Moving gwia
Hi all: We still run one NW6.5sp8 server. This server runs BM 3.9 and acts as our external GW domain, hosting gwia and webaccess, both bound on the public interface of the BM server. We DO NOT plan on replacing BM anytime soon unless we have issues with security vulnerabilities or incompatibility with OES11 in the future.
I need to start thinking out upgrading our GW 8.0.2 system to GW 2012. Since GW 2012 is linux only, I will need to move gwia and webaccess off of the BM server, and I want to do this now before upgrading to 2012. The problem is I have never done this before and really don't understand all that is needed. Do I still need an external domain if all components run on the same machine? Is this even a good idea?
Thanks, Chris.
>>What's a BM server?
BorderManager 3.9 sp2 running on NW6.5 sp8
>>Why were you using a external domain?
Back when we first setup GW, we hired it out. The consultant created the external domain for security reasons as well as to give us a backup of the primary domain database. GWIA and WebAccess traffic get filtered by the Border Manager server.
>>Typically you may would probably upgrade your GWIA and WebAccess last, as they function
>>like clients.
Agreed, but it is my understanding that NW6.5 is not supported at all, therefore gwia and webaccess have to be moved to a new or existing server.
Similar Messages
-
Problem with junkmail folders after moving gwia from netware to linux
Recently moved our gwia that handles internet email from Netware to Sles
11 GW8.0.3 hp3. Email is moving in and out ok, but I'm getting some
really weird strangeness with Junkmail settings. Just like the old
gwia, this gwia has it's own domain/mta. Postoffices are under
different domains/mta's.
1. Email flagged with "x-spam-flag: yes" is no longer automatically
being moved to the junkmail folder. Yes the box is checked for this
particular's gwia settings, and I've even uncommented it in the gwia.cfg
file to to be sure it's enabled.
2. With the "view" column enabled in the client I can see that normal
email coming in gets set with the tag "internet" Email coming in with
"x-spam-flag: yes" in the header gets set with the tag "IPM.Novell.ND"
If I right click on one these to try to manually set it as junkmail, I
get a message that the message is "Not Eligible for Junk Mail Handling"
and when I click on that a window pops up saying "This is a POP message.
Only internet mail sent to your Groupwise account is eligible for Junk
Mail Handling"
For whatever reason instead of moving the email to the junkmail folder
when the x-spam-flag is set, it changes it to type IPM.Novell.ND and
then the client thinks that it's some sort of POP message instead of an
internet email. If I redirect incoming email back through the old
Netware gwia instead, everything works fine.
What could possibly be going on?Originally Posted by Mike
Recently moved our gwia that handles internet email from Netware to Sles
11 GW8.0.3 hp3. Email is moving in and out ok, but I'm getting some
really weird strangeness with Junkmail settings. Just like the old
gwia, this gwia has it's own domain/mta. Postoffices are under
different domains/mta's.
Did you create a new Gateway ( gwia ) object? Or recycle the old one ( which is usually a huge no-no. ) I suspect you created a new one, as you refer to the old NetWare GWIA. But you never know.
Originally Posted by Mike
1. Email flagged with "x-spam-flag: yes" is no longer automatically
being moved to the junkmail folder. Yes the box is checked for this
particular's gwia settings, and I've even uncommented it in the gwia.cfg
file to to be sure it's enabled.
Its only enabled if the run-time config says it is. ;-) Look at the settings listed in the HTTP console for the GWIA or the GWIA logs, which dumps the settings actually being used. You may find the setting is not really effective. Check for differences between the two GWIAs effective config.... something may stick out.
In the message properties there is a junk mail handling section, can you give us an example of working / non-working versions?
Note also:
Support | Junk mail delivered to Inbox <-- buggy or unexpected behavior
and
Novell Doc: GroupWise 8 Administration Guide - Blocking Unwanted E-Mail from the Internet <-- xspam.cfg
-- Bob -
Moving a Secondary Domain and Its Associated GWIA
I need to free up a server for my GroupWise 2014 move from stand-alone hardware to a brand new SAN/Virtual environment and I could use some tips so I don't screw it up by forgetting something (and I don't want to do it the hard way, any tips to make it an easy thing would be helpful). I'm looking for tips on how to move the domain, not on virtualization.
