小編:前幾天給大家給大家介紹了古老的郵件系統SendMail的簡單應用,今天來給大家談一下在SenMail基礎上異軍突起的郵件系統Postfix,並且結合Extmail的Web方式進行郵件的收發,由於它的界面非常友好而深受企業用戶的親睞。今天就在RPM的基礎上結合源碼,來對Postfix進行一個比較深刻的瞭解,並且實現基於虛擬賬號的郵件系統,下一次的博客中,我們將會基於LAMP環境,來搭建基於虛擬賬號的郵件系統.
系統環境
Red Hat Enterprise Linux Server release 5.4
內核版本(2.6.18-164.e15)
準備工作
下載Postfix最新源碼包:http://www.postfix.org/
(postfix-2.10.0.tar.gz)
下載Extmail最新源碼包:http://www.extmail.org/
(extmail-1.2.tar.gz)
下載Extman最新源碼包:http://wiki.extmail.org/extman/
(extman-1.1.tar.gz)
下載Courier-Authlib最新源碼包:http://www.courier-mta.org/authlib/
(courier-authlib-0.62.4.tar)
下載Unix-Syslog最新源碼包:http://search.cpan.org/dist/Unix-Syslog/
(Unix-Syslog-1.1.tar.gz)
實驗目的與流程分析圖
基本環境搭建
Step1:搭建DNS服務器,添加新的區域163.com
①配置本地Yum客戶端.
mkdir /mnt/cdrom
mount /dev/cdrom /mnt/cdrom
cd /mnt/cdrom/Server
vim /etc/yum.repos.d/rhel-debuginfo.repo
②yum安裝DNS需要的安裝包.
yum install -y bind bind-chroot caching-nameserver
③配置DNS服務器,添加新區域.
cd /var/named/chroot/etc/
cp -p named.caching-nameserver.conf named.conf
vim named.conf
vim named.rfc1912.zones
cd ../var/named/
cp -p localhost.zone 163.com.zone
vim 163.com.zone
③修改系統的主機名.
vim /etc/sysconfig/network
④修改系統hosts文件.
vim /etc/hosts
hostname mail.163.com
⑤修改系統DNS指向文件.
vim /etc/resolv.conf
⑥啓動DNS服務器,並進行解析測試
service named start
Step2:RPM包搭建基本的Web環境.
①yum安裝Web環境所需的rpm包.
yum install httpd php php-mysql mysql mysql-server mysql-devel openssl-devel dovecot perl-DBD-MySQL tcl tcl-devel libart_lgpl libart_lgpl-devel libtool-ltdl libtool-ltdl-devel expect
②關閉SendMail服務,並修改開機啓動級別.
service sendmail stop
chkconfig sendmail off
③啓動mysql數據庫,並給mysql的root用戶設置管理密碼.
service mysqld start
chkconfig mysqld on
mysqladmin -u root password '123456'
下面的方法也是可以的:
1>授權本地用戶
SET PASSWORD FOR root@'localhost'=PASSWORD('123456');
SET PASSWORD FOR root@'127.0.0.1'=PASSWORD('123456');
FLUSH PRIVILEGES;
2>授權遠程用戶
GRANT ALL PRIVILEGES ON *.* TO root@'%' IDENTIFIED BY '123456';
FLUSH PRIVILEGES;
郵件服務器環境搭建
Step1:源碼安裝和配置postfix.
①實現創建postfix服務的所屬組和nologin賬號.
groupadd -g 2525 postfix
useradd -g postfix -u 2525 -s /sbin/nologin -M postfix
groupadd -g 2526 postdrop
useradd -g postdrop -u 2526 -s /bin/false -M postdrop
②拆解源碼包到指定路徑下,並進行源碼安裝.
