Re: [Dovecot] Public namespaces with global ACLs 1.2+

2009-08-18 Thread Thomas Leuxner
Am 16.08.2009 um 02:43 schrieb Timo Sirainen: This should help: http://hg.dovecot.org/dovecot-1.2/rev/956d2f962e97 Tested fine with 1.2.4 and 'dovecot-acl' in public root. Thanks.

Re: [Dovecot] Public namespaces with global ACLs 1.2+

2009-08-15 Thread Timo Sirainen
On Fri, 2009-08-14 at 07:39 +0200, Thomas Leuxner wrote: > I started by adding a 'dovecot-acl' with the lrwk permission in the > root of the public mailbox. My idea was this gets fetched when > creating new mailboxes within it. Actually it seems not to read that > file upon creation of new m

Re: [Dovecot] Public namespaces with global ACLs 1.2+

2009-08-14 Thread Thomas Leuxner
Am 14.08.2009 um 10:54 schrieb Steffen Kaiser: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On Thu, 13 Aug 2009, Thomas Leuxner wrote: plugin: acl: vfile:/var/vmail/%d/etc/acls:cache_secs=300 I do not use global ACLs, but mailbox-specific ones: acl: vfile::cache_secs=300 Then one adds t

Re: [Dovecot] Public namespaces with global ACLs 1.2+

2009-08-14 Thread Steffen Kaiser
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On Thu, 13 Aug 2009, Thomas Leuxner wrote: plugin: acl: vfile:/var/vmail/%d/etc/acls:cache_secs=300 I do not use global ACLs, but mailbox-specific ones: acl: vfile::cache_secs=300 Then one adds the ACLs to .dovecot-acl files located in each mail

Re: [Dovecot] Public namespaces with global ACLs 1.2+

2009-08-14 Thread Thomas Leuxner
Some log examples. Trying to create a new mailbox "Newsletters.123" under Public/ with a prepopulated "Newsletters.123" ACL file. Although it reads that file, it does not allow creation of the mailbox. NB: You wouldn't have a glass ball to predict the mailbox name. 2009-08-14 10:05:05 IMAP(

Re: [Dovecot] Public namespaces with global ACLs 1.2+

2009-08-13 Thread Thomas Leuxner
Am 14.08.2009 um 07:30 schrieb Timo Sirainen: I want to limit certain people to create new mailboxes in namespace "Public" only. So didn't it work like that the way you did it? Or without global ACLs, the same way by placing the dovecot-acl file to the shared Maildir root. I started by

Re: [Dovecot] Public namespaces with global ACLs 1.2+

2009-08-13 Thread Timo Sirainen
On Aug 14, 2009, at 1:25 AM, Thomas Leuxner wrote: Am 13.08.2009 um 23:47 schrieb Timo Sirainen: On Thu, 2009-08-13 at 23:10 +0200, Thomas Leuxner wrote: Anyway I'd like to limit their permissions on the Namespace "Public", or even better - being more restrictive, on "Public/Newsletters".

Re: [Dovecot] Public namespaces with global ACLs 1.2+

2009-08-13 Thread Thomas Leuxner
Am 13.08.2009 um 23:47 schrieb Timo Sirainen: On Thu, 2009-08-13 at 23:10 +0200, Thomas Leuxner wrote: Anyway I'd like to limit their permissions on the Namespace "Public", or even better - being more restrictive, on "Public/Newsletters". I don't really understand. What exactly do you want t

Re: [Dovecot] Public namespaces with global ACLs 1.2+

2009-08-13 Thread Timo Sirainen
On Thu, 2009-08-13 at 23:10 +0200, Thomas Leuxner wrote: > Hi, > > I'm having trouble to get ACLs working in a more restrictive way with > namespaces. I would like to grant certain users the ability to create > new mailboxes in a public namespace e.g. "Public/Newsletters" etc. > > It works w

[Dovecot] Public namespaces with global ACLs 1.2+

2009-08-13 Thread Thomas Leuxner
Hi, I'm having trouble to get ACLs working in a more restrictive way with namespaces. I would like to grant certain users the ability to create new mailboxes in a public namespace e.g. "Public/Newsletters" etc. It works when I add the users to a ".DEFAULT" ACL file like this: user=username