Here's the dirt:
I have a primary domain set up on its own server, running a GWIA named "GWIA2" (for outgoing mail only)
I have a secondary domain on its own server, running a GWIA named "GWIA" (for incoming mail only). The secondary domain has no post offices, just the GWIA. It's only purpose is to accept incoming mail and forward it to the primary domain. This is the server I need to free-up... I need the hardware.
My plan at this point is to move the secondary domain (and GWIA) to the same server that the primary domain (and GWIA2) resides on temporarily, so I can use the secondary domain's server as a "virtual" server starting point, once I get the newly freed-up server into my virtual environment, I can then migrate the rest of my GW system over. Once the migration to virtual is complete, I can then move the secondary domain back to its own server (if I even really need to).
My questions:
1) Do I even need to move the secondary domain and GWIA? Should I just delete it and run with one domain? I'm in a state government situation and we get a LOT of incoming mail when we are in session. This is why I set up two domains in the first place; one for incoming mail and one to handle outgoing (the primary domain handles the outgoing mail because the volume is considerably lower than incoming mail).
2) Does it even make sense to have a separate server for incoming mail and outgoing mail after virtualization?
3) If I do need to move the domain, what steps would I need to take? I'm thinking about things like reconfiguring the links, moving the objects in GWadmin console, IP Address changes (I do not need to change the MX record, that points to my SMTP filter, which then forwards the messages to my secondary domain - I'd just need to point it at the new IP address).
Any other thoughts would be appreciated. I'm just now beginning to form the outline of what I need to do and I thought I'd get input from you guys to help me solidify my plan. Any advice or thoughts will be graciously welcomed.
PJMlaurabuckley wrote:
> Further to that I think, but stand to be corrected on this, that two GWIA's on
> the same box, if you are not binding exclusively to two separate IP's, is not
> going to work due to port conflicts.
Correct - if you have them bind to separate IP addresses, they should work, but
otherwise only one GWIA per server. I personally am not sure that separate
GWIAs are all that important. Two domains are nice though for disaster
recovery, but if they are both on the same server, the redundancy is not really
there.
Danita
Novell Knowledge Partner
Are you a GroupWise Power Administrator? Join our site.
http://www.caledonia.net/register
If you find this post helpful and are logged into the web interface,
show your appreciation and click on the star below... -
New GWIA on Linux - ConsoleOne does not show all GWIA tabs
Hi,
Last night I moved a POA and MTA to a new Linux server (SLES 11 sp1 on VMWare), which are running fine. I then had to install the GWIA to this server so I deleted the old GWIA object (which was running on Windows) and then ran the install for the GWIA on Linux. The GWIA agent runs on Linux now - at least according to the monitor on port 9850, but in Consoleone I do not have all the normal tabs associated with the GWIA object - just the "Groupwise" tab. All snap-ins, of course, are there because I can manage all other GW objects without a problem. Any clues? Thanks!
DonOriginally Posted by gregamy
Map a drive letter to it prior to starting ConslowOne.
Danitas Desk Blog Archive Administering Your Linux GroupWise Domain from Linux and Windows
No, no, no. Mapping a drive letter is not the solution. In fact, it fixed itself after apparently running an update process at night. Everything is on the Linux server w/Linux paths in C1 - don't need any stinking drive letter mappings running C1 from the Linux console. -
Heres my problem. I have two giwa boxes, gwiaa and gwiab. Each are on seperate boxes and each are in their own domain. If I take Gwiaa down, gwiab will receive inbound email and pass them on, however, it will not send outbound email.Gwiaa is the primary. In Gwiaa, I have Gwiab defined as the alternate Internet Agent. I checked the the MTP port and both are set to 7103. Is there something else I need to be checking? I had the group that takes care of our firewall check all the setting and they said that Gwiaa and Gwiab have the same settings.
Thanks for any help,
BudI am posting this quote from Massimo Rosen in another thread as I think it is an important 'Gotcha' and should be highlighted. Particularly as it is not mentioned, that I can find, in Kratzer/Korte. And that putting an MTA and GWIA on a second box is a (sort of) recommended route when moving from Netware to Linux for us followers of Danita.