tar zxvf postfix-2.10.0.tar.gz -C /usr/local/src
cd /usr/local/src/postfix-2.10.0
make makefiles 'CCARGS=-DHAS_MYSQL -I/usr/include/mysql -DUSE_SASL_AUTH -DUSE_CYRUS_SASL -I/usr/include/sasl -DUSE_TLS ' 'AUXLIBS=-L/usr/lib/mysql -lmysqlclient -lz -lm -L/usr/lib/sasl2 -lsasl2 -lssl -lcrypto'
make
make install
按照以下的提示輸入相關的路徑
([]號中的是缺省值,”]”後的是輸入值,省略的表示採用默認值)
install_root: [/] /
tempdir: [/usr/local/src/postfix-2.10.0] /tmp
config_directory: [/etc/postfix] /etc/postfix
daemon_directory: [/usr/libexec/postfix]
command_directory: [/usr/sbin]
queue_directory: [/var/spool/postfix]
sendmail_path: [/usr/sbin/sendmail]
newaliases_path: [/usr/bin/newaliases]
mailq_path: [/usr/bin/mailq]
mail_owner: [postfix]
setgid_group: [postdrop]
html_directory: [no] /var/www/postfix_html
manpages: [/usr/local/man]
readme_directory: [no]
③生成別名二進制文件,這個步驟如果忽略,會造成postfix效率極低.
newaliases
④修改Postfix的主配置文件,進行一些基本配置.測試啓動postfix並進行發信
vim /etc/postfix/main.cf
修改以下幾項配置參數.
myhostname = mail.163.com
(指定運行postfix郵件系統的主機的主機名,默認情況下,其值被設定爲本地機器名)
myorigin = 163.com (用來指明發件人所在的域名)
mydomain = $mydomain
(指定域名,默認情況下,postfix將myhostname的第一部分刪除而作爲mydomain的值)
mydestination = $myhostname, localhost.$mydomain, localhost, $mydomain
(指定postfix接收郵件時收件人的域名,即postfix系統要接收到哪個域名的郵件)
mynetworks = 127.0.0.0/8
(指定你所在的網絡的網絡地址,postfix系統根據其值來區別用戶是遠程的還是本地的,如果是本地網絡用戶則允許其訪問)
⑤爲了實現postfix的service管理,拷貝生成服務的啓動控制腳本.
mkdir /tmp/abc
cd /mnt/cdrom/Server
cp postfix-2.3.3-2.1.e15_2.i386.rpm /tmp/abc
cd /tmp/abc
rpm2cpio postfix-2.3.3-2.1.e15_2.i386.rpm | cpio -id
cp -p etc/rc.d/init.d/postfix /etc/init.d/
⑥啓動postfix服務.
service postfix start
chkconfig postfix on
⑦Telnet連接postfix,驗證服務啓動是否正常.
telnet localhost 25
Trying 127.0.0.1...
Connected to localhost.localdomain (127.0.0.1).
Escape character is '^]'.
220 mail.163.com ESMTP Postfix
ehlo mail.163.com
250-mail.163.com
250-PIPELINING
250-SIZE 10240000
250-VRFY
250-ETRN
250-ENHANCEDSTATUSCODES
250-8BITMIME
250 DSN
mail from:[email protected]
250 2.1.0 Ok
rcpt to:[email protected]
250 2.1.5 Ok
data
354 End data with <CR><LF>.<CR><LF>
subject:111
2222
.
250 2.0.0 Ok: queued as AB94A1A561
quit
221 2.0.0 Bye
Connection closed by foreign host.
⑧切換到user1用戶進行收信測試.
su - user1
Mail version 8.1 6/6/93. Type ? for help.
"/var/spool/mail/user1": 1 message 1 new
>N 1 [email protected] Wed Sep 5 10:59 15/488 "111"
&
Step2:爲postfix開啓基於cyrus-sasl的認證功能.
①驗證postfix是否支持cyrus風格的sasl認證
postconf -a 的結果如下:
cyrus
Dovecot
②修改postfix的主配置文件,添加cyrus-sasl認證參數.
vim /etc/postfix/main.cf
添加以下內容:
############################CYRUS-SASL############################
broken_sasl_auth_clients = yes
smtpd_recipient_restrictions=permit_mynetworks,permit_sasl_authenticated,reject_invalid_hostname,reject_non_fqdn_hostname,reject_unknown_sender_domain,reject_non_fqdn_sender,reject_non_fqdn_recipient,reject_unknown_recipient_domain,reject_unauth_pipelining,reject_unauth_destination
smtpd_sasl_auth_enable = yes
smtpd_sasl_local_domain = $myhostname
smtpd_sasl_security_options = noanonymous
smtpd_banner = Welcome to our $myhostname ESMTP,Warning: Version not Available!
