{"id":10101,"date":"2024-12-02T16:44:31","date_gmt":"2024-12-02T07:44:31","guid":{"rendered":"https:\/\/www.k-in.co.jp\/niwakan\/?p=10101"},"modified":"2026-05-22T16:54:35","modified_gmt":"2026-05-22T07:54:35","slug":"mail-server%e3%81%ae%e7%a7%bb%e8%a1%8c%ef%bc%88%e3%81%9d%e3%81%ae43%ef%bc%89postfix%e3%80%81dovecot%e3%81%ae%e5%86%8d%e6%a7%8b%e7%af%89","status":"publish","type":"post","link":"https:\/\/www.k-in.co.jp\/niwakan\/archives\/2024\/12\/10101\/","title":{"rendered":"mail server\u306e\u79fb\u884c\uff08\u305d\u306e43\uff09Postfix\u3001Dovecot\u306e\u518d\u69cb\u7bc9"},"content":{"rendered":"<p>\u4f55\u3060\u304b\u3001\u6c17\u304c\u4ed8\u3044\u305f\u3089amavisd\u304c\u843d\u3061\u3066\u3044\u305f\u3002<br \/>\n\u6b64\u308c\u3060\u3068Postfix\u304c\u30e1\u30fc\u30eb\u306e\u30c1\u30a7\u30c3\u30af\u306b\u6e21\u3057\u305f\u9014\u7aef\u30b3\u30b1\u308b\u3002<br \/>\n\u6b21\u304b\u3089\u6b21\u3078\u3068\u30df\u30b9\u304c\u9023\u9396\u3057\u3066\u3044\u308b\u6c17\u304c\u3059\u308b\u3002<br \/>\n<!--more--><\/p>\n<p>\u3055\u3066\u3001\u6c17\u3092\u53d6\u308a\u76f4\u3057\u3066\u76f4\u3059\u3053\u3068\u306b\u3059\u308b\u3002<br \/>\n\u5e7e\u3064\u304b\u306e\u30b5\u30a4\u30c8\u3092\u8fbf\u3063\u3066\u3001\u300e<a href=\"https:\/\/forum.iredmail.org\/topic12270-error-during-update-of-amavisdconf.html\">Error during update of amavisd.conf<\/a>\u300f\u306b\u8fbf\u308a\u7740\u3044\u305f\u3002<br \/>\n\u5176\u308c\u8fc4\u306b\u3082$hostname\u3084@mynetwork\u3084\u3089\u624b\u3092\u5165\u308c\u3066\u3044\u308b\u3002\uff08\u5165\u308c\u306a\u3044\u3068\u52d5\u304b\u306a\u3044\uff09<\/p>\n<p>diff\u3092\u53d6\u3063\u3066\u5dee\u5206\u304b\u3089\u3001\u5909\u66f4\u7b87\u6240\u3092\u8a18\u8f09\u3059\u308b\u3002<\/p>\n<pre class=\"height:300 lang:default decode:true\" title=\"amavisd.conf.diff\">@bypass_virus_checks_maps = (1);  # controls running of anti-virus code\r\n@bypass_spam_checks_maps  = (1);  # controls running of anti-spam code\r\n$bypass_decode_parts = 1;         # controls running of decoders&amp;dearchivers\r\n$daemon_user  = '_amavisd';     # (no default;  customary: vscan or amavis), -u\r\n$daemon_group  = '_amavisd';     # (no default;  customary: vscan or amavis), -g\r\n$mydomain = 'k-in.co.jp';   # a convenient default for other settings\r\n$MYHOME = '\/opt\/local\/var\/amavis';   # a convenient default for other settings, -H\r\n$QUARANTINEDIR = '\/opt\/local\/var\/amavis\/quarantine';  # -Q\r\n$inet_socket_port = 10024;   # listen on this local TCP port(s)\r\n$myhostname = 'mail.k-in.co.jp';\r\n  ['ClamAV-clamd',\r\n    \\&amp;ask_daemon, [\"CONTSCAN {}\\n\", \"\/opt\/local\/var\/run\/clamav\/clamd.socket\"],\r\n    qr\/\\bOK$\/m, qr\/\\bFOUND$\/m,\r\n    qr\/^.*?: (?!Infected Archive)(.