<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>David Hrbáč &#187; mailing</title>
	<atom:link href="http://www.hrbac.cz/category/mailing/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.hrbac.cz</link>
	<description>Just another WordPress weblog</description>
	<lastBuildDate>Tue, 17 Jan 2012 21:43:41 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
		<item>
		<title>DNSBL for Horde</title>
		<link>http://www.hrbac.cz/2011/01/dnsbl-for-horde/</link>
		<comments>http://www.hrbac.cz/2011/01/dnsbl-for-horde/#comments</comments>
		<pubDate>Wed, 05 Jan 2011 09:57:46 +0000</pubDate>
		<dc:creator>David Hrbáč</dc:creator>
				<category><![CDATA[CentOS]]></category>
		<category><![CDATA[horde]]></category>
		<category><![CDATA[mailing]]></category>
		<category><![CDATA[php]]></category>

		<guid isPermaLink="false">http://www.hrbac.cz/?p=275</guid>
		<description><![CDATA[Here we go with a small patch to implement DNSBL for Horde. I have again used PEAR package, this time it is the Net_DNSBL, and as usually CentOS package is in my repos &#8211; http://fs12.vsb.cz/hrb33/el5/hrb/stable/i386/repoview/php-pear-Net-DNSBL.html. The first patch is the important one. We let the attacker to log in, just to make sure he/she owns [...]]]></description>
			<content:encoded><![CDATA[<p>Here we go with a small patch to implement <a href="http://en.wikipedia.org/wiki/DNSBL" target="_blank">DNSBL</a> for Horde. I have again used PEAR package, this time it is the <a href="http://pear.php.net/package/Net_DNSBL" target="_blank">Net_DNSBL</a>, and as usually CentOS package is in my repos &#8211; <a href="http://fs12.vsb.cz/hrb33/el5/hrb/stable/i386/repoview/php-pear-Net-DNSBL.html" target="_blank">http://fs12.vsb.cz/hrb33/el5/hrb/stable/i386/repoview/php-pear-Net-DNSBL.html</a>.</p>
<p>The first patch is the important one. We let the attacker to log in, just to make sure he/she owns valid stolen credentials.</p>