Quote: (talking about GW7)
It does do something, and works correctly if only GWIA goes down. The
problem in your case (and the defect) is that from the sending MTA's
view, not the GWIA is down, but the path *to* that GWIA is down (too),
e.g the MTA is gone. *This* is what fails the designed logic, it simply
isn't (properly) designed (yet) to failover in that case. Supposedly
this will work in the next GW version.
CU,
Massimo Rosen
Novell Product Support Forum Sysop -
How to correct bad PAB addresses that route through old GWIA
Old system was GW 7.x on NetWare 6.5 servers.
New system is GW 8.0.2HP2 on Windows 2008 servers.
We moved to new hardware, etc. when we upgraded to GW 8. It's time to turn off the old GWIA but I find that many people have saved addresses (I assume mostly in Frequent Contacts) that route messages through our old GWIA. Doing a grep search of the old GWIA logs on the term "sender" is how I know this is still how these messages are flowing.
Anyway, for example, there is a user that sends messages to his VP and that VP's address shows to be "Firstname Lastname ("[email protected]@etmc.org) in the properties of the message. With the old GWIA off messages to this address remain in Pending status. Turn the old GWIA back on and the message goes on through.
Does the GWCheck PABFix option correct these stored addresses in personal address books, or is there another way, or any way at all?
TIA
SteveI just had this problem after upgrading to 2012. An old utility (gwpabasr.exe) saved the day. You can find it in the file finder on the download site. Yes, it is OLD but it worked. Just be careful of the location of the gwpabasr.sri. It looks for it in the local windowsa directory. I know I am late to post to this request but maybe some else is looking for it.
John
Originally Posted by seschenburg
Old system was GW 7.x on NetWare 6.5 servers.
New system is GW 8.0.2HP2 on Windows 2008 servers.
We moved to new hardware, etc. when we upgraded to GW 8. It's time to turn off the old GWIA but I find that many people have saved addresses (I assume mostly in Frequent Contacts) that route messages through our old GWIA. Doing a grep search of the old GWIA logs on the term "sender" is how I know this is still how these messages are flowing.
Anyway, for example, there is a user that sends messages to his VP and that VP's address shows to be "Firstname Lastname ("[email protected]@etmc.org) in the properties of the message. With the old GWIA off messages to this address remain in Pending status. Turn the old GWIA back on and the message goes on through.
Does the GWCheck PABFix option correct these stored addresses in personal address books, or is there another way, or any way at all?
TIA
Steve -
Hi all,
I've got this scenario-
Remote site- GW7 running on Netware 6.5. Secondary GW Domain. 15 GB Post Office
Head office- GW8 running on OES Linux. Primary GW Domain.
We want to get rid of servers at the remote site and move their GW mail to the Head office. Would this be a good plan to make this happen:
1. Upgrade the Remote system to GW8.
2. Use DBCopy to copy PO to the OES Linux server (using Migration option).
3. Cut over and do a final DBCopy of Post Office and DBCopy over the Secondary Domain DB.
4. Edit the PO and Secondary Domain info in C1 making the POA object run on port 1678 so we can use the same IP.
5. Reconfigure the Secondary Domain to use the existing GWIA and WebAccess. We have DataSync running currently on the PO in the Primary Domain. I assume the SOAP connections will allow for connections to this PO in Secondary Domain.
Would it be better too if after moving the GW system to the Head office to move the PO from the Secondary Domain to the Primary Domain and get rid of the Secondary Domain? If so, what's the best way to do this?
Thanks in advance
VictorIn article <[email protected]>, Vpoon wrote:
> We want to get rid of servers at the remote site and move their GW mail
> to the Head office.
>
Another option to consider is to move users directly to the primary
PostOffice. Depending on your site to site bandwidth and the size of the
users mailboxes, some nights you might only migrate one user, others
could be bunches. Just upgrade that remote system first so they are both
to a common current patch level and that both systems have had a decent
health check done.
On first blush your proposal looks doable, though more of a do or die
weekend than the above option. I've never done that type of
consolidation, so I don't have any direct experience to go by.
Step4, you'd also have to do the same for the MTA ports
Either way, this would also be a good time to find who has the big
messages and make sure they are actually needed or deleted.
http://www.konecnyad.ca/andyk/gwbig.htm
Your remote sites might benefit from caching mode with losing there local
server. Also will help make the migration a bit more transparent.
And make sure you're existing system has plenty of resources, drive and
RAM.
