Quota Prob in Server Admin

Hi!
I have some problems with my quotas shown in Server Admin (MacOSX Server 10.5.7).
You can see the prob in this screenshot:
http://www.ewetel.net/~peter.borbonus/Images/quota1a
(Link to screenshot)
_What I did to fix it:_
I deleted inactive mailuserdirectories via cyradm (dm 'Other Users/name')
No problem with that.
I rebuilt maildatabase with "mailbfr -f" (because of probs with it after user deletion)
I tried to fix quotas with "mailbfr -q" (seemed to work)
In Workgroup-manager I tried to give new quotas to some of the users: failed!
So I gave new quotas with cyradm (sq 'Other Users/name' 102400): worked!
I tried to fix quotas with "mailbfr -q" again (seemed to work)
But my problem is still the same (see screenshot).
In mailaccess.log are no problems announced.
What can I do else to fix this problem.
Apart from this problem the mailsystem seems to run fine.
Thank you for your assistance,
Peter.

I found that cyrus-quota crashes every day.
The system.log says at that point:
May 30 19:45:34 xserver ReportCrash[10889]: Formulating crash report for process cyrus-quota[10869]
May 30 19:45:34 xserver com.apple.launchd[1] (edu.cmu.andrew.cyrus.cyrus-quota[10869]): Exited abnormally: Floating point exception
May 30 19:45:34 xserver ReportCrash[10889]: Saved crashreport to /Library/Logs/CrashReporter/cyrus-quota2009-05-30-194533xserver.crash using uid: 0 gid: 0, euid: 0 egid: 0
May 30 19:46:05 xserver ctl_cyrusdb[10899]: checkpointing cyrus databases
May 30 19:46:05 xserver ctl_cyrusdb[10899]: done checkpointing cyrus databases
The beginning of crash-report is (if more is needed I can give it to you):
Process: cyrus-quota [10869]
Path: /usr/bin/cyrus/bin/cyrus-quota
Identifier: cyrus-quota
Version: ??? (???)
Code Type: X86 (Native)
Parent Process: launchd [1]
Date/Time: 2009-05-30 19:45:33.454 +0200
OS Version: Mac OS X Server 10.5.7 (9J61)
Report Version: 6
Anonymous UUID: 76D1EBD5-8B8B-4123-B049-4F98D20EA400
Exception Type: EXC_ARITHMETIC (SIGFPE)
Exception Codes: EXCI386DIV (divide by zero)
Crashed Thread: 0
Thread 0 Crashed:
0 cyrus-quota 0x000032c8 doquotacheck + 319
1 cyrus-quota 0x000037cd main + 714
2 cyrus-quota 0x00001ee6 start + 54
Thread 0 crashed with X86 Thread State (32-bit):
eax: 0x00000000 ebx: 0x00003194 ecx: 0x00000000 edx: 0x00000000
edi: 0x000001b0 esi: 0x00000000 ebp: 0xbffffd88 esp: 0xbfffed20
ss: 0x0000001f efl: 0x00010246 eip: 0x000032c8 cs: 0x00000017
ds: 0x0000001f es: 0x0000001f fs: 0x00000000 gs: 0x00000037
cr2: 0x561ffd6c
I hope somebody here can help me.
Regards,
Peter

Similar Messages

  • Home dir quotas not showing up in Server Admin

    We have 8 AFP servers here and for some reason 2 of them are not displaying the quota information in Server Admin. Nothing has been changed to these machines so I'm puzzled as to why this is happening all of a sudden.
    Any ideas? Thanks.

    So how DOES one go about adding new users?  I have the Advanced installation.  Here's what I have done:
    Gone into Workgroup Manager, authenticated into LDAP 127.0.0.1 along where the other users are
    Added a new user
    Gave them short name email addresses:  Name: Scott Thatguy, Short Names: scott, [email protected]
    Gave him a password, clicked "access account"
    Enabled their mail in the Mail tab, gave them a mail server which resolves properly, and IMAP only
    Save
    In Server Admin: Mail: Overview, IMAP is running.
    In Server Admin: Mail: Maintenance: Accounts, nobody new shoes up.  I've stopped mail, restarted it.  Nothing.  Restarted the box.  Nothing.
    Nobody knows what's going wrong?  Why haven't these accounts been started and showing up in this list? 
    Really, any help appreciated.  This stuff is supposed to be easy. 
    Cheers

