Scheduled Maintenance: We are aware of an issue with Google, AOL, and Yahoo services as email providers which are blocking new registrations. We are trying to fix the issue and we have several internal and external support tickets in process to resolve the issue. Please see: viewtopic.php?t=158230

 

 

 

[SOLVED] nginx issue (I think)

Linux Kernel, Network, and Services configuration.
Post Reply
Message
Author
dcihon
Posts: 279
Joined: 2012-09-23 16:18
Been thanked: 3 times

[SOLVED] nginx issue (I think)

#1 Post by dcihon »

This post is directed to debiman
He wrote this in response to a forum post:
fwiw, i dropped apache for nginx on my small server because it's overkill.
I have built a debian server running stable 9 to run a mail server called iredmail:
https://www.iredmail.org/

I have been working with their forum trying to resolve an issue and I am not getting anywhere so I thought I would put the question out here.
I know it is a long shot but I am looking to try anything.

The mail server uses RoundCube for its web interface and that is where the issue is. I have been on roundcube forums also trying to fix this.

I'm not asking for a fix but that would be great. I keep running into dead ends. Logs aren't helping either.
I can get specific if needed to.
Just looking for another opinion on what to try. If you don't want to waste your time that is ok I understand.
I will be continuing to work with iredmail forum support and looking wherever I can.

What happens is when I goto the webpage : https://mydomain.com/mail i get 502 bad gateway nginx

The mail server is working. Just can't use the Roundcube web interface.
Thunderbird works to get mail.
I know just use that then. I will if I can't get this fixed.

One more thing I just thought of. I think this might have to do with a debian update. I think this started after I did an update.
I know I should have a backup but I didn't think a simple stable update would break something. Lesson learned.
Sorry for the rambling.
Last edited by dcihon on 2018-02-23 17:10, edited 1 time in total.

User avatar
GarryRicketson
Posts: 5644
Joined: 2015-01-20 22:16
Location: Durango, Mexico

Re: nginx issue (I think)

#2 Post by GarryRicketson »

Unread postby dcihon » 2018-02-10 10:31
This post is directed to debiman
This is a public forum, for everybody.
1. If you want to communicate directly with debiman, you should use the PM (private messages) Other wise any body can and probably will reply.


I agree with Debiman and saw the reply in the other thread, nginx would be a better option,..
So what is the problem now ?
Re: nginx issue (I think)
Is nginx not working either, ?
Or is this the problem ?
The mail server uses RoundCube for its web interface and that is where the issue is.
Round Cube, is also a rather problematic interface, I certainly wouldn't use it. I agree, that is the most likely cause of the problems.

The links to the e-mail and "mydomain" services seem ok to me, maybe your browser is badly configured ?,... OR are you just promoting these services ?
by dcihon »I have been working with their forum trying to resolve an issue
Yes, but what is the issue ? You need to give good clear details, and in the same thread you want help on, starting another topic, without the details just confuses things more,..
by dcihon »Sorry for the rambling.
Well no problem, but if you want help you need to start giving specific details and try to stop doing that.

dcihon
Posts: 279
Joined: 2012-09-23 16:18
Been thanked: 3 times

Re: nginx issue (I think)

#3 Post by dcihon »

Garry,
Thanks for the helpful comments.

Ok the exact issue is

When I use Roundcube to go to the webpage "https://mail.mydomain.com/mail" I get the page:

502 Bad Gateway

User avatar
GarryRicketson
Posts: 5644
Joined: 2015-01-20 22:16
Location: Durango, Mexico

Re: nginx issue (I think)

#4 Post by GarryRicketson »

Ok that helps, and I get a lot of results:
nginx and roundcube 502 bad gateway error
============
http://forum.directadmin.com/showthread.php?t=46369
I did chown webapps:nginx and now it works.

Thank you dude! =)
===============
https://forum.openmediavault.org/index. ... d-Gateway/
================

https://talk.plesk.com/threads/502-bad- ... om.340552/
===================

http://jvdc.me/fix-502-bad-gateway-erro ... ading-php/

There are more results as well, they may help give you a idea as to how to trouble shoot this, they also will help you see what details would be needed.
Don't just jump on the first solution, read some of the others as well, ..you will notice they all request the OP's basically the same things,...maybe none are exactly your situation, but the logs,etc will help sort it out.

User avatar
debiman
Posts: 3063
Joined: 2013-03-12 07:18

Re: nginx issue (I think)

#5 Post by debiman »

i'm not so good with these error codes, but i've had bad gateway errors myself.
could well be a permission issue.
you could post the nginx configuration responsible for mail.mydomain.com/mail.
and, what user is nginx running as?

dcihon
Posts: 279
Joined: 2012-09-23 16:18
Been thanked: 3 times

Re: nginx issue (I think)

#6 Post by dcihon »

Guys I appreciate your help.
The links are very helpful and I wish I new which config file to show you.
I will post some config files to show you and see if they are the ones.
I have to shut it down for the night.
I will post some config files tomorrow.

User avatar
GarryRicketson
Posts: 5644
Joined: 2015-01-20 22:16
Location: Durango, Mexico

Re: nginx issue (I think)

#7 Post by GarryRicketson »

Code: Select all

ps aux | grep php 
Are the php processes even working ?

Code: Select all

/etc/nginx/nginx.conf  

Code: Select all

/var/log/httpd/error_log
/var/log/nginx/error.log
/var/log/messages 

User avatar
debiman
Posts: 3063
Joined: 2013-03-12 07:18

Re: nginx issue (I think)

#8 Post by debiman »

dcihon wrote:I wish I new which config file to show you.
what? did you not set it up in /etc/nginx/sites-* ?

kedaha
Posts: 3521
Joined: 2008-05-24 12:26
Has thanked: 33 times
Been thanked: 77 times

Re: nginx issue (I think)

#9 Post by kedaha »

GarryRicketson wrote:Round Cube, is also a rather problematic interface, I certainly wouldn't use it. I agree, that is the most likely cause of the problems.
For personal use, I prefer squirrelmail but for small_office/home_office use by other users coming from Windows, accustomed to a polished interface, I think Roundcube is more suitable. Using it isn't problematic at all but getting it properly set up and configured, in my case certainly was. I was on the point of throwing in the towel more times than I'd care to admit before knocking it out in the final round :wink: , which is one of the reasons I'm in no hurry to upgrade to "stretch."

@dcihon
I hope you solve this soon. I use apache2 so I'll refrain from commenting on the "bad gateway" error. But I'd just like to comment that I set up my own fully-functional mail server—complete with Roundcube—by using the ispmail tutorials, without any third-party software. It's quite an undertaking though but one you might like to consider some time.
DebianStable

Code: Select all

$ vrms

No non-free or contrib packages installed on debian!  rms would be proud.

pcalvert
Posts: 1939
Joined: 2006-04-21 11:19
Location: Sol Sector
Has thanked: 1 time
Been thanked: 2 times

Re: nginx issue (I think)

#10 Post by pcalvert »

dcihon wrote:I think this might have to do with a debian update. I think this started after I did an update.
I know I should have a backup but I didn't think a simple stable update would break something.
Which web server were you using when it broke?

Phil
Freespoke is a new search engine that respects user privacy and does not engage in censorship.

dcihon
Posts: 279
Joined: 2012-09-23 16:18
Been thanked: 3 times

Re: nginx issue (I think)

#11 Post by dcihon »

nginx is the webserver it uses.
I will be posting some log files later today in hopes someone can see where the issue is.
I checked with the iredmail forum this morning and there was no update to my post as of yet.
I don't know all the ins and outs of this setup so I am learning as I go.

dcihon
Posts: 279
Joined: 2012-09-23 16:18
Been thanked: 3 times

Re: nginx issue (I think)

#12 Post by dcihon »

mail.log:

Code: Select all

Feb 11 08:22:33 mail postfix/postfix-script[1124]: starting the Postfix mail system
Feb 11 08:22:34 mail postfix/master[1127]: daemon started -- version 3.1.6, configuration /etc/postfix
Feb 11 08:22:35 mail postfix/qmgr[1138]: 92B5A814EF: from=<amazoncom-danc=dccathome.com@brainpowerups.com>, size=26380, nrcpt=1 (queue active)
Feb 11 08:22:35 mail postfix/qmgr[1138]: CB95582BB4: from=<neely-danc=dccathome.com@searchxsearch.com>, size=3573, nrcpt=1 (queue active)
Feb 11 08:22:35 mail postfix/qmgr[1138]: B380783F73: from=<>, size=7006, nrcpt=1 (queue active)
Feb 11 08:22:38 mail postfix/smtp[1162]: connect to mail.strinesde.com[162.144.197.180]:25: No route to host
Feb 11 08:22:38 mail postfix/smtp[1162]: B380783F73: to=<joseph_moore-danc=dccathome.com@strinesde.com>, relay=none, delay=71209, delays=71207/0.59/1.9/0, dsn=4.4.1, status=deferred (connect to mail.strinesde.com[162.144.197.180]:25: No route to host)
Feb 11 08:22:39 mail amavis[698]: starting. /usr/sbin/amavisd-new at mail.dccathome.com amavisd-new-2.10.1 (20141025), Unicode aware, LC_ALL="C", LANG="en_US.UTF-8"
Feb 11 08:22:40 mail postfix/pipe[1161]: 92B5A814EF: to=<danc@dccathome.com>, relay=dovecot, delay=424360, delays=424355/0.15/0/4.6, dsn=4.3.0, status=deferred (Command died with signal 6: "/usr/lib/dovecot/deliver")
Feb 11 08:22:40 mail postfix/pipe[1163]: CB95582BB4: to=<danc@dccathome.com>, relay=dovecot, delay=419973, delays=419968/0.05/0/5.1, dsn=4.3.0, status=deferred (Command died with signal 6: "/usr/lib/dovecot/deliver")
Feb 11 08:22:42 mail amavis[1296]: Net::Server: Group Not Defined.  Defaulting to EGID '126 126'
Feb 11 08:22:42 mail amavis[1296]: Net::Server: User Not Defined.  Defaulting to EUID '121'
Feb 11 08:22:42 mail amavis[1296]: Module Amavis::Conf        2.404
Feb 11 08:22:42 mail amavis[1296]: Module Archive::Zip        1.59
Feb 11 08:22:42 mail amavis[1296]: Module BerkeleyDB          0.55
Feb 11 08:22:42 mail amavis[1296]: Module Compress::Raw::Zlib 2.069
Feb 11 08:22:42 mail amavis[1296]: Module Compress::Zlib      2.069001
Feb 11 08:22:42 mail amavis[1296]: Module Crypt::OpenSSL::RSA 0.28
Feb 11 08:22:42 mail amavis[1296]: Module DBD::mysql          4.041
Feb 11 08:22:42 mail amavis[1296]: Module DBI                 1.636
Feb 11 08:22:42 mail amavis[1296]: Module DB_File             1.835
Feb 11 08:22:42 mail amavis[1296]: Module Digest::MD5         2.54
Feb 11 08:22:42 mail amavis[1296]: Module Digest::SHA         5.95_01
Feb 11 08:22:42 mail amavis[1296]: Module Encode              2.80_01
Feb 11 08:22:42 mail amavis[1296]: Module File::Temp          0.2304
Feb 11 08:22:42 mail amavis[1296]: Module IO::Socket::INET6   2.72
Feb 11 08:22:42 mail amavis[1296]: Module IO::Socket::IP      0.37
Feb 11 08:22:42 mail amavis[1296]: Module MIME::Entity        5.508
Feb 11 08:22:42 mail amavis[1296]: Module MIME::Parser        5.508
Feb 11 08:22:42 mail amavis[1296]: Module MIME::Tools         5.508
Feb 11 08:22:42 mail amavis[1296]: Module Mail::DKIM::Signer  0.4
Feb 11 08:22:42 mail amavis[1296]: Module Mail::DKIM::Verifier 0.4
Feb 11 08:22:42 mail amavis[1296]: Module Mail::Header        2.18
Feb 11 08:22:42 mail amavis[1296]: Module Mail::Internet      2.18
Feb 11 08:22:42 mail amavis[1296]: Module Mail::SPF           v2.009
Feb 11 08:22:42 mail amavis[1296]: Module Mail::SpamAssassin  3.004001
Feb 11 08:22:42 mail amavis[1296]: Module Net::DNS            1.07
Feb 11 08:22:42 mail amavis[1296]: Module Net::LibIDN         0.12
Feb 11 08:22:42 mail amavis[1296]: Module Net::Patricia       1.22
Feb 11 08:22:42 mail amavis[1296]: Module Net::Server         2.008
Feb 11 08:22:42 mail amavis[1296]: Module NetAddr::IP         4.079
Feb 11 08:22:42 mail amavis[1296]: Module Scalar::Util        1.4202
Feb 11 08:22:42 mail amavis[1296]: Module Socket              2.020_03
Feb 11 08:22:42 mail amavis[1296]: Module Socket6             0.27
Feb 11 08:22:42 mail amavis[1296]: Module Time::HiRes         1.9733
Feb 11 08:22:42 mail amavis[1296]: Module URI                 1.71
Feb 11 08:22:42 mail amavis[1296]: Module Unix::Syslog        1.1
Feb 11 08:22:42 mail amavis[1296]: Amavis::ZMQ code     NOT loaded
Feb 11 08:22:42 mail amavis[1296]: Amavis::DB code      loaded
Feb 11 08:22:42 mail amavis[1296]: SQL base code        loaded
Feb 11 08:22:42 mail amavis[1296]: SQL::Log code        loaded
Feb 11 08:22:42 mail amavis[1296]: SQL::Quarantine      loaded
Feb 11 08:22:42 mail amavis[1296]: Lookup::SQL code     loaded
Feb 11 08:22:42 mail amavis[1296]: Lookup::LDAP code    NOT loaded
Feb 11 08:22:42 mail amavis[1296]: AM.PDP-in proto code loaded
Feb 11 08:22:42 mail amavis[1296]: SMTP-in proto code   loaded
Feb 11 08:22:42 mail amavis[1296]: Courier proto code   NOT loaded
Feb 11 08:22:42 mail amavis[1296]: SMTP-out proto code  loaded
Feb 11 08:22:42 mail amavis[1296]: Pipe-out proto code  NOT loaded
Feb 11 08:22:42 mail amavis[1296]: BSMTP-out proto code NOT loaded
Feb 11 08:22:42 mail amavis[1296]: Local-out proto code NOT loaded
Feb 11 08:22:42 mail amavis[1296]: OS_Fingerprint code  NOT loaded
Feb 11 08:22:42 mail amavis[1296]: ANTI-VIRUS code      loaded
Feb 11 08:22:42 mail amavis[1296]: ANTI-SPAM code       loaded
Feb 11 08:22:42 mail amavis[1296]: ANTI-SPAM-EXT code   NOT loaded
Feb 11 08:22:42 mail amavis[1296]: ANTI-SPAM-C code     NOT loaded
Feb 11 08:22:42 mail amavis[1296]: ANTI-SPAM-SA code    loaded
Feb 11 08:22:42 mail amavis[1296]: Unpackers code       loaded
Feb 11 08:22:42 mail amavis[1296]: DKIM code            loaded
Feb 11 08:22:42 mail amavis[1296]: Tools code           NOT loaded
Feb 11 08:22:42 mail amavis[1296]: Found $file            at /usr/bin/file
Feb 11 08:22:42 mail amavis[1296]: Found $altermime       at /usr/bin/altermime
Feb 11 08:22:42 mail amavis[1296]: Internal decoder for .mail
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .Z    at /bin/uncompress
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .gz   at /bin/gzip -d
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .bz2  at /bin/bzip2 -d
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .xz   at /usr/bin/xz -dc
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .lzma at /usr/bin/xz -dc --format=lzma
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .lrz  at /usr/bin/lrzip -q -k -d -o -
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .lzo  at /usr/bin/lzop -d
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .lz4  at /usr/bin/lz4c -d
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .rpm  at /usr/bin/rpm2cpio
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .cpio at /bin/pax
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .tar  at /bin/pax
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .deb  at /usr/bin/ar
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .rar  at /usr/bin/unrar-free
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .arj  at /usr/bin/arj
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .arc  at /usr/bin/nomarch
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .zoo  at /usr/bin/zoo
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .doc  at /usr/bin/ripole
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .cab  at /usr/bin/cabextract
Feb 11 08:22:42 mail amavis[1296]: Internal decoder for .tnef
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .zip  at /usr/bin/7za
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .kmz  at /usr/bin/7za
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .7z   at /usr/bin/7zr
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .jar  at /usr/bin/7z
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .swf  at /usr/bin/7z
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .lha  at /usr/bin/7z
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .iso  at /usr/bin/7z
Feb 11 08:22:42 mail amavis[1296]: Found decoder for    .exe  at /usr/bin/unrar-free; /usr/bin/arj
Feb 11 08:22:42 mail amavis[1296]: No decoder for       .F
Feb 11 08:22:42 mail amavis[1296]: Using primary internal av scanner code for ClamAV-clamd
Feb 11 08:22:42 mail amavis[1296]: Found secondary av scanner ClamAV-clamscan at /usr/bin/clamscan
Feb 11 08:22:42 mail amavis[1296]: Deleting db files __db.002,__db.003,nanny.db,__db.001,snmp.db in /var/lib/amavis/db
Feb 11 08:22:42 mail amavis[1296]: Creating db in /var/lib/amavis/db/; BerkeleyDB 0.55, libdb 5.3
Feb 11 08:25:16 mail postfix/postscreen[2163]: CONNECT from [71.14.247.21]:41110 to [192.168.1.21]:25
Feb 11 08:25:22 mail postfix/postscreen[2163]: PASS NEW [71.14.247.21]:41110
Feb 11 08:25:22 mail postfix/smtpd[2167]: connect from spamfilter.iconmech.com[71.14.247.21]
Feb 11 08:25:22 mail postfix/smtpd[2167]: Anonymous TLS connection established from spamfilter.iconmech.com[71.14.247.21]: TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)
Feb 11 08:25:22 mail postfix/smtpd[2167]: DAE1381B33: client=spamfilter.iconmech.com[71.14.247.21]
Feb 11 08:25:22 mail postfix/cleanup[2171]: DAE1381B33: message-id=<08249CAA-77C2-47C5-A0F2-E5CF9DF1F270@iconmech.com>
Feb 11 08:25:22 mail postfix/qmgr[1138]: DAE1381B33: from=<DCihon@iconmech.com>, size=9221, nrcpt=1 (queue active)
Feb 11 08:25:22 mail postfix/smtpd[2167]: disconnect from spamfilter.iconmech.com[71.14.247.21] ehlo=2 starttls=1 mail=1 rcpt=1 data=1 quit=1 commands=7
Feb 11 08:25:24 mail postfix/10025/smtpd[2176]: connect from localhost[127.0.0.1]
Feb 11 08:25:24 mail postfix/10025/smtpd[2176]: 5AE1782AFE: client=localhost[127.0.0.1]
Feb 11 08:25:24 mail postfix/cleanup[2171]: 5AE1782AFE: message-id=<08249CAA-77C2-47C5-A0F2-E5CF9DF1F270@iconmech.com>
Feb 11 08:25:24 mail postfix/qmgr[1138]: 5AE1782AFE: from=<DCihon@iconmech.com>, size=9691, nrcpt=1 (queue active)
Feb 11 08:25:24 mail postfix/10025/smtpd[2176]: disconnect from localhost[127.0.0.1] ehlo=1 mail=1 rcpt=1 data=1 quit=1 commands=5
dovecot.log:

Code: Select all

Feb 11 08:22:24 mail dovecot: master: Dovecot v2.2.27 (c0f36b0) starting up for pop3, imap, sieve, lmtp (core dumps disabled)
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Loading modules from directory: /usr/lib/dovecot/modules
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Loading modules from directory: /usr/lib/dovecot/modules
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Module loaded: /usr/lib/dovecot/modules/lib01_acl_plugin.so
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Module loaded: /usr/lib/dovecot/modules/lib01_acl_plugin.so
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Module loaded: /usr/lib/dovecot/modules/lib10_quota_plugin.so
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Module loaded: /usr/lib/dovecot/modules/lib10_quota_plugin.so
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Module loaded: /usr/lib/dovecot/modules/lib15_notify_plugin.so
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Module loaded: /usr/lib/dovecot/modules/lib15_notify_plugin.so
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Module loaded: /usr/lib/dovecot/modules/lib20_mail_log_plugin.so
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Module loaded: /usr/lib/dovecot/modules/lib20_mail_log_plugin.so
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Module loaded: /usr/lib/dovecot/modules/lib20_mailbox_alias_plugin.so
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Module loaded: /usr/lib/dovecot/modules/lib20_mailbox_alias_plugin.so
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Module loaded: /usr/lib/dovecot/modules/lib90_sieve_plugin.so
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Module loaded: /usr/lib/dovecot/modules/lib90_sieve_plugin.so
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: auth USER input: danc@dccathome.com master_user=danc@dccathome.com home=/var/vmail/vmail1/dccathome.com/d/a/n/danc-2017.10.17.08.38.39/ mail=maildir:~/Maildir/ quota_rule=*:bytes=0
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Added userdb setting: mail=maildir:~/Maildir/
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Added userdb setting: plugin/master_user=danc@dccathome.com
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Added userdb setting: plugin/quota_rule=*:bytes=0
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Effective uid=2000, gid=2000, home=/var/vmail/vmail1/dccathome.com/d/a/n/danc-2017.10.17.08.38.39/
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: auth USER input: danc@dccathome.com master_user=danc@dccathome.com home=/var/vmail/vmail1/dccathome.com/d/a/n/danc-2017.10.17.08.38.39/ mail=maildir:~/Maildir/ quota_rule=*:bytes=0
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Added userdb setting: mail=maildir:~/Maildir/
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Added userdb setting: plugin/master_user=danc@dccathome.com
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Added userdb setting: plugin/quota_rule=*:bytes=0
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Effective uid=2000, gid=2000, home=/var/vmail/vmail1/dccathome.com/d/a/n/danc-2017.10.17.08.38.39/
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Quota root: name=user backend=dict args=:proxy::quotadict
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Quota rule: root=user mailbox=* bytes=0 messages=0
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Quota warning: bytes=0 (100%) messages=0 reverse=no command=quota-warning 100 danc@dccathome.com
Feb 11 08:22:36 mail dovecot: lda(danc@dccathome.com): Debug: Quota warning: bytes=0 (95%) messages=0 reverse=no command=quota-warning 95 danc@dccathome.com
nginx error.log:

Code: Select all

2018/02/11 06:32:19 [crit] 692#692: *11 SSL_do_handshake() failed (SSL: error:1417D18C:SSL routines:tls_process_client_hello:version too low) while SSL handshaking, client: 184.105.247.194, server: 0.0.0.0:443
2018/02/11 13:56:40 [error] 652#652: *4 open() "/var/www/html/iredmailadmin" failed (2: No such file or directory), client: 192.168.1.21, server: _, request: "GET /iredmailadmin HTTP/1.1", host: "www.dccathome.com"
2018/02/11 16:57:41 [alert] 651#651: worker process 652 exited on signal 9
nginx access.log:

Code: Select all

184.105.247.194 - - [11/Feb/2018:06:29:38 -0600] "GET / HTTP/1.1" 200 78 "-" "-"
60.191.38.77 - - [11/Feb/2018:09:06:22 -0600] "GET / HTTP/1.1" 200 78 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:47.0) Gecko/20100101 Firefox/47.0"
54.183.130.127 - - [11/Feb/2018:12:19:19 -0600] "GET / HTTP/1.1" 200 102 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_12_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/61.0.3163.100 Safari/537.36"
192.168.1.21 - - [11/Feb/2018:13:56:40 -0600] "GET /iredmailadmin HTTP/1.1" 404 136 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:52.0) Gecko/20100101 Firefox/52.0"
107.170.252.110 - - [11/Feb/2018:17:02:55 -0600] "GET / HTTP/1.1" 200 102 "-" "Mozilla/5.0 zgrab/0.x"
php.ini from /etc/php/7.0/fpm:

Code: Select all

[PHP]

;;;;;;;;;;;;;;;;;;;
; About php.ini   ;
;;;;;;;;;;;;;;;;;;;
; PHP's initialization file, generally called php.ini, is responsible for
; configuring many of the aspects of PHP's behavior.
engine = On
short_open_tag = Off
precision = 14
output_buffering = 4096
zlib.output_compression = Off
implicit_flush = Off
unserialize_callback_func =
serialize_precision = 17
disable_functions = apache_setenv,posix_uname,eval,pcntl_wexitstatus,posix_getpwuid,xmlrpc_entity_decode,pcntl_wifstopped,pcntl_wifexited,pcntl_wifsignaled,phpAds_XmlRpc,pcntl_strerror,ftp_exec,pcntl_wtermsig,mysql_pconnect,php_uname,proc_nice,pcntl_sigtimedwait,posix_kill,pcntl_sigprocmask,fput,phpinfo,system,phpAds_remoteInfo,ftp_login,inject_code,posix_mkfifo,highlight_file,escapeshellcmd,show_source,pcntl_wifcontinued,fp,pcntl_alarm,pcntl_wait,ini_alter,posix_setpgid,parse_ini_file,ftp_raw,pcntl_waitpid,pcntl_getpriority,ftp_connect,pcntl_signal_dispatch,pcntl_wstopsig,apache_child_terminate,ini_restore,ftp_put,passthru,proc_terminate,posix_setsid,pcntl_signal,pcntl_setpriority,proc_get_status,phpAds_xmlrpcEncode,pcntl_exec,ftp_nb_fput,ftp_get,phpAds_xmlrpcDecode,pcntl_sigwaitinfo,shell_exec,pcntl_get_last_error,ftp_rawlist,pcntl_fork,posix_setuid

disable_classes =
zend.enable_gc = On
expose_php = Off;
max_execution_time = 30
max_input_time = 60
memory_limit = 256M;
error_reporting = E_ALL & ~E_DEPRECATED & ~E_STRICT
display_errors = Off
display_startup_errors = Off
log_errors = On
log_errors_max_len = 1024
ignore_repeated_errors = Off
ignore_repeated_source = Off
report_memleaks = On
track_errors = Off
html_errors = On
variables_order = "GPCS"
request_order = "GP"
register_argc_argv = Off
auto_globals_jit = On
post_max_size = 12M;
auto_prepend_file =
auto_append_file =
default_mimetype = "text/html"
default_charset = "UTF-8"
doc_root =
user_dir =
enable_dl = Off
file_uploads = On
upload_max_filesize = 10M;
max_file_uploads = 20
allow_url_fopen = On
allow_url_include = Off
default_socket_timeout = 60

[CLI Server]
; Whether the CLI web server uses ANSI color coding in its terminal output.
cli_server.color = On

[Date]
; Defines the default timezone used by the date functions
; http://php.net/date.timezone
date.timezone = GMT

; http://php.net/date.default-latitude
;date.default_latitude = 31.7667

; http://php.net/date.default-longitude
;date.default_longitude = 35.2333

; http://php.net/date.sunrise-zenith
;date.sunrise_zenith = 90.583333

; http://php.net/date.sunset-zenith
;date.sunset_zenith = 90.583333

[filter]
; http://php.net/filter.default
;filter.default = unsafe_raw

; http://php.net/filter.default-flags
;filter.default_flags =

[iconv]
; Use of this INI entry is deprecated, use global input_encoding instead.
; If empty, default_charset or input_encoding or iconv.input_encoding is used.
; The precedence is: default_charset < intput_encoding < iconv.input_encoding
;iconv.input_encoding =