③修改postfix的主配置文件,添加cyrus-sasl認證參數.
vim /usr/lib/sasl2/smtpd.conf
添加如下內容:
pwcheck_method: saslauthd
mech_list: PLAIN LOGIN
④啓動sasl認證服務,並修改服務的啓動級別,並且重啓postfix服務.
service saslauthd start
chkconfig saslauthd on
service postfix restart
⑤Telnet連接postfix,驗證驗證服務啓動是否正常.
# telnet localhost 25
Trying 127.0.0.1...
Connected to localhost.localdomain (127.0.0.1).
Escape character is '^]'.
220 Welcome to our mail.163.com ESMTP,Warning: Version not Available!
ehlo mail.163.com
250-mail.163.com
250-PIPELINING
250-SIZE 10240000
250-VRFY
250-ETRN
250-AUTH PLAIN LOGIN (出現本行和下行證明postfix結合認證成功)
250-AUTH=PLAIN LOGIN
250-ENHANCEDSTATUSCODES
250-8BITMIME
250 DSN
Step3:安裝Courier-Authlib,並進行鏈接數據庫的相關配置.
①源碼安裝courier-authlib.
tar xvf courier-authlib-0.62.4.tar
cp courier-authlib-0.62.4 /usr/local/src/courier-authlib
cd /usr/local/src/courier-authlib
./configure \
--prefix=/usr/local/courier-authlib \
--sysconfdir=/etc \
--with-authmysql \
--with-mysql-libs=/usr/lib/mysql \
--with-mysql-includes=/usr/include/mysql \
--with-redhat \
--with-authmysqlrc=/etc/authmysqlrc \
--with-authdaemonrc=/etc/authdaemonrc \
--with-ltdl-lib=/usr/lib \
--with-ltdl-include=/usr/include
make
make install
②修改courier-authlib服務的目錄的權限,使具有執行權限.
chmod 755 /usr/local/courier-authlib/var/spool/authdaemon
③拷貝生成服務的兩個模塊的配置腳本,並進行修改.
cp /etc/authdaemonrc.dist /etc/authdaemonrc
cp /etc/authmysqlrc.dist /etc/authmysqlrc
vim /etc/authdaemonrc (改動如下)
authmodulelist="authmysql"
authmodulelistorig="authmysql"
daemons=10
vim /etc/authmysqlrc(改動如下)
MYSQL_SERVER localhost
MYSQL_PORT 3306 (指定mysql監聽的端口,這裏使用默認的3306)
MYSQL_USERNAME extmail (這時後面要用的數據庫的所有者的用戶名)
MYSQL_PASSWORD extmail (這時後面要用的數據庫的所有者的密碼)
MYSQL_SOCKET /var/lib/mysql/mysql.sock(源碼安裝的mysql在/tmp下)
MYSQL_DATABASE extmail
MYSQL_USER_TABLE mailbox
MYSQL_CRYPT_PWFIELD password
MYSQL_UID_FIELD '2525'
MYSQL_GID_FIELD '2525'
MYSQL_LOGIN_FIELD username
MYSQL_HOME_FIELD concat('/var/mailbox/',homedir)
MYSQL_NAME_FIELD name
MYSQL_MAILDIR_FIELD concat('/var/mailbox/',maildir)
④拷貝生成courier-authlib的服務啓動腳本,並修改權限.
cp courier-authlib.sysvinit /etc/init.d/courier-authlib
chmod 755 /etc/init.d/courier-authlib
⑤將courier-authlib的庫文件加入到系統庫中.
echo "/usr/local/courier-authlib/lib/courier-authlib" >> /etc/ld.so.conf.d/courier-authlib.conf
ldconfig
⑥啓動courier-authlib服務.
service courier-authlib start
chkconfig courier-authlib on
⑦新建虛擬用戶郵箱所在的目錄,並將其權限賦予postfix用戶.