  • "Pages" and "Sheets" columns in Server Admin Print Service Jobs

    I've been using Print Service for a while now and it's been working reasonably well.
    When I'm monitoring queues in Server Admin, I've noticed there are columns for "Pages" and "Sheets." These columns are always blank for every print job in every print queue.
    I am not using Print Quotas, but I am managing Preferences for Printing in Workgroup Manager.
    I have two questions:
    1) Any idea why these columns are blank? Does the client-side and/or server-side printer driver have to support this feature? I'm using HP's latest Laserjet drivers for each queue on both the clients and the server. Perhaps these columns are only applicable when using Print Quotas?
    2) If these columns did show something, what would be the difference between "Pages" and "Sheets?" Apple's own documentation offers no description. All their Print Service manual says is:
    "Jobs are listed in priority order, and include the name of the user who submitted each job, the name of the job, its size, the number of sheets to be printed, the current status of the job, and the number of pages in the job (you might need to scroll to see the page column)."
    Pretty vague...
    -- Steve

    Is there anyone using printing services on a Mac server at all that could comment on whether or not you see the print jobs listed in the queue when printing?

  • How to enable disk quotas in Lion Server (OS X 10.7.5)?

    Hello, all.  I am having an impossible time trying to set disk quotas in Lion Sever (OS X 10.7.5) and have searched these (and many other) forums to no avail.  Basically, as my network will have mixed PC and Mac users I have set the primary home share folder to SMB.  I understand that quotas should be enabled without a hitch under AFP, but this will not suffice for PC clients.  I have set quotas in WGM but when I check from a remote connection it shows folder capactiy as the volume's total capacity where the home folder resides.
    As the latest version of Server Admin does not have a file share section, how can I do this?  I understand it may be possible from the terminal, but having little experience with terminal I would prefer not set it myself (man quotaon was less than helpful).
    Thank you in advance for any help.

    Not 100% sure, but i think "password change" feature requires Open Directory and SSL encryption for Web.
    Has you enabled OD?
    Did you try at least a self-signed SSL certificate for Web?

  • Server admin unresponsive, any way to fix it?

    Hi!
    I have an issue with the services in Server admin, especially the iChat service. It seem to be reading settings forever, and I cannot make any changes that stick either, because as long as it's reading settings, the save button is greyed out. The service is working for users to connect to ann use. But this is crippling since I want to add a hosted domain to iChat. Other services are sluggish too when reading settings. This is a testsystem so doing a reinstall isn't really a problem, but I would like to avoid it and if possible reset the iChat service to it's default state and reconfigure it again, hopefully solving the issue. As this is a learning experience in preparation to setting this up for real, I would really like to get a solution for this without having to reinstall. Also, when it comes to SL server, there aren't really any best practices as to backing up services and it's data. A combination of several tools are suggested. TM in conjunction with CCC seem to be the best bets, but are there other solutions for a lossless restore? I have a TM backup of this machine, but how do I go about restoring a service state since there is no apparent way to restore hidden folders this way?
    Anyone got the solution from your own experience?