<div class="wp_syntax"><div class="code"><pre class="php" style="font-family:monospace;"><span style="color: #339933;">---</span> imp<span style="color: #339933;">/</span>lib<span style="color: #339933;">/</span>Auth<span style="color: #339933;">/</span>imp<span style="color: #339933;">.</span>php<span style="color: #339933;">.</span>orig   <span style="color: #cc66cc;">2011</span><span style="color: #339933;">-</span><span style="color: #208080;">01</span><span style="color: #339933;">-</span><span style="color: #208080;">05</span> <span style="color: #cc66cc;">10</span><span style="color: #339933;">:</span><span style="color: #cc66cc;">21</span><span style="color: #339933;">:</span><span style="color:#800080;">05.224155622</span> <span style="color: #339933;">+</span><span style="color: #208080;">0100</span>
<span style="color: #339933;">+++</span> imp<span style="color: #339933;">/</span>lib<span style="color: #339933;">/</span>Auth<span style="color: #339933;">/</span>imp<span style="color: #339933;">.</span>php        <span style="color: #cc66cc;">2011</span><span style="color: #339933;">-</span><span style="color: #208080;">01</span><span style="color: #339933;">-</span><span style="color: #208080;">05</span> <span style="color: #cc66cc;">10</span><span style="color: #339933;">:</span><span style="color: #cc66cc;">39</span><span style="color: #339933;">:</span><span style="color:#800080;">24.699438519</span> <span style="color: #339933;">+</span><span style="color: #208080;">0100</span>
<span style="color: #339933;">@@</span> <span style="color: #339933;">-</span><span style="color: #cc66cc;">146</span><span style="color: #339933;">,</span><span style="color: #cc66cc;">6</span> <span style="color: #339933;">+</span><span style="color: #cc66cc;">146</span><span style="color: #339933;">,</span><span style="color: #cc66cc;">36</span> <span style="color: #339933;">@@</span>
             <span style="color: #b1b100;">return</span> <span style="color: #009900; font-weight: bold;">false</span><span style="color: #339933;">;</span>
         <span style="color: #009900;">&#125;</span>
&nbsp;
<span style="color: #339933;">+</span>        <span style="color: #666666; font-style: italic;"># DNSBL START
</span><span style="color: #339933;">+</span>        <span style="color: #990000;">ini_set</span><span style="color: #009900;">&#40;</span><span style="color: #0000ff;">'include_path'</span><span style="color: #339933;">,</span> <span style="color: #990000;">ini_get</span><span style="color: #009900;">&#40;</span><span style="color: #0000ff;">'include_path'</span><span style="color: #009900;">&#41;</span><span style="color: #339933;">.</span><span style="color: #0000ff;">':/usr/share/php'</span><span style="color: #009900;">&#41;</span><span style="color: #339933;">;</span>
<span style="color: #339933;">+</span>        <span style="color: #b1b100;">require_once</span> <span style="color: #0000ff;">'Net/DNSBL.php'</span><span style="color: #339933;">;</span>
<span style="color: #339933;">+</span>        <span style="color: #000088;">$dnsbl</span> <span style="color: #339933;">=</span> <span style="color: #000000; font-weight: bold;">new</span> Net_DNSBL<span style="color: #009900;">&#40;</span><span style="color: #009900;">&#41;</span><span style="color: #339933;">;</span>
<span style="color: #339933;">+</span>        <span style="color: #666666; font-style: italic;">#$remoteIP = '41.206.12.1';
</span><span style="color: #339933;">+</span>        <span style="color: #000088;">$remoteIP</span> <span style="color: #339933;">=</span> <span style="color: #000088;">$_SERVER</span><span style="color: #009900;">&#91;</span><span style="color: #0000ff;">'REMOTE_ADDR'</span><span style="color: #009900;">&#93;</span><span style="color: #339933;">;</span>
<span style="color: #339933;">+</span>        <span style="color: #000088;">$dnsbl</span><span style="color: #339933;">-&amp;</span>gt<span style="color: #339933;">;</span>setBlacklists<span style="color: #009900;">&#40;</span><span style="color: #990000;">array</span><span style="color: #009900;">&#40;</span>
<span style="color: #339933;">+</span>                <span style="color: #0000ff;">'sbl-xbl.spamhaus.org'</span><span style="color: #339933;">,</span>
<span style="color: #339933;">+</span>                <span style="color: #0000ff;">'bl.spamcop.net'</span><span style="color: #339933;">,</span>
<span style="color: #339933;">+</span>                <span style="color: #0000ff;">'b.barracudacentral.org'</span><span style="color: #339933;">,</span>
<span style="color: #339933;">+</span>                <span style="color: #0000ff;">'spam.spamrats.com'</span><span style="color: #339933;">,</span>
<span style="color: #339933;">+</span>                <span style="color: #0000ff;">'dyna.spamrats.com'</span><span style="color: #339933;">,</span>
<span style="color: #339933;">+</span>                <span style="color: #0000ff;">'noptr.spamrats.com'</span><span style="color: #339933;">,</span>
<span style="color: #339933;">+</span>                <span style="color: #0000ff;">'bl.tiopan.com'</span>
<span style="color: #339933;">+</span>                <span style="color: #009900;">&#41;</span><span style="color: #009900;">&#41;</span><span style="color: #339933;">;</span>
<span style="color: #339933;">+</span>        <span style="color: #b1b100;">if</span> <span style="color: #009900;">&#40;</span><span style="color: #000088;">$dnsbl</span><span style="color: #339933;">-&amp;</span>gt<span style="color: #339933;">;</span>isListed<span style="color: #009900;">&#40;</span><span style="color: #000088;">$remoteIP</span><span style="color: #339933;">,</span> <span style="color: #009900; font-weight: bold;">true</span><span style="color: #009900;">&#41;</span><span style="color: #009900;">&#41;</span> <span style="color: #009900;">&#123;</span>
<span style="color: #339933;">+</span>            <span style="color: #000088;">$data</span><span style="color: #339933;">=</span><span style="color: #000088;">$dnsbl</span><span style="color: #339933;">-&amp;</span>gt<span style="color: #339933;">;</span>getListingBls<span style="color: #009900;">&#40;</span><span style="color: #000088;">$remoteIP</span><span style="color: #009900;">&#41;</span><span style="color: #339933;">;</span>
<span style="color: #339933;">+</span>            <span style="color: #990000;">sort</span><span style="color: #009900;">&#40;</span><span style="color: #000088;">$data</span><span style="color: #009900;">&#41;</span><span style="color: #339933;">;</span>
<span style="color: #339933;">+</span>            <span style="color: #000088;">$entry</span> <span style="color: #339933;">=</span> <span style="color: #0000ff;">&quot;LOGIN SUCCESS FROM BLACKLISTED IP [<span style="color: #006699; font-weight: bold;">$remoteIP</span>] FOR <span style="color: #006699; font-weight: bold;">$userID</span>: &quot;</span> <span style="color: #339933;">.</span> <span style="color: #990000;">implode</span><span style="color: #009900;">&#40;</span><span style="color: #0000ff;">&quot;, &quot;</span><span style="color: #339933;">,</span> <span style="color: #000088;">$data</span><span style="color: #009900;">&#41;</span><span style="color: #339933;">;</span>
<span style="color: #339933;">+</span>            Horde<span style="color: #339933;">::</span><span style="color: #004000;">logMessage</span><span style="color: #009900;">&#40;</span><span style="color: #000088;">$entry</span><span style="color: #339933;">,</span> <span style="color: #009900; font-weight: bold;">__FILE__</span><span style="color: #339933;">,</span> <span style="color: #009900; font-weight: bold;">__LINE__</span><span style="color: #339933;">,</span> PEAR_LOG_ERR<span style="color: #009900;">&#41;</span><span style="color: #339933;">;</span>
<span style="color: #339933;">+</span>
<span style="color: #339933;">+</span>            <span style="color: #990000;">unset</span><span style="color: #009900;">&#40;</span><span style="color: #000088;">$_SESSION</span><span style="color: #009900;">&#91;</span><span style="color: #0000ff;">'imp'</span><span style="color: #009900;">&#93;</span><span style="color: #009900;">&#41;</span><span style="color: #339933;">;</span>
<span style="color: #339933;">+</span>            <span style="color: #b1b100;">if</span> <span style="color: #009900;">&#40;</span><span style="color: #990000;">isset</span><span style="color: #009900;">&#40;</span><span style="color: #000088;">$prefs</span><span style="color: #009900;">&#41;</span><span style="color: #009900;">&#41;</span> <span style="color: #009900;">&#123;</span>
<span style="color: #339933;">+</span>                <span style="color: #000088;">$prefs</span><span style="color: #339933;">-&amp;</span>gt<span style="color: #339933;">;</span>cleanup<span style="color: #009900;">&#40;</span><span style="color: #009900; font-weight: bold;">true</span><span style="color: #009900;">&#41;</span><span style="color: #339933;">;</span>
<span style="color: #339933;">+</span>            <span style="color: #009900;">&#125;</span>
<span style="color: #339933;">+</span>            <span style="color: #000088;">$this</span><span style="color: #339933;">-&amp;</span>gt<span style="color: #339933;">;</span>_setAuthError<span style="color: #009900;">&#40;</span>AUTH_REASON_BADLOGIN<span style="color: #009900;">&#41;</span><span style="color: #339933;">;</span>
<span style="color: #339933;">+</span>            <span style="color: #b1b100;">return</span> <span style="color: #009900; font-weight: bold;">false</span><span style="color: #339933;">;</span>
<span style="color: #339933;">+</span>        <span style="color: #009900;">&#125;</span>
<span style="color: #339933;">+</span>        <span style="color: #666666; font-style: italic;"># DNSBL END
</span><span style="color: #339933;">+</span>
         <span style="color: #b1b100;">return</span> <span style="color: #009900; font-weight: bold;">true</span><span style="color: #339933;">;</span>
     <span style="color: #009900;">&#125;</span></pre></div></div>

