8217;s the setting for <code>localhost</code>.</p>

<p>Good luck. If you have any questions leave a comment.</p>


<p>Related posts:<ol><li><a href='http://thefragens.com/blog/2008/06/forwarding-email-in-leopard-server-part-2/' rel='bookmark' title='Permanent Link: Forwarding Email in Leopard Server, part 2'>Forwarding Email in Leopard Server, part 2</a> <small>I&#8217;ve previously written about problems with Leopard server and forwarding...</small></li>
<li><a href='http://thefragens.com/blog/2008/02/forwarding-email-in-leopard-server/' rel='bookmark' title='Permanent Link: Forwarding Email in Leopard Server'>Forwarding Email in Leopard Server</a> <small>OK, to put it mildly the Workgroup Manager and Email...</small></li>
<li><a href='http://thefragens.com/blog/2007/12/leopard-server-dhcp-nat/' rel='bookmark' title='Permanent Link: Leopard Server DHCP-NAT'>Leopard Server DHCP-NAT</a> <small>Well, I&#8217;m finally getting most of the initial stuff for...</small></li>
</ol></p>
<p>Related posts brought to you by <a href='http://mitcho.com/code/yarpp/' onclick="urchinTracker('/outgoing/mitcho.com/code/yarpp/?referer=');">Yet Another Related Posts Plugin</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://thefragens.com/blog/2009/09/fail2ban-on-leopard-server/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Amavisd settings</title>
		<link>http://thefragens.com/blog/2009/03/amavisd-settings/</link>
		<comments>http://thefragens.com/blog/2009/03/amavisd-settings/#comments</comments>
		<pubDate>Mon, 16 Mar 2009 17:03:40 +0000</pubDate>
		<dc:creator>Andy</dc:creator>
				<category><![CDATA[computer]]></category>
		<category><![CDATA[osx-server]]></category>

		<guid isPermaLink="false">http://thefragens.com/blog/?p=613</guid>
		<description><![CDATA[I run my own mail server on OS X Server. For the most part I have my SpamAssassin settings tweaked pretty well. Unfortunately, there is some spam that seems to have malformed or incomplete MIME boundaries and these messages don&#8217;t seem to be getting passed off from Amavisd to SpamAssassin. As such, they seem to [...]


Related posts:<ol><li><a href='http://thefragens.com/blog/2007/08/running-spamassassin-locally/' rel='bookmark' title='Permanent Link: Running SpamAssassin locally'>Running SpamAssassin locally</a> <small>While I haven&#8217;t yet gotten an iPhone I&#8217;m making preparations....</small></li>
<li><a href='http://thefragens.com/blog/2008/03/unforeseen-circumstances/' rel='bookmark' title='Permanent Link: Unforeseen Circumstances'>Unforeseen Circumstances</a> <small>Due to unforeseen circumstances I accidentally trashed my server installation....</small></li>
<li><a href='http://thefragens.com/blog/2008/06/forwarding-email-in-leopard-server-part-2/' rel='bookmark' title='Permanent Link: Forwarding Email in Leopard Server, part 2'>Forwarding Email in Leopard Server, part 2</a> <small>I&#8217;ve previously written about problems with Leopard server and forwarding...</small></li>
</ol>

Related posts brought to you by <a href='http://mitcho.com/code/yarpp/' onclick="urchinTracker('/outgoing/mitcho.com/code/yarpp/?referer=');">Yet Another Related Posts Plugin</a>.]]></description>
			<content:encoded><![CDATA[<p>I run my own mail server on OS X Server. For the most part I have my <a href="http://spamassassin.apache.org/" onclick="urchinTracker('/outgoing/spamassassin.apache.org/?referer=');">SpamAssassin</a> settings tweaked pretty well. Unfortunately, there is some spam that seems to have malformed or incomplete MIME boundaries and these messages don&#8217;t seem to be getting passed off from Amavisd to SpamAssassin. As such, they seem to be getting through to the recipient with a null value for the spam score.</p>

<p>After a little Googling I found <a href="http://www200.pair.com/mecham/spam/amavisd-settings.html" onclick="urchinTracker('/outgoing/www200.pair.com/mecham/spam/amavisd-settings.html?referer=');">Amavisd critical settings</a> and I think the <code>$final_bad_header_destiny</code> is the key. The default setting is set to <code>D_PASS</code>. I&#8217;ve changed mine to <code>D_REJECT</code> now I&#8217;ll see what the logs say and see how much non-spam gets caught. Obviously, if enough good stuff doesn&#8217;t get through then I&#8217;ll have to think of something else.</p>

