Re: The future of SIS

2023-10-15 Thread Gedalya via dovecot
On 10/14/23 03:26, Laura Smith via dovecot wrote: > FUD ? > > I knew someone would accuse me of that which is why I linked to the video > from the horse's mouth, I transcribe what the speaker said: > > "there will be an open source version, but that open source version will be > maintained for

Re: Disable folder creation for details username

2023-03-17 Thread Gedalya
On 3/17/23 20:23, Robert Blayzor wrote: > We understand there is: > lda_mailbox_autocreate > > Which we have yes, as we do want to create mailboxes automatically when the  > first message comes in, but not these folders. That's the setting you want. In IMAP / dovecot context, "mailbox" means

Re: Question about line length limit in lmtp.

2022-12-08 Thread Gedalya
On 12/8/22 17:41, Aki Tuomi wrote: > This is something that is usually handled automatically and does not affect > the mails you see in your MUA. The folding is done within the protocol. Again, I find this statement quite strange. I'm not relying on any MUA when I say long lines appear to be

Re: Question about line length limit in lmtp.

2022-12-08 Thread Gedalya
On 12/8/22 17:29, Aki Tuomi wrote: > Dovecot LMTP and Submission enforce the RFC line length, which is 1000, > including \r\n. Can you elaborate on this? I often get mail coming in from the wild with long lines and I find the most practical approach is to pass it on to dovecot LMTP as is, and

Re: sieve script is too large (max 1048576 bytes)

2022-10-19 Thread Gedalya
On 10/17/22 18:43, Marc wrote: > In what section of the config is this limited? plugin {     sieve_max_script_size = 1M }

Re: mdbox vs. maildir format

2022-10-18 Thread Gedalya
On 10/19/22 07:46, Steve Litt wrote: >> for MAILBOX in $USERS; do >> doveadm expunge -u "$MAILBOX" mailbox Trash savedbefore 7d >> doveadm expunge -u "$MAILBOX" mailbox Spam savedbefore 30d >> doveadm purge -u "$MAILBOX" >> >>

Re: mdbox vs. maildir format

2022-10-18 Thread Gedalya
On 10/18/22 18:46, Marc wrote: >> you must not lose the dbox index files, as they can’t be >> regenerated without data loss. > I have read this also, and was also worried about this, but when I look at > the flat m.988 file, I still have quite a lot of useful data there. "Note that with

Re: mdbox vs. maildir format

2022-10-18 Thread Gedalya
On 10/18/22 18:17, Michael wrote: > what about backup? how can i achieve a backup/snapshot of both, the mdbox > (nfs share) and the index files (local raid) and assure they are consistent? If you do your backups using doveadm backup, then the result should be consistent, at least in the sense

Re: dovecot-lda -> lmtp server ?

2021-10-16 Thread Gedalya
On 10/17/21 02:01, Scott Q. wrote: > I'm stuck with using Qmail which has no LMTP support, and thus I'm using > dovecot-lda which has certain drawbacks. > > Has anyone found a way to direct dovecot-lda to deliver the mail to the LMTP > server or any other way for Qmail to deliver the mail to the

Re: Panic during IMAP APPEND

2021-09-30 Thread Gedalya
On 9/24/21 16:05, Gedalya wrote: > I'll wait for the remaining users to return and report again. All good.

Re: Panic during IMAP APPEND

2021-09-24 Thread Gedalya
On 9/21/21 04:45, Gedalya wrote: > It might be a couple of days before I can confirm this is fixed. Interim update: some but not all affected users have been active again with no errors. I'll wait for the remaining users to return and report again. So far I haven't been able to reprod

Re: Panic during IMAP APPEND

2021-09-20 Thread Gedalya
On 9/21/21 04:45, Gedalya wrote: > Built, installed on two boxes. No, Sorry, Stephan, I actually built it without the patch. I had trouble with the patch, I had to refactor it by hand. Did you forget a ) in line 745? if (mevent->dest_mail_uid > 0) Building now. At least the patch r

Re: Panic during IMAP APPEND

2021-09-20 Thread Gedalya
On 9/21/21 04:12, Stephan Bosch wrote: > If you have the opportunity to apply and test patches, this should fix it: Built, installed on two boxes. Unfortunately, the users who were experiencing this issue seem to be inactive as of about 2 hours ago. It might be a couple of days before I can

Re: Panic during IMAP APPEND

2021-09-20 Thread Gedalya
On 9/21/21 00:04, Gedalya wrote: > Mailbox format is Maildir Migrating to mdbox didn't help. "doveadm force-resync -u u@d \*" also didn't help. Getting exactly the same message and backtrace.