*) FOUND$\/m ],<\/pre>\n<p>\u57fa\u672c\u7684\u306bpath\u306b\/opt\/local\u3092\u8ffd\u52a0\u3002<br \/>\n\u305d\u308c\u304b\u3089\u3001$mydomain\u3068$myhostname\u3092\u8a2d\u5b9a\u3002<br \/>\n\u53d7\u53d6\u7528\u306eport\u756a\u53f7\u3068\u3001clamd\u3092\u4f7f\u7528\u3059\u308b\u8a2d\u5b9a\u3092\u30b3\u30e1\u30f3\u30c8\u30a2\u30a6\u30c8\u3002<br \/>\n\u3068\u4e91\u3063\u305f\u51e6\u304b\u306a\u3002<\/p>\n<p>\u6b64\u308c\u3067\u6f38\u304fport\u304c\u958b\u3044\u305f\u3002<\/p>\n<p>\u4e00\u5fdcnmap\u306e\u7d50\u679c\u3002<\/p>\n<pre class=\"height:300 lang:default decode:true\" title=\"nmap localhost\">Starting Nmap 7.95 ( https:\/\/nmap.org ) at 2024-11-29 15:50 JST\r\nNmap scan report for localhost (127.0.0.1)\r\nHost is up (0.00093s latency).\r\nOther addresses for localhost (not scanned): ::1\r\nNot shown: 500 closed tcp ports (conn-refused), 476 filtered tcp ports (no-response)\r\nPORT      STATE SERVICE\r\n22\/tcp    open  ssh\r\n24\/tcp    open  priv-mail\r\n25\/tcp    open  smtp\r\n53\/tcp    open  domain\r\n80\/tcp    open  http\r\n143\/tcp   open  imap\r\n443\/tcp   open  https\r\n445\/tcp   open  microsoft-ds\r\n465\/tcp   open  smtps\r\n548\/tcp   open  afp\r\n587\/tcp   open  submission\r\n631\/tcp   open  ipp\r\n783\/tcp   open  spamassassin\r\n873\/tcp   open  rsync\r\n993\/tcp   open  imaps\r\n995\/tcp   open  pop3s\r\n2525\/tcp  open  ms-v-worlds\r\n3283\/tcp  open  netassistant\r\n3306\/tcp  open  mysql\r\n3689\/tcp  open  rendezvous\r\n5900\/tcp  open  vnc\r\n10024\/tcp open  unknown\r\n10025\/tcp open  unknown\r\n12345\/tcp open  netbus\r\n\r\nNmap done: 1 IP address (1 host up) scanned in 2.35 seconds<\/pre>\n<p>\u6b64\u306eport\u306b\u5bfe\u3059\u308bservice\u540d\u3092\u8ffd\u52a0\u3067\u304d\u306a\u3044\u3082\u306e\u304b\u306a\u3002<br \/>\n\u3068\u601d\u3063\u305f\u3089\u3001\u65e2\u306b\u9063\u3063\u3066\u5c45\u305f\u3002<br \/>\n\/etc\/service\u306b\u66f8\u304d\u8fbc\u3080\u3068\u5bfe\u5fdc\u3057\u3066\u5449\u308c\u308b\u2026\u2026\u7b48\u306a\u306e\u306b\u4f55\u6545\uff1f<\/p>\n<pre class=\"height:300 lang:default decode:true\" title=\/etc\/service\">#\r\n#### insert local port names ###\r\n#\r\nsmtp-amavis     10024\/tcp       # amavisd-new\r\npostfix-filter  10025\/tcp       # back to postfix from amavis<\/pre>\n<p>\u3061\u3083\u3093\u3068\u6700\u5f8c\u306b\u6b64\u51e6\u306b\u66f8\u3051\u3063\u3066\u66f8\u3044\u3066\u3042\u308b\u3058\u3083\u3093\uff01\u306a\u3093\u3067\u5bfe\u5fdc\u3057\u3066\u304f\u308c\u306a\u3044\u306e\uff1f<\/p>\n<p>openssl\u3067\u63a5\u7d9a\u3057\u3066\u307f\u305f\u7d50\u679c\u3002<\/p>\n<pre class=\"height:300 lang:default decode:true\" title=\"openssl s_client -connect mail.k-in.co.jp:25 -servername mail.k-in.co.jp -starttls smtp\">Connecting to 192.168.0.35\r\nCONNECTED(00000005)\r\nDidn't find STARTTLS in server response, trying anyway...