<p>But the obvoious question remains, <em>Why doesn&#8217;t SpamAssassin score these messages?</em></p>


<p>Related posts:<ol><li><a href='http://thefragens.com/blog/2007/08/running-spamassassin-locally/' rel='bookmark' title='Permanent Link: Running SpamAssassin locally'>Running SpamAssassin locally</a> <small>While I haven&#8217;t yet gotten an iPhone I&#8217;m making preparations....</small></li>
<li><a href='http://thefragens.com/blog/2008/03/unforeseen-circumstances/' rel='bookmark' title='Permanent Link: Unforeseen Circumstances'>Unforeseen Circumstances</a> <small>Due to unforeseen circumstances I accidentally trashed my server installation....</small></li>
<li><a href='http://thefragens.com/blog/2008/06/forwarding-email-in-leopard-server-part-2/' rel='bookmark' title='Permanent Link: Forwarding Email in Leopard Server, part 2'>Forwarding Email in Leopard Server, part 2</a> <small>I&#8217;ve previously written about problems with Leopard server and forwarding...</small></li>
</ol></p>
<p>Related posts brought to you by <a href='http://mitcho.com/code/yarpp/' onclick="urchinTracker('/outgoing/mitcho.com/code/yarpp/?referer=');">Yet Another Related Posts Plugin</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://thefragens.com/blog/2009/03/amavisd-settings/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Subscribing to Delegated Calendars</title>
		<link>http://thefragens.com/blog/2008/12/subscribing-to-delegated-calendars/</link>
		<comments>http://thefragens.com/blog/2008/12/subscribing-to-delegated-calendars/#comments</comments>
		<pubDate>Fri, 19 Dec 2008 21:45:25 +0000</pubDate>
		<dc:creator>Andy</dc:creator>
				<category><![CDATA[Apple]]></category>
		<category><![CDATA[iPhone]]></category>
		<category><![CDATA[mac-osx]]></category>
		<category><![CDATA[osx-server]]></category>

		<guid isPermaLink="false">http://thefragens.com/blog/?p=583</guid>
		<description><![CDATA[OK, I&#8217;m fortunate or crazy enough to run my own server using Apple&#8217;s OS X Leopard Server software. It has been, at times, very simple and very complex to set everything up. One of the options that I use is the iCal Server so that I can have shared calendars. Once I got it up [...]


Related posts:<ol><li><a href='http://thefragens.com/blog/2007/12/leopard-server-dhcp-nat/' rel='bookmark' title='Permanent Link: Leopard Server DHCP-NAT'>Leopard Server DHCP-NAT</a> <small>Well, I&#8217;m finally getting most of the initial stuff for...</small></li>
<li><a href='http://thefragens.com/blog/2008/12/ical-exchange-time-zone-fix-chapter-3/' rel='bookmark' title='Permanent Link: iCal - Exchange Time Zone Fix - Chapter 3'>iCal - Exchange Time Zone Fix - Chapter 3</a> <small>I&#8217;ve updated the iCal-Invite-Fix script again. This time to allow...</small></li>
<li><a href='http://thefragens.com/blog/2008/08/iphone-202/' rel='bookmark' title='Permanent Link: iPhone 2.0.2'>iPhone 2.0.2</a> <small>I don&#8217;t know what Apple fixed in the 2.0.2 software...</small></li>
</ol>

Related posts brought to you by <a href='http://mitcho.com/code/yarpp/' onclick="urchinTracker('/outgoing/mitcho.com/code/yarpp/?referer=');">Yet Another Related Posts Plugin</a>.]]></description>
			<content:encoded><![CDATA[<p>OK, I&#8217;m fortunate or crazy enough to run my own server using Apple&#8217;s OS X Leopard Server software. It has been, at times, very simple and very complex to set everything up. One of the options that I use is the iCal Server so that I can have shared calendars. Once I got it up and running with all the permissions worked out it&#8217;s been terrific. By terrific I mean that I haven&#8217;t had to do a single thing to keep it up and running.</p>