<p>The second one is just to log only access from blocked IPs.</p>

<div class="wp_syntax"><div class="code"><pre class="php" style="font-family:monospace;"><span style="color: #339933;">---</span> imp<span style="color: #339933;">/</span>login<span style="color: #339933;">.</span>php<span style="color: #339933;">.</span>orig  <span style="color: #cc66cc;">2011</span><span style="color: #339933;">-</span><span style="color: #208080;">01</span><span style="color: #339933;">-</span><span style="color: #208080;">05</span> <span style="color:#800080;">09</span><span style="color: #339933;">:</span><span style="color:#800080;">08</span><span style="color: #339933;">:</span><span style="color:#800080;">44.510891298</span> <span style="color: #339933;">+</span><span style="color: #208080;">0100</span>
<span style="color: #339933;">+++</span> imp<span style="color: #339933;">/</span>login<span style="color: #339933;">.</span>php       <span style="color: #cc66cc;">2011</span><span style="color: #339933;">-</span><span style="color: #208080;">01</span><span style="color: #339933;">-</span><span style="color: #208080;">05</span> <span style="color: #cc66cc;">10</span><span style="color: #339933;">:</span><span style="color: #cc66cc;">34</span><span style="color: #339933;">:</span><span style="color:#800080;">26.763968526</span> <span style="color: #339933;">+</span><span style="color: #208080;">0100</span>
<span style="color: #339933;">@@</span> <span style="color: #339933;">-</span><span style="color: #cc66cc;">449</span><span style="color: #339933;">,</span><span style="color: #cc66cc;">6</span> <span style="color: #339933;">+</span><span style="color: #cc66cc;">449</span><span style="color: #339933;">,</span><span style="color: #cc66cc;">33</span> <span style="color: #339933;">@@</span>
     <span style="color: #0000ff;">'var nomenu = '</span> <span style="color: #339933;">.</span> <span style="color: #990000;">intval</span><span style="color: #009900;">&#40;</span><span style="color: #990000;">empty</span><span style="color: #009900;">&#40;</span><span style="color: #000088;">$conf</span><span style="color: #009900;">&#91;</span><span style="color: #0000ff;">'menu'</span><span style="color: #009900;">&#93;</span><span style="color: #009900;">&#91;</span><span style="color: #0000ff;">'always'</span><span style="color: #009900;">&#93;</span><span style="color: #009900;">&#41;</span><span style="color: #009900;">&#41;</span><span style="color: #339933;">,</span>
 <span style="color: #009900;">&#41;</span><span style="color: #009900;">&#41;</span><span style="color: #339933;">;</span>
&nbsp;
<span style="color: #339933;">+</span><span style="color: #666666; font-style: italic;"># DNSBL START
</span><span style="color: #339933;">+</span><span style="color: #990000;">ini_set</span><span style="color: #009900;">&#40;</span><span style="color: #0000ff;">'include_path'</span><span style="color: #339933;">,</span> <span style="color: #990000;">ini_get</span><span style="color: #009900;">&#40;</span><span style="color: #0000ff;">'include_path'</span><span style="color: #009900;">&#41;</span><span style="color: #339933;">.</span><span style="color: #0000ff;">':/usr/share/php'</span><span style="color: #009900;">&#41;</span><span style="color: #339933;">;</span>
<span style="color: #339933;">+</span><span style="color: #b1b100;">require_once</span> <span style="color: #0000ff;">'Net/DNSBL.php'</span><span style="color: #339933;">;</span>
<span style="color: #339933;">+</span><span style="color: #000088;">$dnsbl</span> <span style="color: #339933;">=</span> <span style="color: #000000; font-weight: bold;">new</span> Net_DNSBL<span style="color: #009900;">&#40;</span><span style="color: #009900;">&#41;</span><span style="color: #339933;">;</span>
<span style="color: #339933;">+</span><span style="color: #666666; font-style: italic;">#$remoteIP = '41.206.12.1';
</span><span style="color: #339933;">+</span><span style="color: #000088;">$remoteIP</span> <span style="color: #339933;">=</span> <span style="color: #000088;">$_SERVER</span><span style="color: #009900;">&#91;</span><span style="color: #0000ff;">'REMOTE_ADDR'</span><span style="color: #009900;">&#93;</span><span style="color: #339933;">;</span>
<span style="color: #339933;">+</span><span style="color: #000088;">$dnsbl</span><span style="color: #339933;">-&amp;</span>gt<span style="color: #339933;">;</span>setBlacklists<span style="color: #009900;">&#40;</span><span style="color: #990000;">array</span><span style="color: #009900;">&#40;</span>
<span style="color: #339933;">+</span>        <span style="color: #0000ff;">'sbl-xbl.spamhaus.org'</span><span style="color: #339933;">,</span>
<span style="color: #339933;">+</span>        <span style="color: #0000ff;">'bl.spamcop.net'</span><span style="color: #339933;">,</span>
<span style="color: #339933;">+</span>        <span style="color: #0000ff;">'b.barracudacentral.org'</span><span style="color: #339933;">,</span>
<span style="color: #339933;">+</span>        <span style="color: #0000ff;">'spam.spamrats.com'</span><span style="color: #339933;">,</span>
