Re: Amavis + Postfix + Clamav
experimenta(não a cerveja) comentar as linhas referentes ao clamd da sessão de antivirus primario e restarta o serviço.
Abraços
--
Júlio César de Magalhães
Analista de Suporte - Poliedro/FNDE
(61) 81177547 Brasília - DF
> >>Mar 17 18:35:38 diamond amavis[28928]: Using internal av scanner code
> >>for (primary) Clam Antivirus-clamd
> >>Mar 17 18:35:38 diamond amavis[28928]: Found secondary av scanner Clam
> >>Antivirus - clamscan at /usr/bin/clamscan
> >>
> >>Iniciando o Clamd... nao tem problemas....
> >>
> >>
> >>inicio o postfix .... tudo ok... agora qdo chega um virus ... olha só
> >>
> >>Mar 17 18:38:16 diamond postfix/qmgr[29031]: 20D3516DC7:
> >>from=<thiagozerbinato@yahoo.com.br>, size=1557, nrcpt=1 (queue active)
> >>Mar 17 18:38:16 diamond amavis[28929]: (28929-01) ESMTP::10024
> >>/var/lib/amavis/amavis-20040317T183816-28929:
> >><thiagozerbinato@yahoo.com.br> -> <thiagomz@logisticaeprocessos.com.br>
> >>Received: SIZE=1557 from diamond ([127.0.0.1]) by localhost (diamond
> >>[127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 28929-01 for
> >><thiagomz@logisticaeprocessos.com.br>; Wed, 17 Mar 2004 18:38:16 -0300 (BRT)
> >>Mar 17 18:38:16 diamond amavis[28929]: (28929-01) Checking:
> >><thiagozerbinato@yahoo.com.br> -> <thiagomz@logisticaeprocessos.com.br>
> >>Mar 17 18:38:16 diamond amavis[28929]: (28929-01) Clam Antivirus-clamd:
> >>Can't connect to UNIX socket /var/run/clamd.ctl: No such file or
> >>directory, retrying (1)
> >>Mar 17 18:38:16 diamond postfix/smtpd[29038]: disconnect from
> >>smtp104.mail.sc5.yahoo.com[66.163.169.223]
> >>Mar 17 18:38:17 diamond amavis[28929]: (28929-01) Clam Antivirus-clamd:
> >>Can't connect to UNIX socket /var/run/clamd.ctl: No such file or
> >>directory, retrying (2)
> >>Mar 17 18:38:23 diamond amavis[28929]: (28929-01) Clam Antivirus-clamd:
> >>Can't connect to UNIX socket /var/run/clamd.ctl: No such file or
> >>directory, retrying (3)
> >>Mar 17 18:38:34 diamond amavis[28929]: (28929-01) Clam Antivirus-clamd
> >>av-scanner FAILED: Too many retries to talk to /var/run/clamd.ctl (Can't
> >>connect to UNIX socket /var/run/clamd.ctl: No such file or directory) at
> >>(eval 34) line 179.
> >>Mar 17 18:38:34 diamond amavis[28929]: (28929-01) WARN: all primary
> >>virus scanners failed, considering backups
> >>Mar 17 18:38:35 diamond amavis[28929]: (28929-01) local delivery:
> >><thiagozerbinato@yahoo.com.br> -> <virus-quarantine>,
> >>mbx=/var/lib/amavis/virusmails/virus-20040317-183835-28929-01
> >>Mar 17 18:38:35 diamond amavis[28929]: (28929-01) SEND via SMTP:
> >>[127.0.0.1:10025] <> -> <thiagozerbinato@yahoo.com.br>
> >>Mar 17 18:38:35 diamond postfix/smtpd[29048]: connect from
> >>localhost[127.0.0.1]
> >>Mar 17 18:38:35 diamond postfix/smtpd[29048]: D7F1817CA7:
> >>client=localhost[127.0.0.1]
> >>Mar 17 18:38:35 diamond postfix/cleanup[29039]: D7F1817CA7:
> >>message-id=<VS28929-01@diamond>
> >>Mar 17 18:38:35 diamond postfix/qmgr[29031]: D7F1817CA7: from=<>,
> >>size=3740, nrcpt=1 (queue active)
> >>Mar 17 18:38:35 diamond postfix/smtpd[29048]: disconnect from
> >>localhost[127.0.0.1]
> >>Mar 17 18:38:35 diamond amavis[28929]: (28929-01) INFECTED
> >>(Eicar-Test-Signature), <thiagozerbinato@yahoo.com.br> ->
> >><thiagomz@logisticaeprocessos.com.br>, quarantine
> >>virus-20040317-183835-28929-01, Message-ID:
> >><4058C3FE.1000504@yahoo.com.br>, Hits: -
> >>Mar 17 18:38:35 diamond amavis[28929]: (28929-01) TIMING [total 19939
> >>ms] - SMTP EHLO: 8 (0%), SMTP pre-MAIL: 1 (0%), mkdir tempdir: 1 (0%),
> >>create email.txt: 1 (0%), SMTP pre-DATA-flush: 6 (0%), SMTP DATA: 32
> >>(0%), body hash: 1 (0%), mkdir parts: 1 (0%), mime_decode: 47 (0%),
> >>get-file-type: 15 (0%), get-file-type: 10 (0%), decompose_part: 3 (0%),
> >>decompose_part: 1 (0%), parts: 0 (0%), AV-scan-1: 18033 (90%),
> >>AV-scan-2: 1629 (8%), write-header: 8 (0%), save-to-local-mailbox: 1
> >>(0%), fwd-connect: 61 (0%), fwd-mail-from: 3 (0%), fwd-rcpt-to: 3 (0%),
> >>write-header: 6 (0%), fwd-data: 26 (0%), fwd-data-end: 34 (0%),
> >>fwd-rundown: 2 (0%), unlink-2-files: 6 (0%), rundown: 1 (0%)
> >>Mar 17 18:38:35 diamond postfix/smtp[29044]: 20D3516DC7:
> >>to=<thiagomz@logisticaeprocessos.com.br>, relay=127.0.0.1[127.0.0.1],
> >>delay=20, status=sent (250 2.5.0 Ok, id=28929-01, BOUNCE)
> >>Mar 17 18:38:38 diamond postfix/smtp[29033]: D7F1817CA7:
> >>to=<thiagozerbinato@yahoo.com.br>,
> >>relay=mx2.mail.yahoo.com[64.157.4.78], delay=3, status=sent (250 ok
Reply to: