Difference between revisions of "ClamAV - Updating Version"

m
m (more acsii errors)
Line 22: Line 22:
 
If upgrading from anything below 0.90.x, please refer to: *[[ClamAV - Updating from versions lower than 0.90.0]]
 
If upgrading from anything below 0.90.x, please refer to: *[[ClamAV - Updating from versions lower than 0.90.0]]
  
==Noticing out of date==
+
==Noticing Out-of-Date==
  
 
When ClamAV releases a new version and gets out of date, it will complain in its log files as such.
 
When ClamAV releases a new version and gets out of date, it will complain in its log files as such.
Line 77: Line 77:
 
Assuming there are no errors,
 
Assuming there are no errors,
  
Run: '''make check''' and then '''make install'''.
+
Run: '''make check''' and then '''make install'''.
 
Again assuming no errors, you now have the new version installed into /opt/zimbra/clamav-0.90.2
 
Again assuming no errors, you now have the new version installed into /opt/zimbra/clamav-0.90.2
  
Line 112: Line 112:
 
'''cd /opt/zimbra'''
 
'''cd /opt/zimbra'''
  
'''ls -la 'grep' clamav''' ( should see 'clamav - /opt/zimbra/clamav-0.90.1'  )
+
'''ls -la 'grep' clamav''' ( should see 'clamav - /opt/zimbra/clamav-0.90.1'  )
  
 
if so:
 
if so:
Line 146: Line 146:
  
 
----
 
----
==script==
+
==Scripting==
 
----
 
----
 
Possible Script:
 
Possible Script:
 
   
 
   
#!/bin/bash
+
#!/bin/bash
#
+
#
#
+
#
#  !!!!!! WARNING !!!!!!!!!!
+
#  !!!!!! WARNING !!!!!!!!!!
#  This script is absolutely untested.  I wrote it after the fact
+
#  This script is absolutely untested.  I wrote it after the fact
#  as reference, for the next time this happens.  I repeat I have
+
#  as reference, for the next time this happens.  I repeat I have
#  not actually tested to see if it even runs.  You probobly want
+
#  not actually tested to see if it even runs.  You probobly want
#  to just run through the steps manually to prevent harming your
+
#  to just run through the steps manually to prevent harming your
#  system...  Again, this script took 2 minutes to write, and has
+
#  system...  Again, this script took 2 minutes to write, and has
#  never been tested, and there absolutely no error checking.
+
#  never been tested, and there absolutely no error checking.
#
+
#
#  Otherwise, if you really want to run it, uncomment the exit
+
#  Otherwise, if you really want to run it, uncomment the exit
#  satement.
+
#  satement.
#
+
#
#  Anonomous - 20071119 updates by others 20071206
+
#  Anonomous - 20071119 updates by others 20071206
#
+
#
##################################################################
+
##################################################################
exit
+
exit
NOW=`date +%Y%m%d%H%M%S`
+
NOW=`date +%Y%m%d%H%M%S`
BUILDDIR=${NOW}_clamav_build
+
BUILDDIR=${NOW}_clamav_build
 
+
ClamVer="clamav-0.91.2"
ClamVer="clamav-0.91.2"
+
ClamURL="http://easynews.dl.sourceforge.net/sourceforge/clamav/clamav-0.91.2.tar.gz"
ClamURL="http://easynews.dl.sourceforge.net/sourceforge/clamav/clamav-0.91.2.tar.gz"
+
echo "Installing dependencies if nessesary"
 
+
yum -y install gcc glibc zlib-devel gmp-devel bzip2-devel
echo "Installing dependencies if nessesary"
+
echo "Preparing Source"
yum -y install gcc glibc zlib-devel gmp-devel bzip2-devel
+
mkdir ${BUILDDIR} && cd ${BUILDDIR}
 
+
wget ${ClamURL}
 
+
tar -zxvf ${ClamVer}.tar.gz
echo "Preparing Source"
+
cd ${ClamVer}
mkdir ${BUILDDIR} && cd ${BUILDDIR}
+
echo "==== Building and Installing ClamAV ===="
wget ${ClamURL}
+
./configure --prefix=/opt/zimbra/${ClamVer} --with-user=zimbra --with-group=zimbra
 
+
make && make check && make install
 
+
chown -R zimbra:zimbra /opt/zimbra/${ClamVer}
 
+
cd /opt/zimbra/${ClamVer}/etc
tar -zxvf ${ClamVer}.tar.gz
+
mv clamd.conf clamd.conf.orig
cd ${ClamVer}
+
mv freshclam.conf freshclam.conf.orig
echo "==== Building and Installing ClamAV ===="
+
chown zimbra:zimbra *.conf
./configure --prefix=/opt/zimbra/${ClamVer} --with-user=zimbra --with-group=zimbra
+
cp /opt/zimbra/conf/clamd.conf .
 
