ISPConfig 3 issueshttps://git.ispconfig.org/ispconfig/ispconfig3/-/issues2020-08-31T14:56:46Zhttps://git.ispconfig.org/ispconfig/ispconfig3/-/issues/1114Support for MongoDB2020-08-31T14:56:46ZMichael FürmannSupport for MongoDBNoSQL Databases are getting more and more important.
After some customers asked me for MongoDB Databases I installed it on one server.
But the databases and users have to be managed by myself.
The create-database mask already has a fiel...NoSQL Databases are getting more and more important.
After some customers asked me for MongoDB Databases I installed it on one server.
But the databases and users have to be managed by myself.
The create-database mask already has a field 'type' which offers only MySQL at the moment.
I'd like to have MongoDB as first NoSQL database selectable in this box.https://git.ispconfig.org/ispconfig/ispconfig3/-/issues/5435SSL missing for apache apps container2020-08-31T09:50:35ZChristophSSL missing for apache apps containerHi Guys
Would it be possible to add SSL to the apps vhost?
Because all of my ispconfig sites have SSL and most modern browsers deny usage of http if https on a domain has been used already once, it is necessary, to add SSL also to the ...Hi Guys
Would it be possible to add SSL to the apps vhost?
Because all of my ispconfig sites have SSL and most modern browsers deny usage of http if https on a domain has been used already once, it is necessary, to add SSL also to the apps container, which does not work in SSL mode now. If I update ispconfig, it keeps killing my setup and I have to manually update /usr/local/ispconfig/server/conf/apache_apps.vhost.master always to contain also the SSL settings from /etc/apache2/sites-enabled/000-ispconfig.vhost.
Please find attached my version. Would be great if that could find its way into the official distribution and updates.
[apache_apps.vhost.master](/uploads/aa904bd90130ef835e5213dcdd5639bb/apache_apps.vhost.master)
Kind regards
Christoph3.2https://git.ispconfig.org/ispconfig/ispconfig3/-/issues/3755Disable SSL fields on SSL tab if Let's Encrypt is enabled2020-08-30T22:29:43ZMarius BurkardDisable SSL fields on SSL tab if Let's Encrypt is enabledAs Let's Encrypt certificate is issued for all domains, alias domains and subdomains, the ssl tab fields are not needed.As Let's Encrypt certificate is issued for all domains, alias domains and subdomains, the ssl tab fields are not needed.3.1https://git.ispconfig.org/ispconfig/ispconfig3/-/issues/5492elasticsearch + apache2020-08-30T21:55:23Zbrodyelasticsearch + apachehighly desirable elasticsearch and apache integration needed as a default option in ispconfig
more detaials
https://devdocs.magento.com/guides/v2.3/config-guide/elasticsearch/es-config-apache.htmlhighly desirable elasticsearch and apache integration needed as a default option in ispconfig
more detaials
https://devdocs.magento.com/guides/v2.3/config-guide/elasticsearch/es-config-apache.htmlhttps://git.ispconfig.org/ispconfig/ispconfig3/-/issues/5584Delete SSL directory references for vhost subdomains2020-08-30T16:50:46ZKoSDelete SSL directory references for vhost subdomainsWhen a vhost subdomain gets deleted, any associated files, like the Lets Encrypt/certbot symlinks in the SSL subdir, shall be removed. In addition the associated certbot configurations should be removed too, see #5583When a vhost subdomain gets deleted, any associated files, like the Lets Encrypt/certbot symlinks in the SSL subdir, shall be removed. In addition the associated certbot configurations should be removed too, see #5583https://git.ispconfig.org/ispconfig/ispconfig3/-/issues/1528let clients change the website DocumentRoot within the default DocumentRoot2020-08-30T16:44:43ZJustin Albstmeijerlet clients change the website DocumentRoot within the default DocumentRootSimilar request as
http://www.howtoforge.com/forums/showthread.php?t=48279
I too get requests from Zend and other framework users that need a clean folder for their website code checkout (svn) but need to distinguish between private an...Similar request as
http://www.howtoforge.com/forums/showthread.php?t=48279
I too get requests from Zend and other framework users that need a clean folder for their website code checkout (svn) but need to distinguish between private and public code.
So it would be great if a user could configure a suffix to the default DocumentRoot in the website config like, "/public"
Making the DocumentRoot /var/www/website/web/public
This would allow the client to checkout the code in /var/www/website/web/ and have /var/www/website/web/private containing libraries and other stuff that does need to be publicly accessible.
Currently I have to override the DocumentRoot as admin user like the forum post mentions.