; Use of this INI entry is deprecated, use global internal_encoding instead.
; If empty, default_charset or internal_encoding or iconv.internal_encoding is used.
; The precedence is: default_charset < internal_encoding < iconv.internal_encoding
;iconv.internal_encoding =

; Use of this INI entry is deprecated, use global output_encoding instead.
; If empty, default_charset or output_encoding or iconv.output_encoding is used.
; The precedence is: default_charset < output_encoding < iconv.output_encoding
; To use an output encoding conversion, iconv's output handler must be set
; otherwise output encoding conversion cannot be performed.
;iconv.output_encoding =

[intl]
;intl.default_locale =
; This directive allows you to produce PHP errors when some error
; happens within intl functions. The value is the level of the error produced.
; Default is 0, which does not produce any errors.
;intl.error_level = E_WARNING
;intl.use_exceptions = 0

[sqlite3]
;sqlite3.extension_dir =

[Pcre]
;PCRE library backtracking limit.
; http://php.net/pcre.backtrack-limit
;pcre.backtrack_limit=100000

;PCRE library recursion limit.
;Please note that if you set this value to a high number you may consume all
;the available process stack and eventually crash PHP (due to reaching the
;stack size limit imposed by the Operating System).
; http://php.net/pcre.recursion-limit
;pcre.recursion_limit=100000

;Enables or disables JIT compilation of patterns. This requires the PCRE
;library to be compiled with JIT support.
;pcre.jit=1

[Pdo]
; Whether to pool ODBC connections. Can be one of "strict", "relaxed" or "off"
; http://php.net/pdo-odbc.connection-pooling
;pdo_odbc.connection_pooling=strict

;pdo_odbc.db2_instance_name

[Pdo_mysql]
; If mysqlnd is used: Number of cache slots for the internal result set cache
; http://php.net/pdo_mysql.cache_size
pdo_mysql.cache_size = 2000

; Default socket name for local MySQL connects.  If empty, uses the built-in
; MySQL defaults.
; http://php.net/pdo_mysql.default-socket
pdo_mysql.default_socket=

[Phar]
; http://php.net/phar.readonly
;phar.readonly = On

; http://php.net/phar.require-hash
;phar.require_hash = On

;phar.cache_list =

[mail function]
; For Win32 only.
; http://php.net/smtp
SMTP = localhost
; http://php.net/smtp-port
smtp_port = 25

; For Win32 only.
; http://php.net/sendmail-from
;sendmail_from = me@example.com

; For Unix only.  You may supply arguments as well (default: "sendmail -t -i").
; http://php.net/sendmail-path
;sendmail_path =

; Force the addition of the specified parameters to be passed as extra parameters
; to the sendmail binary. These parameters will always replace the value of
; the 5th parameter to mail().
;mail.force_extra_parameters =

; Add X-PHP-Originating-Script: that will include uid of the script followed by the filename
mail.add_x_header = On

; The path to a log file that will log all mail() calls. Log entries include
; the full path of the script, line number, To address and headers.
;mail.log =
; Log mail to syslog (Event Log on Windows).
;mail.log = syslog

[SQL]
; http://php.net/sql.safe-mode
sql.safe_mode = Off

[ODBC]
; http://php.net/odbc.default-db
;odbc.default_db    =  Not yet implemented

; http://php.net/odbc.default-user
;odbc.default_user  =  Not yet implemented

; http://php.net/odbc.default-pw
;odbc.default_pw    =  Not yet implemented

; Controls the ODBC cursor model.
; Default: SQL_CURSOR_STATIC (default).
;odbc.default_cursortype

; Allow or prevent persistent links.
; http://php.net/odbc.allow-persistent
odbc.allow_persistent = On

; Check that a connection is still valid before reuse.
; http://php.net/odbc.check-persistent
odbc.check_persistent = On

; Maximum number of persistent links.  -1 means no limit.
; http://php.net/odbc.max-persistent
odbc.max_persistent = -1

; Maximum number of links (persistent + non-persistent).  -1 means no limit.
; http://php.net/odbc.max-links
odbc.max_links = -1

; Handling of LONG fields.  Returns number of bytes to variables.  0 means
; passthru.
; http://php.net/odbc.defaultlrl
odbc.defaultlrl = 4096

; Handling of binary data.  0 means passthru, 1 return as is, 2 convert to char.
; See the documentation on odbc_binmode and odbc_longreadlen for an explanation
; of odbc.defaultlrl and odbc.defaultbinmode
; http://php.net/odbc.defaultbinmode
odbc.defaultbinmode = 1

;birdstep.max_links = -1

[Interbase]
; Allow or prevent persistent links.
ibase.allow_persistent = 1

; Maximum number of persistent links.  -1 means no limit.
ibase.max_persistent = -1

; Maximum number of links (persistent + non-persistent).  -1 means no limit.
ibase.max_links = -1

; Default database name for ibase_connect().
;ibase.default_db =

; Default username for ibase_connect().
;ibase.default_user =

; Default password for ibase_connect().
;ibase.default_password =

; Default charset for ibase_connect().
;ibase.default_charset =

; Default timestamp format.
ibase.timestampformat = "%Y-%m-%d %H:%M:%S"

; Default date format.
ibase.dateformat = "%Y-%m-%d"

; Default time format.
ibase.timeformat = "%H:%M:%S"

[MySQLi]

; Maximum number of persistent links.  -1 means no limit.
; http://php.net/mysqli.max-persistent
mysqli.max_persistent = -1

; Allow accessing, from PHP's perspective, local files with LOAD DATA statements
; http://php.net/mysqli.allow_local_infile
;mysqli.allow_local_infile = On

; Allow or prevent persistent links.
; http://php.net/mysqli.allow-persistent
mysqli.allow_persistent = On

; Maximum number of links.  -1 means no limit.
; http://php.net/mysqli.max-links
mysqli.max_links = -1

; If mysqlnd is used: Number of cache slots for the internal result set cache
; http://php.net/mysqli.cache_size
mysqli.cache_size = 2000

; Default port number for mysqli_connect().  If unset, mysqli_connect() will use
; the $MYSQL_TCP_PORT or the mysql-tcp entry in /etc/services or the
; compile-time value defined MYSQL_PORT (in that order).  Win32 will only look
; at MYSQL_PORT.
; http://php.net/mysqli.default-port
mysqli.default_port = 3306

; Default socket name for local MySQL connects.  If empty, uses the built-in
; MySQL defaults.
; http://php.net/mysqli.default-socket
mysqli.default_socket =

; Default host for mysql_connect() (doesn't apply in safe mode).
; http://php.net/mysqli.default-host
mysqli.default_host =

; Default user for mysql_connect() (doesn't apply in safe mode).
; http://php.net/mysqli.default-user
mysqli.default_user =

; Default password for mysqli_connect() (doesn't apply in safe mode).
; Note that this is generally a *bad* idea to store passwords in this file.
; *Any* user with PHP access can run 'echo get_cfg_var("mysqli.default_pw")
; and reveal this password!  And of course, any users with read access to this
; file will be able to reveal the password as well.
; http://php.net/mysqli.default-pw
mysqli.default_pw =

; Allow or prevent reconnect
mysqli.reconnect = Off

[mysqlnd]
; Enable / Disable collection of general statistics by mysqlnd which can be
; used to tune and monitor MySQL operations.
; http://php.net/mysqlnd.collect_statistics
mysqlnd.collect_statistics = On

; Enable / Disable collection of memory usage statistics by mysqlnd which can be
; used to tune and monitor MySQL operations.
; http://php.net/mysqlnd.collect_memory_statistics
mysqlnd.collect_memory_statistics = Off

; Records communication from all extensions using mysqlnd to the specified log
; file.
; http://php.net/mysqlnd.debug
;mysqlnd.debug =

; Defines which queries will be logged.
; http://php.net/mysqlnd.log_mask
;mysqlnd.log_mask = 0

; Default size of the mysqlnd memory pool, which is used by result sets.
; http://php.net/mysqlnd.mempool_default_size
;mysqlnd.mempool_default_size = 16000

; Size of a pre-allocated buffer used when sending commands to MySQL in bytes.
; http://php.net/mysqlnd.net_cmd_buffer_size
;mysqlnd.net_cmd_buffer_size = 2048

; Size of a pre-allocated buffer used for reading data sent by the server in
; bytes.
; http://php.net/mysqlnd.net_read_buffer_size
;mysqlnd.net_read_buffer_size = 32768

; Timeout for network requests in seconds.
; http://php.net/mysqlnd.net_read_timeout
;mysqlnd.net_read_timeout = 31536000

; SHA-256 Authentication Plugin related. File with the MySQL server public RSA
; key.
; http://php.net/mysqlnd.sha256_server_public_key
;mysqlnd.sha256_server_public_key =

[OCI8]

; Connection: Enables privileged connections using external
; credentials (OCI_SYSOPER, OCI_SYSDBA)
; http://php.net/oci8.privileged-connect
;oci8.privileged_connect = Off

