Jump to content

Sender right restriction Zimbra8 via Milter Service: Difference between revisions

From TetraWiki
Amit (talk | contribs)
Created page with "category:Orient Bell Specially for Zimbra 8 The Zimbra milter allows for the regulation of distribution list senders on a Global or server level. When the milter server ..."
 
 
(5 intermediate revisions by 2 users not shown)
Line 1: Line 1:
[[category:Orient Bell]]
 
[[category:Zimbra‏‎]]
[[category:Sandhar Technologies‏‎]]


Specially for Zimbra 8
Specially for Zimbra 8
Line 6: Line 8:
Enabling the Milter Server
Enabling the Milter Server


Note that the Milter server should only be enabled on servers running the MTA.
==Implementation==
 
Via Zimbra Admin Panel
    Global: Home > Configure > Global Settings > MTA > Milter Server
 
Global: Home > Configure > Global Settings > MTA > Milter Server
    Server: Home > Configure > Servers > Select Desired Server > MTA > Milter Server  
Server: Home > Configure > Servers > Select Desired Server > MTA > Milter Server  


    Alternatively using the CLI:  
Alternatively using the CLI:  


        # su - zimbra
# su - zimbra
        $ zmprov modifyConfig zimbraMilterServerEnabled TRUE
$ zmprov modifyConfig zimbraMilterServerEnabled TRUE


For a specific server (say eg.example.com):
For a specific server (say eg.example.com):


        $ zmprov modifyServer eg.example.com zimbraMilterServerEnabled TRUE
$ zmprov modifyServer eg.example.com zimbraMilterServerEnabled TRUE


The above steps will ensure that milter will be automatically started via "zmcontrol start"
The above steps will ensure that milter will be automatically started via "zmcontrol start"
Line 33: Line 35:
Usage: zmmilterctl start|stop|restart|reload|refresh|status
Usage: zmmilterctl start|stop|restart|reload|refresh|status


The following will provide examples for granting sender permissions on the CLI:


    The following will provide examples for granting sender permissions on the CLI:
==Caution Before Starting the Assignments of Rights to users for distribution list ==
 
    User - grants a user sending permissions to a distribution list  


        $ zmprov grr dl distributionlist@domain.com usr user@domain.com sendToDistList 
First Check the status of milter status
         


    Group (distribution list) - grants a group sending rights to distribution list
zmmilterctl status
Milter server is '''running'''.


        $ zmprov grr dl distributionlist@domain.com grp groupdl@domain.com sendToDistListThe Zimbra milter allows for the regulation of distribution list senders on a Global or server level. When the milter server is enabled, only users who have been granted explicit sending permissions will be allowed.
Should be Running
Enabling the Milter Server


Note that the Milter server should only be enabled on servers running the MTA.
Also now check whether Milter parameter is enabled


    Global: Home > Configure > Global Settings > MTA > Milter Server
zmprov gs node.sandhar.in zimbraMilterServerEnabled
# name node.sandhar.in
zimbraMilterServerEnabled: '''TRUE'''


    Server: Home > Configure > Servers > Select Desired Server > MTA > Milter Server
Should be '''TRUE''' else please do not proceed . please Enable it before Proceeding .


    Alternatively using the CLI:
        # su - zimbra
        $ zmprov modifyConfig zimbraMilterServerEnabled TRUE
For a specific server (say eg.example.com):
        $ zmprov modifyServer eg.example.com zimbraMilterServerEnabled TRUE
The above steps will ensure that milter will be automatically started via "zmcontrol start"
To start the milter manually:
        $ zmmilterctl start
To check the status of the milter:
        $ zmmilterctl status
Usage: zmmilterctl start|stop|restart|reload|refresh|status




    The following will provide examples for granting sender permissions on the CLI:
==Assigning Rights to Distribution ==


    User - grants a user sending permissions to a distribution list  
User - grants a user sending permissions to a distribution list  


        $ zmprov grr dl distributionlist@domain.com usr user@domain.com sendToDistList  
$ zmprov grr dl distributionlist@domain.com usr user@domain.com sendToDistList  
        $ zmprov grr dl all.staff@orientbell.com usr vijay.thakur@orientbell.com sendToDistList           
$ zmprov grr dl all.staff@orientbell.com usr vijay.thakur@orientbell.com sendToDistList           


    After granting or revoking rights for the milter, you must reaload the configuration for the changes to take effect.  
After granting or revoking rights for the milter, you must reaload the configuration for the changes to take effect.  