Would be better if clients could do this themselves.https://git.ispconfig.org/ispconfig/ispconfig3/-/issues/5468allow axfr range instead of only ipaddress2020-08-30T16:18:47Zcommentatorallow axfr range instead of only ipaddresswould be nice if we can add an axfr range instead of only ipaddresses.
See also https://www.howtoforge.com/community/threads/axfr-range.82959/#post-395710would be nice if we can add an axfr range instead of only ipaddresses.
See also https://www.howtoforge.com/community/threads/axfr-range.82959/#post-395710https://git.ispconfig.org/ispconfig/ispconfig3/-/issues/3017Forward e-mail with or without keeping original message2020-08-29T10:18:59ZAntalForward e-mail with or without keeping original messageMake it possible to forward e-mail with or without keeping the original message in the mailbox, without having to make a forwarding address.
In some cases the mailbox has to exist to be able to send e-mail authenticated via SMTP but inc...Make it possible to forward e-mail with or without keeping the original message in the mailbox, without having to make a forwarding address.
In some cases the mailbox has to exist to be able to send e-mail authenticated via SMTP but incoming e-mail is forwarded to another address.
I'm able to do this with the custom rule below but it would be great if this is an option in ISPConfig.
redirect "forwarding@tothisdomain.tld";
stop;https://git.ispconfig.org/ispconfig/ispconfig3/-/issues/3052Truncate ISP Log, and Filter 5, 15, .. All is ignored2020-08-28T19:35:34ZmintessTruncate ISP Log, and Filter 5, 15, .. All is ignoredThe server overview shows red - 1 error.
I click on "more information".
I click on "There are errors in your system log.. [more]"
I have hundreds of warnings and errors, and I believe I have to delete the log to get the server overview ...The server overview shows red - 1 error.
I click on "more information".
I click on "There are errors in your system log.. [more]"
I have hundreds of warnings and errors, and I believe I have to delete the log to get the server overview back to normal state.
Of course there is a "delete from log" icon but I have hundreds of entries...
Second, I want to see ALL entries (selectbox upper right) but 5 and ALL is ignores (5 is set to 15 which seems to be the minimum).
Besides, how can I access the ISP Log directly, there is no ISP Log menu item in the lower left mewnu bar (where all the other logs are linked)https://git.ispconfig.org/ispconfig/ispconfig3/-/issues/3096Make default pages configurable2020-08-28T19:19:20ZsdafsadfsdMake default pages configurableHello,
currently the list of default files that are being copied is hardcoded in "server/plugins-available/apache2_plugin.inc.php" which makes it very hard to customize.
Would be great if I could create some folder under conf-custom, l...Hello,
currently the list of default files that are being copied is hardcoded in "server/plugins-available/apache2_plugin.inc.php" which makes it very hard to customize.
Would be great if I could create some folder under conf-custom, like '/web-default' and it's contents would be copied to web folder of new sites. This would allow better flexibility.https://git.ispconfig.org/ispconfig/ispconfig3/-/issues/3092Installed packages - Date/Time column2020-08-28T19:18:13ZTihomir VlahovskiInstalled packages - Date/Time columnIn the Installed packages, there should be new colum added - Date/Time to indicate when package was installed.
Regards,
-TihoIn the Installed packages, there should be new colum added - Date/Time to indicate when package was installed.
Regards,
-Tihohttps://git.ispconfig.org/ispconfig/ispconfig3/-/issues/3074DNS zone failed to load2020-08-28T19:17:36ZTed StephensDNS zone failed to loadIf a zone did not load, due to a typo or other error. Need some way to know the zone did not load.If a zone did not load, due to a typo or other error. Need some way to know the zone did not load.https://git.ispconfig.org/ispconfig/ispconfig3/-/issues/4306Add function to lock and disable all assets of a client in remote API.2020-08-28T17:09:50ZTill BrehmAdd function to lock and disable all assets of a client in remote API.Add function to lock and disable all assets of a client in remote API.Add function to lock and disable all assets of a client in remote API.https://git.ispconfig.org/ispconfig/ispconfig3/-/issues/4885Add API functions for webdav users2020-08-28T16:31:36ZTill BrehmAdd API functions for webdav usersAdd API functions for webdav usersAdd API functions for webdav usershttps://git.ispconfig.org/ispconfig/ispconfig3/-/issues/3624Postfix and Dovecot configuration via web interface2020-08-27T13:45:57ZNicolas Panagiotis KarakoulisPostfix and Dovecot configuration via web interfaceConfigure Postfix and Dovecot and other similar services and tasks via web interface with as many options as possible. That would help clients and the admins for these tasks.
Best regardsConfigure Postfix and Dovecot and other similar services and tasks via web interface with as many options as possible. That would help clients and the admins for these tasks.