; Connection: The maximum number of persistent OCI8 connections per
; process. Using -1 means no limit.
; http://php.net/oci8.max-persistent
;oci8.max_persistent = -1

; Connection: The maximum number of seconds a process is allowed to
; maintain an idle persistent connection. Using -1 means idle
; persistent connections will be maintained forever.
; http://php.net/oci8.persistent-timeout
;oci8.persistent_timeout = -1

; Connection: The number of seconds that must pass before issuing a
; ping during oci_pconnect() to check the connection validity. When
; set to 0, each oci_pconnect() will cause a ping. Using -1 disables
; pings completely.
; http://php.net/oci8.ping-interval
;oci8.ping_interval = 60

; Connection: Set this to a user chosen connection class to be used
; for all pooled server requests with Oracle 11g Database Resident
; Connection Pooling (DRCP).  To use DRCP, this value should be set to
; the same string for all web servers running the same application,
; the database pool must be configured, and the connection string must
; specify to use a pooled server.
;oci8.connection_class =

; High Availability: Using On lets PHP receive Fast Application
; Notification (FAN) events generated when a database node fails. The
; database must also be configured to post FAN events.
;oci8.events = Off

; Tuning: This option enables statement caching, and specifies how
; many statements to cache. Using 0 disables statement caching.
; http://php.net/oci8.statement-cache-size
;oci8.statement_cache_size = 20

; Tuning: Enables statement prefetching and sets the default number of
; rows that will be fetched automatically after statement execution.
; http://php.net/oci8.default-prefetch
;oci8.default_prefetch = 100

; Compatibility. Using On means oci_close() will not close
; oci_connect() and oci_new_connect() connections.
; http://php.net/oci8.old-oci-close-semantics
;oci8.old_oci_close_semantics = Off

[PostgreSQL]
; Allow or prevent persistent links.
; http://php.net/pgsql.allow-persistent
pgsql.allow_persistent = On

; Detect broken persistent links always with pg_pconnect().
; Auto reset feature requires a little overheads.
; http://php.net/pgsql.auto-reset-persistent
pgsql.auto_reset_persistent = Off

; Maximum number of persistent links.  -1 means no limit.
; http://php.net/pgsql.max-persistent
pgsql.max_persistent = -1

; Maximum number of links (persistent+non persistent).  -1 means no limit.
; http://php.net/pgsql.max-links
pgsql.max_links = -1

; Ignore PostgreSQL backends Notice message or not.
; Notice message logging require a little overheads.
; http://php.net/pgsql.ignore-notice
pgsql.ignore_notice = 0

; Log PostgreSQL backends Notice message or not.
; Unless pgsql.ignore_notice=0, module cannot log notice message.
; http://php.net/pgsql.log-notice
pgsql.log_notice = 0

[bcmath]
; Number of decimal digits for all bcmath functions.
; http://php.net/bcmath.scale
bcmath.scale = 0

[browscap]
; http://php.net/browscap
;browscap = extra/browscap.ini

[Session]
; Handler used to store/retrieve data.
; http://php.net/session.save-handler
session.save_handler = files

; Argument passed to save_handler.  In the case of files, this is the path
; where data files are stored. Note: Windows users have to change this
; variable in order to use PHP's session functions.
;
; The path can be defined as:
;
;     session.save_path = "N;/path"
;
; where N is an integer.  Instead of storing all the session files in
; /path, what this will do is use subdirectories N-levels deep, and
; store the session data in those directories.  This is useful if
; your OS has problems with many files in one directory, and is
; a more efficient layout for servers that handle many sessions.
;
; NOTE 1: PHP will not create this directory structure automatically.
;         You can use the script in the ext/session dir for that purpose.
; NOTE 2: See the section on garbage collection below if you choose to
;         use subdirectories for session storage
;
; The file storage module creates files using mode 600 by default.
; You can change that by using
;
;     session.save_path = "N;MODE;/path"
;
; where MODE is the octal representation of the mode. Note that this
; does not overwrite the process's umask.
; http://php.net/session.save-path
session.save_path = "/var/lib/php/sessions"

; Whether to use strict session mode.
; Strict session mode does not accept uninitialized session ID and regenerate
; session ID if browser sends uninitialized session ID. Strict mode protects
; applications from session fixation via session adoption vulnerability. It is
; disabled by default for maximum compatibility, but enabling it is encouraged.
; https://wiki.php.net/rfc/strict_sessions
session.use_strict_mode = 0

; Whether to use cookies.
; http://php.net/session.use-cookies
session.use_cookies = 1

; http://php.net/session.cookie-secure
;session.cookie_secure =

; This option forces PHP to fetch and use a cookie for storing and maintaining
; the session id. We encourage this operation as it's very helpful in combating
; session hijacking when not specifying and managing your own session id. It is
; not the be-all and end-all of session hijacking defense, but it's a good start.
; http://php.net/session.use-only-cookies
session.use_only_cookies = 1

; Name of the session (used as cookie name).
; http://php.net/session.name
session.name = PHPSESSID

; Initialize session on request startup.
; http://php.net/session.auto-start
session.auto_start = 0

; Lifetime in seconds of cookie or, if 0, until browser is restarted.
; http://php.net/session.cookie-lifetime
session.cookie_lifetime = 0

; The path for which the cookie is valid.
; http://php.net/session.cookie-path
session.cookie_path = /

; The domain for which the cookie is valid.
; http://php.net/session.cookie-domain
session.cookie_domain =

; Whether or not to add the httpOnly flag to the cookie, which makes it inaccessible to browser scripting languages such as JavaScript.
; http://php.net/session.cookie-httponly
session.cookie_httponly =

; Handler used to serialize data.  php is the standard serializer of PHP.
; http://php.net/session.serialize-handler
session.serialize_handler = php

; Defines the probability that the 'garbage collection' process is started
; on every session initialization. The probability is calculated by using
; gc_probability/gc_divisor. Where session.gc_probability is the numerator
; and gc_divisor is the denominator in the equation. Setting this value to 1
; when the session.gc_divisor value is 100 will give you approximately a 1% chance
; the gc will run on any give request.
; Default Value: 1
; Development Value: 1
; Production Value: 1
; http://php.net/session.gc-probability
session.gc_probability = 0

; Defines the probability that the 'garbage collection' process is started on every
; session initialization. The probability is calculated by using the following equation:
; gc_probability/gc_divisor. Where session.gc_probability is the numerator and
; session.gc_divisor is the denominator in the equation. Setting this value to 1
; when the session.gc_divisor value is 100 will give you approximately a 1% chance
; the gc will run on any give request. Increasing this value to 1000 will give you
; a 0.1% chance the gc will run on any give request. For high volume production servers,
; this is a more efficient approach.
; Default Value: 100
; Development Value: 1000
; Production Value: 1000
; http://php.net/session.gc-divisor
session.gc_divisor = 1000

; After this number of seconds, stored data will be seen as 'garbage' and
; cleaned up by the garbage collection process.
; http://php.net/session.gc-maxlifetime
session.gc_maxlifetime = 1440

; NOTE: If you are using the subdirectory option for storing session files
;       (see session.save_path above), then garbage collection does *not*
;       happen automatically.  You will need to do your own garbage
;       collection through a shell script, cron entry, or some other method.
;       For example, the following script would is the equivalent of
;       setting session.gc_maxlifetime to 1440 (1440 seconds = 24 minutes):
;          find /path/to/sessions -cmin +24 -type f | xargs rm

; Check HTTP Referer to invalidate externally stored URLs containing ids.
; HTTP_REFERER has to contain this substring for the session to be
; considered as valid.
; http://php.net/session.referer-check
session.referer_check =

; How many bytes to read from the file.
; http://php.net/session.entropy-length
;session.entropy_length = 32

; Specified here to create the session id.
; http://php.net/session.entropy-file
; Defaults to /dev/urandom
; On systems that don't have /dev/urandom but do have /dev/arandom, this will default to /dev/arandom
; If neither are found at compile time, the default is no entropy file.
; On windows, setting the entropy_length setting will activate the
; Windows random source (using the CryptoAPI)
;session.entropy_file = /dev/urandom

; Set to {nocache,private,public,} to determine HTTP caching aspects
; or leave this empty to avoid sending anti-caching headers.
; http://php.net/session.cache-limiter
session.cache_limiter = nocache

; Document expires after n minutes.
; http://php.net/session.cache-expire
session.cache_expire = 180

; trans sid support is disabled by default.
; Use of trans sid may risk your users' security.
; Use this option with caution.
; - User may send URL contains active session ID
;   to other person via. email/irc/etc.
; - URL that contains active session ID may be stored
;   in publicly accessible computer.
; - User may access your site with the same session ID
;   always using URL stored in browser's history or bookmarks.
; http://php.net/session.use-trans-sid
session.use_trans_sid = 0

; Select a hash function for use in generating session ids.
; Possible Values
;   0  (MD5 128 bits)
;   1  (SHA-1 160 bits)
; This option may also be set to the name of any hash function supported by
; the hash extension. A list of available hashes is returned by the hash_algos()
; function.
; http://php.net/session.hash-function
session.hash_function = 0