    I actually created another post for this, but I found this thread after searching for a couple hours. I am having the same issue, however, a server restart doesn't fix it for me. And Apple's article fix doesn't help either.
    Here are my logs:
    After a restart it appears servermanager can't connect via port 311:
    {quote}
    4/8/10 6:18:54 PM /Applications/Server/Server Monitor.app/Contents/MacOS/Server Monitor[978] [978] ServerManager session failed in connect(interactive,10.1.184.26,311): 61
    4/8/10 6:18:54 PM /Applications/Server/Server Monitor.app/Contents/MacOS/Server Monitor[978] [978] ServerManager session failed in connect(interactive,10.1.184.26,311): 61
    4/8/10 6:18:54 PM /Applications/Server/Server Monitor.app/Contents/MacOS/Server Monitor[978] [978] ServerManager session failed in connect(interactive,10.1.184.26,311): 61
    4/8/10 6:19:06 PM /Applications/Server/Server Monitor.app/Contents/MacOS/Server Monitor[978] [978] ServerManager session failed in connect(interactive,10.1.184.26,311): 61
    4/8/10 6:19:06 PM /Applications/Server/Server Monitor.app/Contents/MacOS/Server Monitor[978] [978] ServerManager session failed in connect(interactive,10.1.184.26,311): 61
    4/8/10 6:19:06 PM /Applications/Server/Server Monitor.app/Contents/MacOS/Server Monitor[978] [978] ServerManager session failed in connect(interactive,10.1.184.26,311): 61
    4/8/10 6:19:18 PM /Applications/Server/Server Monitor.app/Contents/MacOS/Server Monitor[978] [978] ServerManager session failed in connect(interactive,10.1.184.26,311): 61
    4/8/10 6:19:18 PM /Applications/Server/Server Monitor.app/Contents/MacOS/Server Monitor[978] [978] ServerManager session failed in connect(interactive,10.1.184.26,311): 61
    4/8/10 6:19:18 PM /Applications/Server/Server Monitor.app/Contents/MacOS/Server Monitor[978] [978] ServerManager session failed in connect(interactive,10.1.184.26,311): 61
    4/8/10 6:19:30 PM /Applications/Server/Server Monitor.app/Contents/MacOS/Server Monitor[978] [978] ServerManager session failed in connect(interactive,10.1.184.26,311): 61
    4/8/10 6:19:30 PM /Applications/Server/Server Monitor.app/Contents/MacOS/Server Monitor[978] [978] ServerManager session failed in connect(interactive,10.1.184.26,311): 61
    4/8/10 6:19:30 PM /Applications/Server/Server Monitor.app/Contents/MacOS/Server Monitor[978] [978] ServerManager session failed in connect(interactive,10.1.184.26,311): 61
    4/8/10 6:19:40 PM /Applications/Server/Server Monitor.app/Contents/MacOS/Server Monitor[978] [978] ServerManager session failed in connect(localhost,127.0.0.1,311): 61
    4/8/10 6:19:40 PM /Applications/Server/Server Monitor.app/Contents/MacOS/Server Monitor[978] [978] ServerManager session failed in connect(localhost,127.0.0.1,311): 61
    4/8/10 6:19:40 PM /Applications/Server/Server Monitor.app/Contents/MacOS/Server Monitor[978] [978] ServerManager session failed in connect(localhost,127.0.0.1,311): 61
    {quote}
    And here are my servermgrd logs:
    {quote}
    4/6/10 12:14:12 PM servermgrd[65184] Allocated size has grown to 4M. Number of allocations is -5890. Exiting to clear possible memory leak.
    4/6/10 12:14:12 PM com.apple.launchd[1] (com.apple.servermgrd[65184]) Exited with exit code: 12
    4/6/10 12:14:13 PM servermgrd[98795] servermgr_ipfilter:ipfw config:Notice:Flushed IPv4 rules
    4/6/10 12:14:13 PM servermgrd[98795] servermgr_ipfilter:ipfw config:Notice:Flushed IPv6 rules
    4/7/10 12:14:13 AM servermgrd[98795] Allocated size has grown to 4M. Number of allocations is -10672. Exiting to clear possible memory leak.
    4/7/10 12:14:13 AM com.apple.launchd[1] (com.apple.servermgrd[98795]) Exited with exit code: 12
    4/7/10 12:14:14 AM servermgrd[43681] servermgr_ipfilter:ipfw config:Notice:Flushed IPv4 rules
    4/7/10 12:14:14 AM servermgrd[43681] servermgr_ipfilter:ipfw config:Notice:Flushed IPv6 rules
    4/7/10 8:16:47 AM servermgrd[43681] [43681] error in getAndLockContext: flock(servermgr_ftp) FATAL time out
    4/7/10 8:16:47 AM servermgrd[43681] [43681] process will force-quit to avoid deadlock
    4/7/10 8:16:47 AM com.apple.launchd[1] (com.apple.servermgrd[43681]) Exited with exit code: 1
    4/7/10 12:59:11 PM com.apple.launchd[1] (com.apple.servermgrd[66064]) Exited: Killed
    4/8/10 6:01:34 PM servermgrd[57] servermgr_web: Created WebDAV lock directory /var/run/davlocks
    4/8/10 6:01:35 PM servermgrd[57] servermgr_ipfilter:ipfw config:Notice:Flushed IPv4 rules
    4/8/10 6:01:35 PM servermgrd[57] servermgr_ipfilter:ipfw config:Notice:Flushed IPv6 rules
    4/8/10 6:01:36 PM servermgrd[57] servermgr_info: markrunning_servicesconfigured(): marked running services configured: com.apple.ServerAdmin.Web, com.apple.ServerAdmin.AppleFile, com.apple.ServerAdmin.MySQL, com.apple.ServerAdmin.FTP, com.apple.ServerAdmin.Windows
    4/8/10 6:04:11 PM servermgrd[57] servermgr_jabber[N]: Network change ignored - no change in host(s) or address(s).
    4/8/10 6:06:21 PM servermgrd[57] servermgr_jabber[N]: Network change ignored - no change in host(s) or address(s).
    4/8/10 6:07:44 PM servermgrd[57] servermgr_jabber[N]: Network change ignored - no change in host(s) or address(s).
    4/8/10 6:07:57 PM servermgrd[57] servermgr_jabber[N]: Network change ignored - no change in host(s) or address(s).
    4/8/10 6:15:58 PM servermgrd[61] servermgr_web: Created WebDAV lock directory /var/run/davlocks
    4/8/10 6:15:59 PM servermgrd[61] servermgr_ipfilter:ipfw config:Notice:Flushed IPv4 rules
    4/8/10 6:15:59 PM servermgrd[61] servermgr_ipfilter:ipfw config:Notice:Flushed IPv6 rules
    4/8/10 6:24:17 PM servermgrd[61] servermgr_jabber[N]: Network change ignored - no change in host(s) or address(s).
    4/9/10 6:15:59 AM servermgrd[61] servermgr_info: unexpected Software Update state: crashed
    4/9/10 9:15:59 AM servermgrd[61] Allocated size has grown to 4M. Number of allocations is -8113. Exiting to clear possible memory leak.
    4/9/10 9:15:59 AM com.apple.launchd[1] (com.apple.servermgrd[61]) Exited with exit code: 12
    4/9/10 9:16:00 AM servermgrd[14887] servermgr_ipfilter:ipfw config:Notice:Flushed IPv4 rules
    4/9/10 9:16:00 AM servermgrd[14887] servermgr_ipfilter:ipfw config:Notice:Flushed IPv6 rules
    4/9/10 12:29:12 PM com.apple.launchd[1] (com.apple.servermgrd[14887]) Exited: Killed
    4/9/10 12:29:12 PM servermgrd[18682] servermgr_ipfilter:ipfw config:Notice:Flushed IPv4 rules
    4/9/10 12:29:12 PM servermgrd[18682] servermgr_ipfilter:ipfw config:Notice:Flushed IPv6 rules
    4/9/10 2:22:21 PM sudo[21225] admin : TTY=ttys000 ; PWD=/Users/admin ; USER=root ; COMMAND=/System/Library/CoreServices/ServerManagerDaemon.bundle/Contents/MacOS/ servermgrd servermgrd -x
    4/9/10 2:22:22 PM com.apple.ReportCrash.Root[21231] 2010-04-09 14:22:22.324 ReportCrash[21231:2803] Saved crash report for servermgrd[21230] version ??? (???) to /Library/Logs/DiagnosticReports/servermgrd2010-04-09-142222localhost.crash
    4/9/10 2:23:09 PM com.apple.launchd[1] (com.apple.servermgrd[18682]) Exited: Terminated
    4/9/10 2:23:10 PM servermgrd[21234] servermgr_ipfilter:ipfw config:Notice:Flushed IPv4 rules
    4/9/10 2:23:10 PM servermgrd[21234] servermgr_ipfilter:ipfw config:Notice:Flushed IPv6 rules
    4/9/10 2:23:35 PM com.apple.launchd[1] (com.apple.servermgrd[21234]) Exited: Terminated
    4/9/10 2:23:35 PM servermgrd[21260] servermgr_ipfilter:ipfw config:Notice:Flushed IPv4 rules
    4/9/10 2:23:35 PM servermgrd[21260] servermgr_ipfilter:ipfw config:Notice:Flushed IPv6 rules
    4/9/10 2:28:56 PM sudo[21990] admin : TTY=ttys000 ; PWD=/Users/admin ; USER=root ; COMMAND=/bin/launchctl unload -w /System/Library/LaunchDaemons/com.apple.servermgrd.plist
    4/9/10 2:29:16 PM sudo[21991] admin : TTY=ttys000 ; PWD=/Users/admin ; USER=root ; COMMAND=/bin/launchctl load -w /System/Library/LaunchDaemons/com.apple.servermgrd.plist
    4/9/10 2:29:16 PM servermgrd[21992] servermgr_ipfilter:ipfw config:Notice:Flushed IPv4 rules
    4/9/10 2:29:17 PM servermgrd[21992] servermgr_ipfilter:ipfw config:Notice:Flushed IPv6 rules
    {quote}
    Can't I just activate port 311? Why is this happening? Why would the port just suddenly not be active anymore?
    Thanks!