<p>Here&#8217;s the problem. My wife and I both have iPhone&#8217;s. I&#8217;d like to see one of her calendar&#8217;s on my iPhone and I want here to see one of mine on her iPhone. On our respective computers these calendars show up in iCal as <em>Delegates</em>. That&#8217;s how there&#8217;re suppose to show up. The problem is that only local calendars and subscribed calendars are listed in iTunes for syncing to the iPhone.</p>

<p>After a bit of googling, the <a href="http://discussions.apple.com/message.jspa?messageID=6690635#6690635" onclick="urchinTracker('/outgoing/discussions.apple.com/message.jspa?messageID=6690635_6690635&amp;referer=');">answer appeared in the Apple Discussions Board</a>. If I do a get info on the <em>Delegate</em> calendar and copy the CalDAV URL I can then subscribe to this URL, the calendar will show up in my <em>Subscriptions</em> list. I can then sync it to the iPhone. It is perhaps the simplest workaround that I&#8217;ve found. Your user must log out and log back in for iTunes to see the newly subscribed calendar.</p>

<p>However, it&#8217;s still a <a href="http://en.wikipedia.org/wiki/Kludge" onclick="urchinTracker('/outgoing/en.wikipedia.org/wiki/Kludge?referer=');">kludge</a> and I await the day Apple fixes iTunes to allow for syncing any viewable calendar iCal to your iPhone.</p>


<p>Related posts:<ol><li><a href='http://thefragens.com/blog/2007/12/leopard-server-dhcp-nat/' rel='bookmark' title='Permanent Link: Leopard Server DHCP-NAT'>Leopard Server DHCP-NAT</a> <small>Well, I&#8217;m finally getting most of the initial stuff for...</small></li>
<li><a href='http://thefragens.com/blog/2008/12/ical-exchange-time-zone-fix-chapter-3/' rel='bookmark' title='Permanent Link: iCal - Exchange Time Zone Fix - Chapter 3'>iCal - Exchange Time Zone Fix - Chapter 3</a> <small>I&#8217;ve updated the iCal-Invite-Fix script again. This time to allow...</small></li>
<li><a href='http://thefragens.com/blog/2008/08/iphone-202/' rel='bookmark' title='Permanent Link: iPhone 2.0.2'>iPhone 2.0.2</a> <small>I don&#8217;t know what Apple fixed in the 2.0.2 software...</small></li>
</ol></p>
<p>Related posts brought to you by <a href='http://mitcho.com/code/yarpp/' onclick="urchinTracker('/outgoing/mitcho.com/code/yarpp/?referer=');">Yet Another Related Posts Plugin</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://thefragens.com/blog/2008/12/subscribing-to-delegated-calendars/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>MobileMe &amp; OS X Server</title>
		<link>http://thefragens.com/blog/2008/06/500/</link>
		<comments>http://thefragens.com/blog/2008/06/500/#comments</comments>
		<pubDate>Tue, 10 Jun 2008 02:09:03 +0000</pubDate>
		<dc:creator>Andy</dc:creator>
				<category><![CDATA[osx-server]]></category>

		<guid isPermaLink="false">http://thefragens.com/blog/?p=500</guid>
		<description><![CDATA[I&#8217;m just coming down out of the Jobs RDF. I&#8217;m wondering, will there be some OS X Server equivalent to the new .Mac service - MobileMe?

I&#8217;d love to be able to deploy push email and push calendar to my users. 


Related posts:Forwarding Email in Leopard Server, part 2 I&#8217;ve previously written about problems with Leopard [...]


Related posts:<ol><li><a href='http://thefragens.com/blog/2008/06/forwarding-email-in-leopard-server-part-2/' rel='bookmark' title='Permanent Link: Forwarding Email in Leopard Server, part 2'>Forwarding Email in Leopard Server, part 2</a> <small>I&#8217;ve previously written about problems with Leopard server and forwarding...</small></li>
<li><a href='http://thefragens.com/blog/2008/02/forwarding-email-in-leopard-server/' rel='bookmark' title='Permanent Link: Forwarding Email in Leopard Server'>Forwarding Email in Leopard Server</a> <small>OK, to put it mildly the Workgroup Manager and Email...</small></li>
</ol>

Related posts brought to you by <a href='http://mitcho.com/code/yarpp/' onclick="urchinTracker('/outgoing/mitcho.com/code/yarpp/?referer=');">Yet Another Related Posts Plugin</a>.]]></description>
			<content:encoded><![CDATA[<p>I&#8217;m just coming down out of the Jobs RDF. I&#8217;m wondering, will there be some OS X Server equivalent to the new .Mac service - MobileMe?</p>