<span style="color: #339933;">+</span>        <span style="color: #0000ff;">'dyna.spamrats.com'</span><span style="color: #339933;">,</span>
<span style="color: #339933;">+</span>        <span style="color: #0000ff;">'noptr.spamrats.com'</span><span style="color: #339933;">,</span>
<span style="color: #339933;">+</span>        <span style="color: #0000ff;">'bl.tiopan.com'</span>
<span style="color: #339933;">+</span>        <span style="color: #009900;">&#41;</span><span style="color: #009900;">&#41;</span><span style="color: #339933;">;</span>
<span style="color: #339933;">+</span><span style="color: #b1b100;">if</span> <span style="color: #009900;">&#40;</span><span style="color: #000088;">$dnsbl</span><span style="color: #339933;">-&amp;</span>gt<span style="color: #339933;">;</span>isListed<span style="color: #009900;">&#40;</span><span style="color: #000088;">$remoteIP</span><span style="color: #339933;">,</span> <span style="color: #009900; font-weight: bold;">true</span><span style="color: #009900;">&#41;</span><span style="color: #009900;">&#41;</span> <span style="color: #009900;">&#123;</span>
<span style="color: #339933;">+</span>    <span style="color: #000088;">$data</span><span style="color: #339933;">=</span><span style="color: #000088;">$dnsbl</span><span style="color: #339933;">-&amp;</span>gt<span style="color: #339933;">;</span>getListingBls<span style="color: #009900;">&#40;</span><span style="color: #000088;">$remoteIP</span><span style="color: #009900;">&#41;</span><span style="color: #339933;">;</span>
<span style="color: #339933;">+</span>    <span style="color: #990000;">sort</span><span style="color: #009900;">&#40;</span><span style="color: #000088;">$data</span><span style="color: #009900;">&#41;</span><span style="color: #339933;">;</span>
<span style="color: #339933;">+</span>    <span style="color: #000088;">$entry</span> <span style="color: #339933;">=</span> <span style="color: #0000ff;">&quot;BLACKLISTED IP <span style="color: #006699; font-weight: bold;">$remoteIP</span>: &quot;</span> <span style="color: #339933;">.</span> <span style="color: #990000;">implode</span><span style="color: #009900;">&#40;</span><span style="color: #0000ff;">&quot;, &quot;</span><span style="color: #339933;">,</span> <span style="color: #000088;">$data</span><span style="color: #009900;">&#41;</span><span style="color: #339933;">;</span>
<span style="color: #339933;">+</span>    Horde<span style="color: #339933;">::</span><span style="color: #004000;">logMessage</span><span style="color: #009900;">&#40;</span><span style="color: #000088;">$entry</span><span style="color: #339933;">,</span> <span style="color: #009900; font-weight: bold;">__FILE__</span><span style="color: #339933;">,</span> <span style="color: #009900; font-weight: bold;">__LINE__</span><span style="color: #339933;">,</span> PEAR_LOG_ERR<span style="color: #009900;">&#41;</span><span style="color: #339933;">;</span>
<span style="color: #339933;">+</span><span style="color: #009900;">&#125;</span> <span style="color: #b1b100;">else</span> <span style="color: #009900;">&#123;</span>
<span style="color: #339933;">+</span>    <span style="color: #000088;">$entry</span> <span style="color: #339933;">=</span> <span style="color: #0000ff;">&quot;Not blacklisted ip <span style="color: #006699; font-weight: bold;">$remoteIP</span>&quot;</span> <span style="color: #339933;">.</span> <span style="color: #990000;">implode</span><span style="color: #009900;">&#40;</span><span style="color: #0000ff;">&quot;, &quot;</span><span style="color: #339933;">,</span> <span style="color: #000088;">$data</span><span style="color: #009900;">&#41;</span><span style="color: #339933;">;</span>
<span style="color: #339933;">+</span>    Horde<span style="color: #339933;">::</span><span style="color: #004000;">logMessage</span><span style="color: #009900;">&#40;</span><span style="color: #000088;">$entry</span><span style="color: #339933;">,</span> <span style="color: #009900; font-weight: bold;">__FILE__</span><span style="color: #339933;">,</span> <span style="color: #009900; font-weight: bold;">__LINE__</span><span style="color: #339933;">,</span> PEAR_LOG_INFO<span style="color: #009900;">&#41;</span><span style="color: #339933;">;</span>
<span style="color: #339933;">+</span><span style="color: #009900;">&#125;</span>
<span style="color: #339933;">+</span>
<span style="color: #339933;">+</span><span style="color: #666666; font-style: italic;"># DNSBL END
</span><span style="color: #339933;">+</span>
 <span style="color: #666666; font-style: italic;">// ZMENA</span>
 <span style="color: #990000;">ini_set</span><span style="color: #009900;">&#40;</span><span style="color: #0000ff;">'include_path'</span><span style="color: #339933;">,</span> <span style="color: #990000;">ini_get</span><span style="color: #009900;">&#40;</span><span style="color: #0000ff;">'include_path'</span><span style="color: #009900;">&#41;</span><span style="color: #339933;">.</span><span style="color: #0000ff;">':/usr/share/php'</span><span style="color: #009900;">&#41;</span><span style="color: #339933;">;</span></pre></div></div>