+
cp /opt/zimbra/conf/freshclam.conf .
make && make check && make install
+
sudo -u zimbra zmcontrol stop
 
+
cd /opt/zimbra
 
+
unlink clamav
chown -R zimbra:zimbra /opt/zimbra/${ClamVer}
+
ln -s ${ClamVer} clamav
 
+
echo "==== Freshen ========="
cd /opt/zimbra/${ClamVer}/etc
+
sudo -u zimbra /opt/zimbra/clamav/bin/freshclam
mv clamd.conf clamd.conf.orig
+
echo "===== Starting Zimbra ======="
mv freshclam.conf freshclam.conf.orig
+
echo " If it doesn't work, try a reboot"
chown zimbra:zimbra *.conf
+
sudo -u zimbra zmcontrol start
 
 
cp /opt/zimbra/conf/clamd.conf .
 
cp /opt/zimbra/conf/freshclam.conf .
 
 
 
 
 
sudo -u zimbra zmcontrol stop
 
cd /opt/zimbra
 
unlink clamav
 
ln -s ${ClamVer} clamav
 
 
 
 
 
echo "==== Freshen ========="
 
sudo -u zimbra /opt/zimbra/clamav/bin/freshclam
 
 
 
 
 
echo "===== Starting Zimbra ======="
 
echo " If it doesn't work, try a reboot"
 
sudo -u zimbra zmcontrol start
 
 
  
 
[[Category:Anti-virus]]
 
[[Category:Anti-virus]]

Revision as of 02:15, 26 June 2008

Background

Zimbra updates the ClamAV to latest with every release of ZCS. However, there are times when you may want the latest package.

ClamAV Virus definitions update automatically every 2h by default (zimbraVirusDefinitionsUpdateFrequency attribute).

Some good tips for troubleshooting can be found in ClamAV - Reset Defs DB

Out of cycle updates RFE is Bug 15137

Notes courtesy Unilogic

If you have no idea how to upgrade or are a little shaky in doing the upgrade yourself, I recommend that you wait for the Zimbra official release.

Step 1: Make a backup.

Note: This was done on Fedora Core 4 minimal install. Also, all the following can be done either as root or as the zimbra user. If you do it all as 'root', make sure you change ownership for the resulting clamav-0.90.2 folder in /opt/zimbra to zimbra:zimbra.

This HOWTO also assumes that you are upgrading from 0.90.1 to 0.90.2 Please substitute the versions above for what you are upgrading from and to.

If upgrading from anything below 0.90.x, please refer to: *ClamAV - Updating from versions lower than 0.90.0

Noticing Out-of-Date

When ClamAV releases a new version and gets out of date, it will complain in its log files as such.

clamd.log shows the following warning:

LibClamAV Warning: ********************************************************
LibClamAV Warning: ***  This version of the ClamAV engine is outdated.  ***
LibClamAV Warning: *** DON'T PANIC! Read http://www.clamav.net/faq.html ***
LibClamAV Warning: ********************************************************

freshclam.log shows the following warning:

Received signal: wake up
ClamAV update process started at Fri May 4 15:44:46 2007
WARNING: Your ClamAV installation is OUTDATED!
WARNING: Local version: 0.90.1 Recommended version: 0.90.2
DON'T PANIC! Read http://www.clamav.net/faq.html
main.cvd is up to date (version: 42, sigs: 83951, f-level: 10, builder: tkojm)
WARNING: Your ClamAV installation is OUTDATED!
WARNING: Current functionality level = 9, recommended = 10
DON'T PANIC! Read http://www.clamav.net/faq.html
daily.cvd is up to date (version: 2580, sigs: 7879, f-level: 13, builder: ccordes)
WARNING: Your ClamAV installation is OUTDATED!
WARNING: Current functionality level = 9, recommended = 13
DON'T PANIC! Read http://www.clamav.net/faq.html

Updating

To update, follow the following: First go grab the latest ClamAV source from http://www.clamav.net/download (Current Stable Version is 0.90.2 ) Extract it to where ever you please. All this can either be done as root or as the zimbra user. If you do it all as root make sure you change ownership for the resulting clamav folder in /opt/zimbra to zimbra:zimbra.

Assuming that the new clamav version is in the directory: /home/snelson ( substitute your username for 'snelson' )

tar -xvf clamav-0.90.2.tar.gz

cd clamav-0.90.2

Next run configure inside of the clamav extract as following:

./configure --prefix=/opt/zimbra/clamav-0.90.2 --with-user=zimbra --with-group=zimbra

This assumes 'zimbra' is user and group id 'zimbra', change it accordingly to your system to match your zimbra user.

Note: I had to install gmp-devel and bzip2-devel so the configure could find all its header files. Your mileage may very. If you get an error about GNU MP missing install gmp-devel. "yum install gmp-devel", and "yum install bzip2-devel" in Fedora and Red Hat.