  • Where can I configure mail quotas in Lion Server?

    One (minor) problem for me, after upgrading from SnowLeopard Server to Lion Server is the fact, that I can't figure out where to administer the mail quotas. So far I have just managed to find the "Server Admin". Here, under Mail -> Maintenance I can see the quotas and under Mail->Settings->Quotas I can enable quota warnings and edit them. But I can't find a place to configure individual quotas. The quota settings from SnowLeopard server have been migrated and are still in place. But how should I change them. It used to be in WorkgroupManager. But in WorkgroupManager this item is gone.
    Many thanks for your replies.

    Followng up a bit,
    In looking into OD records on my Snow Leopard Server via the Inspector in WGM, I see the following attribute for one of my users for whom I've set a 1024mb mail quota.
    Name:
    MailAttriute
    Value:
    <?xml version="1.0" encoding="UTF-8"?>
    <dict>
              <key>kAPOPRequired</key>
              <string>APOPNotRequired</string>
              <key>kAltMailStoreLoc</key>
              <string></string>
              <key>kAttributeVersion</key>
              <string>Apple Mail 1.0</string>
              <key>kAutoForwardValue</key>
              <string></string>
              <key>kIMAPLoginState</key>
              <string>IMAPAllowed</string>
              <key>kMailAccountLocation</key>
              <string>[redacted].[redacted].org</string>
              <key>kMailAccountState</key>
              <string>Enabled</string>
              <key>kPOP3LoginState</key>
              <string>POP3Allowed</string>
              <key>kUserDiskQuota</key>
              <string>1024</string>
    </dict>
    I'm wondering if manually entering this attribute, and an XML value with at least the kUserDiskQuota key included will be all I need to do to implement per-user quotas in Lion Server.
    If I get time, I will test and report back.

