Re: Any way to make a shared mailbox(not a shared folder)

2024-04-02 Thread Kees van Vloten
/dovecot-acl:cache_secs=600 } Together with MCD to configure Thunderbird, the user experience is alright. - Kees. On Tue Apr 2 14:56:52 2024, Kees van Vloten wrote: On 02-04-2024 14:34, Maksim Rodin wrote: Hi I am not critical but just want to share some thoughts regarding this way of handling

Re: Any way to make a shared mailbox(not a shared folder)

2024-04-02 Thread Kees van Vloten
On 02-04-2024 14:34, Maksim Rodin wrote: Hi I am not critical but just want to share some thoughts regarding this way of handling shared mailboxes: In general how i do it is just make an info@ account and login as an imap user this allows multiple info@ users especially in thunderbird to be

Re: antispoofing with dovecot submission

2024-03-15 Thread Kees van Vloten
On 15-03-2024 08:10, Aki Tuomi via dovecot wrote: On 14/03/2024 17:28 EET dovecot--- via dovecot wrote: it is possible to do antispoofing, like reject_authenticated_sender_login_mismatch from postfix ? I could be wrong, but i believe dovecot submission is only a proxy to postfix

auth_mechanisms per listener or local_name?

2023-12-01 Thread Kees van Vloten
Hi all, I would like to use kerberos authentication on the local network but not for connections from internet, which are forwarded by haproxy. So both types of login can be distinguished by a different inet_listener and also a different by local_name. Is there a way to set auth_mechanisms

Re: dovecot submission max line length

2023-11-14 Thread Kees van Vloten
Op 14-11-2023 om 14:35 schreef Aki Tuomi: On 14/11/2023 14:59 EET Kees van Vloten wrote: Hi all, After upgrading Debian Bullseye (Dovecot 2.3.13) to Bookworm (Dovcecot 2.3.19), submission-login returns an error on Kerberos authentication: "Client sent invalid command: Command

Fwd: dovecot submission max line length

2023-11-14 Thread Kees van Vloten
Op 14-11-2023 om 14:35 schreef Aki Tuomi: On 14/11/2023 14:59 EET Kees van Vloten wrote: Hi all, After upgrading Debian Bullseye (Dovecot 2.3.13) to Bookworm (Dovcecot 2.3.19), submission-login returns an error on Kerberos authentication: "Client sent invalid command: Command line i

dovecot submission max line length

2023-11-14 Thread Kees van Vloten
Hi all, After upgrading Debian Bullseye (Dovecot 2.3.13) to Bookworm (Dovcecot 2.3.19), submission-login returns an error on Kerberos authentication: "Client sent invalid command: Command line is too long". When I initially set this up on Bullseye I have seen the same issue, but adding

Re: Is it possible to show different mechanism according to client IP ?

2023-10-26 Thread Kees van Vloten
Op 26-10-2023 om 09:50 schreef Philippe MARASSE via dovecot: Hello, Say I'm wondering if it's possible to show 3 mechanisms for clients in private network (XOAUTH2 / PLAIN / EXTERNAL) and only 2 to others (only OAUTH / EXTERNAL) ? I've seen allow_nets extra field for args, but it seems that's

Re: GSSAPI auth Line too long

2023-05-31 Thread Kees van Vloten
Op 31-05-2023 om 11:00 schreef Thomas Lemarchand via dovecot: Hi ! Are you saying I should open a bug report for Thunderbird developers ? I did not find a reference to a 998 bytes limit, do you have something I can refer to ? Thank you. Well, I have a working setup with postfix+dovecot

Re: GSSAPI auth Line too long

2023-05-30 Thread Kees van Vloten
On 30-05-2023 19:54, Thomas Lemarchand via dovecot wrote: Hello, On version 2.3.20 (80a5ac675d), I have a problem with submission-login when using GSSAPI auth : it's not working, probably due to AUTH line being too long. It appeared after I activated PAC on my Kerberos infrastructure. Now

