Loading ...
Sorry, an error occurred while loading the content.

private/proxymap: Permission denied

Expand Messages
  • Hans du Plooy
    Hi guys, I m not sure what I m doing wrong here. I m trying to get scalix to relay through postfix instead of sendmail (running on the same box). I can
    Message 1 of 4 , Oct 31, 2006
    • 0 Attachment
      Hi guys,

      I'm not sure what I'm doing wrong here. I'm trying to get scalix to
      relay through postfix instead of sendmail (running on the same box). I
      can telnet into port 25 on localhost and send mail, and it goes out
      fine, but when scalix does it I get the following in the mail logs:

      Oct 30 23:41:34 slestest postfix/smtpd[16725]: warning: connect #1 to
      subsystem private/proxymap: Permission denied
      [snip]
      Oct 30 23:43:04 slestest postfix/smtpd[16725]: warning: connect #10 to
      subsystem private/proxymap: Permission denied
      Oct 30 23:43:14 slestest postfix/smtpd[16725]: fatal: connect #11 to
      subsystem private/proxymap: Permission denied

      My postfix is the normal setup that SUSE creates for just sending local
      mail out. postconf -n:

      alias_maps = hash:/etc/aliases
      canonical_maps = hash:/etc/postfix/canonical
      command_directory = /usr/sbin
      config_directory = /etc/postfix
      content_filter =
      daemon_directory = /usr/lib/postfix
      debug_peer_level = 2
      debug_peer_list = 127.0.0.1
      defer_transports =
      disable_dns_lookups = yes
      html_directory = /usr/share/doc/packages/postfix/html
      inet_interfaces = 127.0.0.1
      mail_owner = postfix
      mail_spool_directory = /var/mail
      mailbox_command =
      mailbox_size_limit = 0
      mailbox_transport =
      mailq_path = /usr/bin/mailq
      manpage_directory = /usr/share/man
      masquerade_classes = envelope_sender, header_sender, header_recipient
      masquerade_domains =
      masquerade_exceptions = root
      message_size_limit = 10240000
      mydestination = $myhostname, localhost.$mydomain
      myhostname = slestest.theluggage.local
      newaliases_path = /usr/bin/newaliases
      queue_directory = /var/spool/postfix
      readme_directory = /usr/share/doc/packages/postfix/README_FILES
      relayhost = 172.16.57.1
      relocated_maps = hash:/etc/postfix/relocated
      sample_directory = /usr/share/doc/packages/postfix/samples
      sender_canonical_maps = hash:/etc/postfix/sender_canonical
      sendmail_path = /usr/sbin/sendmail
      setgid_group = maildrop
      smtp_sasl_auth_enable = no
      smtp_use_tls = no
      smtpd_client_restrictions =
      smtpd_helo_required = no
      smtpd_helo_restrictions =
      smtpd_recipient_restrictions =
      permit_mynetworks,reject_unauth_destination
      smtpd_sasl_auth_enable = no
      smtpd_sender_restrictions = hash:/etc/postfix/access
      smtpd_use_tls = no
      strict_rfc821_envelopes = no
      transport_maps = hash:/etc/postfix/transport
      unknown_local_recipient_reject_code = 550

      I enabled debugging for 127.0.0.1 but I don't see anything obvious. Log
      output follows.