; Define how many bits are stored in each character when converting
; the binary hash data to something readable.
; Possible values:
;   4  (4 bits: 0-9, a-f)
;   5  (5 bits: 0-9, a-v)
;   6  (6 bits: 0-9, a-z, A-Z, "-", ",")
; Default Value: 4
; Development Value: 5
; Production Value: 5
; http://php.net/session.hash-bits-per-character
session.hash_bits_per_character = 5

; The URL rewriter will look for URLs in a defined set of HTML tags.
; form/fieldset are special; if you include them here, the rewriter will
; add a hidden <input> field with the info which is otherwise appended
; to URLs.  If you want XHTML conformity, remove the form entry.
; Note that all valid entries require a "=", even if no value follows.
; Default Value: "a=href,area=href,frame=src,form=,fieldset="
; Development Value: "a=href,area=href,frame=src,input=src,form=fakeentry"
; Production Value: "a=href,area=href,frame=src,input=src,form=fakeentry"
; http://php.net/url-rewriter.tags
url_rewriter.tags = "a=href,area=href,frame=src,input=src,form=fakeentry"

; Enable upload progress tracking in $_SESSION
; Default Value: On
; Development Value: On
; Production Value: On
; http://php.net/session.upload-progress.enabled
;session.upload_progress.enabled = On

; Cleanup the progress information as soon as all POST data has been read
; (i.e. upload completed).
; Default Value: On
; Development Value: On
; Production Value: On
; http://php.net/session.upload-progress.cleanup
;session.upload_progress.cleanup = On

; A prefix used for the upload progress key in $_SESSION
; Default Value: "upload_progress_"
; Development Value: "upload_progress_"
; Production Value: "upload_progress_"
; http://php.net/session.upload-progress.prefix
;session.upload_progress.prefix = "upload_progress_"

; The index name (concatenated with the prefix) in $_SESSION
; containing the upload progress information
; Default Value: "PHP_SESSION_UPLOAD_PROGRESS"
; Development Value: "PHP_SESSION_UPLOAD_PROGRESS"
; Production Value: "PHP_SESSION_UPLOAD_PROGRESS"
; http://php.net/session.upload-progress.name
;session.upload_progress.name = "PHP_SESSION_UPLOAD_PROGRESS"

; How frequently the upload progress should be updated.
; Given either in percentages (per-file), or in bytes
; Default Value: "1%"
; Development Value: "1%"
; Production Value: "1%"
; http://php.net/session.upload-progress.freq
;session.upload_progress.freq =  "1%"

; The minimum delay between updates, in seconds
; Default Value: 1
; Development Value: 1
; Production Value: 1
; http://php.net/session.upload-progress.min-freq
;session.upload_progress.min_freq = "1"

; Only write session data when session data is changed. Enabled by default.
; http://php.net/session.lazy-write
;session.lazy_write = On

[Assertion]
; Switch whether to compile assertions at all (to have no overhead at run-time)
; -1: Do not compile at all
;  0: Jump over assertion at run-time
;  1: Execute assertions
; Changing from or to a negative value is only possible in php.ini! (For turning assertions on and off at run-time, see assert.active, when zend.assertions = 1)
; Default Value: 1
; Development Value: 1
; Production Value: -1
; http://php.net/zend.assertions
zend.assertions = -1

; Assert(expr); active by default.
; http://php.net/assert.active
;assert.active = On

; Throw an AssertationException on failed assertions
; http://php.net/assert.exception
;assert.exception = On

; Issue a PHP warning for each failed assertion. (Overridden by assert.exception if active)
; http://php.net/assert.warning
;assert.warning = On

; Don't bail out by default.
; http://php.net/assert.bail
;assert.bail = Off

; User-function to be called if an assertion fails.
; http://php.net/assert.callback
;assert.callback = 0

; Eval the expression with current error_reporting().  Set to true if you want
; error_reporting(0) around the eval().
; http://php.net/assert.quiet-eval
;assert.quiet_eval = 0

[COM]
; path to a file containing GUIDs, IIDs or filenames of files with TypeLibs
; http://php.net/com.typelib-file
;com.typelib_file =

; allow Distributed-COM calls
; http://php.net/com.allow-dcom
;com.allow_dcom = true

; autoregister constants of a components typlib on com_load()
; http://php.net/com.autoregister-typelib
;com.autoregister_typelib = true

; register constants casesensitive
; http://php.net/com.autoregister-casesensitive
;com.autoregister_casesensitive = false

; show warnings on duplicate constant registrations
; http://php.net/com.autoregister-verbose
;com.autoregister_verbose = true

; The default character set code-page to use when passing strings to and from COM objects.
; Default: system ANSI code page
;com.code_page=

[mbstring]
; language for internal character representation.
; This affects mb_send_mail() and mbstring.detect_order.
; http://php.net/mbstring.language
;mbstring.language = Japanese

; Use of this INI entry is deprecated, use global internal_encoding instead.
; internal/script encoding.
; Some encoding cannot work as internal encoding. (e.g. SJIS, BIG5, ISO-2022-*)
; If empty, default_charset or internal_encoding or iconv.internal_encoding is used.
; The precedence is: default_charset < internal_encoding < iconv.internal_encoding
;mbstring.internal_encoding =

; Use of this INI entry is deprecated, use global input_encoding instead.
; http input encoding.
; mbstring.encoding_traslation = On is needed to use this setting.
; If empty, default_charset or input_encoding or mbstring.input is used.
; The precedence is: default_charset < intput_encoding < mbsting.http_input
; http://php.net/mbstring.http-input
;mbstring.http_input =

; Use of this INI entry is deprecated, use global output_encoding instead.
; http output encoding.
; mb_output_handler must be registered as output buffer to function.
; If empty, default_charset or output_encoding or mbstring.http_output is used.
; The precedence is: default_charset < output_encoding < mbstring.http_output
; To use an output encoding conversion, mbstring's output handler must be set
; otherwise output encoding conversion cannot be performed.
; http://php.net/mbstring.http-output
;mbstring.http_output =

; enable automatic encoding translation according to
; mbstring.internal_encoding setting. Input chars are
; converted to internal encoding by setting this to On.
; Note: Do _not_ use automatic encoding translation for
;       portable libs/applications.
; http://php.net/mbstring.encoding-translation
;mbstring.encoding_translation = Off

; automatic encoding detection order.
; "auto" detect order is changed according to mbstring.language
; http://php.net/mbstring.detect-order
;mbstring.detect_order = auto

; substitute_character used when character cannot be converted
; one from another
; http://php.net/mbstring.substitute-character
;mbstring.substitute_character = none

; overload(replace) single byte functions by mbstring functions.
; mail(), ereg(), etc are overloaded by mb_send_mail(), mb_ereg(),
; etc. Possible values are 0,1,2,4 or combination of them.
; For example, 7 for overload everything.
; 0: No overload
; 1: Overload mail() function
; 2: Overload str*() functions
; 4: Overload ereg*() functions
; http://php.net/mbstring.func-overload
;mbstring.func_overload = 0

; enable strict encoding detection.
; Default: Off
;mbstring.strict_detection = On

; This directive specifies the regex pattern of content types for which mb_output_handler()
; is activated.
; Default: mbstring.http_output_conv_mimetype=^(text/|application/xhtml\+xml)
;mbstring.http_output_conv_mimetype=

[gd]
; Tell the jpeg decode to ignore warnings and try to create
; a gd image. The warning will then be displayed as notices
; disabled by default
; http://php.net/gd.jpeg-ignore-warning
;gd.jpeg_ignore_warning = 0

[exif]
; Exif UNICODE user comments are handled as UCS-2BE/UCS-2LE and JIS as JIS.
; With mbstring support this will automatically be converted into the encoding
; given by corresponding encode setting. When empty mbstring.internal_encoding
; is used. For the decode settings you can distinguish between motorola and
; intel byte order. A decode setting cannot be empty.
; http://php.net/exif.encode-unicode
;exif.encode_unicode = ISO-8859-15

; http://php.net/exif.decode-unicode-motorola
;exif.decode_unicode_motorola = UCS-2BE

; http://php.net/exif.decode-unicode-intel
;exif.decode_unicode_intel    = UCS-2LE

; http://php.net/exif.encode-jis
;exif.encode_jis =

; http://php.net/exif.decode-jis-motorola
;exif.decode_jis_motorola = JIS

; http://php.net/exif.decode-jis-intel
;exif.decode_jis_intel    = JIS

[Tidy]
; The path to a default tidy configuration file to use when using tidy
; http://php.net/tidy.default-config
;tidy.default_config = /usr/local/lib/php/default.tcfg

; Should tidy clean and repair output automatically?
; WARNING: Do not use this option if you are generating non-html content
; such as dynamic images
; http://php.net/tidy.clean-output
tidy.clean_output = Off

[soap]
; Enables or disables WSDL caching feature.
; http://php.net/soap.wsdl-cache-enabled
soap.wsdl_cache_enabled=1

; Sets the directory name where SOAP extension will put cache files.
; http://php.net/soap.wsdl-cache-dir
soap.wsdl_cache_dir="/tmp"

; (time to live) Sets the number of second while cached file will be used
; instead of original one.
; http://php.net/soap.wsdl-cache-ttl
soap.wsdl_cache_ttl=86400

