* martin f krafft <madd...@madduck.net>:
> also sprach Patrick Ben Koetter <p...@state-of-mind.de> [2012.08.16.2044 
> +0200]:
> >         Putting passwords in configs isn't something I like, so
> >         I pull them from the Gnome keyring:
> 
> Not a bad idea, but now an attacker with access to the filesystem
> doesn't have to run 'cat ~/.muttrc' but 'gnome-keyring-query get mutt' 
> instead.

If mutt can use a TLS client certificate, you can use that to auth against
Dovecot.

p@rick


-- 
Postfix - Einrichtung, Betrieb und Wartung
<http://www.postfix-buch.com>
saslfinger (debugging SMTP AUTH):
<http://postfix.state-of-mind.de/patrick.koetter/saslfinger/>

Attachment: signature.asc
Description: Digital signature

Reply via email to