          $ zmmtactl reload
$ zmmtactl reload
== Removing Rights to Users for any Distribution List ==


Modifying and revoking grants
Modifying and revoking grants


    If you want to remove or modify permissions, you'll need to use 'zmprov rvr' instead of 'zmprov grr'.  
If you want to remove or modify permissions, you'll need to use 'zmprov rvr' instead of 'zmprov grr'.  


    Example of removing sendToDistList permissions for a user:  
Example of removing sendToDistList permissions for a user:  


          $ zmprov rvr dl distributionlist@domain.com usr user@domain.com sendToDistList
$ zmprov rvr dl distributionlist@domain.com usr user@domain.com sendToDistList


    After granting or revoking rights for the milter, you must reaload the configuration for the changes to take effect.  
After granting or revoking rights for the milter, you must reaload the configuration for the changes to take effect.  


          $ zmmtactl reload
$ zmmtactl reload


==Reference==


Reference : http://wiki.zimbra.com/wiki/Enabling_and_administering_the_Zimbra_milter
Reference : http://wiki.zimbra.com/wiki/Enabling_and_administering_the_Zimbra_milter


NOTE: Before doing the above exercise be ensure that distribution list must be exists. and let client add the member to that distribution list.
NOTE: Before doing the above exercise be ensure that distribution list must be exists. and let client add the member to that distribution list.

Latest revision as of 14:07, 9 January 2015


Specially for Zimbra 8

The Zimbra milter allows for the regulation of distribution list senders on a Global or server level. When the milter server is enabled, only users who have been granted explicit sending permissions will be allowed. Enabling the Milter Server

Implementation[edit]

Via Zimbra Admin Panel

Global: Home > Configure > Global Settings > MTA > Milter Server
Server: Home > Configure > Servers > Select Desired Server > MTA > Milter Server 

Alternatively using the CLI:

# su - zimbra
$ zmprov modifyConfig zimbraMilterServerEnabled TRUE

For a specific server (say eg.example.com):

$ zmprov modifyServer eg.example.com zimbraMilterServerEnabled TRUE

The above steps will ensure that milter will be automatically started via "zmcontrol start"

To start the milter manually:

       $ zmmilterctl start

To check the status of the milter:

       $ zmmilterctl status 

Usage: zmmilterctl start|stop|restart|reload|refresh|status

The following will provide examples for granting sender permissions on the CLI:

Caution Before Starting the Assignments of Rights to users for distribution list[edit]

First Check the status of milter status

zmmilterctl status
Milter server is running.

Should be Running

Also now check whether Milter parameter is enabled

zmprov gs node.sandhar.in zimbraMilterServerEnabled
# name node.sandhar.in
zimbraMilterServerEnabled: TRUE

Should be TRUE else please do not proceed . please Enable it before Proceeding .


Assigning Rights to Distribution[edit]

User - grants a user sending permissions to a distribution list

$ zmprov grr dl distributionlist@domain.com usr user@domain.com sendToDistList 
$ zmprov grr dl all.staff@orientbell.com usr vijay.thakur@orientbell.com sendToDistList           

After granting or revoking rights for the milter, you must reaload the configuration for the changes to take effect.

$ zmmtactl reload

Removing Rights to Users for any Distribution List[edit]

Modifying and revoking grants

If you want to remove or modify permissions, you'll need to use 'zmprov rvr' instead of 'zmprov grr'.

Example of removing sendToDistList permissions for a user:

$ zmprov rvr dl distributionlist@domain.com usr user@domain.com sendToDistList

After granting or revoking rights for the milter, you must reaload the configuration for the changes to take effect.

$ zmmtactl reload

Reference[edit]

Reference : http://wiki.zimbra.com/wiki/Enabling_and_administering_the_Zimbra_milter

NOTE: Before doing the above exercise be ensure that distribution list must be exists. and let client add the member to that distribution list.