Problem POP with SSL for hosted domain !

Hi Sun!
With default domain, i can use POP with SSL but for hosted domain, I can't use POP with SSL and received a message +-ERR [AUTH] Authentication failed!+
In file PopProxyAService.cfg on MMP server, I uncomment line default:HostedDomains yes but it's not work
Please help me solve this problem!
./imsimta version
Sun Java(tm) System Messaging Server 7u2-7.02 64bit (built Apr 16 2009)
libimta.so 7u2-7.02 64bit (built 02:28:03, Apr 16 2009)
Using /opt/sun/comms/messaging64/config/imta.cnf (compiled)
SunOS SMSG 5.10 Generic_138889-08 i86pc i386 i86pc
Thanks!

I have found problem!
Hosted domain that can not be used IMAPs and POPs because I have moved from other mail systems
When I created another account on this hosted domain, this user can use POPs and IMAPs normal. But old users can't use POPs IMAPs
I don't know why old users can't use POPs and IMAPs ?
Error log in front-end MMP:
[07/Apr/2010:08:37:15 +0700] SMSG PopProxy[8284]: General Notice: (id 1943) User [email protected] user access denied
[07/Apr/2010:08:37:15 +0700] SMSG PopProxy[8284]: General Notice: (id 1943) badguy xx.xx.xx.xx now has 3 badness
[07/Apr/2010:08:37:18 +0700] SMSG PopProxy[8284]: General Error: (id 1943) client socket IO error: Error 0 (0)

Similar Messages

  • SQL server 2012 with SP2 for hosting VMM 2012 R2 DB server

    Hi,
    I would like to implement System Center 2012 R2 Operation Manager, VMM and Configuration Manager.
    I have proposed to my customer two MSSQL Server 2012 Box, one for SCOM/VMM DB server and another one for SCCM (SCCM DB and SCVMM DB cannot be on the same computer).
    But I read on Microsoft web site that only SQL Server 2012 SP1 are supported for VMM DB server and SQL Server 2012 SP2 is supported for SCOM DB server.
    So my question is: Can I deploy one box SQL server 2012 with SP2 for hosting VMM 2012 R2 DB server ?  if not, When SQL Server 2012 SP2 will be supported for VMM 2012 R2 DB server ?
    Regards.
    BrahimH.
    BrahimH

    Hi,
    As per the link this seems to me a known issue. I cannot 100 % say because I have seen/faced this issue with
    SP1 and you mentioned SP2. I would always suggest to install RTM only there is option to un select SP2 during installing.
    Well thank you for reporting I guess Microsoft would take this as feedback.
    Can you share setup log files please just for analysis
    Please mark this reply as answer if it solved your issue or vote as helpful if it helped so that other forum members can benefit from it.
    My TechNet Wiki Articles

  • RDP using Smartcard fails with NLA for non-domain members

    We have to administer Windows 2008 R2 servers which are in domains we are not members of - typically domains that support a particular application. We have DoD smartcards (CAC) and we admin from our Windows 7 desktops. If we disable NLA, we can CAC-authenticate
    over RDP just fine. With NLA enabled, though, we get "The remote computer you are trying to connect to requires NLA but your Windows domain controller cannot be contacted to perform NLA".
    My assumption would be that the Win7 desktops would never know where the particular ADCs are, since we're not domain members, but that they actually need to verify the DoD root cert that signed our CAC. Said root cert has been installed on our desktops and
    on the servers in the domains.
    What is necessary to get NLA with smart cards working for non-domain members?
    Edit: With NLA enabled I *can* connect over RDP from one of the domain members to another, so this really seems specific to the non-member desktop settings and how it performs NLA

    Hi,
    Thank you for posting in Windows Server Forum.
    If you use the credential SSP on Windows Vista or Windows 7 to log on with a smart card from a computer that is not joined to a domain, the smart card must contain the root certification of the domain controller. A public key infrastructure (PKI) secure channel
    cannot be established without the root certification of the domain controller.
    You can use following command for adding certificate.
    certutil –addstore –enterprise NTAUTH <CertFile> 
    Where <CertFile> is the root certificate of the KDC certificate issuer.
    More information.
    Smart Card and Remote Desktop Services
    http://technet.microsoft.com/en-us/library/ff404286(WS.10).aspx
    Apart there is one Hotfix might resolve your case, go through beneath link once.
    RDS client computer cannot connect to the RDS server by using a remote desktop connection in Windows
    http://support.microsoft.com/kb/2752618
    Hope it helps!
    Thanks.
    Dharmesh Solanki
    TechNet Community Support
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact [email protected]

  • How to make push work with a google hosted domain?