Re: Best practice for Dovecot with LDAP and Postfix

2023-05-09 Thread Kees van Vloten
a dovecot user (or anonymous read access) in the LDAP database? Thanks, Moritz On 08/05/2023 23:36 CEST Kees van Vloten wrote: On 08-05-2023 16:43, Moritz Pflanzer wrote: Hi all, so far I had a setup where Dovecot was using a passwd file as userdb and passdb. Postfix was then authentic

Re: Best practice for Dovecot with LDAP and Postfix

2023-05-08 Thread Kees van Vloten
On 08-05-2023 16:43, Moritz Pflanzer wrote: Hi all, so far I had a setup where Dovecot was using a passwd file as userdb and passdb. Postfix was then authenticating with Dovecot via SASL to validate user accounts. Now I added an LDAP backend and would like to use that for Dovecot and

Re: Mailing list is being Spam Filtered by O-365

2023-04-20 Thread Kees van Vloten
On 20-04-2023 14:05, White, Daniel E. (GSFC-770.0)[AEGIS] via dovecot wrote: From headers: Received: from BL0GCC02FT014.eop-gcc02.prod.protection.outlook.com (2a01:111:f400:7d05::209) by CYXPR09CA0010.outlook.office365.com (2603:10b6:930:d4::15) with Microsoft SMTP Server (version=TLS1_2,

Authentication type for lan and haproxy (internet)

2022-04-29 Thread Kees van Vloten
Hi Team, Would it be possible to setup a different authentication method depending on the connection source? I would like to use oauth2 (with mfa) for connections from internet via haproxy, whereas on the lan I run samba-dc and hence AD (krb5) is the method to use. The latter is already

Re: Can I set a different certificate per listen port?

2022-04-28 Thread Kees van Vloten
Op 28-04-2022 om 07:30 schreef Aki Tuomi: On 27/04/2022 22:14 Kees van Vloten wrote: Hi all, I am trying to setup dovecot to listen to imaps on the local network and through haproxy from the internet. service imap-login {   inet_listener imaps {     port = 993     ssl = yes

Can I set a different certificate per listen port?

2022-04-27 Thread Kees van Vloten
Hi all, I am trying to setup dovecot to listen to imaps on the local network and through haproxy from the internet. service imap-login {   inet_listener imaps {     port = 993     ssl = yes   }   inet_listener imaps_haproxy {     haproxy = yes     port = 10993     ssl = yes   } } Obviously

Re: Custom Authentication Method

2022-03-01 Thread Kees van Vloten
On 01-03-2022 07:15, Aki Tuomi wrote: On 01/03/2022 03:54 Matthew R wrote: Hi guys, we're using Dovecot/Postfix here for our mail system. I'd like to switch the `passdb` authentication on Dovecot from PAM over to a custom implementation. We'd prefer to have some sort of script check the

Fwd: Debug shared namespace issues

2022-02-18 Thread Kees van Vloten
On 18-02-2022 14:30, Aki Tuomi wrote: On 18/02/2022 15:17 Kees van Vloten wrote: On 18-02-2022 13:34, Aki Tuomi wrote: On 18/02/2022 14:27 Kees van Vloten wrote: Hi Team, I am still having troubles with the shared namespace. mail_shared_explicit_inbox = yes namespace {     type

Re: Debug shared namespace issues

2022-02-18 Thread Kees van Vloten
On 18-02-2022 14:30, Aki Tuomi wrote: On 18/02/2022 15:17 Kees van Vloten wrote: On 18-02-2022 13:34, Aki Tuomi wrote: On 18/02/2022 14:27 Kees van Vloten wrote: Hi Team, I am still having troubles with the shared namespace. mail_shared_explicit_inbox = yes namespace {     type

Re: Debug shared namespace issues

2022-02-18 Thread Kees van Vloten
On 18-02-2022 13:34, Aki Tuomi wrote: On 18/02/2022 14:27 Kees van Vloten wrote: Hi Team, I am still having troubles with the shared namespace. mail_shared_explicit_inbox = yes namespace {     type = shared     separator = "~" Why do you actually have quotes here?