]]></content:encoded>
			<wfw:commentRss>http://www.hrbac.cz/2011/01/dnsbl-for-horde/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>avgd stops listening on port 54322</title>
		<link>http://www.hrbac.cz/2010/08/avgd-stops-listening-on-port-54322/</link>
		<comments>http://www.hrbac.cz/2010/08/avgd-stops-listening-on-port-54322/#comments</comments>
		<pubDate>Mon, 30 Aug 2010 08:08:44 +0000</pubDate>
		<dc:creator>David Hrbáč</dc:creator>
				<category><![CDATA[mailing]]></category>

		<guid isPermaLink="false">http://www.hrbac.cz/?p=226</guid>
		<description><![CDATA[Last days I&#8217;m experiencing avgd not responding. Avgd stops to listen on port 54322, amavisd-new timeouts on talking to AV. Mails are being held and queue is slowly increasing its number. It&#8217;s strange, that I&#8217;m experiencing it not only on one production system&#8230; Aug 29 04:59:46 rakosnicek amavis&#91;25940&#93;: &#40;25940-01-5&#41; &#40;!&#41;AVG Anti-Virus av-scanner FAILED: run_av error: [...]]]></description>
			<content:encoded><![CDATA[<p>Last days I&#8217;m experiencing avgd not responding. Avgd stops to listen on port 54322, amavisd-new timeouts on talking to AV. Mails are being held and queue is slowly increasing its number. It&#8217;s strange, that I&#8217;m experiencing it not only on one production system&#8230;</p>

<div class="wp_syntax"><div class="code"><pre class="vim" style="font-family:monospace;">Aug <span style="color: #000000; font-weight:bold;">29</span> 04<span style="color: #000000;">:</span><span style="color: #000000; font-weight:bold;">59</span><span style="color: #000000;">:</span><span style="color: #000000; font-weight:bold;">46</span> rakosnicek amavis<span style="color: #000000;">&#91;</span><span style="color: #000000; font-weight:bold;">25940</span><span style="color: #000000;">&#93;</span><span style="color: #000000;">:</span> <span style="color: #000000;">&#40;</span><span style="color: #000000; font-weight:bold;">25940</span><span style="color: #000000;">-</span>01<span style="color: #000000;">-</span><span style="color: #000000; font-weight:bold;">5</span><span style="color: #000000;">&#41;</span> <span style="color: #000000;">&#40;</span><span style="color: #000000;">!</span><span style="color: #000000;">&#41;</span>AVG Anti<span style="color: #000000;">-</span>Virus av<span style="color: #000000;">-</span>scanner FAILED<span style="color: #000000;">:</span> run_av error<span style="color: #000000;">:</span> Too many retries <span style="color: #668080;">to</span> talk <span style="color: #668080;">to</span> 127<span style="color: #000000;">.</span>0<span style="color: #000000;">.</span>0<span style="color: #000000;">.</span>1<span style="color: #000000;">:</span><span style="color: #000000; font-weight:bold;">54322</span> <span style="color: #000000;">&#40;</span>timed
out<span style="color: #000000;">&#41;</span> at <span style="color: #000000;">&#40;</span><span style="color: #25BB4D;">eval</span> <span style="color: #000000; font-weight:bold;">111</span><span style="color: #000000;">&#41;</span> <span style="color: #25BB4D;">line</span> <span style="color: #000000; font-weight:bold;">373</span><span style="color: #000000;">.</span>\n</pre></div></div>