    I can find no instructions on it through google, i've posted through google groups and gotten no answer. Using the instructions to setup google as exchange works great for my personal mail but it doesn't work for my hosted domain simply by substituting my hosted domain email. The only way I can get my hosted domain to work is by setting it up as a regular gmail account. The phone only allows one exchange push account and I would much rather have my hosted domain (work) as the push account and hte personal as the one that refreshes every 15 minutes.
    how can I get this to work?
    Thanks.

    The Sony Ericsson W580i is supported using an iSync Plugin from here.
    Be careful that you choose the correct phone, as you wrote W580i in your subject, but W850i in your message!
    Julian
    Aluminium 20" iMac 2.4Ghz, 2GB RAM Mac OS X (10.5.2)
    Apple Required Disclaimer: "I may receive some form of compensation, financial or otherwise, from my recommendation or link."

  • Howto setup an imap connection with ssl for incoming, but nonssl for outgo

    I am just stucked in a "simple" problem. Our mail-server is doing imap with a special configuration:
    - incomming is running imap/ssl on port 443
    - outgoing is running non-ssl (plain) on port 25
    The problem is that I can not set the "use ssl" and "port" configuration for incoming or outgoing separately. Or I assume I just can not find the way to setup this in the right way.
    Any hints on this?
    Carsten

    Hi. To set up you ssl incoming connection, open Preferences>Accounts. Click the Advanced tab, and near the bottom, you will see a place to enter the port number and check ssl enabled. For the outgoing connection, in the preference box, click Account Information. At the bottom you should see outgoing server information. Click on this and scroll to Edit Server List. Select the appropriate server (if you have more than one) and Click the Advanced tab. You should see a radio button that selects Standard ports (25 is among them).
    My account is set up exactly the same way without any problems.

  • Problems when setting SSL for a MQSeries Adapter

    I'm trying to enable SSL and so far these are the steps I've done:
    - I've been using the DemoIdentity.jks and DemoTrust.jks files located under <MIDDLEWARE_HOME>\wlserver_10.3\server\lib for all my certificate operations.
    - I created a PrivateKey and imported it to my DemoIdentity store, created a certificate request and when I got the response imported it back using the same alias. Something I want to highlight here is that when I created the PrivateKey I left the password field empty so it supposed inherit the keystore's.
    - I also imported the CA cert into the DemoTrust.jks
    My MQAdapter is all set and when I used it with no SSL it was working just fine so I think I have the problem isolated.
    Anyway, now when I try to connect this is what I'm getting in the logs:
    at oracle.integration.platform.blocks.adapter.fw.jca.cci.JCAConnectionMa
    nager$JCAConnectionPool.createJCAConnection(JCAConnectionManager.java:1335)
    ... 59 more
    Caused by: java.security.UnrecoverableKeyException: Cannot recover key at sun.security.provider.KeyProtector.recover(KeyProtector.java:311)
    at sun.security.provider.JavaKeyStore.engineGetKey(JavaKeyStore.java:121
    at sun.security.provider.JavaKeyStore$JKS.engineGetKey(JavaKeyStore.java
    :38)
    at java.security.KeyStore.getKey(KeyStore.java:763)
    at com.sun.net.ssl.internal.ssl.SunX509KeyManagerImpl.<init>(SunX509KeyM
    anagerImpl.java:113)
    at com.sun.net.ssl.internal.ssl.KeyManagerFactoryImpl$SunX509.engineInit
    (KeyManagerFactoryImpl.java:48)
    at javax.net.ssl.KeyManagerFactory.init(KeyManagerFactory.java:239)
    at oracle.tip.adapter.mq.ManagedConnectionImpl.setupSSLSocketFactory(Man
    agedConnectionImpl.java:670)
    Googling this it seems like it's a problem with the keystore and private key passwords being different but I changed the private key's to match the keystore (something that I shouldn't be necessary because of the keytool's default behavior when generating the key) with no positive results.
    Anyway, any ideas would be really appreciated. I've been spinning my wheels on this issue for 3 days now.
    BTW, here's I'm using Oracle SOA11g.

