Can't manage to login on ISPConfig after fresh install

Discussion in 'Installation/Configuration' started by NicolasL, Oct 3, 2019.

  1. NicolasL

    NicolasL New Member

    Hi evryone,
    I'm turning crazy.
    I'm trying to install from a fresh Ubuntu 18.04.3 ispconfig, evrything go allright but at the end can't log on ispconfig ...
    i've follow : https://www.howtoforge.com/tutorial...l-pureftpd-bind-postfix-doveot-and-ispconfig/
    Here the report :
    --
    Code:
    ##### SERVER #####
    IP-address (as per hostname): ***.***.***.***
    [WARN] could not determine server's ip address by ifconfig
    [INFO] OS version is Ubuntu 18.04.3 LTS
    
    [INFO] ISPConfig is installed.
    
    ##### ISPCONFIG #####
    ISPConfig version is 3.1dev
    
    
    ##### VERSION CHECK #####
    
    [INFO] php (cli) version is 7.2.19-0ubuntu***.***.***.***
    
    ##### PORT CHECK #####
    
    [WARN] Port 465 (SMTP server SSL) seems NOT to be listening
    
    ##### MAIL SERVER CHECK #####
    
    [WARN] I found no "submission" entry in your postfix master.cf
    [INFO] this is not critical, but if you want to offer port 587 for smtp connections you have to enable this.
    [WARN] I found no "smtps" entry in your postfix master.cf
    [INFO] this is not critical, but if you want to offer SSL for smtp (not TLS) connections you have to enable this.
    
    ##### RUNNING SERVER PROCESSES #####
    
    [INFO] I found the following web server(s):
            Apache 2 (PID 29467)
    [INFO] I found the following mail server(s):
            Unknown process (smtpd) (PID 2152)
    [INFO] I found the following pop3 server(s):
            Dovecot (PID 29449)
    [INFO] I found the following imap server(s):
            Dovecot (PID 29449)
    [INFO] I found the following ftp server(s):
            PureFTP (PID 29496)
    
    ##### LISTENING PORTS #####
    (only           ()
    Local           (Address)
    [localhost]:10025               (29404/master)
    [localhost]:10026               (29438/amavisd-new)
    [localhost]:10027               (29404/master)
    [localhost]:11211               (1402/memcached)
    [anywhere]:110          (29449/dovecot)
    [anywhere]:143          (29449/dovecot)
    ***.***.***.***:53              (29509/named)
    [localhost]:53          (29509/named)
    [anywhere]:21           (29496/pure-ftpd)
    ***.***.***.***:53              (474/systemd-resolve)
    [anywhere]:22           (550/sshd)
    [localhost]:953         (29509/named)
    [anywhere]:25           (2152/smtpd)
    [anywhere]:993          (29449/dovecot)
    [anywhere]:995          (29449/dovecot)
    [localhost]:10023               (29138/postgrey)
    [localhost]:10024               (29438/amavisd-new)
    *:*:*:*::*:10026                (29438/amavisd-new)
    *:*:*:*::*:3306         (29151/mysqld)
    [localhost]10           (29449/dovecot)
    [localhost]43           (29449/dovecot)
    *:*:*:*::*:8080         (29467/apache2)
    *:*:*:*::*:80           (29467/apache2)
    *:*:*:*::*:8081         (29467/apache2)
    *:*:*:*::*:53           (29509/named)
    *:*:*:*::*:21           (29496/pure-ftpd)
    *:*:*:*::*:22           (550/sshd)
    *:*:*:*::*:953          (29509/named)
    *:*:*:*::*:25           (2152/smtpd)
    *:*:*:*::*:443          (29467/apache2)
    *:*:*:*::*:993          (29449/dovecot)
    *:*:*:*::*:995          (29449/dovecot)
    *:*:*:*::*:10023                (29138/postgrey)
    *:*:*:*::*:10024                (29438/amavisd-new)
    
    
    
    
    ##### IPTABLES #####
    Chain INPUT (policy ACCEPT)
    target     prot opt source               destination
    f2b-sshd   tcp  --  [anywhere]/0            [anywhere]/0            multiport dports 22
    
    Chain FORWARD (policy ACCEPT)
    target     prot opt source               destination
    
    Chain OUTPUT (policy ACCEPT)
    target     prot opt source               destination
    