<p>It seems working after changing a little bit AVG configuration with following values:</p>

<div class="wp_syntax"><div class="code"><pre class="bash" style="font-family:monospace;">avgcfgctl <span style="color: #660033;">-w</span> Default.setup.features.antispam=<span style="color: #c20cb9; font-weight: bold;">false</span>
avgcfgctl <span style="color: #660033;">-w</span> Default.tcpd.avg.limiter_start=<span style="color: #000000;">150</span>
avgcfgctl <span style="color: #660033;">-w</span> Default.tcpd.avg.limiter_stop=<span style="color: #000000;">200</span>
avgcfgctl <span style="color: #660033;">-w</span> Default.tcpd.avg.timeout=<span style="color: #000000;">5000</span>
avgcfgctl <span style="color: #660033;">-w</span> Default.tcpd.smtp.enabled=<span style="color: #c20cb9; font-weight: bold;">false</span>
avgctl <span style="color: #660033;">--restart</span>=tcpd</pre></div></div>

]]></content:encoded>
			<wfw:commentRss>http://www.hrbac.cz/2010/08/avgd-stops-listening-on-port-54322/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Zoner Antivirus with Amavisd-new</title>
		<link>http://www.hrbac.cz/2010/02/zoner-antivirus-with-amavisd-new/</link>
		<comments>http://www.hrbac.cz/2010/02/zoner-antivirus-with-amavisd-new/#comments</comments>
		<pubDate>Mon, 01 Feb 2010 21:05:04 +0000</pubDate>
		<dc:creator>David Hrbáč</dc:creator>
				<category><![CDATA[mailing]]></category>

		<guid isPermaLink="false">http://www.hrbac.cz/?p=157</guid>
		<description><![CDATA[Today I have decided to test Amavisd-new with free Zoner Antivirus for Linux. First of all you have to download the package, (test it), install, and change the ownership. Then edit the configuration. wget http://update.zonerantivirus.com/download/zav-1.2.2-redhat-i586.rpm --nodeps rpm -Uhv zav-1.2.2-redhat-i586.rpm --test rpm -Uhv zav-1.2.2-redhat-i586.rpm chown amavis: /opt/zav -R chown amavis: /var/run/zav -R vi /etc/zav/zavd.conf So, we [...]]]></description>
			<content:encoded><![CDATA[<p>Today I have decided to test Amavisd-new with free Zoner Antivirus for Linux. First of all you have to download the package, (test it), install, and change the ownership. Then edit the configuration.</p>

<div class="wp_syntax"><div class="code"><pre class="bash" style="font-family:monospace;"><span style="color: #c20cb9; font-weight: bold;">wget</span> http:<span style="color: #000000; font-weight: bold;">//</span>update.zonerantivirus.com<span style="color: #000000; font-weight: bold;">/</span>download<span style="color: #000000; font-weight: bold;">/</span>zav-1.2.2-redhat-i586.rpm <span style="color: #660033;">--nodeps</span>
rpm <span style="color: #660033;">-Uhv</span> zav-1.2.2-redhat-i586.rpm <span style="color: #660033;">--test</span>
rpm <span style="color: #660033;">-Uhv</span> zav-1.2.2-redhat-i586.rpm
<span style="color: #c20cb9; font-weight: bold;">chown</span> amavis: <span style="color: #000000; font-weight: bold;">/</span>opt<span style="color: #000000; font-weight: bold;">/</span>zav <span style="color: #660033;">-R</span>
<span style="color: #c20cb9; font-weight: bold;">chown</span> amavis: <span style="color: #000000; font-weight: bold;">/</span>var<span style="color: #000000; font-weight: bold;">/</span>run<span style="color: #000000; font-weight: bold;">/</span>zav <span style="color: #660033;">-R</span>
<span style="color: #c20cb9; font-weight: bold;">vi</span> <span style="color: #000000; font-weight: bold;">/</span>etc<span style="color: #000000; font-weight: bold;">/</span>zav<span style="color: #000000; font-weight: bold;">/</span>zavd.conf</pre></div></div>

<p>So, we have changed the ownership. Now we have to change the daemon user to <strong>amavis </strong>too.</p>