  • Server Admin relay host field bug?

    I noticed something curious when attempting to specify a relay host via Server Admin 10.4.3 (157.5) application.
    If I specify xxx.com in "Relay outgoing mail through host" field, the value will appear as entered in MailServicesOther.plist. However, it will NOT appear in main.cf, there is only a line 'relay='.
    When I manually edited main.cf to add 'relay=xxx.com' then relaying started working...however, if I use Server Admin after that to edit the value, it reverts back to an empty value again. Rather annoying, really.
    Is this a known bug?

    Honestly, I've had trouble with ServerAdmin and Postfix's main.cf from the beginning of 10.3.x I've given up on using SA for anything to do with the mail. I've tried everything from having someone send me a default main.cf and reseting everything in SA.
    I can't get it back into sync, and since my backup MX server is running Postfix on FC3 I learned the CLI and got over the SA. I still use SA for looking at Account Quotas under the Maintenance tab, everything else is dorked anyway now.
    Xserve G4 1ghz   Mac OS X (10.4.3)   OSXS 10.4.3

  • Server Admin won't connect (not even locally)

    One of my customers' machine crashed and had to be rebooted (So they say). I was not on site at the time and someone else with a "bit of knowledge" fiddled with the machine and tried to resurrect it (instead of leaving it for me to sort it out). Ever since there is no access to the server via the Server Admin (no server found) although the server is running fine and people are working from it. The Workgroup Manager is operational, though no sharing access is possible, only user privileges can be modified. The syslog reports the following message:
    ----"Feb 21 06:54:13 XServe servermgrd: servermgr_dns: no hostname set and unable to detect via DNS, services may not function properly - use changeip to repair
    Feb 21 07:24:13 XServe servermgrd: servermgr_dns: no name available via DNS for 192.168.0.2"----
    Very strange. I can ping it, the IP is fixed anyway and I have access to the machine via ARD 3 no probs, but both server manager and server monitor fail to connect, even locally. Something somehow went wrong and I haven't got a clue. Rebooted the machine, done the usual things to no avail.
    Has anyone experienced something similar? Machine is on 10.4.8 and its a dual G5 with one Gig RAM. I noticed that the activity monitor reports more than half the system memory as 'inactive', leaving precious little free mem. The systm disk is 80 Gigs with 30 Gigs free.
    XServe G5 Dual - 2 GHz Mac OS X (10.4.8) 1 Gig RAM, ext. RAID
    XServe   Mac OS X (10.4.8)  

    Hi
    I had a similar situation on a server I was called in to have a look at after it was upgraded via software update from 10.4.2 to 10.4.8, the Open directory db went corrupt and the server administration tools would not work after that.
    In the end I had to ditch the open directory and rebuild the server from scratch as the other IT guy did not have a decent backup.
    Have you repaired permissions or tried Disk Warrior on the boot drive?
    The DNS thing is something that Apple has inrtroduced in 10.4.8, many people are having the same error show in system.log, see the Network Services section under Mac OS X Server.
    Ed

  • Remote Server Admin not working from outside of network for 1 server

    Our company recently changed ISPs and I had to change our two 10.4 server's IP addresses. We have a mail server (intel xserve) and a file/web server (quicksilver g4). Both servers have two network cards in them. The problem is two-fold:
    1- I can successfully manage the Xserve machine locally on our network and from my home. However, I can only manage the Quicksilver g4 server locally. Any kind of external access is not even acknowledged.
    2- I'm not sure if I missed any steps when changing IP addresses for these server-based computers. Also, I'm not sure if I correctly set our dns names to the correct IP address.
    For some background, this is the exact IP update process I used for each server:
    Quicksilver G4 (file/web server) - Installed network card #2 and configured it with the new Public IP in the "System Preferences/Network" panel. In Server Admin I set our website to use the new public IP address. (network card #2 has no firewall device in between it and the internet.)
    Then, I configured the default network card #1 to a static, yet private IP address that's behind our DLink firewall device with the rest of our network.
    Intel Xserve (e-mail server) - Network card #1 was the only one setup before our network change. It had a static, public IP address. When we changed ISPs, I configured network card #2 to the new static, public IP address supplied to us by the new ISP in the "System Preferences/Network" panel. This new IP address is where all email traffic currently gets pointed to. (All mail is successfully sent and delivered.) Until our former ISP gets shutdown, I still have network card #1 configured to the older static public IP address. After the old ISP is shut off, I plan on changing network card #1 to a static, private address.
    Any assistance would be greatly appreciated.
      Mac OS X (10.4.8)  