\r\n408B8B5DF87F0000:error:0A000126:SSL routines::unexpected eof while reading:ssl\/record\/rec_layer_s3.c:693:\r\n---\r\nno peer certificate available\r\n---\r\nNo client certificate CA names sent\r\n---\r\nSSL handshake has read 0 bytes and written 373 bytes\r\nVerification: OK<\/pre>\n<p>\u5fdc\u7b54\u3092\u7ffb\u8a33\u3057\u305f\u3089\u3001<br \/>\n<strong>192.168.0.35 \u306b\u63a5\u7d9a\u4e2d<br \/>\n\u63a5\u7d9a\u6e08\u307f (00000005)<br \/>\n\u30b5\u30fc\u30d0\u30fc\u5fdc\u7b54\u306b STARTTLS \u304c\u898b\u3064\u304b\u308a\u307e\u305b\u3093\u3067\u3057\u305f\u3002\u3068\u306b\u304b\u304f\u8a66\u3057\u3066\u307f\u307e\u3059&#8230;<br \/>\n408B8B5DF87F0000:\u30a8\u30e9\u30fc:0A000126:SSL \u30eb\u30fc\u30c1\u30f3::\u8aad\u307f\u53d6\u308a\u4e2d\u306b\u4e88\u671f\u3057\u306a\u3044 eof \u304c\u767a\u751f\u3057\u307e\u3057\u305f:ssl\/record\/rec_layer_s3.c:693:<br \/>\n&#8212;<br \/>\n\u30d4\u30a2\u8a3c\u660e\u66f8\u304c\u5229\u7528\u3067\u304d\u307e\u305b\u3093<br \/>\n&#8212;<br \/>\n\u30af\u30e9\u30a4\u30a2\u30f3\u30c8\u8a3c\u660e\u66f8\u306e CA \u540d\u304c\u9001\u4fe1\u3055\u308c\u307e\u305b\u3093\u3067\u3057\u305f<br \/>\n&#8212;<br \/>\nSSL \u30cf\u30f3\u30c9\u30b7\u30a7\u30a4\u30af\u3067 0 \u30d0\u30a4\u30c8\u304c\u8aad\u307f\u53d6\u3089\u308c\u3001373 \u30d0\u30a4\u30c8\u304c\u66f8\u304d\u8fbc\u307e\u308c\u307e\u3057\u305f<br \/>\n\u691c\u8a3c: OK<\/strong><\/p>\n<p>\u3068\u306e\u4e8b\u3067\u3001postfix\u304c\u8a3c\u660e\u66f8\u3092\u8aad\u3081\u3066\u5c45\u306a\u3044\u3088\u3046\u3060\u3002\uff08\u672c\u5f53\u304b\u306a\uff1f\uff09<br \/>\nDovecot\u3068\u5171\u901a\u3067\u826f\u3044\u306e\u3060\u3068\u601d\u3046\u3093\u3060\u3051\u3069\u3001\u9055\u3046\u306e\u304b\u77e5\u3089\u3093\u3002<\/p>\n<p>\u73fe\u5728\u306e\u8a2d\u5b9a\u306f\u3053\u3093\u306a\u611f\u3058\u3002<\/p>\n<pre class=\"height:300 lang:default decode:true\" title=\"postconf -n\">alias_maps = hash:\/etc\/aliases\r\nbounce_queue_lifetime = 1h\r\nbroken_sasl_auth_clients = yes\r\ncommand_directory = \/opt\/local\/sbin\r\ncompatibility_level = 3.9\r\ncontent_filter = amavisfeed:localhost:10025\r\ndaemon_directory = \/opt\/local\/libexec\/postfix\r\ndata_directory = \/opt\/local\/var\/lib\/postfix\r\ndebug_peer_level = 2\r\ndefault_privs = nobody\r\nhtml_directory = no\r\ninet_interfaces = all\r\ninet_protocols = ipv4\r\nlocal_recipient_maps = unix:passwd.byname $alias_maps\r\nluser_relay = unknown_user@k-in.co.jp\r\nmail_owner = _postfix\r\nmail_spool_directory = \/Volumes\/Works\/Library\/mail\/spool\/\r\nmailbox_size_limit = 0\r\nmailbox_transport = lmtp:unix:private\/dovecot-lmtp\r\nmaillog_file = \/opt\/local\/var\/log\/postfix\/postfix_log\r\nmaillog_file_permissions = 0644\r\nmaillog_file_prefixes = \/opt\/local\/var\/log, \/opt\/local\/var\/log\/postfix\r\nmailq_path = \/opt\/local\/bin\/mailq\r\nmanpage_directory = \/opt\/local\/share\/man\r\nmaximal_backoff_time = 300s\r\nmaximal_queue_lifetime = 1h\r\nminimal_backoff_time = 400s\r\nmydestination = $myhostname, localhost.