<div class="wp_syntax"><div class="code"><pre class="vim" style="font-family:monospace;"># <span style="color: #804040;">user</span> under which <span style="color: #668080;">to</span> run the daemon
ZAVD_USER               = <span style="color: #C5A22D;">&quot;amavis&quot;</span>
ZAVD_GROUP              = <span style="color: #C5A22D;">&quot;amavis&quot;</span>
# Your license <span style="color: #668080;">key</span> <span style="color: #804040;">for</span> accessing ZAV update
UPDATE_KEY              = <span style="color: #C5A22D;">&quot;11111-22222-SAMPLE-33333-44444&quot;</span></pre></div></div>

<p>We can start and update ZAV with:</p>

<div class="wp_syntax"><div class="code"><pre class="bash" style="font-family:monospace;"><span style="color: #000000; font-weight: bold;">/</span>etc<span style="color: #000000; font-weight: bold;">/</span>init.d<span style="color: #000000; font-weight: bold;">/</span>zavd start
<span style="color: #000000; font-weight: bold;">/</span>etc<span style="color: #000000; font-weight: bold;">/</span>init.d<span style="color: #000000; font-weight: bold;">/</span>zavd update</pre></div></div>

<p>Finally we have to change Amavisd-new configuration by adding the following:</p>

<div class="wp_syntax"><div class="code"><pre class="vim" style="font-family:monospace;"> ### http<span style="color: #000000;">://</span>www<span style="color: #000000;">.</span>grisoft<span style="color: #000000;">.</span><span style="color: #668080;">com</span><span style="color: #000000;">/</span>
 <span style="color: #000000;">&#91;</span><span style="color: #C5A22D;">'Zoner Anti-Virus'</span>,
#  <span style="color: #C5A22D;">'/opt/zav/bin/zavcli'</span>, <span style="color: #C5A22D;">'-z /var/run/zav/zavd.sock {}'</span>,
  <span style="color: #C5A22D;">'/opt/zav/bin/zavcli'</span>, <span style="color: #C5A22D;">' {}'</span>,
  <span style="color: #000000;">&#91;</span><span style="color: #000000; font-weight:bold;">0</span>,<span style="color: #000000; font-weight:bold;">1</span>,<span style="color: #000000; font-weight:bold;">2</span>,<span style="color: #000000; font-weight:bold;">3</span>,<span style="color: #000000; font-weight:bold;">4</span><span style="color: #000000;">&#93;</span>, <span style="color: #000000;">&#91;</span><span style="color: #000000; font-weight:bold;">5</span>,<span style="color: #000000; font-weight:bold;">6</span>,<span style="color: #000000; font-weight:bold;">7</span>,<span style="color: #000000; font-weight:bold;">11</span><span style="color: #000000;">&#93;</span>,
  qr<span style="color: #000000;">/^.*:</span>\ <span style="color: #000000;">&#40;</span>SUSPICIOUS<span style="color: #000000;">|</span>PROBINFECTED<span style="color: #000000;">|</span>INFECTED<span style="color: #000000;">&#41;</span>\ \<span style="color: #000000;">&#40;</span><span style="color: #000000;">&#40;</span><span style="color: #000000;">.*</span><span style="color: #000000;">&#41;</span>\<span style="color: #000000;">&#41;</span><span style="color: #000000;">$/</span>
<span style="color: #000000;">&#93;</span></pre></div></div>

]]></content:encoded>
			<wfw:commentRss>http://www.hrbac.cz/2010/02/zoner-antivirus-with-amavisd-new/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Send file as attachment from commnad line</title>
		<link>http://www.hrbac.cz/2010/01/send-file-as-attachment-from-commnad-line/</link>
		<comments>http://www.hrbac.cz/2010/01/send-file-as-attachment-from-commnad-line/#comments</comments>
		<pubDate>Mon, 18 Jan 2010 13:04:28 +0000</pubDate>
		<dc:creator>David Hrbáč</dc:creator>
				<category><![CDATA[bash]]></category>
		<category><![CDATA[mailing]]></category>

		<guid isPermaLink="false">http://www.hrbac.cz/?p=145</guid>
		<description><![CDATA[There&#8217;s an easy way of sending files as attachment from command line: uuencode file name &#124; mail -s &#34;Subject&#34; &#34;to@tld.cz&#34; -- -ffrom@tld.cz Yes, there is double hyphen and -f before the from email address.]]></description>
			<content:encoded><![CDATA[<p>There&#8217;s an easy way of sending files as attachment from command line:</p>

<div class="wp_syntax"><div class="code"><pre class="bash" style="font-family:monospace;">uuencode <span style="color: #c20cb9; font-weight: bold;">file</span> name <span style="color: #000000; font-weight: bold;">|</span> mail <span style="color: #660033;">-s</span> <span style="color: #ff0000;">&quot;Subject&quot;</span> <span style="color: #ff0000;">&quot;to@tld.cz&quot;</span>  <span style="color: #660033;">--</span> -ffrom<span style="color: #000000; font-weight: bold;">@</span>tld.cz</pre></div></div>