mkdir -pv /var/mailbox
chown –R postfix /var/mailbox
⑧編輯/usr/lib/sasl2/smtpd.conf
確保具有以下內容:
vim /usr/lib/sasl2/smtpd.conf
pwcheck_method: authdaemond
log_level: 3
mech_list:PLAIN LOGIN
authdaemond_path:/usr/local/courier-authlib/var/spool/authdaemon/socket
⑨編輯postfix的主配置,讓postfix支持虛擬域和虛擬用戶.
vim /etc/postfix/main.cf(添加如下內容)
################Virtual Mailbox Settings########################
virtual_mailbox_base = /var/mailbox
virtual_mailbox_maps = mysql:/etc/postfix/mysql_virtual_mailbox_maps.cf
virtual_mailbox_domains = mysql:/etc/postfix/mysql_virtual_domains_maps.cf
virtual_alias_domains =
virtual_alias_maps = mysql:/etc/postfix/mysql_virtual_alias_maps.cf
virtual_uid_maps = static:2525
virtual_gid_maps = static:2525
virtual_transport = virtual
maildrop_destination_recipient_limit = 1
maildrop_destination_concurrency_limit = 1
##########################QUOTA Settings########################
message_size_limit = 14336000
virtual_mailbox_limit = 20971520
virtual_create_maildirsize = yes
virtual_mailbox_extended = yes
virtual_mailbox_limit_maps = mysql:/etc/postfix/mysql_virtual_mailbox_limit_maps.cf
virtual_mailbox_limit_override = yes
virtual_maildir_limit_message = Sorry, the user's maildir has overdrawn his diskspace quota, please Tidy your mailbox and try again later.
virtual_overquota_bounce = yes
⑩使用extman源碼目錄下docs目錄中的extmail.sql和init.sql建立數據庫:
tar zxvf extman-1.1.tar.gz
cd extman-1.1/docs
mysql -u root -p <extmail.sql
mysql -u root -p <init.sql
Mysql -u root -p
⑾授予用戶extmail訪問extmail數據庫的權限
mysql> GRANT all privileges on extmail.* TO extmail@localhost IDENTIFIED BY 'extmail';
mysql> GRANT all privileges on extmail.* TO [email protected] IDENTIFIED BY 'extmail';
mysql>FLUSH PRIVILEGES;
cp mysql_virtual_* /etc/postfix/
⑿編輯postfix的主配置文件,禁用以下行.
mydestination = $myhostname, localhost.$mydomain, localhost, $mydomain
⒀重啓postfix服務.
service postfix restart
Step4:進行dovecot的相關配置.
①編輯dovecot的主配置文件.
vim /etc/dovecot.conf(修改以下行)
mail_location = maildir:/var/mailbox/%d/%n/Maildir
auth default {
mechanisms = plain
passdb sql {
args = /etc/dovecot-mysql.conf
}
userdb sql {
args = /etc/dovecot-mysql.conf
}
}把userdb的其他相關禁用
②編輯postfix的主配置文件.
vim /etc/postfix/main.cf (修改以下行)
home_mailbox = Maildir/
③生成dovecot鏈接數據庫的配置文件.
vim /etc/dovecot-mysql.conf (添加以下行)
driver = mysql
connect = host=localhost dbname=extmail user=extmail password=extmail
default_pass_scheme = CRYPT
password_query = SELECT username AS user,password AS password FROM mailbox WHERE username = '%u'
user_query = SELECT maildir, uidnumber AS uid, gidnumber AS gid FROM mailbox WHERE username = '%u'
④啓動dovecot服務並修改開機啓動級別.
service dovecot start
chkconfig dovecot on
Step5:進行Extmail的相關配置.