Andy Konecny
Knowledge Partner (voluntary SysOp)
KonecnyConsulting.ca in Toronto
Andy's Profile: http://forums.novell.com/member.php?userid=75037 -
My customer is currently moving away from GroupWise to the Google Cloud email solution, that said they have a question regarding how the GWIA can be used to forward mail messages to team members from sources such as routers, switches, etc,.
Situation:
Status messages, and alerts are currently handled through the GWIA which is used to forward those messages onto their respective parties. With the introduction of the Google Cloud email service, there is no such method for forwarding those alerts off to these respective parties. They would like to have the GWIA be used to facilitate this process. Basically they would like to maintain a GroupWise GWIA(s) to forward emails to team members. Is this even a workable solution, a GWIA forwarding out to the Google Cloud?
Additional questions from Customer:
1.) Currently they do not know exactly how the GWIA would handle internal addresses (nxxx.xxx) messages?
2.) There are currently 20 or more white lists (smtp relay(s) to GWIA), if these white lists send email to the internal address or nxxxx.xxx domain how would the GWIA handle this?
3.)Google Applications mx records change every ten minutes, what is the best way to configure the route.cfg (or is that the best way to handle this request)?
4.) Can a DNS name be used in the route.cfg or just IP address? (I currently am under the impression that route.cfg can only handle IP addresses)
Thank you,Originally Posted by buckesfeld
I don't understand the problem entirely, I think.
Your customer has the need for an internal SMTP service which forwards everything to Google? In this case just enter the hostname or IP of the Google SMTP service as a relay host and make sure Google accepts whatever comes from the GWIA's IP.
If using the GWIA for such stuff is a licensing issue, I don't know. Check with Novell.
Uwe
Novell Knowledge Partner (NKP)
Please don't send me support related e-mail unless I ask you to do so.
Good day,
Sorry for not responding sooner to your answer. Further I apologize for any confusions. Basically the second point you brought forth is what they are looking for.
1.) They want an internal SMTP server to forward everything to Google.
The question that they had was in respect to placing a DNS name in the Route.cfg, or would they even need to do that in the case that you described above? Looks like they can just use the DNS name or IP address of the Google Device, and as long as the Google Device is able to accept it as an incoming relay they should be alright. Is that a correct statement on my part?
This is going to be a temporary solution, until they are able to stand up another solution (most likely Postfix) I have spoken with Novell anout licensing and that has been answered.
Thank you for any further assistance that you can offer. -
We are moving to Google Apps and I am having trouble sending to my domain from GroupWise. I have our mx record routing to Google and that works fine. If I send from Groupwise to forward a message to Google, it does not go out gwia, says delayed. I changed the foreign name to a different domain and changed the internet addressing on the GroupWise domain to an alternate. I can send anywhere but to the domain I moved to Google. There must be another setting or switch in GroupWise to see that doamin is not internal any longer? Any thought are appreciated.
Thanks,
SusanHi,
lewissusan wrote:
>
> We are moving to Google Apps and I am having trouble sending to my
> domain from GroupWise. I have our mx record routing to Google and that
> works fine. If I send from Groupwise to forward a message to Google, it
> does not go out gwia, says delayed. I changed the foreign name to a
> different domain and changed the internet addressing on the GroupWise
> domain to an alternate. I can send anywhere but to the domain I moved
> to Google. There must be another setting or switch in GroupWise to see
> that doamin is not internal any longer? Any thought are appreciated.
Sounds like you may have a route.cfg entry for your own domain,
overriding the MX record.
CU,
Massimo Rosen
Novell Product Support Forum Sysop
No emails please!
http://www.cfc-it.de -
We've moved our mail to google (sad to say), but we still need to keep GW running to to allow for 'dumb' SMTP relaying of some internal systems messages. How can I reconfigure my GWIA so it will ignore my domain name (that it used to deliver to my internal post office) and send ALL that mail out the gateway? Right now, mail sent to [email protected] is still getting delivered to the groupwise mailbox. Need everything to go out to google to the [email protected] address.
I tried that...but it didn't seem to work. Restarted GWIA.
Is something cached somewhere that needs to be cleared, maybe?