Debug shared namespace issues

2022-02-18 Thread Kees van Vloten
Hi Team, I am still having troubles with the shared namespace. mail_shared_explicit_inbox = yes namespace {     type = shared     separator = "~"     prefix = shared~%%u~     location =

Re: Shared mailbox visible but not readable

2022-02-17 Thread Kees van Vloten
On 17-02-2022 18:45, Aki Tuomi wrote: On 17/02/2022 19:34 Kees van Vloten wrote: After the previous thread, I am now able to see / list the structure of a shared mailbox but cannot see the messages. doveadm acl get -u test2 INBOX ID Global Rights user=test1admin create

Shared mailbox visible but not readable

2022-02-17 Thread Kees van Vloten
After the previous thread, I am now able to see / list the structure of a shared mailbox but cannot see the messages. doveadm acl get -u test2 INBOX ID Global Rights user=test1admin create delete expunge insert lookup post read write write-deleted write-seen dovecot -n #

Re: Fwd: Mailbox sharing not working

2022-02-17 Thread Kees van Vloten
On 17-02-2022 10:17, Aki Tuomi wrote: On 17/02/2022 11:16 Kees van Vloten wrote: On 17-02-2022 10:02, Aki Tuomi wrote: On 17/02/2022 10:39 Kees van Vloten wrote: On 17-02-2022 09:16, Aki Tuomi wrote: On 17/02/2022 10:14 Kees van Vloten wrote: On 17-02-2022 07:28, Aki Tuomi wrote

Re: Fwd: Mailbox sharing not working

2022-02-17 Thread Kees van Vloten
On 17-02-2022 10:17, Aki Tuomi wrote: On 17/02/2022 11:16 Kees van Vloten wrote: On 17-02-2022 10:02, Aki Tuomi wrote: On 17/02/2022 10:39 Kees van Vloten wrote: On 17-02-2022 09:16, Aki Tuomi wrote: On 17/02/2022 10:14 Kees van Vloten wrote: On 17-02-2022 07:28, Aki Tuomi wrote

Re: Fwd: Mailbox sharing not working

2022-02-17 Thread Kees van Vloten
On 17-02-2022 10:02, Aki Tuomi wrote: On 17/02/2022 10:39 Kees van Vloten wrote: On 17-02-2022 09:16, Aki Tuomi wrote: On 17/02/2022 10:14 Kees van Vloten wrote: On 17-02-2022 07:28, Aki Tuomi wrote: On 16/02/2022 21:40 Kees van Vloten wrote: Hi Team, I am trying to setup mailbox

Fwd: Mailbox sharing not working

2022-02-17 Thread Kees van Vloten
On 17-02-2022 09:16, Aki Tuomi wrote: On 17/02/2022 10:14 Kees van Vloten wrote: On 17-02-2022 07:28, Aki Tuomi wrote: On 16/02/2022 21:40 Kees van Vloten wrote: Hi Team, I am trying to setup mailbox sharing. But although user test2 shares INBOX with test1, it is not visible for user1

Re: Mailbox sharing not working

2022-02-17 Thread Kees van Vloten
On 17-02-2022 09:16, Aki Tuomi wrote: On 17/02/2022 10:14 Kees van Vloten wrote: On 17-02-2022 07:28, Aki Tuomi wrote: On 16/02/2022 21:40 Kees van Vloten wrote: Hi Team, I am trying to setup mailbox sharing. But although user test2 shares INBOX with test1, it is not visible

Re: Mailbox sharing not working

2022-02-17 Thread Kees van Vloten
On 17-02-2022 07:28, Aki Tuomi wrote: On 16/02/2022 21:40 Kees van Vloten wrote: Hi Team, I am trying to setup mailbox sharing. But although user test2 shares INBOX with test1, it is not visible for user1. doveadm  acl get -u test2 INBOX ID Global Rights user=test1

Mailbox sharing not working

2022-02-16 Thread Kees van Vloten
Hi Team, I am trying to setup mailbox sharing. But although user test2 shares INBOX with test1, it is not visible for user1. doveadm  acl get -u test2 INBOX ID Global Rights user=test1    admin create delete expunge insert lookup post read write write-deleted write-seen cat

Re: Can sieve-script run when saving mail in Sent folder?