<p>I&#8217;d love to be able to deploy push email and push calendar to my users. </p>


<p>Related posts:<ol><li><a href='http://thefragens.com/blog/2008/06/forwarding-email-in-leopard-server-part-2/' rel='bookmark' title='Permanent Link: Forwarding Email in Leopard Server, part 2'>Forwarding Email in Leopard Server, part 2</a> <small>I&#8217;ve previously written about problems with Leopard server and forwarding...</small></li>
<li><a href='http://thefragens.com/blog/2008/02/forwarding-email-in-leopard-server/' rel='bookmark' title='Permanent Link: Forwarding Email in Leopard Server'>Forwarding Email in Leopard Server</a> <small>OK, to put it mildly the Workgroup Manager and Email...</small></li>
</ol></p>
<p>Related posts brought to you by <a href='http://mitcho.com/code/yarpp/' onclick="urchinTracker('/outgoing/mitcho.com/code/yarpp/?referer=');">Yet Another Related Posts Plugin</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://thefragens.com/blog/2008/06/500/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Forwarding Email in Leopard Server, part 2</title>
		<link>http://thefragens.com/blog/2008/06/forwarding-email-in-leopard-server-part-2/</link>
		<comments>http://thefragens.com/blog/2008/06/forwarding-email-in-leopard-server-part-2/#comments</comments>
		<pubDate>Fri, 06 Jun 2008 21:25:53 +0000</pubDate>
		<dc:creator>Andy</dc:creator>
				<category><![CDATA[computer]]></category>
		<category><![CDATA[osx-server]]></category>

		<guid isPermaLink="false">http://thefragens.com/blog/?p=498</guid>
		<description><![CDATA[I&#8217;ve previously written about problems with Leopard server and forwarding of virtual hosted domain email. My solution was somewhat inelegant and errors were written into the mail.log. Since that time I&#8217;ve found a solution that works and generates no errors. It also has the added benefit of being entirely within Server Admin.

Here&#8217;s what to do.

In [...]


Related posts:<ol><li><a href='http://thefragens.com/blog/2008/02/forwarding-email-in-leopard-server/' rel='bookmark' title='Permanent Link: Forwarding Email in Leopard Server'>Forwarding Email in Leopard Server</a> <small>OK, to put it mildly the Workgroup Manager and Email...</small></li>
<li><a href='http://thefragens.com/blog/2007/12/moving-domains/' rel='bookmark' title='Permanent Link: Moving domains'>Moving domains</a> <small>Sorry if anyone gets confused. When I moved this blog...</small></li>
<li><a href='http://thefragens.com/blog/2007/11/securing-email/' rel='bookmark' title='Permanent Link: Securing Email'>Securing Email</a> <small>I think I&#8217;ve finally accomplished it. It being getting my...</small></li>
</ol>

Related posts brought to you by <a href='http://mitcho.com/code/yarpp/' onclick="urchinTracker('/outgoing/mitcho.com/code/yarpp/?referer=');">Yet Another Related Posts Plugin</a>.]]></description>
			<content:encoded><![CDATA[<p>I&#8217;ve previously written about problems with <a href="http://thefragens.com/blog/2008/02/forwarding-email-in-leopard-server/">Leopard server and forwarding of virtual hosted domain email</a>. My solution was somewhat inelegant and errors were written into the mail.log. Since that time I&#8217;ve found a solution that works and generates no errors. It also has the added benefit of being entirely within Server Admin.</p>

<p>Here&#8217;s what to do.</p>

<p>In Server Admin &gt; Mail &gt; Settings &gt; Advanced &gt; Hosting the following items are needed.</p>

<ol>
<li><p>Obviously, in the lower panel <em>Virtual Domain Hosting</em> needs to be checked and the domains entered.</p></li>
<li><p>In the upper panel I have the following entries.</p></li>
</ol>

<ul>
<li>localhost</li>
<li>server.mydomain.private (this is the entry under Server Admin &gt; Mail &gt; Settings &gt; General &gt; Domain Name.</li>
</ul>

<p><em>virtual1.com</em> and the others are the hosted virtual domains for which users have email accounts. That&#8217;s it. When I check my mail logs, mail is forwarded, I get errors regarding accounts not being set up, but mail is forwared.</p>

