Hi Francesco, We have a similar setup. You have to use App passwords to do IMAP. That's working for us. Best regards Jürgen
Am Freitag, den 19-12-2025 um 12:57 schrieb "Francesco M." ([email protected]): Hi all, I have a working SOGo instance using OpenID Connect authentication, federated with Keycloak. Login to SOGo itself works fine. The problem is that after login, SOGo can’t access the user’s primary IMAP mailbox. Interestingly, additional IMAP accounts configured in SOGo work without issues. I know that one possible solution would be to switch Dovecot IMAP authentication to OAuth2, but in that case I would lose the ability to configure additional IMAP mailboxes per user via SOGo, which is something I really need for user requirements. So I was thinking about using Dovecot’s master user / master password mechanism (which is already implemented and working on the Dovecot side). What I can’t figure out is whether SOGo can be configured to authenticate to IMAP using a master user in this scenario, or if this approach is simply not supported. Any hints or suggestions would be very welcome. Thanks in advance! :)