①解壓縮源碼包.
tar zxvf extmail-1.2.tar.gz
mkdir -pv /var/www/extsuite
mv extmail-1.2 /var/www/extsuite/extmail
mv extman-1.1 /var/www/extsuite/extman
cp /var/www/extsuite/extmail/webmail.cf.default /var/www/extsuite/extmail/webmail.cf
②修改主配置文件
vim /var/www/extsuite/extmail/webmail.cf(修改以下行)
SYS_MESSAGE_SIZE_LIMIT = 5242880
(用戶可以發送的最大郵件)
SYS_USER_LANG = en_US 改爲:SYS_USER_LANG = zh_CN
(語言選項)
SYS_MAILDIR_BASE = /home/domains(用戶郵件的存放目錄)
改作:SYS_MAILDIR_BASE = /var/mailbox
SYS_MYSQL_USER = db_user
SYS_MYSQL_PASS = db_pass
設置連接數據庫服務器所使用用戶名、密碼和郵件服務器用到的數據庫
修改爲:
SYS_MYSQL_USER = extmail
SYS_MYSQL_PASS = extmail
SYS_MYSQL_HOST = localhost(指明數據庫服務器主機名)
SYS_MYSQL_TABLE = mailbox
SYS_MYSQL_ATTR_USERNAME = username
SYS_MYSQL_ATTR_DOMAIN = domain
SYS_MYSQL_ATTR_PASSWD = password
(指定用戶登錄裏所用到的表,以及用戶名、域名和用戶密碼分別對應的表中列的名稱)
SYS_AUTHLIB_SOCKET = /var/spool/authdaemon/socket
指明authdaemo socket文件的位置
修改爲:
SYS_AUTHLIB_SOCKET = /usr/local/courier-authlib/var/spool/authdaemon/socket
SYS_LOG_ON = 0
③進行apache相關配置.
<VirtualHost 192.168.145.100:80>
ServerName mail.163.com
DocumentRoot /var/www/extsuite/extmail/html/
ScriptAlias /extmail/cgi /var/www/extsuite/extmail/cgi
Alias /extmail /var/www/extsuite/extmail/html
</VirtualHost>
User postfix
Group postfix
④修改 cgi執行文件運行身份爲postfix.
chown -R postfix.postfix /var/www/extsuite/extmail/cgi/
⑤解決依賴關係.
extmail會用到perl的Unix-syslogd功能,所以需要打個補丁.
tar zxvf Unix-Syslog-1.1.tar.gz -C /usr/local/src
cd /usr/local/src/Unix-Syslog-1.1
perl Makefile.PL
make
make install
⑥啓動apache服務.
service httpd start
chkconfig httpd on
Step6:進行Extman的相關配置.
①解壓縮源碼包.
tar zxvf extman-1.1.tar.gz
mv extman-1.1 /var/www/extsuite/extman
②拷貝生成extman配置文件,編輯配置.
cp /var/www/extsuite/extman/webman.cf.default /var/www/extsuite/extman/webman.cf
vim /var/www/extsuite/extman/webman.cf(修改以下參數)
SYS_MAILDIR_BASE = /home/domains
改爲:SYS_MAILDIR_BASE = /var/mailbox
SYS_CAPTCHA_ON = 1
改爲:SYS_CAPTCHA_ON = 0
③修改 cgi執行文件運行身份爲postfix.
chown -R postfix.postfix /var/www/extsuite/extman/cgi/
④進行apache相關配置.
<VirtualHost 192.168.145.100:80>
ServerName mail.163.com
DocumentRoot /var/www/extsuite/extmail/html/
ScriptAlias /extmail/cgi /var/www/extsuite/extmail/cgi
Alias /extmail /var/www/extsuite/extmail/html
ScriptAlias /extman/cgi /var/www/extsuite/extman/cgi
Alias /extman /var/www/extsuite/extman/html
</VirtualHost>
service httpd restart
⑤創建其運行時所需的臨時目錄,並修改其相應的權限.
mkdir -pv /tmp/extman
chown postfix.postfix /tmp/extman
登陸測試
http://192.168.145.100
默認管理帳號爲:[email protected] 密碼爲:extmail*123*
以默認管理帳號和密碼登陸到後臺,添加域163.com和虛擬域126.com
163.com域內添加測試用戶[email protected]
126.com域內添加測試用戶[email protected]
user1和user2間的收發郵件測試.
下一篇博客,我們將會基於LAMP環境來搭建基於虛擬賬號的郵件系統!
敬請期待。。。。。