<p><strong>Update</strong><br />
Well, it seems I still see the bounces, but mail <strong>is</strong> forwarded. I&#8217;ve removed the virtual domains from the upper panel. It was a bad idea to start with. I don&#8217;t know if Snow Leopard server fixes this. Let me know.</p>


<p>Related posts:<ol><li><a href='http://thefragens.com/blog/2008/02/forwarding-email-in-leopard-server/' rel='bookmark' title='Permanent Link: Forwarding Email in Leopard Server'>Forwarding Email in Leopard Server</a> <small>OK, to put it mildly the Workgroup Manager and Email...</small></li>
<li><a href='http://thefragens.com/blog/2007/12/moving-domains/' rel='bookmark' title='Permanent Link: Moving domains'>Moving domains</a> <small>Sorry if anyone gets confused. When I moved this blog...</small></li>
<li><a href='http://thefragens.com/blog/2007/11/securing-email/' rel='bookmark' title='Permanent Link: Securing Email'>Securing Email</a> <small>I think I&#8217;ve finally accomplished it. It being getting my...</small></li>
</ol></p>
<p>Related posts brought to you by <a href='http://mitcho.com/code/yarpp/' onclick="urchinTracker('/outgoing/mitcho.com/code/yarpp/?referer=');">Yet Another Related Posts Plugin</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://thefragens.com/blog/2008/06/forwarding-email-in-leopard-server-part-2/feed/</wfw:commentRss>
		<slash:comments>6</slash:comments>
		</item>
		<item>
		<title>Fixing cyrus</title>
		<link>http://thefragens.com/blog/2008/03/fixing-cyrus/</link>
		<comments>http://thefragens.com/blog/2008/03/fixing-cyrus/#comments</comments>
		<pubDate>Mon, 24 Mar 2008 22:21:31 +0000</pubDate>
		<dc:creator>Andy</dc:creator>
				<category><![CDATA[osx-server]]></category>

		<guid isPermaLink="false">http://thefragens.com/blog/?p=481</guid>
		<description><![CDATA[Yeah, I did something stupid and had to reinstall my server OS &#8212; again. I thought I&#8217;d be OK but my mail backup was about a day old. I&#8217;ve used mailbfr before and it worked great but this time I kept getting errors. It seemed that mailbfr wasn&#8217;t copying over the skipstamp file.

What I did [...]


Related posts:<ol><li><a href='http://thefragens.com/blog/2007/05/fixing-mysql-and-phpmyadmin/' rel='bookmark' title='Permanent Link: Fixing MySQL and phpMyAdmin'>Fixing MySQL and phpMyAdmin</a> <small>There seems to be a problem with how current versions...</small></li>
<li><a href='http://thefragens.com/blog/2008/03/unforeseen-circumstances/' rel='bookmark' title='Permanent Link: Unforeseen Circumstances'>Unforeseen Circumstances</a> <small>Due to unforeseen circumstances I accidentally trashed my server installation....</small></li>
<li><a href='http://thefragens.com/blog/2008/02/forwarding-email-in-leopard-server/' rel='bookmark' title='Permanent Link: Forwarding Email in Leopard Server'>Forwarding Email in Leopard Server</a> <small>OK, to put it mildly the Workgroup Manager and Email...</small></li>
</ol>

Related posts brought to you by <a href='http://mitcho.com/code/yarpp/' onclick="urchinTracker('/outgoing/mitcho.com/code/yarpp/?referer=');">Yet Another Related Posts Plugin</a>.]]></description>
			<content:encoded><![CDATA[<p>Yeah, I did something stupid and had to reinstall my server OS &#8212; again. I thought I&#8217;d be OK but my mail backup was about a day old. I&#8217;ve used <a href="http://osx.topicdesk.com/content/view/41/57/" onclick="urchinTracker('/outgoing/osx.topicdesk.com/content/view/41/57/?referer=');">mailbfr</a> before and it worked great but this time I kept getting errors. It seemed that mailbfr wasn&#8217;t copying over the <code>skipstamp</code> file.</p>

<p>What I did was to copy this file manually then run some of the commands that system.log reported as not being run properly.</p>

<pre><code>sudo cp /mailbfrBackups/mailbackup/cyrus_config_DIR/imap/db/skipstamp /var/imap/db
sudo /usr/bin/cyrus/bin/reconstruct -p default -i
sudo su _cyrus /usr/bin/cyrus/bin/reconstruct -i
sudo -u _cyrus /usr/bin/cyrus/bin/cyrus-quota -f
</code></pre>

