[Eisfair] Fetchmail Meldung, die zweite

Jupp Kasulke colonius at rocketmail.com
Fr Mai 16 19:52:49 CEST 2014


Hallo,

Am 16.05.2014 12:26, schrieb Marcus Roeckrath:

>> Löscht bitte mal versuchsweise die komplette Fingerprintzeile für die
>> betroffenen Server aus der Datei /etc/fetchmail.conf raus; die anderen
>> ssl-Zeilen müssen aber natürlich gesetzt bleiben.

Done. Danach (weil über ssh geändert) die Rechte neu gesetzt.
"sudo chmod exim:trusted /etc/fetchmail.conf"

> Falls meine Konfigurationsänderung (Löschen der sslfingerprint-Zeile in
> fetchmail.conf) bei Euch mit 1und1 funktioniert, bitte ich Euch mal das
> pop.1und1.de.pem (oder pop.kundenserver.de.pem) Zertifikat aus dem
> certs-Verzeichnis wegzumoven und dann zu rehashen.
>
> /usr/bin/ssl/c_rehash /usr/local/ssl/certs
>
> Danach bitte mal die Mailservices restarten
>
> /etc/init.d/mail restart
>
> und im Fetchmail-Log (var/log/fetchmail.log) schauen, ob sich
> ssl-Fehlermeldungen finden lassen.
>
Rehashed, restarted, geschaut.

Danach habe ich "/etc/init.d/mail -debug restart fetch" vielfach 
ausgeführt, und nach vielen Versuchen auch mal den "falschen" 
fingerprint erwischt. (auf mieue101)
Dabei werden beide IPs und folgende "virtuelle Server" (mieuexxx) 
angesprochen:
---------------8<------------------------
> mieue001
> mieue002
> mieue003
> mieue004
> mieue005
> mieue007
> mieue008
> mieue009
> mieue010
> mieue011
> mieue012
> mieue013
> mieue014
> mieue015
> mieue016
> mieue017
> mieue018
> mieue019
> mieue020
> mieue105
> mieue106
> mieue109
> mieue110
> mieue111
> mieue112
> mieue113
> mieue117
> mieue119
---------------8<------------------------