$mydomain, localhost, $mydomain, mail.$mydomain, smtp.$mydomain, imap.$mydomain\r\nmydomain = k-in.co.jp\r\nmyhostname = mail.k-in.co.jp\r\nmynetworks = 192.168.0.0\/24, 127.0.0.0\/8\r\nmynetworks_style = class\r\nmyorigin = $mydomain\r\nnewaliases_path = \/opt\/local\/bin\/newaliases\r\npostscreen_access_list = hash:\/opt\/local\/etc\/postfix\/access_client, cidr:\/opt\/local\/etc\/postfix\/access_cidr, cidr:\/opt\/local\/etc\/postfix\/reject_cidr, hash:\/opt\/local\/etc\/postfix\/reject_client\r\npostscreen_blacklist_action = enforce\r\npostscreen_cache_cleanup_interval = 12h\r\npostscreen_cache_retention_time = 7h\r\npostscreen_dnsbl_action = drop\r\npostscreen_dnsbl_sites = zen.spamhaus.org, bl.spamcop.net, b.barracudacentral.org\r\npostscreen_dnsbl_threshold = 2\r\npostscreen_greet_action = enforce\r\nqueue_directory = \/opt\/local\/var\/spool\/postfix\r\nqueue_run_delay = 300s\r\nreadme_directory = \/opt\/local\/share\/postfix\/readme\r\nreceive_override_options = no_address_mappings\r\nrelay_domains =\r\nrelayhost =\r\nsample_directory = \/opt\/local\/share\/postfix\/sample\r\nsendmail_path = \/opt\/local\/sbin\/sendmail\r\nsetgid_group = _postdrop\r\nsmtp_discard_ehlo_keywords = pipelining CRLF.CRLF\r\nsmtp_dns_support_level = dnssec\r\nsmtp_helo_name = $myhostname\r\nsmtp_host_lookup = dns, native\r\nsmtp_tls_loglevel = 1\r\nsmtp_tls_security_level = may\r\nsmtpd_helo_restrictions = permit_mynetworks, reject_invalid_helo_hostname, reject_non_fqdn_helo_hostname, reject_unknown_helo_hostname\r\nsmtpd_proxy_options = speed_adjust\r\nsmtpd_recipient_restrictions = permit_mynetworks permit_sasl_authenticated reject_unverified_recipient reject_unauth_destination reject_non_fqdn_sender reject_non_fqdn_recipient reject_invalid_hostname reject_unknown_hostname reject_non_fqdn_helo_hostname\r\nsmtpd_sasl_auth_enable = yes\r\nsmtpd_sasl_local_domain = $mydomain\r\nsmtpd_sasl_path = private\/auth\r\nsmtpd_sasl_security_options = noanonymous, noplaintext, noactive, nodictionary\r\nsmtpd_sasl_tls_security_options = noanonymous\r\nsmtpd_sasl_type = dovecot\r\nsmtpd_sender_restrictions = reject_unknown_sender_domain\r\nsmtpd_tls_auth_only = no\r\nsmtpd_tls_cert_file = \/opt\/local\/etc\/ssl\/certs\/mail.k-in.co.jp.cert.pem\r\nsmtpd_tls_key_file = \/opt\/local\/etc\/ssl\/private\/mail.k-in.co.jp.key.pem\r\nsmtpd_tls_mandatory_protocols = !SSLv2, !SSLv3, !TLSv1, !TLSv1.1\r\nsmtpd_tls_protocols = !SSLv2, !SSLv3, !TLSv1, !TLSv1.1\r\nsmtpd_tls_received_header = yes\r\nsmtpd_tls_session_cache_database = btree:\/opt\/local\/var\/lib\/postfix\/smtpd_tls_session_cache\r\ntls_random_source = dev:\/dev\/urandom\r\nunknown_local_recipient_reject_code = 550<\/pre>\n<p>\u5909\u66f4\u7b87\u6240\u304c\u601d\u3063\u305f\u3088\u308a\u3082\u591a\u3044\u3002<br \/>\n\u6b64\u306e\u4e2d\u304b\u3089\u9593\u9055\u3044\u63a2\u3057\u3059\u308b\u306e\u306f\u5927\u5909\u3060\u3041\u301c\u301c\u3002(^_^;;<\/p>\n<p>openssl\u30b3\u30de\u30f3\u30c9\u3067\u3001\u8a3c\u660e\u66f8\u30d5\u30a1\u30a4\u30eb\u306e\u30c1\u30a7\u30c3\u30af\u304c\u3067\u304d\u308b\u3053\u3068\u3092\u77e5\u3063\u305f\u3002<br \/>\n<a href=\"https:\/\/www.pistolfly.com\/weblog\/2015\/01\/openssl\u3067\u8a3c\u660e\u66f8\u306e\u30c1\u30a7\u30c3\u30af.html\">OpenSSL\u30b3\u30de\u30f3\u30c9\u3067\u8a3c\u660e\u66f8\u306e\u30c1\u30a7\u30c3\u30af<\/a>\u3068\u3001\u5176\u306e\u5118\u306e\u30bf\u30a4\u30c8\u30eb\u304c\u6709\u3063\u305f\u306e\u3060\u3002<br \/>\n\u30a6\u30c1\u306e\u5834\u5408\u3060\u3068\u3001\u4e0b\u8a18\u306e\u69d8\u306b\u306a\u308b\u3002<\/p>\n<pre class=\"height:300 lang:default decode:true\" title=\"\">% sudo openssl s_server -cert certs\/mail.k-in.co.jp.cert.pem -key private\/mail.k-in.co.jp.key.pem  -CAfile certs\/mail.k-in.co.jp.chain.pem\r\nUsing default temp DH parameters\r\nACCEPT<\/pre>\n<p>\u6700\u521d\u9593\u9055\u3048\u3066\u3001password\u89e3\u9664\u524d\u306e\u9375\u30d5\u30a1\u30a4\u30eb\u3092\u6307\u5b9a\u3057\u3066\u3001\u30d1\u30b9\u30ef\u30fc\u30c9\u5165\u529b\u3092\u8981\u6c42\u3055\u308c\u305f\u3002<br \/>\n\u306a\u306e\u3067\u3001postfix\/main.cf\u3067\u3082\u9593\u9055\u3048\u305f\u306e\u304b\u3068\u601d\u3048\u3070\u3001\u305d\u3046\u3067\u3082\u7121\u3044\u3088\u3046\u3060\u3002<br \/>\nopenssl\u3067www.k-in.co.jp:443\u306b\u63a5\u7d9a\u3059\u308b\u3068\u3053\u3046\u306a\u308b\u3002<\/p>\n<pre class=\"height:300 lang:default decode:true\" title=\"\">% openssl s_client -connect www.k-in.co.jp:443\r\nConnecting to 192.168.0.35\r\nCONNECTED(00000005)\r\ndepth=0 CN=www.k-in.co.jp\r\nverify error:num=20:unable to get local issuer certificate\r\nverify return:1\r\ndepth=0 CN=www.k-in.co.jp\r\nverify error:num=21:unable to verify the first certificate\r\nverify return:1\r\ndepth=0 CN=www.k-in.co.jp\r\nverify return:1\r\n---\r\nCertificate chain\r\n 0 s:CN=www.k-in.co.jp\r\n   i:C=JP, ST=Tokyo, L=Shibuya-ku, O=Nijimo K.K., CN=FujiSSL SHA2 Domain Secure Site CA\r\n   a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256\r\n   v:NotBefore: Nov 11 00:00:00 2024 GMT; NotAfter: Dec 12 23:59:59 2025 GMT\r\n 1 s:C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA\r\n   