Originally Posted by DZanre
willmw <[email protected]> wrote:
> We've moved our mail to google (sad to say), but we still need to keep
GW running to to allow for 'dumb' SMTP relaying of some internal systems
messages. How can I reconfigure my GWIA so it will ignore my domain
name (that it used to deliver to my internal post office) and send ALL
that mail out the gateway? Right now, mail sent to [email protected] is
still getting delivered to the groupwise mailbox. Need everything to go
out to google to the [email protected] address.
Change the domain name in the internet addressing settings for your
system to something "fake". The GWIA sees that your domain is "its" and
delivers inhouse.
Danita - Danita’s Desk -
Currently the system consists 2 Servers
OES11 + GW2012
Due to reorganization we are moving a whole department to another site
the site will be linked by Site-Site VPN over an ADSL link
Server 1 - user files
Server 2 - groupwise inc webaccess & gwia - single post office
So my thoughts are to add a 3rd server & add a 2nd PO
move users concerned to new PO
Server 3 will have PO, MTA & Webaccess installed
There is a GW Document library being used by most of the users - so will need to have a library for each PO
Mobiles are setup as IMAP - I have 2 GWIA's running on Server 2 (2nd GWIA for out bound only for mobiles)
Questions:
First of is adding a 2nd PO the answer or do I need to consider anything else ....are there any "gottchas"
Would users at both PO be able to use mobiles via GWIA on Server 2
I'm NOT sure how the documents will move...Document Management - when I move users from one PO to another would the documents move to the PO ?
Folder Shares - what happens - would sharing still be valid?
Documents - what happens to documents that are currently shared ?
Anyone done this before? - any advice appreciatedIn article <[email protected]>, Bhrt60 wrote:
> So my thoughts are to add a 3rd server & add a 2nd PO
> move users concerned to new PO
> Server 3 will have PO, MTA & Webaccess installed
It is easiest if you can build this server on the IP addressing of the new
location. It 'just' needs your router to know that network as local and do
the routing between the two networks. Those networking changes are
usually easier to do than all the bits in OES.
> Would users at both PO be able to use mobiles via GWIA on Server 2
As long as that GWIA can get to both POAs, it should be just fine.
> I'm NOT sure how the documents will move...Document Management - when I
> move users from one PO to another would the documents move to the PO ?
I'm a bit fuzzy on that side as well as my clients haven't used DM much.
Unless someone else pipes in, you might just have to experiment a bit and
watch carefully when you move a user with known files in DM.
Andy of
KonecnyConsulting.ca in Toronto
Knowledge Partner
http://forums.novell.com/member.php?userid=75037
If you find a post helpful and are logged in the Web interface, please
show your appreciation by clicking on the star below. Thanks! -
Moving GroupWise 8 install to new server
We are moving a GroupWise install from one Netware 6.5 server to another.
Since it has been several years since I installed and patched the...Originally Posted by laurabuckley
Are you running two seperate GroupWise systems?
Cheers,
This is what is currently planned: We want to set up a completely new GroupWise 2012 system and then move everything over from the currently running GroupWise 8 system which should be turned off after this process.
Originally Posted by DParkes
You could go through the fairly painful archive routine for each account,
as described in TID 10012347. But you'd lose any shared folders/calendars
as well as any dms items if you use that.
I'm surprised that you can't clean up your existing system though. GW is
pretty good at allowing you to tidy any items that are no longer used.
What are the problem items you don't want to carry forward ?
Cheers Dave
Thanks for your answer Dave,
As far as I can see we have an old GWIA from GW6 and an external domain with an old external GWIA in it which is no longer in use.
I am not able to tell you more about our GW system as I'm new in this company and only heared from my colleagues that they don't know really what will happen after the removal of those objects. So my boss decided that I will have to create a completely new system and switch over to it.
After he is back from vacation I will talk to him again. Maybe he will change his mind and allows me to update and clean up the old system.
Cheers Alex -
Hello all:
Our ISP, Verizon Business, can be unreliable at times. The T1 circuit seems to go down during heavy rain storms, before heavy rain storms, and once every 3 months.
For fault tolerance, the plan is to add another gwia to our Post Office via another ISP . We are thinking that if the first line goes down, the MX record will point to the second gwia and we should be ok for email.
We are still on GW7.03. Are there any hicups to note with this setup? Any pointers (other than moving to Unix or GW8) to offer?
