In all honesty, the current situation of logging the base64 string 
"UGFzc3dvcmQ6" does not help us.

Maybe we could reconsider, and actually log the data (raw or base64-decoded)?




On Tue, 16 May 2023 09:30:44 -0400 (EDT) Wietse Venema via Postfix-users 
<postfix-users@postfix.org> wrote:

> mailmary--- via Postfix-users:
> > 
> > I am talking about the authentication email, not MAIL FROM or RCPT TO.
> > 
> > hmm, when using the -v parameter, just above the "SASL LOGIN
> > authentication failed: UGFzc3dvcmQ6" log entry, I can clearly see
> > the email/password
> >
> > thus postfix knows the email address being authenticated BEFORE
> > the error message  
> 
> Postfix does not implement the SASL protocol. Postfix passes the
> data to the Dovecot authentiation server or to the Cyrus SASL
> library without parsing it.
> 
> Also, logging the login details is not a good idea.
> 
>       Wietse
> _______________________________________________
> Postfix-users mailing list -- postfix-users@postfix.org
> To unsubscribe send an email to postfix-users-le...@postfix.org
_______________________________________________
Postfix-users mailing list -- postfix-users@postfix.org
To unsubscribe send an email to postfix-users-le...@postfix.org

Reply via email to