i:C=US, ST=New Jersey, L=Jersey City, O=The USERTRUST Network, CN=USERTrust RSA Certification Authority\r\n   a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA384\r\n   v:NotBefore: Nov  2 00:00:00 2018 GMT; NotAfter: Dec 31 23:59:59 2030 GMT\r\n 2 s:C=US, ST=New Jersey, L=Jersey City, O=The USERTRUST Network, CN=USERTrust RSA Certification Authority\r\n   i:C=GB, ST=Greater Manchester, L=Salford, O=Comodo CA Limited, CN=AAA Certificate Services\r\n   a:PKEY: rsaEncryption, 4096 (bit); sigalg: RSA-SHA384\r\n   v:NotBefore: Mar 12 00:00:00 2019 GMT; NotAfter: Dec 31 23:59:59 2028 GMT\r\n 3 s:C=GB, ST=Greater Manchester, L=Salford, O=Comodo CA Limited, CN=AAA Certificate Services\r\n   i:C=GB, ST=Greater Manchester, L=Salford, O=Comodo CA Limited, CN=AAA Certificate Services\r\n   a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA1\r\n   v:NotBefore: Jan  1 00:00:00 2004 GMT; NotAfter: Dec 31 23:59:59 2028 GMT\r\n---\r\nServer certificate\r\n-----BEGIN CERTIFICATE-----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\r\n4\/x15HFO6AfxfEU0ZFm2Hue\/NvXqg8cnoHe6qA==\r\n-----END CERTIFICATE-----\r\nsubject=CN=www.k-in.co.jp\r\nissuer=C=JP, ST=Tokyo, L=Shibuya-ku, O=Nijimo K.K., CN=FujiSSL SHA2 Domain Secure Site CA\r\n---\r\nNo client certificate CA names sent\r\nPeer signing digest: SHA256\r\nPeer signature type: RSA-PSS\r\nServer Temp Key: X25519, 253 bits\r\n---\r\nSSL handshake has read 6189 bytes and written 412 bytes\r\nVerification error: unable to verify the first certificate\r\n---\r\nNew, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384\r\nProtocol: TLSv1.3\r\nServer public key is 2048 bit\r\nThis TLS version forbids renegotiation.\r\nCompression: NONE\r\nExpansion: NONE\r\nNo ALPN negotiated\r\nEarly data was not sent\r\nVerify return code: 21 (unable to verify the first certificate)\r\n---\r\n---\r\nPost-Handshake New Session Ticket arrived:\r\nSSL-Session:\r\n    Protocol  : TLSv1.3\r\n    Cipher    : TLS_AES_256_GCM_SHA384\r\n    Session-ID: A1F0A1115487C1385FDAA3913CF3EEB4268C1811CB9928C0AC8520501ECCA9C3\r\n    Session-ID-ctx: \r\n    Resumption PSK: 5975CF79E9442E48BEABBD96F32DBFEFF8B7130CB305CC0298706845E1E6EBB78D566E4D42441BF1AB112D03EF940933\r\n    PSK identity: None\r\n    PSK identity hint: None\r\n    SRP username: None\r\n    TLS session ticket lifetime hint: 300 (seconds)\r\n    TLS session ticket:\r\n    0000 - a9 59 c8 5b 11 eb 2f 39-2a cd 01 36 69 0d cd 47   .Y.[..\/9*..6i..G\r\n    0010 - 76 50 e0 fe 66 4f 23 b0-78 89 ef 97 90 af 57 e8   vP..fO#.x.....W.\r\n    0020 - 33 82 b9 42 eb 9d ab c2-b8 f7 8a c2 53 6b d6 4c   3..B........Sk.L\r\n    0030 - 2f 06 6a 87 a2 47 39 53-59 9d 5c 22 da e5 41 92   \/.j..G9SY.\\\"..A.