<p>So far I think I&#8217;ve got all my users and mailboxes back. Of course all the email is now listed as unread, but I expected that.</p>

<p>Of  course Alex came back with the real answer which was the following in mailbfr.</p>

<pre><code>sudo mailbfr -f
sudo mailbfr -o
</code></pre>

<p>And all is well. I think.</p>

<p>Of course, it didn&#8217;t work as expected. I ended up reinstalling the OS and then fixing only specific users mailstores. Once everything was working I then updated the OS to 10.5.2 and now everything works.</p>


<p>Related posts:<ol><li><a href='http://thefragens.com/blog/2007/05/fixing-mysql-and-phpmyadmin/' rel='bookmark' title='Permanent Link: Fixing MySQL and phpMyAdmin'>Fixing MySQL and phpMyAdmin</a> <small>There seems to be a problem with how current versions...</small></li>
<li><a href='http://thefragens.com/blog/2008/03/unforeseen-circumstances/' rel='bookmark' title='Permanent Link: Unforeseen Circumstances'>Unforeseen Circumstances</a> <small>Due to unforeseen circumstances I accidentally trashed my server installation....</small></li>
<li><a href='http://thefragens.com/blog/2008/02/forwarding-email-in-leopard-server/' rel='bookmark' title='Permanent Link: Forwarding Email in Leopard Server'>Forwarding Email in Leopard Server</a> <small>OK, to put it mildly the Workgroup Manager and Email...</small></li>
</ol></p>
<p>Related posts brought to you by <a href='http://mitcho.com/code/yarpp/' onclick="urchinTracker('/outgoing/mitcho.com/code/yarpp/?referer=');">Yet Another Related Posts Plugin</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://thefragens.com/blog/2008/03/fixing-cyrus/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Unforeseen Circumstances</title>
		<link>http://thefragens.com/blog/2008/03/unforeseen-circumstances/</link>
		<comments>http://thefragens.com/blog/2008/03/unforeseen-circumstances/#comments</comments>
		<pubDate>Fri, 14 Mar 2008 23:31:32 +0000</pubDate>
		<dc:creator>Andy</dc:creator>
				<category><![CDATA[computer]]></category>
		<category><![CDATA[osx-server]]></category>

		<guid isPermaLink="false">http://thefragens.com/blog/?p=480</guid>
		<description><![CDATA[Due to unforeseen circumstances I accidentally trashed my server installation. Don&#8217;t ask me for details but I think I accidentally unloaded all my launch daemons. I figured no big deal just restart the machine and everything&#8217;s fine. Not so fine.

I restart and my mail server doesn&#8217;t seem to be working correctly.

Several reinstalls later and I [...]


Related posts:<ol><li><a href='http://thefragens.com/blog/2008/06/forwarding-email-in-leopard-server-part-2/' rel='bookmark' title='Permanent Link: Forwarding Email in Leopard Server, part 2'>Forwarding Email in Leopard Server, part 2</a> <small>I&#8217;ve previously written about problems with Leopard server and forwarding...</small></li>
<li><a href='http://thefragens.com/blog/2009/03/amavisd-settings/' rel='bookmark' title='Permanent Link: Amavisd settings'>Amavisd settings</a> <small>I run my own mail server on OS X Server....</small></li>
<li><a href='http://thefragens.com/blog/2008/03/fixing-cyrus/' rel='bookmark' title='Permanent Link: Fixing cyrus'>Fixing cyrus</a> <small>Yeah, I did something stupid and had to reinstall my...</small></li>
</ol>

Related posts brought to you by <a href='http://mitcho.com/code/yarpp/' onclick="urchinTracker('/outgoing/mitcho.com/code/yarpp/?referer=');">Yet Another Related Posts Plugin</a>.]]></description>
			<content:encoded><![CDATA[<p>Due to unforeseen circumstances I accidentally trashed my server installation. Don&#8217;t ask me for details but I think I accidentally unloaded all my launch daemons. I figured no big deal just restart the machine and everything&#8217;s fine. Not so fine.</p>