If your 'configure' goes well, and make sure it does as you don't really want ClamAV installed without some of its available testing ability being compiled.

Run: make

Assuming there are no errors,

Run: make check and then make install. Again assuming no errors, you now have the new version installed into /opt/zimbra/clamav-0.90.2

Now we compare then copy your old clamd.conf and freshclam.conf from the previous version to the new version directory:

cd /opt/zimbra/clamav-0.90.1/etc/

diff clamd.conf ../../clamav-0.90.2/etc/clamd.conf

diff freshclam.conf ../../clamav-0.90.2/etc/freshclam.conf

Above is just incase you are curious of what we are changing/over writing from the clamav defaults.

cd /opt/zimbra/clamav-0.90.2/etc/

mv clamd.conf clamd.conf.org

mv freshclam.conf freshclam.conf.org

cd /opt/zimbra/conf

cp clamd.conf /opt/zimbra/clamav-0.90.2/etc/

cp freshclam.conf /opt/zimbra/clamav-0.90.2/etc/


Run: zmcontrol stop to stop Zimbra.

Now need to delete the symbolic link and re-link it to the new install:


cd /opt/zimbra

ls -la 'grep' clamav ( should see 'clamav - /opt/zimbra/clamav-0.90.1' )

if so:

rm -rf clamav

ln -s /opt/zimbra/clamav-0.90.2 /opt/zimbra/clamav

Create directory /opt/zimbra/clamav/db

mkdir /opt/zimbra/clamav/db

Now you should make sure zimbra owns all of clamav.

chown -R zimbra:zimbra /opt/zimbra/clamav-0.90.2


Next we need to update the virus database.

su zimbra

Run: /opt/zimbra/clamav/bin/freshclam


Need to start Zimbra. Run zmcontrol start

Run zmcontrol status to make sure antivirus is running. If it is, you're good to go.

You should check /opt/zimbra/log/clamd.log for errors, as well as freshclam in the same directory. Also /var/log/zimbra.log. To test out ClamAV I would suggest http://www.webmail.us/testvirus to send different variations of the EICAR test virus to one of your email addresses. Depending on if you have "Send notice ot recipient" check in Global Settings of the Admin Web UI, the user should receive around 20 email notifications of the emails being quarantined. Don't worry about the two that got through. Apparently ClamAV doesn't check for the techniques. There are although no virii included in those two emails, so it doesn't worry me. You can delete the previous install of clamav once you make sure everything is working. Delete the /opt/zimbra/clamav-0.90.1 directory and everythnig it contains. Again may want to wait a weelk or two to make sure you have the other version working well first.



Scripting


Possible Script:

#!/bin/bash
#
#
#   !!!!!! WARNING !!!!!!!!!!
#   This script is absolutely untested.  I wrote it after the fact
#   as reference, for the next time this happens.  I repeat I have
#   not actually tested to see if it even runs.  You probobly want
#   to just run through the steps manually to prevent harming your
#   system...  Again, this script took 2 minutes to write, and has
#   never been tested, and there absolutely no error checking.
#
#   Otherwise, if you really want to run it, uncomment the exit
#   satement.
#
#   Anonomous - 20071119 updates by others 20071206
#
##################################################################
exit
NOW=`date +%Y%m%d%H%M%S`
BUILDDIR=${NOW}_clamav_build
ClamVer="clamav-0.91.2"
ClamURL="http://easynews.dl.sourceforge.net/sourceforge/clamav/clamav-0.91.2.tar.gz"
echo "Installing dependencies if nessesary"
yum -y install gcc glibc zlib-devel gmp-devel bzip2-devel
echo "Preparing Source"
mkdir ${BUILDDIR} && cd ${BUILDDIR}
wget ${ClamURL}
tar -zxvf ${ClamVer}.tar.gz
cd ${ClamVer}
echo "==== Building and Installing ClamAV ===="
./configure --prefix=/opt/zimbra/${ClamVer} --with-user=zimbra --with-group=zimbra
make && make check && make install
chown -R zimbra:zimbra /opt/zimbra/${ClamVer}
cd /opt/zimbra/${ClamVer}/etc
mv clamd.conf clamd.conf.orig
mv freshclam.conf freshclam.conf.orig
chown zimbra:zimbra *.conf
cp /opt/zimbra/conf/clamd.conf .
cp /opt/zimbra/conf/freshclam.conf .
sudo -u zimbra zmcontrol stop
cd /opt/zimbra
unlink clamav
ln -s ${ClamVer} clamav
echo "==== Freshen ========="
sudo -u zimbra /opt/zimbra/clamav/bin/freshclam
echo "===== Starting Zimbra ======="
echo " If it doesn't work, try a reboot"
sudo -u zimbra zmcontrol start
Jump to: navigation, search