\r\n    0040 - 69 ae 2b af e4 25 2c ee-6b 19 46 91 02 31 8d 89   i.+..%,.k.F..1..\r\n    0050 - f2 c6 bb 5c 81 64 df 96-86 90 0d ea b6 4d fc b1   ...\\.d.......M..\r\n    0060 - cf 2f 4b 59 ba 9a 85 f2-24 a2 9b c2 74 f7 53 dd   .\/KY....$...t.S.\r\n    0070 - 58 c6 3d 0d 50 74 03 4f-65 c8 8e 99 5a 84 32 34   X.=.Pt.Oe...Z.24\r\n    0080 - a9 41 10 a6 ab 15 93 e4-63 4b 64 b4 cd 16 96 7b   .A......cKd....{\r\n    0090 - d0 47 c1 2d 85 66 d1 80-e2 14 58 d4 f5 81 a6 16   .G.-.f....X.....\r\n    00a0 - 29 6e 35 f8 7f 05 3d ad-3a a1 fa 98 ce 69 b2 10   )n5...=.:....i..\r\n    00b0 - 38 a8 e1 ee 73 f6 09 ed-b2 83 5d 5b c3 a8 f9 a6   8...s.....][....\r\n    00c0 - f4 b7 7a 27 62 a3 6c 4a-c1 5a f5 20 52 34 9a a8   ..z'b.lJ.Z. R4..\r\n    00d0 - 5f 96 c5 04 f8 e1 9b f0-60 46 a9 31 74 26 e5 b4   _.......`F.1t&..\r\n    00e0 - e6 72 df 16 20 20 4c 0a-36 9e b2 cd 92 74 40 80   .r..  L.6....t@.\r\n    00f0 - 8f 99 30 ea 58 73 fb f4-25 e4 74 b5 2c 93 85 b9   ..0.Xs..%.t.,...\r\n\r\n    Start Time: 1733124957\r\n    Timeout   : 7200 (sec)\r\n    Verify return code: 21 (unable to verify the first certificate)\r\n    Extended master secret: no\r\n    Max Early Data: 0\r\n---\r\nread R BLOCK\r\n---\r\nPost-Handshake New Session Ticket arrived:\r\nSSL-Session:\r\n    Protocol  : TLSv1.3\r\n    Cipher    : TLS_AES_256_GCM_SHA384\r\n    Session-ID: 6741A4BF69032F32DD50B6F2E02B91970A4C8848656F8DDB8FD95E0B76CBC309\r\n    Session-ID-ctx: \r\n    Resumption PSK: F500FDEC129BE5149AA9E6B4A3311A54826EA335E2CF37471EE9915548AAB2370506E08AC13CBB122CE22019BEF6FA6F\r\n    PSK identity: None\r\n    PSK identity hint: None\r\n    SRP username: None\r\n    TLS session ticket lifetime hint: 300 (seconds)\r\n    TLS session ticket:\r\n    0000 - a9 59 c8 5b 11 eb 2f 39-2a cd 01 36 69 0d cd 47   .Y.[..\/9*..6i..G\r\n    0010 - 03 4b d6 40 8f 17 f2 24-4f a6 62 fd 34 0c 3e 78   .K.@...$O.b.4.>x\r\n    0020 - fa c5 17 60 5d ef a8 ff-43 bd 57 a4 85 4c a9 e9   ...`]...C.W..L..\r\n    0030 - fe c6 93 e3 00 27 09 6a-08 d4 7b 60 d6 65 52 07   .....'.j..{`.eR.\r\n    0040 - e8 ea 04 cd 3c 41 fd f8-61 ec b9 fd 35 55 4c ec   ....<A..a...5UL.\r\n    0050 - 0b 3d 6d c8 57 d6 48 55-b3 5c 85 ae c7 7d 79 b8   .=m.W.HU.\\...}y.\r\n    0060 - 90 f2 dc a7 4f 8c 7c 67-f9 cc ea 72 9e 67 90 e3   ....O.|g...r.g..\r\n    0070 - 65 be 4b b0 b6 4e 94 ca-c3 37 74 10 aa 9d 9b 1d   e.K..N...7t.....\r\n    0080 - cd 6f 0e 5b 38 3c 16 91-6c af a1 a4 58 50 c4 ee   .o.[8<..l...XP..\r\n    0090 - f3 73 7b 3b a7 5d ac cf-1b df 76 c0 b0 e9 da a3   .s{;.]....v.....\r\n    00a0 - 52 79 8c fc 9f 00 66 e7-0d 95 0c a9 c9 6a 31 c3   Ry....f......j1.\r\n    00b0 - 7c 59 67 e0 44 b9 ae 66-0f e6 b2 31 b6 29 9a a7   |Yg.D..f...1.)..\r\n    00c0 - 7d e3 c2 95 92 7d e9 02-44 63 3d ee d9 06 9f f9   }....