    What should I check in AD?  I am by no means an expert with AD.
    Yes, I am using the same client OS.
    I am talking about RDP over the internet, like from home to the office.  We have a static IP assigned to the router from ISP.  A static internal IP assigned to the server on the LAN.  And the router port forwards 3389 to the assigned IP. 
    It was working fine before we reinstalled Server 2012.  These are the steps I took when reinstalling:
    1. format drive and install OS
    2. rename the server
    3. install SQL server
    4. Install TFS and SharePoint
    5. Add Active Directory role and promote to Domain Controller
    6. Add domain users
    7. Enable remote access on the server and add users to remote access list

  • Mail Server Relay Authentication Failure in Server Admin

    I need to set up Mail Server to relay through my ISP.  I know that I can authenticate to smtp.comcast.net:587 using my account and TLS usnig a mail client.
    However, when I use Server Admin to configure my server's SMTP to send all outgoing email through this relay (Server Admin>Mail>Settings>General>
    Rely outgoing mail through host: smtp.comcast.net:587
             Authenticate to rely with user name: user
    I get the SMTP error:
    SASL authentication failed: cannot authenticate to server smtp.comcast.net[76.96.62.117]: no mechanism available
    There are no toggles on Server Admin to specify TLS or SSL or anything for authentication.
    Does anyone know how to tell Server Admin how to authenticate an SMTP relay to smtp.comcast.net using TLS, which is apparently what comcast expects?

    Wow, this is an obscure solution, but it works. According to this thread, the problem is that:
    Although Comcast advertises "AUTH LOGIN PLAIN", the Postfix SASL library won't do plain text auth by default. It needs to be told it's okay with:
    smtp_sasl_security_options = noanonymous
    Solution:
    $ su -
    $ cd /etc/postfix
    $ cp main.cf main.cf.no_smtp_sasl_security_options
    $ echo 'smtp_sasl_security_options = noanonymous' >> ./main.cf
    $ serveradmin stop mail
    $ serveradmin start mail
    I'm not sure how often /etc/postfix/main.cf is overwritten, but presumably this happens every time you change and save Mail settings in Server Admin, so you must redo these steps every time you change the Mail server if you want to use smtp.comcast.net as your mail relay.
    AAPL, would you please add a toggle to handle this in Server Admin?

  • How can I block Server Admin from accessing a server?

    I've got a G5 FTP server running Server 10.5.7 that sits outside our firewall. Oddly I find that I can enter the IP and login info via Server Admin and voila - I have access. All sharing services are off and all remote access services in System Prefs are off. I want this system totally locked down except for the FTP server app I run. What do I need to kill to prevent access via Server Admin? Or anything else for that matter?
    My concern is that via Server Admin someone could really mess things up and of course turn on services that would grant them full access.
    Thanks

    Oh sorry - I put this in the wrong category.
    I'll duplicate this in the 10.5 section

  • Server Admin's proxy configuration... whacked? (Doesn't seem to work)

    I just upgraded to Apache2 so that I could, sensibly, use the Server Admin app to manage all my web sites. Previously, my various httpd conf files were too complicated and I had resorted to hand coding them.
    The good news is Server Admin and Apache2 are much closer to functional.
    One bit of bad news: I can't get the reverse proxies to work consistently. Once set up, I get the most peculiar mix of success and failure -- almost at random. For example, some URIs load; others don't; sometimes a page loads, but it's style sheet doesn't.
    What I want is simply this:
    */confluence (proxy to) localhost:8081/confluence
    Using hand-edited config files, I'd usually do something along these lines (and this works great, by the way, if I stick it into 0000any_80www.mydomain.com.conf:
    ProxyRequests Off
    ProxyPassReverse /confluence http://localhost:8081/confluence
    ProxyPass /confluence http://localhost:8081/confluence
    So, off to Server Admin to make this work. I tried checking "Enable Reverse Proxy" and specifying a Proxy Path of "/confluence" and a Worker URL of http://localhost:8081/confluence. This ended up created the following entry in my 0000_...conf file:
    <IfModule modproxybalancer.c>
    ProxyPass /confluence balancer://balancer-group/
    ProxyPassReverse /confluence balancer://balancer-group/
    <Proxy "balancer://balancer-group">
    BalancerMember http://localhost:8081/confluence
    </Proxy>
    </IfModule>
    I wasn't able to figure out what a Sticky Session Identifier, Route or Load Factor would be used for... so I left those blank. Perhaps that's why it's not working... sure would be nice if there was some help in Server Admin...
    Hm. Anyhow, Ok, looks alright. I'm not totally sure about the balancer bits (like why they are there), but I don't see why it wouldn't work. But... IT DOES NOT. I get totally inconsistent results. Some pages load, some don't. Sometimes I get some page assets, while others don't come through. Bah. However, if I get rid of the above, and simply put this in:
    ProxyRequests Off
    ProxyPassReverse /confluence http://localhost:8081/confluence
    ProxyPass /confluence http://localhost:8081/confluence
    It works great. Only problem is, anytime I edit a server configuration, Server Admin goes and deletes those lines! I think I've found a way around it though. I put the above lines into a "0000.proxy" file (in /etc/apache2/sites/0000.proxy) and now I've added this line:
    Include "/etc/apache2/sites/0000.proxy"
    At the bottom of my 0000_...conf file. So far, Server Admin hasn't deleted that line... and it seems to be working.
    BUT, I'd just LOVE it if someone could tell me how to make this work without hacking around in the command line! Very annoying -- and of course, my proxies are showing up in Server Admin, and I really wish that would work.