2021-11-18 Thread Kees van Vloten
On 18-11-2021 01:01, Gedalya wrote: On 11/18/21 06:43, Kees van Vloten wrote: I was expecting through imapsieve_mailboxXXX_* but can find a combination of parameters are correct. Does anybody have this working? and how? plugin {   sieve_plugins = sieve_imapsieve

Can sieve-script run when saving mail in Sent folder?

2021-11-17 Thread Kees van Vloten
Hi everyone, Would it be possible to run a sieve-script when the mail-client sends a mail (no because smtp) on the action where the mail-client stores a copy in the Sent folder over imap? I was expecting through imapsieve_mailboxXXX_* but can find a combination of parameters are correct.

Re: Subfolder in sieve not working as expected

2021-11-17 Thread Kees van Vloten
On 17-11-2021 09:38, Remy Zandwijk wrote: On 16 Nov 2021, at 21:43, Kees van Vloten wrote: On 15-11-2021 23:04, dove...@ptld.com wrote: On 11-15-2021 3:46 pm, Kees van Vloten wrote: I am trying to move incoming mails into subfolders with this sieve script: require ["fileinto",

Re: Subfolder in sieve not working as expected

2021-11-16 Thread Kees van Vloten
On 15-11-2021 23:04, dove...@ptld.com wrote: On 11-15-2021 3:46 pm, Kees van Vloten wrote: I am trying to move incoming mails into subfolders with this sieve script: require ["fileinto", "variables", "mailbox"]; if header :matches "Delivered-To"

Subfolder in sieve not working as expected

2021-11-15 Thread Kees van Vloten
On 15-11-2021 23:04, dove...@ptld.com wrote: On 11-15-2021 3:46 pm, Kees van Vloten wrote: I am trying to move incoming mails into subfolders with this sieve script: require ["fileinto", "variables", "mailbox"]; if header :matches "Delivered-To"

Subfolder in sieve not working as expected

2021-11-15 Thread Kees van Vloten
Hi everybody, I am trying to move incoming mails into subfolders with this sieve script: require ["fileinto", "variables", "mailbox"]; if header :matches "Delivered-To" "*@*" {     fileinto :create "INBOX/${2}"; } On a message to u...@example.com I would expect it to be stored in the folder

Re: Strategies for protecting IMAP (e.g. MFA)

2021-11-14 Thread Kees van Vloten
On 14-11-2021 13:56, Marc wrote: Full access from any IP (except firehol-blacklist and fail2ban) is possible over VPN (openvpn) with MFA (privacyidea). Privacyidea also supplies a mobile-app compatible with a.o. TOTP and HOTP but it provides a more secure way of enrollment (2-step). How are you

Strategies for protecting IMAP (e.g. MFA)

2021-11-14 Thread Kees van Vloten
Apart from a really nice firewall firehol also supplies a good set of ip-blacklists. For public exposure of email ports, I am using the combination of firehol-firewall, firehol-blacklist, fail2ban and a whitelist based on geo-ip. The mail-client ports exposed are 993 and 465, because

Ldap dict for shared mailboxes

2021-11-01 Thread Kees van Vloten
Hi everybody, I am trying to construct a LDAP dict for shared mailboxes. There is a lot of documentation available but nothing specific to this usecase. I could not find anything useful on Google nor in the mailinglist archives :-( The best start point seems to be the doc on shared mailbox