I'm not sure, but I think that the only thing that's encrypted is the
login data. Or am I wrong?

Yes, it's true. That's exactly what I want: protect the login data (it means that I want it encrypted via CRAM-MD5 on smtp-auth as well on my DB).