    Hi there
    For the benefit of anyone looking at this thread, what is meant here is that if you choose to open the help for RoboHelp, you have an abiliity to add a comment. That comment may be kept private or shared with others. If you elect to share it with others, it is generally added as a comment into the pages that provide the help. If approved, Adobe may amend the help topic to reflect the new information.
    @Jared - Was that information missing in your file? I thought when you elected to use this file that it was automatically populated with all available settings. And unfortunately (IMNSHO) the settings don't immediately reflect the settings in the dialog. (I think they should, as a starting point. At least, that's the behavior *I* expected the first time I played with the feature. I was admittedly taken aback when it didn't work that way.)
    Assuming the setting was missing, how did you manage to sort what setting should be added?
    Cheers... Rick
    Helpful and Handy Links
    RoboHelp Wish Form/Bug Reporting Form
    Begin learning RoboHelp HTML 7, 8 or 9 within the day!
    Adobe Certified RoboHelp HTML Training
    SorcerStone Blog
    RoboHelp eBooks

  • Open directory Server admin APP, crashes

    HI all.
    ON my 10.7.2 lion server for some reason my server admin app keeps crashing under the Open
    directory Section...
    Here are the screen shots..

    Also I cant make any changes under the Open Directory in server Admin...
    Everything is greyed OUT...

  • How do I create a virtual directory in Snow Leopard Server Admin program?

    Hi, how do you use the server admin program in snow leopard server to create an apache virtual directory? I can't see it in the applet anywhere. Thank you.

    Well this is what I thought too but I don't think I'm doing something right. I have a default website on port 80 and I created a second site on the same port. They are two different websites. One is the initial one that comes stock with the osx. The second one I created.
    When I browse to my server I get the second site. How can I get the default to be the one that points to the mail, wiki, calendar stuff, while my second domain is something totally different.
    http://myserver (should be the default stuff like mail.)
    http://myserver/mysecondsite (should be my other stuff.)
    The problem is that when I go to http://myserver it is going to http://myserver/mysecondsite
    What am I doing wrong? Thank you.

