Go Back   HowtoForge Forums | HowtoForge - Linux Howtos and Tutorials > Linux Forums > HOWTO-Related Questions

Do you like HowtoForge? Please consider supporting us by becoming a subscriber.
Reply
 
Thread Tools Display Modes
  #1  
Old 8th February 2010, 20:18
gr33d gr33d is offline
Junior Member
 
Join Date: Nov 2009
Posts: 23
Thanks: 1
Thanked 0 Times in 0 Posts
Question vmware images post-import (virtual users & domains debian lenny)

i imported virtual users and domains (mysql, squirrelmail, postfix, courier, etc debian lenny) image into vmware 2.0 server, and i need to secure everything with new passwords.

what else do i need to change from the default 'howtoforge' passwords, etc? ive updated root and administrator user passwords. are there any other users with default passwords?

there are 6 users in mysql. can any be removed? when i change the mysql root password, will this break postfix/courier since they required passwords during the install?

i couldnt find an existing post for this, but thanks in advance!
Reply With Quote
Sponsored Links
  #2  
Old 9th February 2010, 12:46
gr33d gr33d is offline
Junior Member
 
Join Date: Nov 2009
Posts: 23
Thanks: 1
Thanked 0 Times in 0 Posts
Default

i changed mysql root password and nothing seems to be impacted--hooray!

is there any postfix/courier risk in leaving the mail_admin password as mail_admin_password? i added directives to phpmyadmin to "Allow only from" my subnets, so mail_admin cannot accidently login there. but, could this user login some other way?

(maybe for another post) my ultimate goal is to allow only encrypted pop3, imap and smtp. how can i secure this server?

i tried securing smtp (http://www.howtoforge.com/postfix-sm...cure-port-only) with no luck. the only difference--i left smtpd.conf alone. it seemed, to me, like it would need the sql_* configuration lines, but it didnt work with or without them.

/etc/postfix/sasl/smtpd.conf:
Code:
pwcheck_method: saslauthd
mech_list: plain login
allow_plaintext: true
auxprop_plugin: mysql
sql_hostnames: 127.0.0.1
sql_user: mail_admin
sql_passwd: mail_admin_password
sql_database: mail
sql_select: select password from users where email = '%u'
"postfix reload" erred on the following line in master.cf:
Code:
-o smtpd_sasl_auth_enable=yes
thanks in advance!
Reply With Quote
  #3  
Old 9th February 2010, 14:26
falko falko is offline
Super Moderator
 
Join Date: Apr 2005
Location: Lneburg, Germany
Posts: 41,701
Thanks: 1,900
Thanked 2,735 Times in 2,571 Posts
Default

I'd change the password of the MySQL user mail_admin. I think I'd also install fail2ban.
__________________
Falko
--
Download the ISPConfig 3 Manual! | Check out the ISPConfig 3 Billing Module!

FB: http://www.facebook.com/howtoforge

nginx-Webhosting: Timme Hosting | Follow me on:
Reply With Quote
  #4  
Old 9th February 2010, 14:31
gr33d gr33d is offline
Junior Member
 
Join Date: Nov 2009
Posts: 23
Thanks: 1
Thanked 0 Times in 0 Posts
Default

will i need to modify the mail_admin_password in the 6 .cf files created for postfix?

also, do you have any insight as to why (with iptables -P INPUT ACCEPT) outlook (or any mail client) will only work with unencrypted settings? i'd like to use tls so email is encrypted.

fail2ban--good idea. thanks!
Reply With Quote
  #5  
Old 10th February 2010, 13:36
falko falko is offline
Super Moderator
 
Join Date: Apr 2005
Location: Lneburg, Germany
Posts: 41,701
Thanks: 1,900
Thanked 2,735 Times in 2,571 Posts
 
Default

Quote:
Originally Posted by gr33d View Post
will i need to modify the mail_admin_password in the 6 .cf files created for postfix?
Yes, after you've changed the password.
__________________
Falko
--
Download the ISPConfig 3 Manual! | Check out the ISPConfig 3 Billing Module!

FB: http://www.facebook.com/howtoforge

nginx-Webhosting: Timme Hosting | Follow me on:
Reply With Quote
The Following User Says Thank You to falko For This Useful Post:
gr33d (22nd February 2010)
Reply

Bookmarks

Tags
mysql password migration, passwords, subscriber-images, vmware

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Virtual Users And Domains With Postfix, Courier, MySQL And SquirrelMail (Ubuntu 9.10) keyslapper HOWTO-Related Questions 4 20th April 2010 15:46
Virtual Users And Domains With Postfix on Debian Lenny: localhost.localdomain DiAvOl HOWTO-Related Questions 4 11th April 2009 07:30
Virtual Users And Domains With Postfix, Courier And MySQL (Debian Etch) kdclaver HOWTO-Related Questions 36 23rd August 2007 19:02
Virtual Users And Domains With Postfix, Courier And MySQL (Debian Etch) mcg HOWTO-Related Questions 2 25th July 2007 16:00
Bind Failed christoph2k HOWTO-Related Questions 4 28th April 2007 00:57


All times are GMT +2. The time now is 18:15.


Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2014, vBulletin Solutions, Inc.