    Hello MV,
    I don't need to access my console through SSL as this is not part of what I'm trying to do.This will confirm whether SSL has been enabled on your weblogic. In your case it seems that SSL has not been enabled.
    the demo keystore and truststore are regular stores and I was able to successfully import certificates into them using keytool.Demo keystores are not recommended to be used in production. Moreover DemoIdentity.jks already has a private (secret) key so importing another key may cause an issue. I don't think any application server supports multiple private keys for SSL.
    I'll go ahead anyway and create a brand new set of keystores just to rule out that's not the problem here.Please test with new custom keystores and let us know the results.
    Regards,
    Anuj

  • Problems connecting with wireless for 2 years! please help!

    I have had my mac for almost 2 years. When I first got it unfortunatley I did not have internet at home so I was stealing internet from my neighbor and it was working pretty good. I then got my internet back on after about a month of fighting with ATT because they wanted me to pay for a router. They gave us the same router a 2wire gateway 2701HG-B router (whatever that means). The wireless internet stoped working. I took the computer in they fixed it for a while by changing something. 4 months later it stopped working so I took it in again. They fixed it ... For a while. Then it stopped working.

    If you have an history with this case, they may accept to do something even if warranty is over, but that's not for sure.
    Does your wi-fi work on some other access points ? (neighbors, fast-foods...)
    Usually, when this happens during warranty period, the machine is exchanged.

  • Problem Now with SnapNDrag for screenshots

    Up until SL, I used SnapNDrag to capture screenshots from DVDs. Now I get just the gray and white squares. I've tried selection, window and screen. All the same. Websites will screenshot just fine, just not the dvd - either running or paused. Any ideas? It's probably just some setting I need to change, but I can't figure it out.

    I'm having this problem too. I have the lastest SnapnDrag 2.5.1 and it now doesn't take captures in Apple's DVD Player 5.2
    Any help is appreciated.
    Also, if this app is broken what else would you recommend?

  • IM not working with hosted domains

    My IM working with default domain within portal and from jnlp site but with my hosted domains is not signing in. I have IMS 7.1 (patched) Sun JES 2005Q4
    It dont even generate any log for hosted domains.
    IM log set at DEBUG level.
    Does IM 7 support hosted / virtual domains in only one IM instance (single install)

    I dont know much about it because there is no log fot failure logins. It simply working with default domain but not for any hosted domain. I also followed following.
    * cd /opt/SUNWiim/html/en/
    #vi im.jnlp
    Add the following in the im.jnlp just above the </resource> tag
    <property name="com.iplanet.im.client.allowarobase" value="true" />
    * Redeploy im resources into the web-container with recent changes
    * Now launch the client from http://<hostname>:<webport>/im/en/im.jnlp
    and then login as [email protected]
    How do i Redeploy im resources into the web-container with recent changes

  • Why does Mail 6 keep switching on SSL for SMTP?

    After setting up a POP3 account in Mail 6, with SSL for SMTP disabled, it works fine for a short while, but then suddenly Mail decides to enable the SSL option which of course causes problems sending mail from the account. There is no SSL for this particular email account. When I try to disable the setting it turns off and then immediately turn itself on again. How can I turn it off, does anyone know?

    Thanks William.  I've done that, now will see if the problem pops back up.  It did report that no errors were found.
    I've also seen in the Keychain first aid that it's possible to sort of shuffle the keychain sideways and start again, would that be a sensible step if this doesn't work?  I understand that means re-entering in all my passwords for various services, which is a pain, but far less painful than having to randomly re-generate Gmail passwords

  • Exchange 2010 Autodiscocer for non-domain computers.

    Hello. I have problems with autodiscover for non -domain computers. Somebody can explain me in turn what i must do for configuration. 