  • Creating Open Directory Replica fails with Server Admin Error Value 1127

    Hallo,
    I have seen a lot of similar threads here and they were helpful up to a certain point, but in the end, they did not solve my problem.
    Currently, it comes down to this. The Server Admin Error message ist really meaningless and I could not find a single for the error value on the whole wide web. As such, I switched to the command line versions of the tools involved to geht more meaningful results. It worked. Specifically, creating a replica of an openldap master means using slapconfig.
    When executing
    slapconfig -createreplica master.ourdomain.com diradmin
    as root on the prospective replica machine, I get the following error message:
    ssh command failed with status 127
    That command is not allowed with the root account via public key authentication.
    That makes perfect sense to me, but how is it meant to work then?
    Executing slapconfig as admin tells me that this tool is to be executed as root. On the other hand, root login via ssh is not allowed in Mac OS X by default, which seems fine to me. I even changed /etc/sshd_config on the Open Directory Master machine to "PermitRootLogin yes". However, neither reloading ssh using launchctl nor restarting the whole server made this setting operational. Trying to login from command line as root still tells me:
    root login is not permitted to this machine via public key authentication.
    While this is the current state where I need help urgently, I changed some other things before. I tell about to exclude these issues as possible reason of failure. I got this message for quite a while:
    Replica Setup failed : This machine does not have a valid computer name
    I was sure, this machine meant the target machine, the open directory master, because the domain had changed there once before I had taken over responsibility as an admin in this environment. And in fact, changeip disguised an issue there. The command proposed by changeip to fix the situation did not seem appropriate because this machine is multihomed with a public and a private IP adress. Proper name resolution is available for both interfaces including reverse lookup. I dont like this setup, but it was the only way to get mail service running smoothly. Running changeip on the machine itself using these arguments
    changeip /LDAPv3/127.0.0.1 internalIP internalIP old.ours.com current.ours.com
    reported success in updating password server, open directory, both interfaces, hostconfig (which in fact did not change) and samba. It reported an issue with kadmin which is related to Kerberos (we dont use Kerberos yet).
    Changing the hostname of the server using changeip did not solve the issue. I then found the hint to check with scutil. This showed that the Hostname was not set on the prospective replica machine. (A question aside: in how many place is the hostname stored? The traditional /etc/hostname has gone, but seems to be replaces with several other configuration files and databases. I cant see this as an advantage). Setting the hostname using scutil worked fine. However, it did not solve the problem either. At least, slapconfig now started to complain about not being able to log in as root instead of failing from the start.
    I also checked all log files on bboth machines that might have to do with openldap, as there are /var/log/slapd.log, /var/log/system.log and /Library/Log/slapconfig.log. I also checked the log of th layer on top of openldap which is /Library/Log/DirectoryService.server.log. None of them revealed anything noticeable beside a lot of of entries that I have googled in the last few hours and which all dont seem to be associated with the problem in question.
    I will take a break now, but I have to fix this until tomorrow and I hope to get the ultimate hint from you, dear reader.
    Thanks and bye, Christian Völker

    ssh command failed with status 127
    That command is not allowed with the root account via public key authentication.
    Initial OD replication takes place via 'ssh'. If you have 'sshd' configured on the OD Master to authenticate with public keys then the OD replica will not be able to communicate with the OD Master via 'ssh'. You must configure the OD Master to use 'ssh' with password authentication and root login enabled.
    Demote the replica back to standalone. Stop any services that you may have running on the primary network interface. Then stop any services that you may have running on the secondary network interface. In the 'Network' System Prefpane remove the IP number from the secondary interface then deactivate the secondary network interface.
    Assign the private IP address and hostname that you wish to use for the replica to the primary network interface. Assign the 'public' IP number to the secondary interface. Check the DNS to see that the IP address and hostname for the primary network interface resolve both forward and reverse for the hostname of the replica that you have chosen. If it does not, fix your DNS before proceeding.
    In the 'Sharing' System Prefpane, change the name of the machine to the hostname (server.domain.tld) of the replica that you have chosen. Then use 'changeip -checkhostname' to see if the IP/hostname matches. Fix it if it doesn't.
    Then configure the /etc/sshd_config file on the OD master like this:
    \# Authentication:
    PermitRootLogin yes
    PasswordAuthentication yes
    PubkeyAuthentication no
    and the /etc/ssh_config file on the OD replica like this:
    PasswordAuthentication yes
    PubkeyAuthentication no
    Then from the OD replica as the 'root' user issue:
    slapconfig -createreplica <ODMasterIPorFQDN> <diradmin user>
    Make sure that the 'diradmin' user's password contains only alpha-numeric characters -no 'option-characters' or symbols, change it first if it does. Once the process completes, reactivate the secondary interface for the 'public' IP and check the configuration of services that will be using that IP, then start your other services. Secure the 'ssh' service on both machines to disable password authentication and 'root' logins.

Maybe you are looking for

  • Difference between XMLP ADMIN and XMLP_DEVELOPER Responsibilities in Siebel

    Hi, In Siebel bookshelf of Reports guide, explain two responsibilities as below XMLP_ADMIN Administrator role for the Oracle BI Publisher Server with no access limitations. XMLP_DEVELOPER Assign this responsibility to allow for uploading reports from

  • PDF form auto-notification/pop-up on 3rd Party PDF readers

    My livecycle generated PDF form wants to work only on Acrobat reader for user input and most importantly when summing numbers in the table field. I currently enable usage rights under Acrobat 9.  The problem is that when people attempt to open the fo

  • How to tune the interval time of keyRepeated

    Hi, I use keyRepeated to deal some keyboard events. But I want to adjust the frequency of keyRepeated event to be higher/the interval time to be smaller(the default is 100ms), how can I ? Thx

  • Data source as XML File

    Hi All, Created one interface which is reading from XML file and populating the data in Oracle Table. Suppose I have created interface for emp.xml file. Currently emp.xml file having 14 records and it is populating the target table successfully. Now

  • Pending Messages Resulting in Application halt.

    We developed a JPD which subscribes to a JMS Event. While another application sends messages to this application, we saw the messages getting stuck in queue and we also saw that count of pending messages going high and then at one point the applicati