Re: mutt for office 365 mfa

2020-06-10 Thread Will Yardley
On Wed, Jun 10, 2020 at 10:00:58PM -0400, Dave Botsch wrote:
> I haven't looked into it enough to know the difference between xoauth2 and
> oauthbearer.
> 
> Here is MS's blog post:
> https://developer.microsoft.com/en-us/office/blogs/announcing-oauth-2-0-support-for-imap-smtp-client-protocols-in-exchange-online

Yeah, as best I can tell, that's still using XOAUTH2 vs. OAUTHBEARER,
based on the examples / text in
https://docs.microsoft.com/en-us/exchange/client-developer/legacy-protocols/how-to-authenticate-an-imap-pop-smtp-application-by-using-oauth

w



Re: mutt for office 365 mfa

2020-06-10 Thread Dave Botsch
I haven't looked into it enough to know the difference between xoauth2 and 
oauthbearer.


Here is MS's blog post:
https://developer.microsoft.com/en-us/office/blogs/announcing-oauth-2-0-support-for-imap-smtp-client-protocols-in-exchange-online

On June 10, 2020 9:31:18 PM Will Yardley  wrote:


On Wed, Jun 10, 2020 at 08:32:13PM -0400, Dave Botsch wrote:


that's been pushed off until 2021. Supposedly Office365 now support oauth2
via imap/smtp/pop.


I think only by an older method, though (XOAUTH2 vs. OAUTHBEARER)

http://lists.mutt.org/pipermail/mutt-dev/Week-of-Mon-20200601/000827.html
and thread around <69f8180c-40de-b7b5-880b-0f0e9f99843c at scss.tcd.ie>

Not sure if my company will support the app password, but will check.

w






Re: mutt for office 365 mfa

2020-06-10 Thread Will Yardley
On Wed, Jun 10, 2020 at 08:32:13PM -0400, Dave Botsch wrote:

> that's been pushed off until 2021. Supposedly Office365 now support oauth2
> via imap/smtp/pop.

I think only by an older method, though (XOAUTH2 vs. OAUTHBEARER)

http://lists.mutt.org/pipermail/mutt-dev/Week-of-Mon-20200601/000827.html
and thread around <69f8180c-40de-b7b5-880b-0f0e9f99843c at scss.tcd.ie>

Not sure if my company will support the app password, but will check.

w



Re: mutt for office 365 mfa

2020-06-10 Thread Dave Botsch
that's been pushed off until 2021. Supposedly Office365 now support oauth2 
via imap/smtp/pop.
app passwords have to be turned on in the tennant (ours will not be turning 
them on as we require 2FA and app passwords are seen as a bypass for that). 
And app passwords is a separate question from the authentication method 
(oauth2 or straight password), I think.


thanks.

On June 10, 2020 8:02:45 PM Will Yardley  wrote:


On Wed, Jun 10, 2020 at 10:54:00PM +0100, Sam Kuper wrote:

On Wed, Jun 10, 2020 at 02:09:17PM -0400, Scott Brozell wrote:

The organization i work for has forced on us office 365 multi factor
authentication.  In addition to outlook duo they are supporting
evolution and have setup a tenant and application id for it.
Is it possible to use those with mutt ?


I don't have direct experience of this, but have you tried to set up an
"App Password" (which seems to be a password for accessing a specific
Office365 inbox over IMAP even when 2FA is enabled)?  See
https://serverfault.com/a/950594


That's what I do with Gmail.

But...
https://developer.microsoft.com/en-us/office/blogs/end-of-support-for-basic-authentication-access-to-exchange-online-apis-for-office-365-customers/

So, I think that won't work after October.

w






Re: mutt for office 365 mfa

2020-06-10 Thread Will Yardley
On Wed, Jun 10, 2020 at 10:54:00PM +0100, Sam Kuper wrote:
> On Wed, Jun 10, 2020 at 02:09:17PM -0400, Scott Brozell wrote:
> > The organization i work for has forced on us office 365 multi factor
> > authentication.  In addition to outlook duo they are supporting
> > evolution and have setup a tenant and application id for it.
> > Is it possible to use those with mutt ?
> 
> I don't have direct experience of this, but have you tried to set up an
> "App Password" (which seems to be a password for accessing a specific
> Office365 inbox over IMAP even when 2FA is enabled)?  See
> https://serverfault.com/a/950594

That's what I do with Gmail.

But...
https://developer.microsoft.com/en-us/office/blogs/end-of-support-for-basic-authentication-access-to-exchange-online-apis-for-office-365-customers/

So, I think that won't work after October.

w



Re: mutt for office 365 mfa

2020-06-10 Thread Sam Kuper
On Wed, Jun 10, 2020 at 02:09:17PM -0400, Scott Brozell wrote:
> The organization i work for has forced on us office 365 multi factor
> authentication.  In addition to outlook duo they are supporting
> evolution and have setup a tenant and application id for it.
> Is it possible to use those with mutt ?

I don't have direct experience of this, but have you tried to set up an
"App Password" (which seems to be a password for accessing a specific
Office365 inbox over IMAP even when 2FA is enabled)?  See
https://serverfault.com/a/950594

-- 
A: When it messes up the order in which people normally read text.
Q: When is top-posting a bad thing?

()  ASCII ribbon campaign. Please avoid HTML emails & proprietary
/\  file formats. (Why? See e.g. https://v.gd/jrmGbS ). Thank you.


Re: mutt for office 365 mfa

2020-06-10 Thread Dave Botsch

Third-ed.

On June 10, 2020 14:46:44 Anders Damsgaard  wrote:


* Scott Brozell  [2020-06-10 14:09:17 -0400]:


Hi,

The organization i work for has forced on us office 365 multi factor
authentication.  In addition to outlook duo they are supporting
evolution and have setup a tenant and application id for it.
Is it possible to use those with mutt ?

thanks,
scott



Hi Scott

I've run into a similar situation.  My non-ideal workaround is to have a
machine always running evolution, forwarding all mail to a normal imap
account that I access with isync/mutt.  I'd be interested to hear
if anyone has a better solution.

Cheers, Anders
--
Anders Damsgaard
https://adamsgaard.dk
gopher://adamsgaard.dk






Re: mutt for office 365 mfa

2020-06-10 Thread Anders Damsgaard

* Scott Brozell  [2020-06-10 14:09:17 -0400]:


Hi,

The organization i work for has forced on us office 365 multi factor
authentication.  In addition to outlook duo they are supporting
evolution and have setup a tenant and application id for it.
Is it possible to use those with mutt ?

thanks,
scott



Hi Scott

I've run into a similar situation.  My non-ideal workaround is to have a
machine always running evolution, forwarding all mail to a normal imap
account that I access with isync/mutt.  I'd be interested to hear
if anyone has a better solution.

Cheers, Anders
--
Anders Damsgaard
https://adamsgaard.dk
gopher://adamsgaard.dk