Panic during IMAP APPEND

2021-09-20 Thread Gedalya
I don't know how I can tell which mailbox is selected / being appended to. Mailbox format is Maildir. Filesystem is XFS. System was upgraded from 2.2.36.1 to 2.3.16, and it seems this started happening following that. Sep 20 15:49:34 imap1 dovecot: imap(u@d)<17673>: Panic: file

Re: Dovecot sieve filters

2021-09-19 Thread Gedalya
On 9/20/21 03:15, j.emerlik wrote: > "If address :is "from" "*" { .. } - I have same error. Quote: Error: sieve: report-ham: line 1: the envelope extension cannot be used in this context (needs access to message envelope) It says "line 1", that's your "require" line. You need to remove

Re: Dovecot sieve filters

2021-09-19 Thread Gedalya
On 9/19/21 21:24, j.emerlik wrote: > > Error: sieve: report-ham: line 1: the envelope extension cannot be used in > this context (needs access to message envelope) > My guess would be that the envelope is not available because this is sieve running in IMAP, not during delivery. If the From:

Re: Storing Last Login Plugin value in SQL

2021-09-13 Thread Gedalya
On 9/14/21 05:44, dove...@ptld.com wrote: > > Thank you for the solution of using sql triggers. I was able to get it > working that way. > I hope it doesn't add too much overhead as it feels like a band-aid and > duct-tape fix. Yes, it's a workaround rather than being able to customize the SQL

Re: Storing Last Login Plugin value in SQL

2021-09-13 Thread Gedalya
On 9/14/21 02:25, dove...@ptld.com wrote: > > The problem im having with the last-login plugin is the only option i can see > to use is a dict map{}. I can not create my own query for the plugin to > execute otherwise this would be way easier. Using the map{} method all you > can do it tell it

Re: Storing Last Login Plugin value in SQL

2021-09-13 Thread Gedalya
On 9/14/21 02:12, dove...@ptld.com wrote: > > Anyone have any idea how to get the last-login plugin to update a date/time > column in sql? I use this to throttle updates to once in 900 seconds: create trigger tg1 before update on mailacct for each row if new.lastlogin < (old.lastlogin + 900)

Re: What kind of search response time are you setting with solr full text search?

2021-08-24 Thread Gedalya
On 8/25/21 9:19 AM, Steve Dondley wrote: > I did some experimenting. I noticed that if the word I'm searching on is > fairly rare, results will pop up quickly, like in around 3 to 5 seconds. > Words that don't exist at all in any email returns nothing almost instantly. > > But words that appear

Re: FW: imapsieve rules not matching at all?

2021-03-20 Thread Gedalya
On 3/20/21 7:37 AM, dove...@steve.wattlink.net wrote: > > plugin { > >   imapsieve_mailbox1_before = > file:/usr/local/etc/dovecot/sieve/report-spam.sieve > >   imapsieve_mailbox1_causes = COPY APPEND > >   imapsieve_mailbox1_name = Spam > >   imapsieve_mailbox2_before = >

Re: FW: imapsieve rules not matching at all?

2021-03-20 Thread Gedalya
On 3/20/21 10:54 AM, Steve Watt wrote: > I thought I had enabled that – check out the doveconf -n listing.  Did I miss > something? IMAP METADATA for user-defined imapsieve scripts would be useful to you if you have clients that support that. If you know of any, please do share. > Mar 19

Re: FW: imapsieve rules not matching at all?

2021-03-20 Thread Gedalya
On 3/20/21 7:37 AM, dove...@steve.wattlink.net wrote: > > Greetings! > >   > > I feel like this has been beaten to death, but my searches on the web (and > about 10 hours spent over the last two days) haven’t revealed what’s going on. > >   > > Basically, it’s the usual “I’d like to auto-learn

Re: Why Last-login?

2021-03-03 Thread Gedalya
On 3/4/21 3:21 AM, @lbutlr wrote: > On 03 Mar 2021, at 05:38, Aki Tuomi wrote: >> These days you can also replace last-login with mail-lua script, which can >> do lot more than just try to set a dict. But last-login rather useful >> information when you are debugging, or removing dormant

Re: Getting panic in http-client-request.c: line 1240 during indexing on Ubuntu 20.04

2021-02-17 Thread Gedalya
On 2/9/21 4:49 AM, deano-dove...@areyes.com wrote: > Unfortunately they don't make the source repos (deb-src > http://repo.dovecot.org/.) available, They do however provide the .dsc file, so you can use dget (from the devscripts package) e.g. mkdir dovecot-source; cd dovecot-source dget

Re: Getting panic in http-client-request.c: line 1240 during indexing on Ubuntu 20.04