}..Dc=.....\r\n    00d0 - 1c e9 11 a1 97 b8 86 d2-37 fb 1e 11 b0 a3 28 df   ........7.....(.\r\n    00e0 - 74 e7 f9 c3 7f 8e e4 c7-64 14 e3 09 86 c2 bd d9   t.......d.......\r\n    00f0 - ae 89 06 9f af 7e a7 79-5b cf 71 75 93 0b d2 ba   .....~.y[.qu....\r\n\r\n    Start Time: 1733124957\r\n    Timeout   : 7200 (sec)\r\n    Verify return code: 21 (unable to verify the first certificate)\r\n    Extended master secret: no\r\n    Max Early Data: 0\r\n---\r\nread R BLOCK<\/pre>\n<p><strong>Verify return code: 21 (unable to verify the first certificate)<\/strong>\u304c\u51fa\u3066\u3044\u308b\u3093\u3060\u3088\u306d\u3047\u3002<br \/>\n\u3067\u3082\u30eb\u30fc\u30c8\u8a3c\u660e\u66f8\u307e\u3067\u51fa\u3066\u304d\u3066\u3044\u308b\u3002<br \/>\n\u4f55\u304c\u6b63\u3057\u3044\u306e\u304b\u5224\u3089\u3093\u3002<br \/>\n\u53ea\u3001web browser\u3067\u30a8\u30e9\u30fc\u304c\u51fa\u3066\u5c45\u306a\u3051\u308c\u3070\u826f\u3044\u306e\u304b\uff1f<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u4f55\u3060\u304b\u3001\u6c17\u304c\u4ed8\u3044\u305f\u3089amavisd\u304c\u843d\u3061\u3066\u3044\u305f\u3002 \u6b64\u308c\u3060\u3068Postfix\u304c\u30e1\u30fc\u30eb\u306e\u30c1\u30a7\u30c3\u30af\u306b\u6e21\u3057\u305f\u9014\u7aef\u30b3\u30b1\u308b\u3002 \u6b21\u304b\u3089\u6b21\u3078\u3068\u30df\u30b9\u304c\u9023\u9396\u3057\u3066\u3044\u308b\u6c17\u304c\u3059\u308b\u3002<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[115],"tags":[207,225,177,176,175,148],"class_list":["post-10101","post","type-post","status-publish","format-standard","hentry","category-software","tag-amavisd-new","tag-clamav","tag-dovecot","tag-mail","tag-postfix","tag-server"],"jetpack_featured_media_url":"","_links":{"self":[{"href":"https:\/\/www.k-in.co.jp\/niwakan\/wp-json\/wp\/v2\/posts\/10101","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.k-in.co.jp\/niwakan\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.k-in.co.jp\/niwakan\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.k-in.co.jp\/niwakan\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.k-in.co.jp\/niwakan\/wp-json\/wp\/v2\/comments?post=10101"}],"version-history":[{"count":1,"href":"https:\/\/www.k-in.co.jp\/niwakan\/wp-json\/wp\/v2\/posts\/10101\/revisions"}],"predecessor-version":[{"id":11094,"href":"https:\/\/www.k-in.co.jp\/niwakan\/wp-json\/wp\/v2\/posts\/10101\/revisions\/11094"}],"wp:attachment":[{"href":"https:\/\/www.k-in.co.jp\/niwakan\/wp-json\/wp\/v2\/media?parent=10101"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.k-in.co.jp\/niwakan\/wp-json\/wp\/v2\/categories?post=10101"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.k-in.co.jp\/niwakan\/wp-json\/wp\/v2\/tags?post=10101"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}