      Thanks
      Hans

      Oct 31 01:41:19 slestest postfix/smtpd[16722]: connect from
      localhost[127.0.0.1]
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: > localhost[127.0.0.1]:
      220 slestest.theluggage.local ESMTP Postfix
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: watchdog_pat: 0x80a9138
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: < localhost[127.0.0.1]:
      EHLO slestest.theluggage.local
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: > localhost[127.0.0.1]:
      250-slestest.theluggage.local
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: > localhost[127.0.0.1]:
      250-PIPELINING
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: > localhost[127.0.0.1]:
      250-SIZE 10240000
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: > localhost[127.0.0.1]:
      250-VRFY
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: > localhost[127.0.0.1]:
      250-ETRN
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: match_list_match:
      localhost: no match
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: match_list_match:
      127.0.0.1: no match
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: > localhost[127.0.0.1]:
      250 8BITMIME
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: watchdog_pat: 0x80a9138
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: < localhost[127.0.0.1]:
      MAIL FROM: hansdp@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: extract_addr: input:
      hansdp@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: smtpd_check_addr:
      addr=hansdp@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: connect to subsystem
      private/rewrite
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: send attr request =
      rewrite
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: send attr rule =
      canonicalize
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: send attr address =
      hansdp@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: private/rewrite socket:
      wanted attribute: address
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute name:
      address
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute value:
      hansdp@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: private/rewrite socket:
      wanted attribute: (list terminator)
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute name:
      (end)
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: rewrite_clnt:
      canonicalize: hansdp@... -> hansdp@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: send attr request =
      resolve
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: send attr address =
      hansdp@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: private/rewrite socket:
      wanted attribute: transport
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute name:
      transport
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute value:
      smtp
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: private/rewrite socket:
      wanted attribute: nexthop
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute name:
      nexthop
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute value:
      172.16.57.1
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: private/rewrite socket:
      wanted attribute: recipient
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute name:
      recipient
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute value:
      hansdp@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: private/rewrite socket:
      wanted attribute: flags
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute name:
      flags
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute value:
      4096
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: private/rewrite socket:
      wanted attribute: (list terminator)
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute name:
      (end)
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: resolve_clnt:
      `hansdp@...' -> transp=`smtp' host=`172.16.57.1'
      rcpt=`hansdp@...' flags= class=default
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: ctable_locate: install
      entry key hansdp@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: extract_addr: result:
      hansdp@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: fsspace: .: block size
      4096, blocks free 1445120
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: smtpd_check_size: blocks
      4096 avail 1445120 min_free 0 msg_size_limit 10240000
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: > localhost[127.0.0.1]:
      250 Ok
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: watchdog_pat: 0x80a9138
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: < localhost[127.0.0.1]:
      RCPT TO: testuser@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: extract_addr: input:
      testuser@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: smtpd_check_addr:
      addr=testuser@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: send attr request =
      rewrite
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: send attr rule =
      canonicalize
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: send attr address =
      testuser@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: private/rewrite socket:
      wanted attribute: address
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute name:
      address
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute value:
      testuser@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: private/rewrite socket:
      wanted attribute: (list terminator)
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute name:
      (end)
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: rewrite_clnt:
      canonicalize: testuser@... -> testuser@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: send attr request =
      resolve
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: send attr address =
      testuser@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: private/rewrite socket:
      wanted attribute: transport
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute name:
      transport
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute value:
      smtp
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: private/rewrite socket:
      wanted attribute: nexthop
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute name:
      nexthop
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute value:
      172.16.57.1
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: private/rewrite socket:
      wanted attribute: recipient
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute name:
      recipient
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute value:
      testuser@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: private/rewrite socket:
      wanted attribute: flags
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute name:
      flags
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute value:
      4096
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: private/rewrite socket:
      wanted attribute: (list terminator)
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute name:
      (end)
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: resolve_clnt:
      `testuser@...' -> transp=`smtp' host=`172.16.57.1'
      rcpt=`testuser@...' flags= class=default
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: ctable_locate: install
      entry key testuser@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: extract_addr: result:
      testuser@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: send attr request =
      rewrite
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: send attr rule =
      canonicalize
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: send attr address =
      postmaster
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: private/rewrite socket:
      wanted attribute: address
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute name:
      address
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute value:
      postmaster@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: private/rewrite socket:
      wanted attribute: (list terminator)
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute name:
      (end)
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: rewrite_clnt:
      canonicalize: postmaster -> postmaster@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: >>> START Sender address
      RESTRICTIONS <<<
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: generic_checks:
      name=hash:/etc/postfix/access
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: check_mail_access:
      hansdp@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: ctable_locate: move
      existing entry key hansdp@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: check_access:
      hansdp@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: check_domain_access:
      example.com
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: check_access: hansdp@
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: generic_checks:
      name=check_sender_access status=0
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: >>> END Sender address
      RESTRICTIONS <<<
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: >>> START Recipient
      address RESTRICTIONS <<<
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: generic_checks:
      name=permit_mynetworks
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: permit_mynetworks:
      localhost 127.0.0.1
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: match_hostname: localhost
      ~? 127.0.0.0/8
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: match_hostaddr: 127.0.0.1
      ~? 127.0.0.0/8
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: v6addr_literal: input
      pattern 127.0.0.0/8
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: v6addr_literal:
      debracketed to 127.0.0.0/8
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: generic_checks:
      name=permit_mynetworks status=1
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: >>> CHECKING RECIPIENT
      MAPS <<<
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: ctable_locate: move
      existing entry key testuser@...
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: maps_find:
      recipient_canonical_maps: testuser@...: not found
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: match_string: example.com
      ~? slestest.theluggage.local
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: match_string: example.com
      ~? localhost.theluggage.local
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: match_list_match:
      example.com: no match
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: maps_find:
      recipient_canonical_maps: @...: not found
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: mail_addr_find:
      testuser@... -> (not found)
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: maps_find:
      canonical_maps: testuser@...: not found
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: match_string: example.com
      ~? slestest.theluggage.local
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: match_string: example.com
      ~? localhost.theluggage.local
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: match_list_match:
      example.com: no match
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: maps_find:
      canonical_maps: @...: not found
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: mail_addr_find:
      testuser@... -> (not found)
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: maps_find:
      virtual_alias_maps: testuser@...: not found
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: match_string: example.com
      ~? slestest.theluggage.local
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: match_string: example.com
      ~? localhost.theluggage.local
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: match_list_match:
      example.com: no match
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: maps_find:
      virtual_alias_maps: @...: not found
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: mail_addr_find:
      testuser@... -> (not found)
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: connect to subsystem
      public/cleanup
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: public/cleanup socket:
      wanted attribute: queue_id
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute name:
      queue_id
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute value:
      696A7123D9
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: public/cleanup socket:
      wanted attribute: (list terminator)
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: input attribute name:
      (end)
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: send attr flags = 50
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: 696A7123D9:
      client=localhost[127.0.0.1]
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: > localhost[127.0.0.1]:
      250 Ok
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: watchdog_pat: 0x80a9138
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: < localhost[127.0.0.1]:
      QUIT
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: > localhost[127.0.0.1]:
      221 Bye
      Oct 31 01:41:19 slestest postfix/smtpd[16722]: disconnect from
      localhost[127.0.0.1]
      Oct 30 23:41:34 slestest postfix/smtpd[16725]: warning: connect #1 to
      subsystem private/proxymap: Permission denied
      Oct 30 23:41:44 slestest postfix/smtpd[16725]: warning: connect #2 to
      subsystem private/proxymap: Permission denied
      Oct 30 23:41:54 slestest postfix/smtpd[16725]: warning: connect #3 to
      subsystem private/proxymap: Permission denied
      Oct 30 23:42:04 slestest postfix/smtpd[16725]: warning: connect #4 to
      subsystem private/proxymap: Permission denied
      Oct 30 23:42:14 slestest postfix/smtpd[16725]: warning: connect #5 to
      subsystem private/proxymap: Permission denied
      Oct 30 23:42:24 slestest postfix/smtpd[16725]: warning: connect #6 to
      subsystem private/proxymap: Permission denied
      Oct 30 23:42:34 slestest postfix/smtpd[16725]: warning: connect #7 to
      subsystem private/proxymap: Permission denied
      Oct 30 23:42:44 slestest postfix/smtpd[16725]: warning: connect #8 to
      subsystem private/proxymap: Permission denied
      Oct 30 23:42:54 slestest postfix/smtpd[16725]: warning: connect #9 to
      subsystem private/proxymap: Permission denied
      Oct 30 23:43:04 slestest postfix/smtpd[16725]: warning: connect #10 to
      subsystem private/proxymap: Permission denied
      Oct 30 23:43:14 slestest postfix/smtpd[16725]: fatal: connect #11 to
      subsystem private/proxymap: Permission denied
    • Wietse Venema
      ... Turnoff apparmor, or find a way to fix its configuration. Wietse
      Message 2 of 4 , Oct 31, 2006
      • 0 Attachment
        Hans du Plooy:
        > Oct 30 23:41:34 slestest postfix/smtpd[16725]: warning: connect #1 to
        > subsystem private/proxymap: Permission denied
        > [snip]
        > Oct 30 23:43:04 slestest postfix/smtpd[16725]: warning: connect #10 to
        > subsystem private/proxymap: Permission denied
        > Oct 30 23:43:14 slestest postfix/smtpd[16725]: fatal: connect #11 to
        > subsystem private/proxymap: Permission denied
        >
        > My postfix is the normal setup that SUSE creates for just sending local
        > mail out.