2021-02-17 Thread Gedalya
On 2/9/21 2:29 AM, John Fawcett wrote: >> >> Do we have when (or even if) that patch will make it into the main ?  I >> would really rather prefer pulling from repo ... >> > +1 from me. > > I'd like to see this patch (or something equivalent go in). Without this Tika > is unusable for me. > +1

Re: dovecot quota-warning detection mail

2020-10-29 Thread Gedalya
Let me just add, of course you should play around with some test entries. You don't want problems with dovecot finding the home directory, users suddenly seeing an empty mailbox, or LMTP delivering to the wrong place. Just in case this isn't obvious :-) On 10/29/20 2:08 PM, Gedalya wrote: > V

Re: dovecot quota-warning detection mail

2020-10-29 Thread Gedalya
> - > root:/root:: > :/var/home/xxx/:: > -...@ddd.example.com:/home/vhosts/ddd/-ccc-ddd:: > -...@ggg.example.net:/home/vhosts/ggg/-fff-ggg:: > -...@jjj.example.co.jp:/home/vhosts/jjj/-iii-jjj:: > : >

Re: dovecot quota-warning detection mail

2020-10-29 Thread Gedalya
Perhaps if you share some information about your passdb / userdb authentication setup, I or others might be able to help further. On 10/29/20 12:51 PM, 森川 孝司 wrote: > Gedalya-san > > Thank you for the information. > > It seems to be difficult... > > morikawa > -Orig

Re: dovecot quota-warning detection mail

2020-10-29 Thread Gedalya
entication backend, you may be able to do the transformation at that layer. https://doc.dovecot.org/configuration_manual/authentication/user_extra_field/ On 10/29/20 12:06 PM, 森川 孝司 wrote: > Gedalya-san > > You are currently logged in without a domain name. > > Currently, "abc-xy

Re: dovecot quota-warning detection mail

2020-10-29 Thread Gedalya
f everything behaves the same, then setting auth_default_realm should not do any harm. In other words, the question is: does any functionality actually depend on having a username without a domain. On 10/29/20 8:18 AM, 森川 孝司 wrote: > Gedalya-san > > I have a question. > Current

Re: dovecot quota-warning detection mail

2020-10-28 Thread Gedalya
On 10/28/20 12:19 PM, 森川 孝司 wrote: > " > "Recipient address rejected: User unknown in local recipient table" If abc-xyz-unyo-sekkei is supposed to be abc-xyz-unyo-sek...@example.co.jp then you could try to set in dovecot configuration: auth_default_realm = example.co.jp Then %u will contain

Re: imapsieve: setting imapsieve_url disables admin scripts

2020-10-27 Thread Gedalya
On 10/27/20 7:52 PM, Stephan Bosch wrote: > > > On 27/10/2020 11:32, Gedalya wrote: >> Hello, >> >> The documentation says imapsieve_url "has no effect on the >> administrator-controlled Sieve scripts". However, when setting this item, I >> g

imapsieve: setting imapsieve_url disables admin scripts

2020-10-27 Thread Gedalya
Hello, The documentation says imapsieve_url "has no effect on the administrator-controlled Sieve scripts". However, when setting this item, I get lines such as: Error: imapsieve: mailbox INBOX: Failed to read /shared/imapsieve/script mailbox attribute: Mailbox attributes not enabled and

Re: Indexer error after upgrade to 2.3.11.3

2020-10-16 Thread Gedalya
On 8/19/20 11:37 PM, Josef 'Jeff' Sipek wrote: > If you can try it, let us know how it went. Hi, Thanks. I had this problem and the patch helped. This suddenly started on two different deployments, a few days apart, one was October 8 and the other October 12, upon delivery of apparently

Re: Spam learning for rspamd

2020-10-12 Thread Gedalya
On 10/13/20 8:49 AM, Dan Egli wrote: > > I'm quite new to Dovecot, so forgive me if this is a simple question. I've > got rspamd running, and it's rewriting the subject of many messages as spam > even when they are not. I've moved things out of the spam folder, which I was > under the

Re:

2020-03-08 Thread Gedalya
On 3/9/20 1:32 PM, ?? wrote: > hello > ?0?2 ?0?2 ?0?2I have some error by LMTP: > Mar 09 13:26:42 imap-hibernate(q...@a.com)<90154>: Error: > Failed to unhibernate client: net_connect_unix(/var/run/dovecot/imap-master) > failed: Permission denied > Mar 09 13:26:42 lmtp(q...@a.com)<90263>:

Re: Dovecot - Upgrade Solr 7.7.2 to 8.4.1

2020-02-05 Thread Gedalya
On 2/5/20 5:55 PM, Francis Augusto Medeiros-Logeay wrote: > I want to install fts-solr, but must tutorials are mentioning solr 7.7.0. Any > heads-up on what one must pay attention to when installing 8.4.0? Do I need  > to update the version on the schemas, for example? I followed the

Re: Dovecot - Upgrade Solr 7.7.2 to 8.4.1

2020-01-22 Thread Gedalya
On 1/23/20 7:03 AM, Domenico Pastore wrote: > So, with Dovecot is it possible to use Apache Solr 8.4?  > High RAM usage is the only problem? I'm using 8.4.0 and it works flawlessly.