    Chain f2b-sshd (1 references)
    target     prot opt source               destination
    REJECT     all  --  ***.***.***.***       [anywhere]/0            reject-with icmp-port-unreachable
    REJECT     all  --  ***.***.***.***        [anywhere]/0            reject-with icmp-port-unreachable
    REJECT     all  --  ***.***.***.***        [anywhere]/0            reject-with icmp-port-unreachable
    REJECT     all  --  ***.***.***.***        [anywhere]/0            reject-with icmp-port-unreachable
    REJECT     all  --  ***.***.***.***       [anywhere]/0            reject-with icmp-port-unreachable
    REJECT     all  --  ***.***.***.***       [anywhere]/0            reject-with icmp-port-unreachable
    REJECT     all  --  ***.***.***.***        [anywhere]/0            reject-with icmp-port-unreachable
    REJECT     all  --  ***.***.***.***         [anywhere]/0            reject-with icmp-port-unreachable
    REJECT     all  --  ***.***.***.***        [anywhere]/0            reject-with icmp-port-unreachable
    RETURN     all  --  [anywhere]/0            [anywhere]/0
    
    I've got also some strange log on apache : error.log
    Code:
    [Thu Oct 03 12:53:32.160672 2019] [core:notice] [pid 25521] AH00094: Command line: '/usr/sbin/apache2'
    [Thu Oct 03 13:08:25.317322 2019] [mpm_prefork:notice] [pid 25521] AH00169: caught SIGTERM, shutting down
    [Thu Oct 03 13:08:25.497196 2019] [ssl:warn] [pid 29465] AH01906: my-remove-forprivacy-fqdn.com:8080:0 server certificate is a CA certificate (BasicConstraints: CA == TRUE !?)
    [Thu Oct 03 13:08:25.497479 2019] [ssl:error] [pid 29465] AH02217: ssl_stapling_init_cert: can't retrieve issuer certificate! [subject: CN=smy-remove-forprivacy-fqdn.com,O=Internet Widgits Pty Ltd,L=,ST=,C=FR / issuer: CN=my-remove-forprivacy-fqdn.com,O=Internet Widgits Pty Ltd,L=,ST=,C=FR / serial: 6E6E3E98F95FFAB2DE71F5000D6877DF21F700FF / notbefore: Oct  3 11:08:13 2019 GMT / notafter: Sep 30 11:08:13 2029 GMT]
    [Thu Oct 03 13:08:25.497495 2019] [ssl:error] [pid 29465] AH02604: Unable to configure certificate my-remove-forprivacy-fqdn.com:8080:0 for stapling
    [Thu Oct 03 13:08:25.497542 2019] [suexec:notice] [pid 29465] AH01232: suEXEC mechanism enabled (wrapper: /usr/lib/apache2/suexec)
    [Thu Oct 03 13:08:25.611150 2019] [:error] [pid 29467] python_init: Python version mismatch, expected '2.7.6', found '2.7.15+'.
    [Thu Oct 03 13:08:25.632879 2019] [:error] [pid 29467] python_init: Python executable found '/usr/bin/python'.
    [Thu Oct 03 13:08:25.632916 2019] [:error] [pid 29467] python_init: Python path being used '/usr/lib/python2.7:/usr/lib/python2.7/plat-x86_64-linux-gnu:/usr/lib/python2.7/lib-tk:/usr/lib/python2.7/lib-old:/usr/lib/python2.7/lib-dynload'.
    [Thu Oct 03 13:08:25.632964 2019] [:notice] [pid 29467] mod_python: Creating 8 session mutexes based on 150 max processes and 0 max threads.
    [Thu Oct 03 13:08:25.632978 2019] [:notice] [pid 29467] mod_python: using mutex_directory /tmp
    [Thu Oct 03 13:08:25.805561 2019] [ssl:warn] [pid 29467] AH01906: my-remove-forprivacy-fqdn.com:8080:0 server certificate is a CA certificate (BasicConstraints: CA == TRUE !?)
    [Thu Oct 03 13:08:25.816359 2019] [mpm_prefork:notice] [pid 29467] AH00163: Apache/2.4.29 (Ubuntu) mod_fcgid/2.3.9 mod_python/3.3.1 Python/2.7.15+ OpenSSL/1.1.1 configured -- resuming normal operations
    
    
    If anybody have an idea ...
    Thanks a lot
     
  2. till

    till Super Moderator Staff Member ISPConfig Developer

  3. NicolasL

    NicolasL New Member

    Sorry, in fact i haven't any ask for password just : ERR_CONNECTION_RESET by chromium
     
  4. till

    till Super Moderator Staff Member ISPConfig Developer

    Then you might have made a mistake while generating the ssl certificate. run ispconfig_update.sh on the shell, choose git-stable as version to be installed, choose to reconfigure services during update and choose to create a new ssl certificate when the updater asks.

    There are other issues as well on your server, according to the test script, you did not edit postfix master.cf as shown in perfect server tutorial. Fix this as you won't be able to use the mail server otherwise.
     
  5. NicolasL

    NicolasL New Member

    Ok it is good now thanks for your time !
     

Share This Page