Sergio Manzi
Regular Pleskian
Hello everybody!
I'm getting this error when trying to access all (old and newly created) my webmail accounts:
I'm really scratching my head on this and any input will be greatly appreciated!
Environment:
Notes:
What I have already looked at:
Many thanks in advance to whomever might help!
I'm getting this error when trying to access all (old and newly created) my webmail accounts:
Roundcube "Connection to storage server failed"
I'm really scratching my head on this and any input will be greatly appreciated!
Environment:
Plesk 17.8.10 (upgraded from 17.5.3#40)
CentOS 7.4.1708, Kernel 3.10.0-693
Mail subsystem: Postfix/Dovecot
Webmail: Roundcube
CentOS 7.4.1708, Kernel 3.10.0-693
Mail subsystem: Postfix/Dovecot
Webmail: Roundcube
Notes:
- I don't know exactly when the problem started, but it must have been sometimes after I upgraded to 17.8.10 and installed Let's Encrypt certificates for all my domains.
- No other issue on the system AFAIK. Everything else is working perfectly.
- No issue at all accessing IMAP from external clients (Thunderbird)
# tail /var/log/maillog
...
Feb 26 12:59:01 ams301 dovecot: imap-login: Disconnected (disconnected before auth was ready, waited 0 secs): user=<>, rip=::1, lip=::1, TLS handshaking: SSL_accept() failed: error:14094418:SSL routines:ssl3_read_bytes:tlsv1 alert unknown ca: SSL alert number 48, session=<PtfzEh1mALUAAAAAAAAAAAAAAAAAAAAB> <-- Note here "user=<>" Is that normal?? What are those TLS errors??
# systemctl restart dovecot
# systemctl -l status dovecot
● dovecot.service - Dovecot IMAP/POP3 email server
Loaded: loaded (/usr/lib/systemd/system/dovecot.service; enabled; vendor preset: disabled)
Active: active (running) since Mon 2018-02-26 13:51:54 GMT; 1s ago
Docs: man:dovecot(1)
FrontPage - Dovecot Wiki
Process: 15817 ExecStop=/usr/bin/doveadm stop (code=exited, status=0/SUCCESS)
Main PID: 15821 (dovecot)
CGroup: /system.slice/dovecot.service
├─15821 /usr/sbin/dovecot -F
├─15824 dovecot/anvil
├─15825 dovecot/log
└─15826 dovecot/config
Feb 26 13:51:54 ams301.smz.it dovecot[15821]: Warning: service auth { client_limit=1000 } is lower than required under max. load (2248)
Feb 26 13:51:54 ams301.smz.it dovecot[15821]: Warning: service anvil { client_limit=1000 } is lower than required under max. load (2251)
Feb 26 13:51:54 ams301.smz.it dovecot[15821]: master: Warning: service anvil { client_limit=1000 } is lower than required under max. load (2251)
Feb 26 13:51:54 ams301.smz.it dovecot[15821]: master: Dovecot v2.3.0 (c8b89eb) starting up for imap, pop3, sieve (core dumps disabled)
Feb 26 13:51:55 ams301.smz.it dovecot[15825]: doveconf: Warning: NOTE: You can get a new clean config file with: doveconf -n > dovecot-new.conf
Feb 26 13:51:55 ams301.smz.it dovecot[15825]: doveconf: Warning: Obsolete setting in /etc/dovecot/conf.d/11-plesk-security-ssl.conf:2: ssl_protocols has been replaced by ssl_min_protocol
Feb 26 13:51:55 ams301.smz.it dovecot[15825]: config: Warning: NOTE: You can get a new clean config file with: doveconf -n > dovecot-new.conf
Feb 26 13:51:55 ams301.smz.it dovecot[15825]: config: Warning: Obsolete setting in /etc/dovecot/conf.d/11-plesk-security-ssl.conf:2: ssl_protocols has been replaced by ssl_min_protocol
Feb 26 13:51:55 ams301.smz.it dovecot[15825]: config: Warning: service auth { client_limit=1000 } is lower than required under max. load (2248)
Feb 26 13:51:55 ams301.smz.it dovecot[15825]: config: Warning: service anvil { client_limit=1000 } is lower than required under max. load (2251)
# plesk repair mail -n
Repairing the mail server configuration ............................. [OK]
Error messages: 0; Warnings: 0; Errors resolved: 0
Configs:...
Feb 26 12:59:01 ams301 dovecot: imap-login: Disconnected (disconnected before auth was ready, waited 0 secs): user=<>, rip=::1, lip=::1, TLS handshaking: SSL_accept() failed: error:14094418:SSL routines:ssl3_read_bytes:tlsv1 alert unknown ca: SSL alert number 48, session=<PtfzEh1mALUAAAAAAAAAAAAAAAAAAAAB> <-- Note here "user=<>" Is that normal?? What are those TLS errors??
# systemctl restart dovecot
# systemctl -l status dovecot
● dovecot.service - Dovecot IMAP/POP3 email server
Loaded: loaded (/usr/lib/systemd/system/dovecot.service; enabled; vendor preset: disabled)
Active: active (running) since Mon 2018-02-26 13:51:54 GMT; 1s ago
Docs: man:dovecot(1)
FrontPage - Dovecot Wiki
Process: 15817 ExecStop=/usr/bin/doveadm stop (code=exited, status=0/SUCCESS)
Main PID: 15821 (dovecot)
CGroup: /system.slice/dovecot.service
├─15821 /usr/sbin/dovecot -F
├─15824 dovecot/anvil
├─15825 dovecot/log
└─15826 dovecot/config
Feb 26 13:51:54 ams301.smz.it dovecot[15821]: Warning: service auth { client_limit=1000 } is lower than required under max. load (2248)
Feb 26 13:51:54 ams301.smz.it dovecot[15821]: Warning: service anvil { client_limit=1000 } is lower than required under max. load (2251)
Feb 26 13:51:54 ams301.smz.it dovecot[15821]: master: Warning: service anvil { client_limit=1000 } is lower than required under max. load (2251)
Feb 26 13:51:54 ams301.smz.it dovecot[15821]: master: Dovecot v2.3.0 (c8b89eb) starting up for imap, pop3, sieve (core dumps disabled)
Feb 26 13:51:55 ams301.smz.it dovecot[15825]: doveconf: Warning: NOTE: You can get a new clean config file with: doveconf -n > dovecot-new.conf
Feb 26 13:51:55 ams301.smz.it dovecot[15825]: doveconf: Warning: Obsolete setting in /etc/dovecot/conf.d/11-plesk-security-ssl.conf:2: ssl_protocols has been replaced by ssl_min_protocol
Feb 26 13:51:55 ams301.smz.it dovecot[15825]: config: Warning: NOTE: You can get a new clean config file with: doveconf -n > dovecot-new.conf
Feb 26 13:51:55 ams301.smz.it dovecot[15825]: config: Warning: Obsolete setting in /etc/dovecot/conf.d/11-plesk-security-ssl.conf:2: ssl_protocols has been replaced by ssl_min_protocol
Feb 26 13:51:55 ams301.smz.it dovecot[15825]: config: Warning: service auth { client_limit=1000 } is lower than required under max. load (2248)
Feb 26 13:51:55 ams301.smz.it dovecot[15825]: config: Warning: service anvil { client_limit=1000 } is lower than required under max. load (2251)
# plesk repair mail -n
Repairing the mail server configuration ............................. [OK]
Error messages: 0; Warnings: 0; Errors resolved: 0
# grep mydestination /etc/postfix/main.cf | grep -v "#"
mydestination = localhost.$mydomain, localhost, localhost.localdomain
# Your system has configured 'manage_etc_hosts' as True.
# As a result, if you wish for changes to this file to persist
# then you will need to either
# a.) make changes to the master file in /etc/cloud/templates/hosts.redhat.tmpl
# b.) change or remove the value of 'manage_etc_hosts' in
# /etc/cloud/cloud.cfg or cloud-config from user-data
# The following lines are desirable for IPv4 capable hosts
127.0.0.1 ams301.smz.it ams301
127.0.0.1 localhost.localdomain localhost
127.0.0.1 localhost4.localdomain4 localhost4
# The following lines are desirable for IPv6 capable hosts
::1 ams301.smz.it ams301
::1 localhost.localdomain localhost
::1 localhost6.localdomain6 localhost6
mydestination = localhost.$mydomain, localhost, localhost.localdomain
# cat /etc/hosts# Your system has configured 'manage_etc_hosts' as True.
# As a result, if you wish for changes to this file to persist
# then you will need to either
# a.) make changes to the master file in /etc/cloud/templates/hosts.redhat.tmpl
# b.) change or remove the value of 'manage_etc_hosts' in
# /etc/cloud/cloud.cfg or cloud-config from user-data
# The following lines are desirable for IPv4 capable hosts
127.0.0.1 ams301.smz.it ams301
127.0.0.1 localhost.localdomain localhost
127.0.0.1 localhost4.localdomain4 localhost4
# The following lines are desirable for IPv6 capable hosts
::1 ams301.smz.it ams301
::1 localhost.localdomain localhost
::1 localhost6.localdomain6 localhost6
What I have already looked at:
- Roundcube login fails after upgrade: Connection to storage server failed (It may be that the dovecot index files are for an older version of dovecot, and don't work with the new version.)
NO: it happens with new mail accounts as well
- Can not login webmail: "Connection to storage server failed" (Roundcube) "Error connecting to mail server" (Horde) (Plesk specific SELinux policies package was not installed)
NO: Solution is specific for Plesk 17.5.3
- Unable to start Dovecot after Plesk installation: Can't open file /etc/dovecot/private/ssl-cert-and-key.pem: No such file or directory
NO: Different symptoms, doesn't seems to apply and I'm afraid of uninstalling Dovecot (and loosing mailboxes configurations, such as filters, etc..)
Many thanks in advance to whomever might help!