Re: Question about verbose_proctitle

2018-07-12 Thread Gedalya
On 07/13/2018 08:45 AM, J Doe wrote: > I’m aware that this is because the code does not state to specify “TLS” for > the dovecot/imap [u...@example.com 1.2.3.4 IDLE] line of output, but I’m > curious as to why that decision was made ? TLS is done by the imap-login process. This process does all

Re: maildir vs dbox?

2018-04-19 Thread Gedalya
On 04/20/2018 04:08 AM, David Mehler wrote: > I am wondering if changing to dbox would be beneficial? It can be faster when a user deletes or moves a large number of messages. One reason why I migrated a few sites is that when reporting issues with maildir on this list, there seems to be lack of

Re: multi-site SSL certificates

2018-04-02 Thread Gedalya
On 04/02/2018 03:17 PM, Jeff Abrahamson wrote: > On Mon, Apr 02, 2018 at 02:34:34PM +0200, Gedalya wrote: >> On 04/02/2018 02:25 PM, Jeff Abrahamson wrote: >>> I see that the file >>> >>> .well-known/acme-challenge/IT7-YURAep4bniD9zYpKpdRUBQcgCRJ6FflmZzWQG

Re: multi-site SSL certificates

2018-04-02 Thread Gedalya
On 04/02/2018 02:25 PM, Jeff Abrahamson wrote: > I see that the file > > .well-known/acme-challenge/IT7-YURAep4bniD9zYpKpdRUBQcgCRJ6FflmZzWQGNg > > is being created (and one other file, too) but that nginx reports that > the _directory_ > >

Re: BUG: Unknown command in userdb socket: CPID?2625

2018-03-26 Thread Gedalya
On 03/26/2018 02:03 PM, Vladimir Tiukhtin wrote: > Do you have any document describing "special" names? Thanks It's documented here. https://wiki2.dovecot.org/Services#auth I have to agree that it's kind of confusing. Would be clearer if it had a e.g. type=userdb setting.

Re: Documentation Bug

2018-02-13 Thread Gedalya
On 02/13/2018 03:00 PM, Andrew Beck wrote: > In https://wiki2.dovecot.org/Tools/Doveadm/Sync#section_arguments the > destination list 5 possible options for the destination > > but in the page on migration https://wiki2.dovecot.org/Migration/Dsync it > seems to use a sixth undocumented "imapc:"

Re: doveadm log reopen not works with 2.2.33

2017-12-14 Thread Gedalya
On 12/14/2017 03:18 PM, Alessio Cecchi wrote: > Is this a know bug? https://www.dovecot.org/pipermail/dovecot/2017-November/109971.html

Re: Postlogin script

2017-11-11 Thread Gedalya
On 11/10/2017 11:03 PM, Joseph Tam wrote: > > The toughest situation (using script techniques) is for > CIDR ranges just shy of a full octet boundary e.g. /25.  Actually there is a great tool for that, grepcidr $ echo 10.11.12.127 | grepcidr 10.11.12.0/25 && echo OK 10.11.12.127 OK $ echo

Re: Postlogin script

2017-11-09 Thread Gedalya
A bit clunky but perhaps you could find another command. https://packages.debian.org/stretch/netmask $ IP=172.11.0.28 $ if [ "$(netmask -n $IP/24)" == " 172.11.0.0/24" ]; then echo OK; fi OK $ IP=172.12.0.11 $ if [ "$(netmask -n $IP/24)" == " 172.11.0.0/24" ]; then echo OK; fi $ Range:

Re: Post-login scripting

2017-10-21 Thread Gedalya
ratelimiting and such. It also integrates > with postfix. > > Aki > >> On October 20, 2017 at 6:12 PM Gedalya <geda...@gedalya.net> wrote: >> >> >> No, it's entirely my own. >> If all you want to do is write client IP addresses to a database then