        Turnoff apparmor, or find a way to fix its configuration.

        Wietse
      • Hans du Plooy
        ... Hi Wietse, Thanks, I haven t thought of that. But it s SLES 9 SP3 - no apparmor yet. I did check selinux too - disabled by default. Why would it be
        Message 3 of 4 , Oct 31, 2006
        • 0 Attachment
          On Tue, 2006-10-31 at 14:37 -0500, Wietse Venema wrote:
          > Hans du Plooy:
          > > Oct 30 23:41:34 slestest postfix/smtpd[16725]: warning: connect #1 to
          > > subsystem private/proxymap: Permission denied
          > > [snip]
          > > Oct 30 23:43:04 slestest postfix/smtpd[16725]: warning: connect #10 to
          > > subsystem private/proxymap: Permission denied
          > > Oct 30 23:43:14 slestest postfix/smtpd[16725]: fatal: connect #11 to
          > > subsystem private/proxymap: Permission denied
          > >
          > > My postfix is the normal setup that SUSE creates for just sending local
          > > mail out.
          >
          > Turnoff apparmor, or find a way to fix its configuration.
          >
          > Wietse

          Hi Wietse,

          Thanks, I haven't thought of that. But it's SLES 9 SP3 - no apparmor
          yet. I did check selinux too - disabled by default.