    Hi,
    For your Non-domain joined clients, the Outlook would connect to Exchange mailbox from the Internet. We need to enable Outlook Anywhere for your external users:
    Enable-OutlookAnywhere -Server:Exch10 -ExternalHostname:mail.contoso.com
    -ClientAuthenticationMethod:Ntlm -SSLOffloading:$true
    For autodiscover service, when Outlook is started on a client that is not domain-connected, it first tries to locate the Autodiscover service by looking up the SCP object in Active Directory. Because the client is unable to contact Active
    Directory, it tries to locate the Autodiscover service by using Domain Name System (DNS). In this scenario, the client will determine the right side of the user’s email address, that is, contoso.com, and check DNS by using two predefined URLs. For example,
    if your email address is [email protected], Outlook will try the following two URLs to try to connect to the Autodiscover service:
    https://contoso.com/autodiscover/autodiscover.xml
    https://autodiscover.contoso.com/autodiscover/autodiscover.xml
    For more information about autodiscover service in Exchange 2010, please refer to:
    http://technet.microsoft.com/en-us/library/jj591328(v=exchg.141).aspx
    Therefore, you don’t need to change any configuration for Autodiscover. Just make sure your Exchange certificate which is assigned with IIS service has included aotodiscover.contoso.com name and the certificate is valid and trusted for external
    user using. If not, please create a new SRV record for your autodiscover service and pointed to
    mail.contoso.com. For more information about SRV record of autodiscover, please click:
    http://support.microsoft.com/kb/940881
    Regards,
    Winnie Liang
    TechNet Community Support

  • How do i restart slapd with SSL enabled?

    I am running 5.2 with patch 3 for solaris 8. I want to restart slapd using the restart-slapd command. However the problem is, with SSL enabled, I need to manually intervene and enter in the token password. Is there any way to get around this?
    This wouldnt be an issue if i didnt have to automate the slapd restarts.
    Thanks.
    -Sowser

    If you haven't already, create a file as <serverRoot>/alias/slapd-<instance>-pin.txt and add the following to it
    Internal (Software) Token:yourcertdbpasswd
    Once done you will be able to avoid any manual intervention. This procedure is documented in the Admin guide

  • SSL for Exchange 2010 confusion

    We are running Exchange 2003 and would like to migrate to Exchange 2013. However since there is no migration path from 2003 to 2013, we implemented Exchange 2010 so I can move the
    mailboxes to 2010, decom the 2003, then migrate to 2013.
    I have installed Exchange 2010 co-exist with 2003 already.  In Exchange 2003, I have a GoDaddy SSL setup for OWA/ActiveSync for outside users.  My internal domain is xyzcompany.int
    and my outside domain is xyzcompany.com.  
    After reading several articles, I am still confused and hope someone can help me out
    with correct path to this.  In Exchange 2010, I am about to create a new SSL.  In SSL Setup
    do I specify both internal and external domains for OWA, ActiveSync, Autodiscovery (which
    I don't need this for outside users), HUb transport, and Legacy?
    Or
    Do I need create SSL for external domain and one for internal domain?  For Internal domain,
    I can use the Win2008 cert authority if needed and for external domain, I will use GoDaddy SSL.  
    Thanks so much

    In exchange 2010 you need only commonname (i.e.mail.externaldomain.com) and autodiscover.externaldomain.com.
    configure
    splitDNS to resolve external names from inernal network and configure URLs. Please check
    http://social.technet.microsoft.com/wiki/contents/articles/5163.managing-exchange-2010-externalinternal-url-s-via-powershell.aspx
    If you want to use Exchange 2003 you have to add legacy.externaldomain.com to the certificate.  Please check
    this
    Thanks, MAS
    Please mark as helpful if you find my comment helpful or as an answer if it does answer your question. That will encourage me - and others - to take time out to help you.

  • Gmail, Hosted Domain, emails disappear

    I use Gmail to Host a Domain, we use POP. I only expect mail to go to the pre when my computer is not on. However, the email goes to the pre, shows up in the alert then disappears. I have checked all the settings and they are correct. Is ther something special that needs to be done for hosted domains on Gmail. It appears that the Pre is attempting to sync like Imap, and that removes the messages....Help any one.
    Post relates to: Pre p100eww (Sprint)

    Read this thread, DrSuSe goes into why this might be happening (checking your email from another source):
    http://forums.palm.com/palm/board/message?board.id=Synergy&thread.id=1814 

  • I've had no problem whatsoever with itunes

    I've had no problem whatsoever with itunes for months, and now out of nowhere it wont show any songs on shuffle even though i have it clicked to my library, it says none are available. Whenever I play songs on a playlist it wont move to the next song, will only play one song and stop. it does this throughout itunes. I tried repairing and reinstalling

    You unchecked all the songs.
    To the left of the song name is a little box. When you click it, it turns blue and a checkmark appears in it.
    iTunes will only "automatically" play songs that are checked.
    You can check/uncheck all the songs in your visible list by holding CTRL while checking/unchecking one of them.

Maybe you are looking for