Re: Post-login scripting

2017-10-20 Thread Gedalya
ix.org/addon.html > > 2017-10-20 16:53 GMT+02:00 Gedalya <geda...@gedalya.net>: > >> On 10/20/2017 04:50 PM, j.emerlik wrote: >> >> I understand that Dovecot SASL does not support the Post-Login scripts. >> Yea, perhaps not. The concept it follows for POP3/IMAP is a wrap

Re: Post-login scripting

2017-10-20 Thread Gedalya
On 10/20/2017 04:50 PM, j.emerlik wrote: I understand that Dovecot SASL does not support the Post-Login scripts. Yea, perhaps not. The concept it follows for POP3/IMAP is a wrapper for the executable launched to perform the actual service, and there is no such service when dovecot is only a

Re: Post-login scripting

2017-10-20 Thread Gedalya
I use an access policy server which mostly does rate-limiting and also writes to a database. It's written in perl. If all you want to do is to write some records for every connection then the script would be rather simple. You just need to put "check_policy_service unix:" in the right

Re: Post-login scripting

2017-10-20 Thread Gedalya
On 10/20/2017 03:46 PM, j.emerlik wrote: > Hi , > I would like to save every authentication IP addresses to database, for > IMAP and POP3 everything working correct but I don't know how to configure > Post-login script for SMTP AUTH. > > Can you help me ? > > Regards, > Jack It would probably be

Re: pop 110/995, imap 143/993 ?

2017-08-21 Thread Gedalya
Bottom line, a server operator's view can be a lot narrower than this, especially in the scenario where you serve the general public and do not control the clients. There is definitely no reason why you wouldn't want to serve ports 993/995. The MITM thing can be used to argue against serving

Re: pop 110/995, imap 143/993 ?

2017-08-21 Thread Gedalya
On 08/21/2017 06:04 PM, Sebastian Arcus wrote: > > On 21/08/17 10:37, Gedalya wrote: >> On 08/21/2017 07:28 AM, voy...@sbt.net.au wrote: >>> is there a 'preferred way'? should I tell users to use 143 over 993 ? or >>> 993 over 143? or? >> There is no concret

Re: pop 110/995, imap 143/993 ?

2017-08-21 Thread Gedalya
On 08/21/2017 07:28 AM, voy...@sbt.net.au wrote: > is there a 'preferred way'? should I tell users to use 143 over 993 ? or > 993 over 143? or? There is no concrete answer. There are various opinions and feelings about this. The opinion againt 993/995 is that these are not standard ports, and

Re: Ubuntu 16.04 dovecot-core requires deprecated ntpdate

2017-08-17 Thread Gedalya
On 08/17/2017 09:57 PM, Michael Fox wrote: > I'm building a new Ubuntu 16.04 machine, including Dovecot. > > When I select the dovecot-core package in Synaptic, it also wants to install > ntpdate. Install packages at the command line using apt-get. It lets you better see and understand what's

Re: v2.2.28 released

2017-03-07 Thread Gedalya
On 03/07/2017 02:41 PM, Robert L Mathews wrote: > As a result, I > end up using what seems to be a mostly stable version, plus "extra > patches I grabbed from reading the mailing list". Pretty sure that's what the dovecot enterprise repo is.

Re: Problem with Let's Encrypt Certificate

2017-02-19 Thread Gedalya
On 02/19/2017 08:39 PM, Michael A. Peters wrote: > Every time I change the private key - > > A) I have to make a TLSA record for the new key You're actually expected to pin the CA in your TLSA record, not your own key.

Re: Is there a way to override Sieve's "not sending notification for auto-submitted message" behavior?

2016-05-05 Thread Gedalya
On 05/05/2016 01:33 PM, Gedalya wrote: > you just might be able to set that up to test for the right conditions *when* > to do this, and then proceed to remove the header Maybe using PCRE negative lookaheads /^Subject: (?!google-calendar-notification)/DUNNO /^From: (?!google)/

Re: Is there a way to override Sieve's "not sending notification for auto-submitted message" behavior?

2016-05-05 Thread Gedalya
On 05/05/2016 01:02 PM, deoren wrote: > On 5/5/2016 10:42 AM, Gedalya wrote: >> On 05/05/2016 01:00 AM, deoren wrote: >>> Goal: >>> >>> 1) Setup a Google Calendar entry for a biweekly task >>> 2) Configure the email notification schedule >>> 3

Re: Is there a way to override Sieve's "not sending notification for auto-submitted message" behavior?

2016-05-05 Thread Gedalya
On 05/05/2016 01:00 AM, deoren wrote: > Goal: > > 1) Setup a Google Calendar entry for a biweekly task > 2) Configure the email notification schedule > 3) When the email notification from Google arrives have Sieve send a > notification to an alias I have setup for my cell provider's email to >

Re: Changing Password Schemes

2016-05-03 Thread Gedalya
> version should be like this my setup: > > UPDATE mailbox set password = ENCRYPT(clearpwd, CONCAT('$6$',sha(RAND( > WHERE password IS NULL OR password=' '; > > > You have a good day now, en mag jou môre ook so wees, > > Carl A Jeptha > > On 2016-05-

Re: Changing Password Schemes

2016-05-03 Thread Gedalya
OR cryptpwd = '', >>>> CONCAT('{PLAIN}', clearpwd), >>>> cryptpwd >>>> ) as password, >>>> '/var/vmail/%d/%n' as userdb_home, >>>> 'maildir:/var/vmail/%d/%n' as userdb_mail, >>>> 150 as userdb_

Re: Changing Password Schemes

2016-05-03 Thread Gedalya
username as user, >>>> SELECT >>>> IF( >>>> cryptpwd IS NULL >>>> OR cryptpwd = '', >>>> CONCAT('{PLAIN}', clearpwd), >>>> cryptpwd >>>> ) as password, >>>>

Re: Changing Password Schemes

2016-05-03 Thread Gedalya
er, >>>> SELECT >>>> IF( >>>> cryptpwd IS NULL >>>> OR cryptpwd = '', >>>> CONCAT('{PLAIN}', clearpwd), >>>> cryptpwd >>>> ) as password, >>>> '/var/vmail/%d/%n' as userdb_home

Re: Changing Password Schemes

2016-05-02 Thread Gedalya
On 05/02/2016 05:32 AM, Carl Jeptha wrote: > May 2 05:26:03 |** dovecot: auth-worker(3442): Error: > sql(u...@domain.tld,xxx.xxx.xxx.xxx): Password query must return a > field named 'password' I'm not sure, maybe it's checking case-sensitive. Your query returns PASSWORD. Make it lowercase.

Re: Changing Password Schemes

2016-05-01 Thread Gedalya
username = '%u' AND active = '1' > > > You have a good day now, en mag jou môre ook so wees, > > Carl A Jeptha > > > On Sun, May 1, 2016 at 3:02 AM, Gedalya <geda...@gedalya.net> wrote: > >> First of all, you can probably go online befo

Re: Changing Password Schemes

2016-04-30 Thread Gedalya
95chars >> long, Is your hash column set to 128 or up around there or larger? >> >> >> Quoting Carl A Jeptha <cajep...@gmail.com>: >> >>> Sorry for double reply, but this what a password looks like in the "hashed" >>> password colu

Re: Changing Password Schemes

2016-04-29 Thread Gedalya
That's not SHA512-CRYPT. That's just a simple sha512 of the password, without salt. A SHA512-CRYPT password will be generated with: printf "1234\n1234" | doveadm pw -s SHA512-CRYPT or: doveadm pw -s SHA512-CRYPT -p 1234 or: mkpasswd -m sha-512 1234 (without the "{SHA512-CRYPT}" prefix)

Re: apt pinning specific dovecot version

2016-04-26 Thread Gedalya
On 04/26/2016 05:26 PM, Regan Jelčić wrote: > I currently have the dovecot-core package from wheezy-backports pinned on one > of my servers to version '2.2.9', which has been working great. I now want to > upgrade that to the newest version under wheezy-backports which is: > > dovecot-core

recipient delimiter translation with exim

2016-04-22 Thread Gedalya
In case anyone is interested: Say I want to allow multiple recipient delimiters, possibly more than one character long, and dovecot is configured to use the + sign. In my case I decided to also allow the following: ".-" "__" and ".." My last router in exim is mysql_user and the one before that

Re: multiple recipient_delimiter

2016-03-31 Thread Gedalya
Would be useful to me as well, if this gets merged. On 03/31/2016 11:42 PM, Patrick Domack wrote: > No, my patch still applies to make this happen though. It's just a one > word/line patch. > > > Quoting Jörg Backschues : > >> Hello, >> >> does the recipient_delimiter

Re: Option to not add "Received" header ?

2016-03-21 Thread Gedalya
On 03/21/2016 10:00 AM, Timo Sirainen wrote: > On 21 Mar 2016, at 22:08, Tom Sommer wrote: >> On 2015-03-24 12:27, Florent B wrote: >> >>> I use Dovecot in lmtp mode to receive mails. >>> I would like an option to tell Dovecot to not add a "Reveived" header on >>> each server

Re: Logging the TLS cipher suite

2016-03-11 Thread Gedalya
Forgot the important part, sorry http://wiki.dovecot.org/Variables On 03/12/2016 12:30 AM, Gedalya wrote: Add %k to login_log_format_elements (in conf.d/10-logging.conf) for example login_log_format_elements = user=<%u> method=%m rip=%r lip=%l mpid=%e %c %k session=<%{session}>

Re: Logging the TLS cipher suite

2016-03-11 Thread Gedalya
Add %k to login_log_format_elements (in conf.d/10-logging.conf) for example login_log_format_elements = user=<%u> method=%m rip=%r lip=%l mpid=%e %c %k session=<%{session}> On 03/12/2016 12:20 AM, Luigi Rosa wrote: Hi, could it be possible to log the TLS cipher suite as Postfix does? This

Re: Ubuntu packages

2016-03-06 Thread Gedalya
On 03/07/2016 01:28 AM, Jaldhar H. Vyas wrote: On Mon, 7 Mar 2016, Andrew McGlashan wrote: Many of us Debian users hate the fact that systemd even exists. for now we can run servers without systemd, but who knows in a few years or a couple of releases. I can't speak for the project as

Re: Implementation of TLS OCSP Stapling

2016-03-03 Thread Gedalya
On 03/03/2016 08:17 AM, dove...@flut.demon.nl wrote: > On 03-03-16 14:09, Gedalya wrote: >> On 03/03/2016 07:30 AM, Stephan Bosch wrote: >>> BTW, I can imagine that Thunderbird can already do that, as it shares much >>> of the Firefox code base. >> Thu

Re: Implementation of TLS OCSP Stapling

2016-03-03 Thread Gedalya
On 03/03/2016 07:30 AM, Stephan Bosch wrote: > BTW, I can imagine that Thunderbird can already do that, as it shares much of > the Firefox code base. Thunderbird definitely does validate certificates via OCSP, enabled by default and I've run into that the hard way a couple of times wrt StartSSL

Re: v2.2.20 release candidate released

2015-12-08 Thread Gedalya
On 12/06/2015 07:19 AM, Gerhard Wiesinger wrote: Session tickets are broken by DESIGN as they violate PFS (Perfect Forward Secrecy). If you can steal one AES key (all session tickets are encrypted for server lifetime with only one key) you can decrypt ALL sessions ever made with session

Re: v2.2.20 release candidate released

2015-12-05 Thread Gedalya
On 12/05/2015 04:32 AM, Gerhard Wiesinger wrote: like in nginx And OCSP Stapling would be nice too :-)

Re: Thanks for Dovecot

2015-10-13 Thread Gedalya
On 10/13/2015 04:00 PM, Steve Litt wrote: Hi all, Thanks for making Dovecot. I just transitioned from Debian Wheezy to Void Linux. It was fairly easy to get Dovecot working on my Void box, and having Dovecot makes all of my email activities easier by doing one thing and doing it right. Thank

Re: [Dovecot] dsync replication errors

2015-09-07 Thread Gedalya
On 02/17/2013 03:21 AM, Timo Sirainen wrote: Although there's still some mail duplication problem with maildir that doesn't log any errors about it. I'm not sure why that happens. While you're around, Timo :-) I've had such an issue recently with 2.2.18, using Maildir, where emails were

Re: How about an option to disbale headers? (was Re: Patch for doveadm -f table nit)

2015-07-03 Thread Gedalya
On 05/24/2015 03:08 AM, Gedalya wrote: On 03/20/2015 02:47 PM, Timo Sirainen wrote: Added -h parameter now to hg. Using 2.2.18. With -f table this behaves as expected, however with -t tab the output seems to include the separating tabs of the header line prepended to the first line

Re: Testin new installation

2015-06-13 Thread Gedalya
On 06/13/2015 01:41 PM, Steve Matzura wrote: On Sat, 13 Jun 2015 10:36:21 -0600, you wrote: Look at /etc/hosts ::1 is the ipv6 version of localhost. Right. I actually knew that. So why does that take precedence for the definition of localhost even though it's not the first line in the file?

Re: Imap Notify

2015-06-12 Thread Gedalya
On 06/12/2015 03:38 PM, Tony Morehen wrote: Despite this, NOTIFY did not show up it Dovecot's capabilities: * OK [CAPABILITY IMAP4rev1 LITERAL+ SASL-IR LOGIN-REFERRALS ID ENABLE IDLE AUTH=PLAIN] Dovecot ready. It should show up in the post-login capabilities. Do a login first, then you get

Re: FREAK/Logjam, and SSL protocols to use

2015-05-27 Thread Gedalya
On 05/27/2015 11:56 AM, Rick Romero wrote: Quoting Gedalya geda...@gedalya.net: On 05/27/2015 09:55 AM, Rick Romero wrote: Quoting Gedalya geda...@gedalya.net: On 05/26/2015 10:37 AM, Ron Leach wrote: https://weakdh.org/sysadmin.html includes altering DH parameters length to 2048

Re: FREAK/Logjam, and SSL protocols to use

2015-05-27 Thread Gedalya
On 05/27/2015 12:15 PM, Ron Leach wrote: I couldn't find an entry in 10-ssl.config that covered regeneration (though our version is 2.2.15 and the current release, 2.2.18, may differ). Yea it's just not there. You can 'discover' these 'hidden' options using doveconf -a, scattered docs,

Re: FREAK/Logjam, and SSL protocols to use

2015-05-27 Thread Gedalya
On 05/27/2015 09:55 AM, Rick Romero wrote: Quoting Gedalya geda...@gedalya.net: On 05/26/2015 10:37 AM, Ron Leach wrote: https://weakdh.org/sysadmin.html includes altering DH parameters length to 2048, and re-specifying the allowable cipher suites - they give their suggestion. It looks

Re: FREAK/Logjam, and SSL protocols to use

2015-05-27 Thread Gedalya
On 05/27/2015 12:29 PM, Jacques Distler wrote: It is not at this point emphasized anywhere, including on weakdh.org, that it is actually of high importance to regenerate your DH parameters frequently. That's not really correct. If you're using a prime of length at least 2048 bits, then the

Re: FREAK/Logjam, and SSL protocols to use

2015-05-26 Thread Gedalya
On 05/26/2015 10:37 AM, Ron Leach wrote: https://weakdh.org/sysadmin.html includes altering DH parameters length to 2048, and re-specifying the allowable cipher suites - they give their suggestion. It looks like there is an error on this page regarding regeneration. In current dovecots

Re: How about an option to disbale headers? (was Re: Patch for doveadm -f table nit)

2015-05-24 Thread Gedalya
On 03/20/2015 02:47 PM, Timo Sirainen wrote: Added -h parameter now to hg. Using 2.2.18. With -f table this behaves as expected, however with -t tab the output seems to include the separating tabs of the header line prepended to the first line of output. In other words, the header line is

Re: Controlling IP addresses for services

2015-05-22 Thread Gedalya
On 05/22/2015 11:40 PM, Alex Regan wrote: service imap-login { inet_listener imaps { listen=192.168.1.100 port = 993 } } # dovecot -n # 2.2.15: /etc/dovecot/dovecot.conf doveconf: Fatal: Error in configuration file /etc/dovecot/dovecot.conf line 54: Unknown setting: listen

Re: doveadm -D and -v options

2015-04-30 Thread Gedalya
On 04/30/2015 02:51 AM, Reuben Farrelly wrote: According to doveadm-dsync man page the above two options are valid, but they are rejected when used: tornado # doveadm backup -v -u testuser remote:pi.me.name:4814 backup: invalid option -- 'v' doveadm backup [-u user|-A] [-S socket_path] [-fPRU]

Re: Xi broken

2015-04-30 Thread Gedalya
On 04/30/2015 01:52 PM, Stephan Bosch wrote: Hi, Xi is broken at the moment. This XenServer version won't boot jessie kernel. Can't fix this myself, so this may take some time. Regards, Stephan. I had this issue too with XenServer. Changed to hvm to make it boot. It worked.

Re: Postpone email delivery with LMTP and Postfix

2015-04-29 Thread Gedalya
On 04/29/2015 04:47 PM, Miloslav Hůla wrote: Hi, is there any way, based on userdb/passwdb attribute, how to postpone an email delivery? The purpose is, I need to freeze an account (Maildir++) for a few minutes and new email must not be delivered. But emails must be delivered when account is

Re: ManageSieve Dovecot v2 listen on localhost only

2015-04-17 Thread Gedalya
address = 127.0.0.1 port = 4190 On 04/17/2015 04:21 PM, tr...@skrilnetz.net wrote: Hi, How can I only listen on localhost for ManageSieve? I tried: port = localhost:4190 still listening *: tcp0 0 0.0.0.0:4190 0.0.0.0:* LISTEN 0 515675

Re: Replace autocreate after upgrading

2015-04-17 Thread Gedalya
On 04/17/2015 09:27 AM, tr...@skrilnetz.net wrote: Hi, I just upgraded to 2.2.9 and found out that autocreate should not be used any more. I had a look at http://wiki2.dovecot.org/MailboxSettings and I tried to replace my old config but I had no success. Would somebody be so and help me to

Re: ManageSieve Dovecot v2 listen on localhost only

2015-04-17 Thread Gedalya
http://wiki2.dovecot.org/Services

  1   2   3   4   >