ThanksOriginally Posted by EBSR_PARAMEDIC
Hello all:
Our ISP, Verizon Business, can be unreliable at times. The T1 circuit seems to go down during heavy rain storms, before heavy rain storms, and once every 3 months.
For fault tolerance, the plan is to add another gwia to our Post Office via another ISP . We are thinking that if the first line goes down, the MX record will point to the second gwia and we should be ok for email.
We are still on GW7.03. Are there any hicups to note with this setup? Any pointers (other than moving to Unix or GW8) to offer?
Thanks
It depends... Is your current GWIA on "the inside" or directly connected to the internet?
if you are NAT'ing an outside address from your providers to the GWIA, there is not a direct need to add a second GIWA. Just make sure the outside IP of you second internet connections has a NAT for the SMTP port pointing to your GIWA.
Make sure they add the second ip record to the outside MX record of your mail exchange domain, and that should be set.
You can setup your GWIA to smart relay to more than one address. Just add the two outgoing addresses (a space to separate them) on the GWIA's outbound host. That should let the GWIA use the first one until if fails and then fall back to using the second one. (As found here : Novell Documentation)
One thing to watch could be the outside IP on your second internet line and if it matches the FQDN name your GWIA is reporting. If those two don't match up according to the internet DNS records, your mail might be dropped as it is seen as possible spam attempt. So I'd advise to give the failover a good test before counting on it fully working when needed.
Cheers,
Willem -
I moved a GW8 - System to a new environment and have to install GWIA and Web Access again.
I configure the GWIA using the installation programm provided by the software package.
I use the following config details :
ip-adress : 192.168.2.14
dns : up-gw-dmz
MTP port : 0
Relay host : 192.168.2.198
mail domain : unipart.de
domain dir : /mnt/GW8 which is a directory on the server with the GW( Base - Installation
GWIA dir : gwia
LDAP Server : 192.168.2.10
LDAP User : cn=admin.UNiPART_GmbH
passwort . +++++++
SSL - Port : 636
certificate : TrustedRootCert.der (exported from the Base OES Server with LDAP server)
Result : wrong password
If I use the LDAP browser on the same server with that user credentials I am able to step through the LDAP entries
Also logging in as admin on an OES Server is successful with the same password.
Which password is user for LDAP or is this different from eDir ?
How can I configure the GWIa in a different way?
Bye
AlfonsHi Alfons,
Your problem may lie here: LDAP User : cn=admin.UNiPART_GmbH
It should probably look something like this: LDAP User : cn=admin,o=UNiPART_GmbH
Note the comma and not a "."
Let us know how it goes.
Cheers, -
How to move GWIA 8 to new netware server
I have a server that I managed to get back up and running my GWIA 8 and a secondary MTA and POA. How do I transfer the GWIA/MTA/POA to the new Netware 6.5 server. I dont trust the current server.
While in panic mode, I tried installing it on the new server directly but it wouldn't accept the username / password during the Edirectory login age.
On the new server, I already have the Primary GW8 POA / MTA running.
Just wondering,
KenHi Ken,
You could use DBCopy to copy everything across, and then update the settings on the agents.
I would strongly recommend the following: Caledonia Guide to Moving GroupWise
Good luck.
Cheers,
Maybe you are looking for
-
I'm starting to get very frustrated with the lack of help on this issue!!!
Ok, someone please help! I have tagged several songs off the radio from my IPod and am trying to purchase them. I have been able to purchase songs on a previous version of ITunes, but not now after upgrading to the latest version. I have tried the f
-
Hi abapers doubt in client dependent and independent
i am having a doubt could you please explain me i created a dependent table using mandt in client 100(development). if transfered this table to quality 110(quality). it is possible access data? when i see development 100 it's having data but i can't
-
WHY DOESNT MY IPHONE WORK TO A SERVICE NETWORK
for some reason my iphone 3gs does not connect to the rogers network and my sim card is inside what do i do in order to get it to work?
-
i can't download the apple ios 5 for the ipad. after downloading around 10 % an error no. 3259 occurs. it's a network error. please help . it's urgent. i am having apple ipad 2 3G wifi.
-
Hi, I am having the problem where I had a friend use my computer who was messing with it and got into the netinfo manager and he messed with the account settings under users. And he changed my short name and my home folder. Now I am not set as an adm