Best regards3.2https://git.ispconfig.org/ispconfig/ispconfig3/-/issues/5667Feature request - Whitelist from RBLs2020-08-27T13:45:12ZMarcin WilkFeature request - Whitelist from RBLsSince we can add RBL servers inside ISPConfig, i think there should be also some RBL Whitelist for hosts that are known for us, but blocked by some of RBLs that we use.Since we can add RBL servers inside ISPConfig, i think there should be also some RBL Whitelist for hosts that are known for us, but blocked by some of RBLs that we use.3.2https://git.ispconfig.org/ispconfig/ispconfig3/-/issues/2065Postfix HELO_Restrictions2020-08-27T13:44:33ZAlexPostfix HELO_RestrictionsFor fighting against SPAM with Postfix helo_restrictions it would be nice to have a Input-Field.
The Option "check_helo_access hash:/etc/postfix/helo_access" in smtpd_helo_restrictions
must not be databaseintegrated.
/etc/postfix/main....For fighting against SPAM with Postfix helo_restrictions it would be nice to have a Input-Field.
The Option "check_helo_access hash:/etc/postfix/helo_access" in smtpd_helo_restrictions
must not be databaseintegrated.
/etc/postfix/main.cf
smtpd_helo_required = yes
smtpd_helo_restrictions = permit_mynetworks, permit_sasl_authenticated, check_helo_access hash:/etc/postfix/helo_access,reject_non_fqdn_helo_hostname, reject_invalid_helo_hostname, reject_unknown_helo_hostname3.2https://git.ispconfig.org/ispconfig/ispconfig3/-/issues/5472postfix/main.cf: missing proxy: prefix on some mysql lookup tables2020-08-27T13:37:30ZRobert Breithuberpostfix/main.cf: missing proxy: prefix on some mysql lookup tables## short description
because some of the mysql lookup tables are not prefixed with "proxy:" in /etc/postfix/main.cf there can are many (sleeping) mysql processes, some idling almost forever, they will block db access if the server reache...## short description
because some of the mysql lookup tables are not prefixed with "proxy:" in /etc/postfix/main.cf there can are many (sleeping) mysql processes, some idling almost forever, they will block db access if the server reaches max_connections.
## correct behaviour
the recommended configuration is to use postfix proxymap servers for mysql lookup tables, sharing connections, it will reduce mysql connections to a minimum.
## environment
debian buster - ISPConfig 3.1.15p2
## proposed fix
add proxy: to all mysql lookup tables, and adjust proxy_read_maps
## screenshots
on a Server with "untouched" postfix/main.cf
![Bildschirmfoto_von_2019-12-02_15-21-59](/uploads/5094d28a9e1ffa2cf3d6590cb53510f9/Bildschirmfoto_von_2019-12-02_15-21-59.png)
on a Server where i added proxy: to all mysql tables and adjusted proxy_read_maps:
![Bildschirmfoto_von_2019-12-02_15-23-29](/uploads/58bca231b1c794fdde3a8103f53ee1f2/Bildschirmfoto_von_2019-12-02_15-23-29.png)
after the change the processes which sleep at most, are the two from amavis (one for IPv4, one for IPv6), they sleep until there is a mail incoming, all other connections seem to be terminated within less than a minute.3.2https://git.ispconfig.org/ispconfig/ispconfig3/-/issues/1251Reject forged/spoofed email addresses2020-08-27T13:37:13ZFalko Timmef.timme@timmehosting.deReject forged/spoofed email addresseshttp://www.howtoforge.com/forums/showthread.php?t=49929http://www.howtoforge.com/forums/showthread.php?t=499293.2https://git.ispconfig.org/ispconfig/ispconfig3/-/issues/3769Configuration improvement suggestion for postfix 2.10+2020-08-27T13:36:15ZEricConfiguration improvement suggestion for postfix 2.10+In http://www.postfix.org/SMTPD_ACCESS_README.html#danger Vietse advises to specify relay policy under smtpd_relay_restrictions and spam blocking policy under smtpd_recipient_restrictions.
Cause: "Then, a permissive spam blocking policy...In http://www.postfix.org/SMTPD_ACCESS_README.html#danger Vietse advises to specify relay policy under smtpd_relay_restrictions and spam blocking policy under smtpd_recipient_restrictions.
Cause: "Then, a permissive spam blocking policy will not result in a permissive mail relay policy."
Current configuration looks like this:
smtpd_recipient_restrictions = permit_mynetworks, permit_sasl_authenticated, reject_unauth_destination, check_recipient_access mysql:/etc/postfix/mysql-virtual_recipient.cf
which seems to be ok, but invites for errors in case of manual reconfiguration.3.2