<p>I restart and my mail server doesn&#8217;t seem to be working correctly.</p>

<p>Several reinstalls later and I would still have a wonky mail server. It only got screwy after I tried to restore my mail stores. I was using <a href="http://osx.topicdesk.com/content/view/41/57/" onclick="urchinTracker('/outgoing/osx.topicdesk.com/content/view/41/57/?referer=');">mailbfr</a> so it should have gone smoothly.</p>

<p>After several attempts I decided to change my plan. I reinstalled the OS, and didn&#8217;t update the software to 10.5.2. I then copied over calendars, files, etc. after setting up the server software.</p>

<p>Then I hand edited the SpamAssassin <code>local.cf</code> file to it&#8217;s previous settings and used mailbfr to selectively restore only specific users. Everything&#8217;s working. So I let it chug along checking my logs and finally decide to do the Software Update.</p>

<p>Everything&#8217;s still working. My wife thinks I should not run my own server as the aggravation is so great. I told her that it only continues to demonstrate how little comparative aggravation I receive from her. <img src='http://thefragens.com/blog/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> </p>


<p>Related posts:<ol><li><a href='http://thefragens.com/blog/2008/06/forwarding-email-in-leopard-server-part-2/' rel='bookmark' title='Permanent Link: Forwarding Email in Leopard Server, part 2'>Forwarding Email in Leopard Server, part 2</a> <small>I&#8217;ve previously written about problems with Leopard server and forwarding...</small></li>
<li><a href='http://thefragens.com/blog/2009/03/amavisd-settings/' rel='bookmark' title='Permanent Link: Amavisd settings'>Amavisd settings</a> <small>I run my own mail server on OS X Server....</small></li>
<li><a href='http://thefragens.com/blog/2008/03/fixing-cyrus/' rel='bookmark' title='Permanent Link: Fixing cyrus'>Fixing cyrus</a> <small>Yeah, I did something stupid and had to reinstall my...</small></li>
</ol></p>
<p>Related posts brought to you by <a href='http://mitcho.com/code/yarpp/' onclick="urchinTracker('/outgoing/mitcho.com/code/yarpp/?referer=');">Yet Another Related Posts Plugin</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://thefragens.com/blog/2008/03/unforeseen-circumstances/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Webmail Authentication</title>
		<link>http://thefragens.com/blog/2008/03/webmail-authentication/</link>
		<comments>http://thefragens.com/blog/2008/03/webmail-authentication/#comments</comments>
		<pubDate>Thu, 13 Mar 2008 02:55:53 +0000</pubDate>
		<dc:creator>Andy</dc:creator>
				<category><![CDATA[osx-server]]></category>

		<guid isPermaLink="false">http://thefragens.com/blog/?p=479</guid>
		<description><![CDATA[OK, my problem with my webmail and my Thunderbird user are fixed. Here&#8217;s what happened. When I was setting up my server install with the AppleCare rep on the phone he said to check CRAM-MD5 and Plain for authentication. This inside of Server Admin.

It turns out that the default authentication method for SquirrelMail is login [...]


No related posts.

Related posts brought to you by <a href='http://mitcho.com/code/yarpp/' onclick="urchinTracker('/outgoing/mitcho.com/code/yarpp/?referer=');">Yet Another Related Posts Plugin</a>.]]></description>
			<content:encoded><![CDATA[<p>OK, my problem with my webmail and my <a href="http://www.mozilla.com/thunderbird/" onclick="urchinTracker('/outgoing/www.mozilla.com/thunderbird/?referer=');">Thunderbird</a> user are fixed. Here&#8217;s what happened. When I was setting up my server install with the AppleCare rep on the phone he said to check CRAM-MD5 and Plain for authentication. This inside of Server Admin.</p>

<p>It turns out that the default authentication method for SquirrelMail is login so out of the box it needs to be checked. I think, though I cannot confirm, that it might also be the default authentication method for Thunderbird.</p>

<p>You can change the preferences in SquirrelMail using the following command.</p>

<p>/usr/share/squirrelmail/config/conf.pl</p>


<p>No related posts.</p>
<p>Related posts brought to you by <a href='http://mitcho.com/code/yarpp/' onclick="urchinTracker('/outgoing/mitcho.com/code/yarpp/?referer=');">Yet Another Related Posts Plugin</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://thefragens.com/blog/2008/03/webmail-authentication/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Apple USB Ethernet Adapter - solution</title>
		<link>http://thefragens.com/blog/2008/02/apple-usb-ethernet-adapter-solution/</link>
		<comments>http://thefragens.com/blog/2008/02/apple-usb-ethernet-adapter-solution/#comments</comments>
		<pubDate>Thu, 14 Feb 2008 17:15:15 +0000</pubDate>
		<dc:creator>Andy</dc:creator>
				<category><![CDATA[computer]]></category>
		<category><![CDATA[mac-osx]]></category>
		<category><![CDATA[osx-server]]></category>

		<guid isPermaLink="false">http://thefragens.com/blog/?p=478</guid>
		<description><![CDATA[Peter Sichel of Sustainable Softworks is a genius. Seriously. He&#8217;s not only just updated his USB to Ethernet Adapters for Mac OS X to work with the recently released Apple-branded USB Ethernet adapter, but he sent me a comment letting me know.

I&#8217;ve just installed the USBAx8817x 1.0.3b10 release and it seems to be working.

Peter emailed [...]


Related posts:<ol><li><a href='http://thefragens.com/blog/2008/02/apple-usb-ethernet-adapter/' rel='bookmark' title='Permanent Link: Apple USB Ethernet adapter'>Apple USB Ethernet adapter</a> <small>Don&#8217;t use this adapter on any Mac except the MacBook...</small></li>
<li><a href='http://thefragens.com/blog/2008/02/apple-usb-ethernet-part-2/' rel='bookmark' title='Permanent Link: Apple USB Ethernet part 2'>Apple USB Ethernet part 2</a> <small>Well, after spending several hours on the phone with AppleCare...</small></li>
<li><a href='http://thefragens.com/blog/2007/12/usb-to-ethernet-adapter/' rel='bookmark' title='Permanent Link: USB to Ethernet Adapter'>USB to Ethernet Adapter</a> <small>Oh my god how aggravating. I&#8217;ve got an Intel Mac...</small></li>
</ol>

Related posts brought to you by <a href='http://mitcho.com/code/yarpp/' onclick="urchinTracker('/outgoing/mitcho.com/code/yarpp/?referer=');">Yet Another Related Posts Plugin</a>.]]></description>
			<content:encoded><![CDATA[<p>Peter Sichel of <a href="http://www.sustworks.com/site/index.html" onclick="urchinTracker('/outgoing/www.sustworks.com/site/index.html?referer=');">Sustainable Softworks</a> is a genius. Seriously. He&#8217;s not only just updated his <a href="http://www.sustworks.com/site/news_usb_ethernet.html" onclick="urchinTracker('/outgoing/www.sustworks.com/site/news_usb_ethernet.html?referer=');">USB to Ethernet Adapters for Mac OS X</a> to work with the recently released Apple-branded USB Ethernet adapter, but he sent me a comment letting me know.</p>

<p>I&#8217;ve just installed the <code>USBAx8817x 1.0.3b10</code> release and it seems to be working.</p>

<p>Peter emailed me to let me know his sources inside Apple report that the driver in 10.5.2 should correctly with Apple&#8217;s adapter. You will have to remove Peter&#8217;s driver to see if this works. I&#8217;ll try it when I get the server back from repair as I&#8217;ll have to re-install the OS anyway.</p>


<p>Related posts:<ol><li><a href='http://thefragens.com/blog/2008/02/apple-usb-ethernet-adapter/' rel='bookmark' title='Permanent Link: Apple USB Ethernet adapter'>Apple USB Ethernet adapter</a> <small>Don&#8217;t use this adapter on any Mac except the MacBook...</small></li>
<li><a href='http://thefragens.com/blog/2008/02/apple-usb-ethernet-part-2/' rel='bookmark' title='Permanent Link: Apple USB Ethernet part 2'>Apple USB Ethernet part 2</a> <small>Well, after spending several hours on the phone with AppleCare...</small></li>
<li><a href='http://thefragens.com/blog/2007/12/usb-to-ethernet-adapter/' rel='bookmark' title='Permanent Link: USB to Ethernet Adapter'>USB to Ethernet Adapter</a> <small>Oh my god how aggravating. I&#8217;ve got an Intel Mac...</small></li>
</ol></p>
<p>Related posts brought to you by <a href='http://mitcho.com/code/yarpp/' onclick="urchinTracker('/outgoing/mitcho.com/code/yarpp/?referer=');">Yet Another Related Posts Plugin</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://thefragens.com/blog/2008/02/apple-usb-ethernet-adapter-solution/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