          Why would it be trying to connect to proxymap - I'm not running anything
          chrooted?

          Thanks
          Hans


          #
          ==========================================================================
          # service type private unpriv chroot wakeup maxproc command + args
          # (yes) (yes) (yes) (never) (100)
          #
          ==========================================================================
          smtp inet n - n - - smtpd
          #smtps inet n - n - - smtpd
          # -o smtpd_tls_wrappermode=yes -o smtpd_sasl_auth_enable=yes
          #submission inet n - n - - smtpd
          # -o smtpd_enforce_tls=yes -o smtpd_sasl_auth_enable=yes -o
          smtpd_etrn_restrictions=reject
          #628 inet n - n - - qmqpd
          pickup fifo n - n 60 1 pickup
          cleanup unix n - n - 0 cleanup
          qmgr fifo n - n 300 1 qmgr
          #qmgr fifo n - n 300 1 oqmgr
          #tlsmgr fifo - - n 300 1 tlsmgr
          rewrite unix - - n - - trivial-rewrite
          bounce unix - - n - 0 bounce
          defer unix - - n - 0 bounce
          trace unix - - n - 0 bounce
          verify unix - - n - 1 verify
          flush unix n - n 1000? 0 flush
          proxymap unix - - n - - proxymap
          smtp unix - - n - - smtp
          relay unix - - n - - smtp
          # -o smtp_helo_timeout=5 -o smtp_connect_timeout=5
          showq unix n - n - - showq
          error unix - - n - - error
          local unix - n n - - local
          virtual unix - n n - - virtual
          lmtp unix - - n - - lmtp
          anvil unix - - n - 1 anvil
          #localhost:10025 inet n - n - - smtpd -o
          content_filter=
          #
          # Interfaces to non-Postfix software. Be sure to examine the manual
          # pages of the non-Postfix software to find out what options it wants.
          #
          # maildrop. See the Postfix MAILDROP_README file for details.
          #
          maildrop unix - n n - - pipe
          flags=DRhu user=vmail argv=/usr/local/bin/maildrop -d ${recipient}
          cyrus unix - n n - - pipe
          user=cyrus argv=/usr/lib/cyrus/bin/deliver -e -r ${sender} -m
          ${extension} ${user}
          uucp unix - n n - - pipe
          flags=Fqhu user=uucp argv=uux -r -n -z -a$sender - $nexthop!rmail
          ($recipient)
          ifmail unix - n n - - pipe
          flags=F user=ftn argv=/usr/lib/ifmail/ifmail -r $nexthop ($recipient)
          bsmtp unix - n n - - pipe
          flags=Fq. user=foo argv=/usr/local/sbin/bsmtp -f $sender $nexthop
          $recipient
          vscan unix - n n - 10 pipe
          user=vscan argv=/usr/sbin/amavis ${sender} ${recipient}
          procmail unix - n n - - pipe
          flags=R user=nobody argv=/usr/bin/procmail -t -m /etc/procmailrc
          ${sender} ${recipient}
        • Wietse Venema
          ... Either you messed up Postix access permissions, or your system runs some security software that breaks Postfix. Wietse
          Message 4 of 4 , Oct 31, 2006
          • 0 Attachment
            Hans du Plooy:
            > On Tue, 2006-10-31 at 14:37 -0500, Wietse Venema wrote:
            > > Hans du Plooy:
            > > > Oct 30 23:41:34 slestest postfix/smtpd[16725]: warning: connect #1 to
            > > > subsystem private/proxymap: Permission denied
            > > > [snip]
            > > > Oct 30 23:43:04 slestest postfix/smtpd[16725]: warning: connect #10 to
            > > > subsystem private/proxymap: Permission denied
            > > > Oct 30 23:43:14 slestest postfix/smtpd[16725]: fatal: connect #11 to
            > > > subsystem private/proxymap: Permission denied
            > > >
            > > > My postfix is the normal setup that SUSE creates for just sending local
            > > > mail out.
            > >
            > > Turnoff apparmor, or find a way to fix its configuration.
            > >
            > > Wietse
            >
            > Hi Wietse,
            >
            > Thanks, I haven't thought of that. But it's SLES 9 SP3 - no apparmor
            > yet. I did check selinux too - disabled by default.

            Either you messed up Postix access permissions, or your
            system runs some security software that breaks Postfix.

            Wietse
          Your message has been successfully submitted and would be delivered to recipients shortly.