var/log/fetchmail.log
---------------8<------------------------
> fetchmail: awakened at Fri, 16 May 2014 19:36:31 +0200 (CEST)
> fetchmail: 6.3.26 querying pop.1und1.de (protocol POP3) at Fri, 16 May 2014 19:36:31 +0200 (CEST): poll started
> fetchmail: awakened at Fri, 16 May 2014 19:36:31 (CEST)
> fetchmail: Trying to connect to 212.227.15.162/995...connected.
> fetchmail: Certificate chain, from root to peer, starting at depth 2:
> fetchmail: Issuer Organization: Deutsche Telekom AG
> fetchmail: Issuer CommonName: Deutsche Telekom Root CA 2
> fetchmail: Subject CommonName: Deutsche Telekom Root CA 2
> fetchmail: Certificate at depth 1:
> fetchmail: Issuer Organization: Deutsche Telekom AG
> fetchmail: Issuer CommonName: Deutsche Telekom Root CA 2
> fetchmail: Subject CommonName: TeleSec ServerPass DE-1
> fetchmail: Server certificate:
> fetchmail: Issuer Organization: T-Systems International GmbH
> fetchmail: Issuer CommonName: TeleSec ServerPass DE-1
> fetchmail: Subject CommonName: pop.1und1.de
> fetchmail: Subject Alternative Name: pop.1und1.de
> fetchmail: pop.1und1.de key fingerprint: 3C:0B:BD:58:A2:75:EB:50:F3:95:D7:DC:7D:DC:C2:C0
> fetchmail: POP3< +OK POP server ready H mieue016 0Lvm2b-1WqxgX38ay-017NMU
> fetchmail: POP3> CAPA
> fetchmail: POP3< +OK Capability list follows
> fetchmail: POP3< TOP
> fetchmail: POP3< USER
> fetchmail: POP3< UIDL
> fetchmail: POP3< SASL PLAIN
> fetchmail: POP3< IMPLEMENTATION trinity
> fetchmail: POP3< .
> fetchmail: POP3> USER xxxxxxxx
> fetchmail: POP3< +OK password required for user "xxxxxxxx"
> fetchmail: POP3> PASS *
> fetchmail: POP3< +OK mailbox "xxxxxxxx" has 0 messages (0 octets) H mieue016
> fetchmail: selecting or re-polling default folder
> fetchmail: POP3> STAT
> fetchmail: POP3< +OK 0 0
> fetchmail: No mail for xxxxxxxx at pop.1und1.de
> fetchmail: POP3> QUIT
> fetchmail: POP3< +OK POP server signing off
> fetchmail: 6.3.26 querying pop.1und1.de (protocol POP3) at Fri, 16 May 2014 19:36:33 +0200 (CEST): poll completed
> fetchmail: New UID list from pop.1und1.de: <empty>
> fetchmail: not swapping UID lists, no UIDs seen this query
> fetchmail: Query status=1 (NOMAIL)
> fetchmail: 6.3.26 querying pop.1und1.de (protocol POP3) at Fri, 16 May 2014 19:36:33 +0200 (CEST): poll started
> fetchmail: Trying to connect to 212.227.15.178/995...connected.
> fetchmail: Certificate chain, from root to peer, starting at depth 3:
> fetchmail: Issuer Organization: Thawte Consulting cc
> fetchmail: Issuer CommonName: Thawte Premium Server CA
> fetchmail: Subject CommonName: Thawte Premium Server CA
> fetchmail: Certificate at depth 2:
> fetchmail: Issuer Organization: Thawte Consulting cc
> fetchmail: Issuer CommonName: Thawte Premium Server CA
> fetchmail: Subject CommonName: thawte Primary Root CA
> fetchmail: Certificate at depth 1:
> fetchmail: Issuer Organization: thawte, Inc.
> fetchmail: Issuer CommonName: thawte Primary Root CA
> fetchmail: Subject CommonName: Thawte SSL CA
> fetchmail: Server certificate:
> fetchmail: Issuer Organization: Thawte, Inc.
> fetchmail: Issuer CommonName: Thawte SSL CA
> fetchmail: Subject CommonName: pop.1und1.de
> fetchmail: Subject Alternative Name: pop.1und1.de
> fetchmail: pop.1und1.de key fingerprint: DA:6B:7B:49:97:A7:59:4A:32:97:EE:01:B8:95:B2:9C
> fetchmail: POP3< +OK POP server ready H mieue101 0MgdHz-1WNveN48UJ-00OA9q
> fetchmail: POP3> CAPA
> fetchmail: POP3< +OK Capability list follows
> fetchmail: POP3< TOP
> fetchmail: POP3< USER
> fetchmail: POP3< UIDL
> fetchmail: POP3< SASL PLAIN
> fetchmail: POP3< IMPLEMENTATION trinity
> fetchmail: POP3< .
> fetchmail: POP3> USER yyyyyyyy
> fetchmail: POP3< +OK password required for user "yyyyyyyy"
> fetchmail: POP3> PASS *
> fetchmail: POP3< +OK mailbox "yyyyyyyy" has 0 messages (0 octets) H mieue101
> fetchmail: selecting or re-polling default folder
> fetchmail: POP3> STAT
> fetchmail: POP3< +OK 0 0
> fetchmail: No mail for yyyyyyyy at pop.1und1.de
> fetchmail: POP3> QUIT
> fetchmail: POP3< +OK POP server signing off
> fetchmail: 6.3.26 querying pop.1und1.de (protocol POP3) at Fri, 16 May 2014 19:36:35 +0200 (CEST): poll completed
> fetchmail: New UID list from pop.1und1.de: <empty>
> fetchmail: not swapping UID lists, no UIDs seen this query
> fetchmail: Query status=1 (NOMAIL)
> fetchmail: 6.3.26 querying pop.1und1.de (protocol POP3) at Fri, 16 May 2014 19:36:35 +0200 (CEST): poll started
> fetchmail: Trying to connect to 212.227.15.162/995...connected.
> fetchmail: Certificate chain, from root to peer, starting at depth 2:
> fetchmail: Issuer Organization: Deutsche Telekom AG
> fetchmail: Issuer CommonName: Deutsche Telekom Root CA 2
> fetchmail: Subject CommonName: Deutsche Telekom Root CA 2
> fetchmail: Certificate at depth 1:
> fetchmail: Issuer Organization: Deutsche Telekom AG
> fetchmail: Issuer CommonName: Deutsche Telekom Root CA 2
> fetchmail: Subject CommonName: TeleSec ServerPass DE-1
> fetchmail: Server certificate:
> fetchmail: Issuer Organization: T-Systems International GmbH
> fetchmail: Issuer CommonName: TeleSec ServerPass DE-1
> fetchmail: Subject CommonName: pop.1und1.de
> fetchmail: Subject Alternative Name: pop.1und1.de
> fetchmail: pop.1und1.de key fingerprint: 3C:0B:BD:58:A2:75:EB:50:F3:95:D7:DC:7D:DC:C2:C0
> fetchmail: POP3< +OK POP server ready H mieue010 0MTBv0-1WJGpD0eqk-00RWJM
> fetchmail: POP3> CAPA
> fetchmail: POP3< +OK Capability list follows
> fetchmail: POP3< TOP
> fetchmail: POP3< USER
> fetchmail: POP3< UIDL
> fetchmail: POP3< SASL PLAIN
> fetchmail: POP3< IMPLEMENTATION trinity
> fetchmail: POP3< .
> fetchmail: POP3> USER zzzzzzzz
> fetchmail: POP3< +OK password required for user "zzzzzzzz"
> fetchmail: POP3> PASS *
> fetchmail: POP3< +OK mailbox "zzzzzzzz" has 0 messages (0 octets) H mieue010
> fetchmail: selecting or re-polling default folder
> fetchmail: POP3> STAT
> fetchmail: POP3< +OK 0 0
> fetchmail: No mail for zzzzzzzz at pop.1und1.de
> fetchmail: POP3> QUIT
> fetchmail: POP3< +OK POP server signing off
> fetchmail: sleeping at Fri, 16 May 2014 19:36:37 (CEST) for 180 seconds
> fetchmail: 6.3.26 querying pop.1und1.de (protocol POP3) at Fri, 16 May 2014 19:36:37 +0200 (CEST): poll completed
> fetchmail: New UID list from pop.1und1.de: <empty>
> fetchmail: not swapping UID lists, no UIDs seen this query
> fetchmail: Query status=1 (NOMAIL)
> fetchmail: Writing fetchids file.
> fetchmail: sleeping at Fri, 16 May 2014 19:36:37 +0200 (CEST) for 180 seconds
---------------8<------------------------

Und seither keine Fehlermail bekommen.


Mehr Informationen über die Mailingliste Eisfair