On Thu, 2009-07-09 at 12:07 -0400, Charles Marcus wrote: > On 7/9/2009, Federico Nicolelli (federico.nicole...@iscsi.it) wrote: > >> So, does disable_plaintext_auth=yes automatically change the imap listen > >> port to 993, or would I then nees to also set 'ssl_listen: 993' (if so, > >> wouldn't that seeting be more appropriately named tls_listen? ;) ? > > > No it will only disable plaintext authentications over a unsecure channel. > > so if you want to force SSL/TLS you should use ssl=required as Timo said. > > Ok, still a little confused... > > To do this 'right'... > > protocols = imap > disable_plaintext_auth = yes > ssl = required > > and just use the default standard imap port of 143?
Yeah. And sure you can keep imaps port open too. If you have only auth { mechanisms = plain } enabled, disable_plaintext_auth=yes and ssl=required does basically the same thing.
signature.asc
Description: This is a digitally signed message part