Cyrus-IMAP accepts unencrypted connections _and_ authentication
even though I have set the following in imapd.conf

   allowplaintext: yes
   allowplainwithouttls: no

How do I force the use of TLS for Cyrus-IMAP?

Also: Postfix allows hiding authentication mechanisms unless TLS is
invoked (so in clear text, capabilities just show STARTTLS), while
Cyrus-IMAP announces everything. Is there anyway to be more strict
with the cyrus in respect of what it announces?
sasl_minimum_layer: 128

Thanks, but that doesn't do it, everything still goes through nice and clear unless I set the client to use TLS.