<p>Yes, there is double hyphen and -f before the from email address.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.hrbac.cz/2010/01/send-file-as-attachment-from-commnad-line/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>AVG 8.5 with Amavisd-new</title>
		<link>http://www.hrbac.cz/2009/10/avg-8-5-with-amavisd-new/</link>
		<comments>http://www.hrbac.cz/2009/10/avg-8-5-with-amavisd-new/#comments</comments>
		<pubDate>Tue, 13 Oct 2009 13:35:31 +0000</pubDate>
		<dc:creator>David Hrbáč</dc:creator>
				<category><![CDATA[mailing]]></category>

		<guid isPermaLink="false">http://www.hrbac.cz/?p=124</guid>
		<description><![CDATA[Amavisd-new is a quite powerful tool capable to co-operate with a large amount of AV scanners. Today I have decided to test it with free AVG Antivirus for Linux. First of all you have to download the package, (test it), install, and change the ownership. Then edit the configuration. wget http://download.avgfree.com/filedir/inst/avg85flx-r287-a2632.i386.rpm rpm -Uhv avg85flx-r287-a2632.i386.rpm --test [...]]]></description>
			<content:encoded><![CDATA[<p>Amavisd-new is  a quite powerful tool capable to co-operate with a large amount of AV scanners. Today I have decided to test it with free AVG Antivirus for Linux. First of all you have to download the package, (test it), install, and change the ownership. Then edit the configuration.</p>

<div class="wp_syntax"><div class="code"><pre class="bash" style="font-family:monospace;"><span style="color: #c20cb9; font-weight: bold;">wget</span> http:<span style="color: #000000; font-weight: bold;">//</span>download.avgfree.com<span style="color: #000000; font-weight: bold;">/</span>filedir<span style="color: #000000; font-weight: bold;">/</span>inst<span style="color: #000000; font-weight: bold;">/</span>avg85flx-r287-a2632.i386.rpm
rpm <span style="color: #660033;">-Uhv</span> avg85flx-r287-a2632.i386.rpm <span style="color: #660033;">--test</span>
rpm <span style="color: #660033;">-Uhv</span> avg85flx-r287-a2632.i386.rpm
<span style="color: #c20cb9; font-weight: bold;">chown</span> amavis: <span style="color: #000000; font-weight: bold;">/</span>opt<span style="color: #000000; font-weight: bold;">/</span>avg <span style="color: #660033;">-R</span>
<span style="color: #c20cb9; font-weight: bold;">vi</span> <span style="color: #000000; font-weight: bold;">/</span>opt<span style="color: #000000; font-weight: bold;">/</span>avg<span style="color: #000000; font-weight: bold;">/</span>avg8<span style="color: #000000; font-weight: bold;">/</span>etc<span style="color: #000000; font-weight: bold;">/</span>init.d<span style="color: #000000; font-weight: bold;">/</span>avgdinit.conf</pre></div></div>

<p>So, we have changed the ownership. Now we have to change the daemon user to <strong>amavis </strong>too.</p>

<div class="wp_syntax"><div class="code"><pre class="vim" style="font-family:monospace;"># <span style="color: #804040;">user</span> under which <span style="color: #668080;">to</span> run the daemon
SUSER=amavis</pre></div></div>

<p>We can start AVG with:</p>

<div class="wp_syntax"><div class="code"><pre class="bash" style="font-family:monospace;"><span style="color: #000000; font-weight: bold;">/</span>etc<span style="color: #000000; font-weight: bold;">/</span>init.d<span style="color: #000000; font-weight: bold;">/</span>avgd start</pre></div></div>

<p>Finally we have to change Amavisd-new configuration by commenting out  AVG section and changing the port:</p>

<div class="wp_syntax"><div class="code"><pre class="vim" style="font-family:monospace;"> ### http<span style="color: #000000;">://</span>www<span style="color: #000000;">.</span>grisoft<span style="color: #000000;">.</span><span style="color: #668080;">com</span><span style="color: #000000;">/</span>
 <span style="color: #000000;">&#91;</span><span style="color: #C5A22D;">'AVG Anti-Virus'</span>,
   \<span style="color: #000000;">&amp;</span>amp;ask_daemon, <span style="color: #000000;">&#91;</span><span style="color: #C5A22D;">&quot;SCAN {}<span style="">\n</span>&quot;</span>, <span style="color: #C5A22D;">'127.0.0.1:54322'</span><span style="color: #000000;">&#93;</span>,
   qr<span style="color: #000000;">/^</span><span style="color: #000000; font-weight:bold;">200</span><span style="color: #000000;">/</span>, qr<span style="color: #000000;">/^</span><span style="color: #000000; font-weight:bold;">403</span><span style="color: #000000;">/</span>, qr<span style="color: #000000;">/^</span><span style="color: #000000; font-weight:bold;">403</span> <span style="color: #000000;">.*?:</span> <span style="color: #000000;">&#40;</span><span style="color: #000000;">&#91;</span><span style="color: #000000;">^</span>\r\n<span style="color: #000000;">&#93;</span><span style="color: #000000;">+</span><span style="color: #000000;">&#41;</span><span style="color: #000000;">/</span> <span style="color: #000000;">&#93;</span>,</pre></div></div>

]]></content:encoded>
			<wfw:commentRss>http://www.hrbac.cz/2009/10/avg-8-5-with-amavisd-new/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

