1834488 Members
3496 Online
110067 Solutions
New Discussion

openmail / sendmail

 
SOLVED
Go to solution
John Carr_2
Honored Contributor

openmail / sendmail

Hi everyone

I have 10:20 server running openmail B4786A release B.06.00.00 the following patches are installed PHSS_16992 and PHSS_22699.

I am told we have a problem in that it is possible to bind to the LDAP tree anonymously.

I have the latest patch release for sendmail PHNE_28760 but as far as I can see there is no mention of this being patched.

how can i test to make sure this is true that we can bind to the LDAP tree ?

do I need different patches ?

all help appreciated
John.
14 REPLIES 14
Bill Hassell
Honored Contributor

Re: openmail / sendmail

OpenMail was sold to Samsung back in 2001 and HP-UX 10.20 went completely obsolete June 2003. I vaguely remember some work was going on in the OpenMail team for LDAP enhancements but I don't know that these were ever released before OpenMail evolved into Samsung Contact product. Details: http://www.openmail.com/cyc/om/00/ and http://www.samsungcontact.com/en/support/faq.php
Note that all the HP OpenMail web pages have 2001 dates on them but the documents indicate that HP will 'support' OpenMail with no enhancements until 2006.


Bill Hassell, sysadmin
John Carr_2
Honored Contributor

Re: openmail / sendmail

thanks Bill
John Carr_2
Honored Contributor

Re: openmail / sendmail

Hi all

ok HP has ditched OpenMail but I need to read the manuals for OpenMail.OM-LDAP B.06.00 and I cannot find them lots of points for first thread direct to document manual page.

:-) John.
Hoefnix
Honored Contributor

Re: openmail / sendmail

I thought the gave/sold it to samsung. Now samsungcontact.
try http://www.samsungcontact.com I don't know if these guy's also support the old HP versions and have the documentation you are looking for,but you can try to post a support call on their site.

Regards,

Peter
Bill Hassell
Honored Contributor
Solution

Re: openmail / sendmail

John Carr_2
Honored Contributor

Re: openmail / sendmail

thanks Bill looks like a lot of reading tomorrow. Unless of course you know how to disable anonymous user from binding to the ldap tree

cheers
John.
Jeff Schussele
Honored Contributor

Re: openmail / sendmail

Hi John,

Appears you may need a newer OpenMail cumulative patch - specifically PHSS_20776 or better.

I see this JAG in it:

CR: JAGab83274 SR: 8606110525
Openmail LDAP server does not force an unbind of an
authenticated session when an anonymous bind is received.
This is supposed to be LDAP V3
functionality.

THE most current 10.2 OpenMail cumulative is PHSS_29063 (June '03) and is available here:

http://www1.itrc.hp.com/service/patch/patchDetail.do?BC=patch.breadcrumb.search|&patchid=PHSS_29063&context=hpux:800:10:20

HTH,
Jeff
PERSEVERANCE -- Remember, whatever does not kill you only makes you stronger!
Jeff Schussele
Honored Contributor

Re: openmail / sendmail

Sorry - OpenMail patches are periodic - not cumulative. And there about 20 between the one I noted & the current one. BUT if you get the current - you'll get 'em all.
But I really think this will solve your problem.

Rgds,
Jeff
PERSEVERANCE -- Remember, whatever does not kill you only makes you stronger!
John Carr_2
Honored Contributor

Re: openmail / sendmail

Jeff

I got the patch thanks. The link you posted takes me to the forum login page !!!

:-) John
John Carr_2
Honored Contributor

Re: openmail / sendmail

Jeff

Is it possible to pull out an individual patch from the cumulative patch bundle. I will not be able to take the risk of installing the complete bundle on a production server and we have no test or backup servers.

John.
Jeff Schussele
Honored Contributor

Re: openmail / sendmail

Hi John,

Sorry, I forgot you're on the Euro server & my links won't work for you. Just go to the patch DB on the Euro server & search directly for either of those patches.

Well, I don't think you can only pull an individual patch out of a cumulative set, but what you can do is load an earlier cumulative patch - like PHSS_20776 & it won't be as heavily loaded as a more recent cumulative patch. But get 20776 or later as that's the one that addresses your problem. If you go to the newsest, you can scroll down it's "history" & see all the JAGs & resolutions & get a good idea about what it's doing.
I used to be an OM Admin & I never had any trouble with the OM periodic patches - but I stayed current with them & never had huge "leaps" to make either.

Rgds,
Jeff
PERSEVERANCE -- Remember, whatever does not kill you only makes you stronger!
John Carr_2
Honored Contributor

Re: openmail / sendmail

Jeff

mgmt have decided to live with the issue as we are to decomission the system soon. Thanks everyone for your input.

John.
Andrew Merritt_2
Honored Contributor

Re: openmail / sendmail

Hi,
Here's a statement that should clarify the support position of OpenMail.

Andrew
======

Firstly HP has not "sold" OpenMail to Samsung (Samsung Contact). HP has licensed the OpenMail technology and code to Samsung to allow them to develop the product further. All they have is copies of the source code. They do not have the rights to knowledge about our customer base, nor do the support OpenMail for our customer base. OpenMail is still supported by HP for our existing customers through to March 31st 2006. Just for your interest HP has licensed the OpenMail technology to another company as well.

It is not true that "all the OpenMail pages have 2001" on them. The pages that announce the "shut down" and the FAQ associated with that have 2001 but that was when it was announced. There is no need to change the dates! As there is no change to the pages anymore due to no ongoing development the pages will have the date they were created/modified.

All the OpenMail documentation is fully available on the OpenMail external website at www/hp.com/go/openmail. If you search on LDAP you will get many hits, including the ones highlighted in this thread.

As HP-UX 10-20 was not supported beyond June 2003 the June 03 PP (PHSS_29063) was not only the most recent but also the LAST 10.20 OpenMail PP!

The OpenMail patches are cumulative. The latest has all the fixes that have ever been done on OpenMail releas 6.0 or 7.0. We, the lab, call them periodic as we usually release them on a regular period (quarterly). Note this has not been the case since September 2003 due to a lack of defects to fix!

Regards
Mike Richardson
OpenMail Project Manager
John Carr_2
Honored Contributor

Re: openmail / sendmail

Mike

thankyou for the clarification on openmail enjoy the points.

John.