Здравствуйте. На корпоративном сервере стоит Debian с Postfix. Есть две проблемы:
1. Не хочет работать с TLS
2. Не принимает почту с gmail.comlog:
Feb 15 19:11:37 домен postfix/smtpd[12807]: warning: cannot get RSA private key from file /etc/ssl/certs/mail.домен.ru.crt: disabling TLS support
Feb 15 19:11:37 домен postfix/smtpd[12807]: warning: TLS library problem: 12807:error:0906D06C:PEM routines:PEM_read_bio:no start line:pem_lib.c:650:Expecting: ANY PRIVATE KEY:
Feb 15 19:11:37 домен postfix/smtpd[12807]: warning: TLS library problem: 12807:error:140B0009:SSL routines:SSL_CTX_use_PrivateKey_file:PEM lib:ssl_rsa.c:669:
Feb 15 19:11:57 домен postfix/smtpd[12807]: connect from mail-lb0-f177.google.com[209.85.217.177]
Feb 15 19:11:57 домен postfix/cleanup[12810]: D0468C50E28: message-id=<20130215151157.D0468C50E28@mail.домен.ru>
Feb 15 19:11:57 домен postfix/smtpd[12807]: disconnect from mail-lb0-f177.google.com[209.85.217.177]
Feb 15 19:11:57 домен postfix/qmgr[12770]: D0468C50E28: from=<double-bounce@mail.домен.ru>, size=927, nrcpt=1 (queue active)
Feb 15 19:11:57 домен postfix/smtp[12812]: D0468C50E28: to=<postmaster@mail.домен.ru>, orig_to=<postmaster>, relay=none, delay=0, delays=0/0/0/0, dsn=5.4.6, status=bounced (mail for mail.домен.ru loops back to myself)
Feb 15 19:11:57 домен postfix/bounce[12813]: warning: D0468C50E28: undeliverable postmaster notification discarded
Feb 15 19:11:57 домен postfix/qmgr[12770]: D0468C50E28: removed
main.cf:
biff = no
smtpd_tls_session_cache_database = btree:${data_directory}/smtpd_scache
smtp_tls_session_cache_database = btree:${data_directory}/smtp_scache
html_directory = /usr/share/doc/postfix/html
myhostname = mail.домен.ru
alias_maps = hash:/etc/aliases
alias_database = hash:/etc/aliases
myorigin = /etc/mailname
mydestination =
#relayhost =
mynetworks = 127.0.0.0/8 [::ffff:127.0.0.0]/104 [::1]/128 91.197.190.0/24 91.223.105.190/32
mailbox_size_limit = 0
message_size_limit = 0
recipient_delimiter = +
inet_interfaces = all
virtual_alias_domains =
virtual_alias_maps = proxy:mysql:/etc/postfix/mysql-forwards.cf, mysql:/etc/postfix/mysql-email.cf
virtual_mailbox_domains = proxy:mysql:/etc/postfix/mysql-domains.cf
virtual_mailbox_maps = proxy:mysql:/etc/postfix/mysql-mailboxes.cf
virtual_mailbox_base = /home/vmail
virtual_mailbox_limit = 0
virtual_uid_maps = static:5000
virtual_gid_maps = static:5000
proxy_read_maps = $local_recipient_maps $mydestination $virtual_alias_maps $virtual_alias_domains $virtual_mailbox_maps $virtual_mailbox_domains $relay_recipient_maps $relay_domains $canonical_maps $sender_canonical_maps $reci$...
smtpd_sasl_auth_enable = yes
broken_sasl_auth_clients = yes
smtpd_sasl_authenticated_header = yes
smtpd_recipient_restrictions = permit_mynetworks, permit_sasl_authenticated, reject_unauth_destination
smtpd_use_tls = yes
#smtpd_tls_cert_file = /etc/ssl/certs/mail.mail.ru.crt
smtpd_tls_cert_file = /etc/ssl/certs/mail.домен.ru.crt
smtpd_tls_key_file = $smtpd_tls_cert_file
Вопрос: где Я ошибся при настройке? Что надо исправить? Есть ли еще что желательно поправить? (в debian первый раз)