; Sets the size of the cache limit. (Max. number of WSDL files to cache)
soap.wsdl_cache_limit = 5

[sysvshm]
; A default size of the shared memory segment
;sysvshm.init_mem = 10000

[ldap]
; Sets the maximum number of open links or -1 for unlimited.
ldap.max_links = -1

[mcrypt]
; For more information about mcrypt settings see http://php.net/mcrypt-module-open

; Directory where to load mcrypt algorithms
; Default: Compiled in into libmcrypt (usually /usr/local/lib/libmcrypt)
;mcrypt.algorithms_dir=

; Directory where to load mcrypt modes
; Default: Compiled in into libmcrypt (usually /usr/local/lib/libmcrypt)
;mcrypt.modes_dir=

[dba]
;dba.default_handler=

[opcache]
; Determines if Zend OPCache is enabled
;opcache.enable=0

; Determines if Zend OPCache is enabled for the CLI version of PHP
;opcache.enable_cli=0

; The OPcache shared memory storage size.
;opcache.memory_consumption=64

; The amount of memory for interned strings in Mbytes.
;opcache.interned_strings_buffer=4

; The maximum number of keys (scripts) in the OPcache hash table.
; Only numbers between 200 and 1000000 are allowed.
;opcache.max_accelerated_files=2000

; The maximum percentage of "wasted" memory until a restart is scheduled.
;opcache.max_wasted_percentage=5

; When this directive is enabled, the OPcache appends the current working
; directory to the script key, thus eliminating possible collisions between
; files with the same name (basename). Disabling the directive improves
; performance, but may break existing applications.
;opcache.use_cwd=1

; When disabled, you must reset the OPcache manually or restart the
; webserver for changes to the filesystem to take effect.
;opcache.validate_timestamps=1

; How often (in seconds) to check file timestamps for changes to the shared
; memory storage allocation. ("1" means validate once per second, but only
; once per request. "0" means always validate)
;opcache.revalidate_freq=2

; Enables or disables file search in include_path optimization
;opcache.revalidate_path=0

; If disabled, all PHPDoc comments are dropped from the code to reduce the
; size of the optimized code.
;opcache.save_comments=1

; If enabled, a fast shutdown sequence is used for the accelerated code
; Depending on the used Memory Manager this may cause some incompatibilities.
;opcache.fast_shutdown=0

; Allow file existence override (file_exists, etc.) performance feature.
;opcache.enable_file_override=0

; A bitmask, where each bit enables or disables the appropriate OPcache
; passes
;opcache.optimization_level=0xffffffff

;opcache.inherited_hack=1
;opcache.dups_fix=0

; The location of the OPcache blacklist file (wildcards allowed).
; Each OPcache blacklist file is a text file that holds the names of files
; that should not be accelerated. The file format is to add each filename
; to a new line. The filename may be a full path or just a file prefix
; (i.e., /var/www/x  blacklists all the files and directories in /var/www
; that start with 'x'). Line starting with a ; are ignored (comments).
;opcache.blacklist_filename=

; Allows exclusion of large files from being cached. By default all files
; are cached.
;opcache.max_file_size=0

; Check the cache checksum each N requests.
; The default value of "0" means that the checks are disabled.
;opcache.consistency_checks=0

; How long to wait (in seconds) for a scheduled restart to begin if the cache
; is not being accessed.
;opcache.force_restart_timeout=180

; OPcache error_log file name. Empty string assumes "stderr".
;opcache.error_log=

; All OPcache errors go to the Web server log.
; By default, only fatal errors (level 0) or errors (level 1) are logged.
; You can also enable warnings (level 2), info messages (level 3) or
; debug messages (level 4).
;opcache.log_verbosity_level=1

; Preferred Shared Memory back-end. Leave empty and let the system decide.
;opcache.preferred_memory_model=

; Protect the shared memory from unexpected writing during script execution.
; Useful for internal debugging only.
;opcache.protect_memory=0

; Allows calling OPcache API functions only from PHP scripts which path is
; started from specified string. The default "" means no restriction
;opcache.restrict_api=

; Mapping base of shared memory segments (for Windows only). All the PHP
; processes have to map shared memory into the same address space. This
; directive allows to manually fix the "Unable to reattach to base address"
; errors.
;opcache.mmap_base=

; Enables and sets the second level cache directory.
; It should improve performance when SHM memory is full, at server restart or
; SHM reset. The default "" disables file based caching.
;opcache.file_cache=

; Enables or disables opcode caching in shared memory.
;opcache.file_cache_only=0

; Enables or disables checksum validation when script loaded from file cache.
;opcache.file_cache_consistency_checks=1

; Implies opcache.file_cache_only=1 for a certain process that failed to
; reattach to the shared memory (for Windows only). Explicitly enabled file
; cache is required.
;opcache.file_cache_fallback=1

; Enables or disables copying of PHP code (text segment) into HUGE PAGES.
; This should improve performance, but requires appropriate OS configuration.
;opcache.huge_code_pages=1

; Validate cached file permissions.
; opcache.validate_permission=0

; Prevent name collisions in chroot'ed environment.
; opcache.validate_root=0

[curl]
; A default value for the CURLOPT_CAINFO option. This is required to be an
; absolute path.
;curl.cainfo =

[openssl]
; The location of a Certificate Authority (CA) file on the local filesystem
; to use when verifying the identity of SSL/TLS peers. Most users should
; not specify a value for this directive as PHP will attempt to use the
; OS-managed cert stores in its absence. If specified, this value may still
; be overridden on a per-stream basis via the "cafile" SSL stream context
; option.
;openssl.cafile=

; If openssl.cafile is not specified or if the CA file is not found, the
; directory pointed to by openssl.capath is searched for a suitable
; certificate. This value must be a correctly hashed certificate directory.
; Most users should not specify a value for this directive as PHP will
; attempt to use the OS-managed cert stores in its absence. If specified,
; this value may still be overridden on a per-stream basis via the "capath"
; SSL stream context option.
;openssl.capath=

; Local Variables:
; tab-width: 4
; End:
Roundcube log is included in the Postfix log according to iredmail
iredadmin.log:

Code: Select all

Sun Feb 11 08:21:29 2018 - SIGINT/SIGQUIT received...killing workers...
Sun Feb 11 08:21:30 2018 - worker 1 buried after 1 seconds
Sun Feb 11 08:21:30 2018 - worker 2 buried after 1 seconds
Sun Feb 11 08:21:30 2018 - goodbye to uWSGI.
Sun Feb 11 08:22:28 2018 - *** Starting uWSGI 2.0.14-debian (64bit) on [Sun Feb 11 08:22:25 2018] ***
Sun Feb 11 08:22:28 2018 - compiled with version: 6.2.1 20161124 on 07 December 2016 16:14:59
Sun Feb 11 08:22:28 2018 - os: Linux-4.9.0-5-amd64 #1 SMP Debian 4.9.65-3+deb9u2 (2018-01-04)
Sun Feb 11 08:22:28 2018 - nodename: mail
Sun Feb 11 08:22:28 2018 - machine: x86_64
Sun Feb 11 08:22:28 2018 - clock source: unix
Sun Feb 11 08:22:28 2018 - pcre jit disabled
Sun Feb 11 08:22:28 2018 - detected number of CPU cores: 2
Sun Feb 11 08:22:28 2018 - current working directory: /
Sun Feb 11 08:22:28 2018 - writing pidfile to /run/uwsgi/app/iredadmin/pid
Sun Feb 11 08:22:28 2018 - detected binary path: /usr/bin/uwsgi-core
Sun Feb 11 08:22:28 2018 - your processes number limit is 15207
Sun Feb 11 08:22:28 2018 - your memory page size is 4096 bytes
Sun Feb 11 08:22:28 2018 - detected max file descriptor number: 1024
Sun Feb 11 08:22:28 2018 - VirtualHosting mode enabled.
Sun Feb 11 08:22:28 2018 - lock engine: pthread robust mutexes
Sun Feb 11 08:22:28 2018 - thunder lock: disabled (you can enable it with --thunder-lock)
Sun Feb 11 08:22:28 2018 - uwsgi socket 0 bound to UNIX address /run/uwsgi/app/iredadmin/socket fd 3
Sun Feb 11 08:22:28 2018 - uwsgi socket 1 bound to UNIX address /var/run/uwsgi_iredadmin.socket fd 5
Sun Feb 11 08:22:28 2018 - setgid() to 2001
Sun Feb 11 08:22:28 2018 - setuid() to 2001
Sun Feb 11 08:22:29 2018 - Python version: 2.7.13 (default, Nov 24 2017, 17:33:09)  [GCC 6.3.0 20170516]
Sun Feb 11 08:22:30 2018 - Python main interpreter initialized at 0x55a61bcb9a20
Sun Feb 11 08:22:30 2018 - python threads support enabled
Sun Feb 11 08:22:30 2018 - your server socket listen backlog is limited to 100 connections
Sun Feb 11 08:22:30 2018 - your mercy for graceful operations on workers is 60 seconds
Sun Feb 11 08:22:30 2018 - mapped 218304 bytes (213 KB) for 2 cores
Sun Feb 11 08:22:30 2018 - *** Operational MODE: preforking ***
Sun Feb 11 08:22:30 2018 - *** no app loaded. going in full dynamic mode ***
Sun Feb 11 08:22:30 2018 - *** uWSGI is running in multiple interpreter mode ***
Sun Feb 11 08:22:30 2018 - spawned uWSGI master process (pid: 1010)
Sun Feb 11 08:22:30 2018 - spawned uWSGI worker 1 (pid: 1065, cores: 1)
Sun Feb 11 08:22:30 2018 - spawned uWSGI worker 2 (pid: 1066, cores: 1)
Sun Feb 11 16:57:46 2018 - SIGINT/SIGQUIT received...killing workers...
Sun Feb 11 16:58:01 2018 - worker 1 buried after 15 seconds
Sun Feb 11 16:58:01 2018 - worker 2 buried after 14 seconds
Sun Feb 11 16:58:01 2018 - goodbye to uWSGI.
Sun Feb 11 17:00:14 2018 - *** Starting uWSGI 2.0.14-debian (64bit) on [Sun Feb 11 17:00:11 2018] ***
Sun Feb 11 17:00:14 2018 - compiled with version: 6.2.1 20161124 on 07 December 2016 16:14:59
Sun Feb 11 17:00:14 2018 - os: Linux-4.9.0-5-amd64 #1 SMP Debian 4.9.65-3+deb9u2 (2018-01-04)
Sun Feb 11 17:00:14 2018 - nodename: mail
Sun Feb 11 17:00:14 2018 - machine: x86_64
Sun Feb 11 17:00:14 2018 - clock source: unix
Sun Feb 11 17:00:14 2018 - pcre jit disabled
Sun Feb 11 17:00:14 2018 - detected number of CPU cores: 2
Sun Feb 11 17:00:14 2018 - current working directory: /
Sun Feb 11 17:00:14 2018 - writing pidfile to /run/uwsgi/app/iredadmin/pid
Sun Feb 11 17:00:14 2018 - detected binary path: /usr/bin/uwsgi-core
Sun Feb 11 17:00:14 2018 - your processes number limit is 15207
Sun Feb 11 17:00:14 2018 - your memory page size is 4096 bytes
Sun Feb 11 17:00:14 2018 - detected max file descriptor number: 1024
Sun Feb 11 17:00:14 2018 - VirtualHosting mode enabled.
Sun Feb 11 17:00:14 2018 - lock engine: pthread robust mutexes
Sun Feb 11 17:00:14 2018 - thunder lock: disabled (you can enable it with --thunder-lock)
Sun Feb 11 17:00:14 2018 - uwsgi socket 0 bound to UNIX address /run/uwsgi/app/iredadmin/socket fd 3
Sun Feb 11 17:00:14 2018 - uwsgi socket 1 bound to UNIX address /var/run/uwsgi_iredadmin.socket fd 5
Sun Feb 11 17:00:14 2018 - setgid() to 2001
Sun Feb 11 17:00:14 2018 - setuid() to 2001
Sun Feb 11 17:00:14 2018 - Python version: 2.7.13 (default, Nov 24 2017, 17:33:09)  [GCC 6.3.0 20170516]
Sun Feb 11 17:00:15 2018 - Python main interpreter initialized at 0x55a037082a20
Sun Feb 11 17:00:15 2018 - python threads support enabled
Sun Feb 11 17:00:15 2018 - your server socket listen backlog is limited to 100 connections
Sun Feb 11 17:00:15 2018 - your mercy for graceful operations on workers is 60 seconds
Sun Feb 11 17:00:15 2018 - mapped 218304 bytes (213 KB) for 2 cores
Sun Feb 11 17:00:15 2018 - *** Operational MODE: preforking ***
Sun Feb 11 17:00:15 2018 - *** no app loaded. going in full dynamic mode ***
Sun Feb 11 17:00:15 2018 - *** uWSGI is running in multiple interpreter mode ***
Sun Feb 11 17:00:15 2018 - spawned uWSGI master process (pid: 1033)
Sun Feb 11 17:00:15 2018 - spawned uWSGI worker 1 (pid: 1049, cores: 1)
Sun Feb 11 17:00:15 2018 - spawned uWSGI worker 2 (pid: 1050, cores: 1)
I've looked through all of this stuff and none of it makes sense to me where the problem is.
I am not an expert at any of this. I thought the iredmail server was going to be easy to use.
As i said above mail is working just can't use the Roundcube page.
I will continue to read up on this and pursue their support.
If I end up finding what the issue was I will come back here and post it and mark this solved.
Thanks everyone who is trying to help.

pcalvert
Posts: 1939
Joined: 2006-04-21 11:19
Location: Sol Sector
Has thanked: 1 time
Been thanked: 2 times

Re: nginx issue (I think)

#13 Post by pcalvert »

Apache may be overkill, but there's a lot info on it online, so getting things working may be easier. There's also OpenLiteSpeed, which is supposed to be a more-or-less drop-in replacement for Apache.

Phil
Freespoke is a new search engine that respects user privacy and does not engage in censorship.

User avatar
GarryRicketson
Posts: 5644
Joined: 2015-01-20 22:16
Location: Durango, Mexico

Re: nginx issue (I think)

#14 Post by GarryRicketson »

From the "nginx error log"

Code: Select all

2018/02/11 06:32:19 [crit] 692#692: *11 SSL_do_handshake() failed (SSL: error:1417D18C:SSL routines:tls_process_client_hello:version too low) while SSL handshaking, client: 184.105.247.194, server: 0.0.0.0:443
2018/02/11 13:56:40 [error] 652#652: *4 open() "/var/www/html/iredmailadmin" failed (2: No such file or directory), client: 192.168.1.21, server: _, request: "GET /iredmailadmin HTTP/1.1", host: "www.dccathome.com"  
This is the problem,( or a big part of it), but I do not know the solution.
Are you using "openssl", or what ? Actually you might be better off asking about this on a nginx forum, and / or a support forum for whatever you are using for the ssl certificate.
When I tried to use "lets encrypt", I had a similar problem, so I tried using
"openssl", and still the same problem. Then I decided I did not really want ssl, (https) any way, and it is not necessary, so after removing everything and then installing everything again, but with out any ssl certifactes,(https) , the 502 Bad Gateway error no longer occurred.
kedaha has had some experience using ssl, and succesfully, I never could figure it out myself,... sorry.

Side note :
RE: Round cube,
GarryRicketson wrote:
Round Cube, is also a rather problematic interface, I certainly wouldn't use it. I agree, that is the most likely cause of the problems
I should have worded it different, but that is what I meant, " getting it properly set up and configured", I never did figure that out either.
kedaha >>Using it isn't problematic at all but getting it properly set up and configured, in my case certainly was.
Try looking at some of these:
11 SSL_do_handshake(failed (ssl: error:1417D18C:SSL routines:tls_process client hello:version too low)
1st hit : https://serverfault.com/questions/72074 ... with-nginx


SSL routines:SSL23_GET_CLIENT_HELLO:unsupported protocol

This means that the client tried to connect using SSL2 while you explicitly forbid it:

ssl_protocols SSLv3 TLSv1.1 TLSv1.2;

This is actually a good thing. SSL 2 and 3 are insecure and are being actively discouraged. Unless you need to support very old clients, using TSL1.0 or later should be fine.
If that does not apply, try reading the other results.

=========
As for the other error :

Code: Select all

2018/02/11 13:56:40 [error] 652#652: *4 open() "/var/www/html/iredmailadmin" failed (2: No such file or directory), client: 192.168.1.21, server: _, request: "GET /iredmailadmin HTTP/1.1", 
Do you also have apache installed, ?
https://www.digitalocean.com/community/ ... -404-error

Code: Select all

service apache2 stop
service nginx start 

User avatar
dilberts_left_nut
Administrator
Administrator
Posts: 5346
Joined: 2009-10-05 07:54
Location: enzed
Has thanked: 13 times
Been thanked: 66 times

Re: nginx issue (I think)

#15 Post by dilberts_left_nut »

The ssl error just looks like one of the bots that trawl the net looking for servers offering the old insecure version.
Ignore that.

The 'file not found' shows where you have told nginx to look for iredmailadmin - where is it really?
AdrianTM wrote:There's no hacker in my grandma...

User avatar
debiman
Posts: 3063
Joined: 2013-03-12 07:18

Re: nginx issue (I think)

#16 Post by debiman »

dcihon, how did you configure nginx?
did you edit anything in /etc/nginx?

dcihon
Posts: 279
Joined: 2012-09-23 16:18
Been thanked: 3 times

Re: nginx issue (I think)

#17 Post by dcihon »

The problem was in this file:
/etc/php/7.0/fpm/pool.d/www.conf

The line:
listen = /var/run/php-fpm.sock
needed to be:
listen = /var/run/php-fpm.socket

The error was shown in the nginx error.log file:
2018/02/23 09:19:05 [crit] 9067#9067: *2 connect() to unix:/var/run/php-fpm.socket failed (2: No such file or directory) while connecting to upstream, client: 40.84.45.176, server: _, request: "GET /mail/ HTTP/1.1", upstream: "fastcgi://unix:/var/run/php-fpm.socket:", host: "dccathome.com"

I will mark this solved.
Thanks everyone for your help.
The answer finally came from iredmail support.

Post Reply