[Dovecot] Enabling security on POP3 and IMAP

2009-09-03 Thread Richard Hobbs
Hello, Currently, on our new test server, I am offering IMAP on 143 and POP3 on 110. We would like to enable security on both of these protocols to attempt to eliminate the risk from an internal password-grabbing/content-grabbing attack. I presume this would mean enabling SSL, and a more securur

[Dovecot] Maildir quota reporting

2009-09-03 Thread David Kmoch
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 I'm little confused with the way dovecot (1.2.4) is reporting quota. with this config protocols: imaps ssl: required ssl_ca_file: /root/cert/CA_Bundle_Trans.crt ssl_cert_file: /root/cert/mails.crt ssl_key_file: /root/cert/mails-key.pem.rsa disable_pl

Re: [Dovecot] Enabling security on POP3 and IMAP

2009-09-03 Thread Patrick Nagel
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi Richard, On 2009-09-03 16:38, Richard Hobbs wrote: > Currently, on our new test server, I am offering IMAP on 143 and POP3 on > 110. > > We would like to enable security on both of these protocols to attempt > to eliminate the risk from an interna

[Dovecot] mail_uid and mail_gid are not set in environment (for expire-tool and so)

2009-09-03 Thread Baptiste Malguy
Hello, I've just subscribed to the list, as a recent user of Dovecot (1.2.4 by now). I eventually missed a point, so I tried to find other doc or comments about my issue, but failed to. If the following has already been discussed, please simply reply with a URL to the corresponding thread or doc

Re: [Dovecot] mail_uid and mail_gid are not set in environment (for expire-tool and so)

2009-09-03 Thread Pascal Volk
On 09/03/2009 12:35 PM Baptiste Malguy wrote: > Hello, > > I've just subscribed to the list, as a recent user of Dovecot (1.2.4 by > now). > > I eventually missed a point, so I tried to find other doc or comments about > my issue, but failed to. If the following has already been discussed, please

Re: [Dovecot] mail_uid and mail_gid are not set in environment (for expire-tool and so)

2009-09-03 Thread Baptiste Malguy
I haven't been into details about my userdb. It's a LDAP backend. Before mail_uid and mail_gid parameters arrive, I'd have to play the trick with the value returned by the LDAP backend, adding some uid/gid values. Now, with these new configuration parameters, I understand I'm not supposed to worka

[Dovecot] avoiding DoS

2009-09-03 Thread David Halik
Hi, I was just looking for some advice on avoiding getting DoS'd from brute force log in attempts. We came in this morning to find that one of our Solaris 9 dovecot severs had wedged overnight due to a brute force connection attempt to pop3 from Brasil. In the span of about 15 seconds we rec

Re: [Dovecot] avoiding DoS

2009-09-03 Thread Charles Marcus
On 9/3/2009, David Halik (dha...@jla.rutgers.edu) wrote: > Any suggestions on what I could tweak to prevent this from happening in the > future? Fail2ban (or its solaris equivalent)... -- Best regards, Charles

Re: [Dovecot] libvpopmail.so

2009-09-03 Thread Noris Luigi
2009/8/24 Timo Sirainen : > On Fri, 2009-08-21 at 17:08 +0200, Noris Luigi wrote: >> while loading shared libraries: libvpopmail.so: cannot open shared >> object file: No such file or directory >> >> I do not undestand if there is a place where can i put libvpopmail.so >> manually, or specify the p

[Dovecot] IMAP timeout problem

2009-09-03 Thread Vasantha Narayan
Hello, We are running dovecot 1.1.2 on a Solaris 10 box. We have been running the same configuration for about a year without a problem. We have a different cert for POP and IMAP. Recently we made two changes. The cert for IMAP expired and we had to install a new one. We applied some patch

Re: [Dovecot] assertion failed while using sieve

2009-09-03 Thread Maciej Uhlig
Timo Sirainen wrote: Can you try if the attached patch fixes this We did try. Unfortunately the problem is still there. Same error. Best regards, MU

Re: [Dovecot] IMAP timeout problem

2009-09-03 Thread Timo Sirainen
On Thu, 2009-09-03 at 13:23 -0700, Vasantha Narayan wrote: > We cannot get a telnet connection to the IMAP port or a openssl > connection to the IMAPS port. Kill -HUP of the dovecot server solves > the problem. But again, when the usage increases, the problem > surfaces again. There is no proble

Re: [Dovecot] v2.0 configuration parsing

2009-09-03 Thread Timo Sirainen
On Fri, 2009-08-14 at 06:05 -0400, Charles Marcus wrote: > On 8/13/2009, Timo Sirainen (t...@iki.fi) wrote: > > The difference between dovecot -n and postconf -n is that dovecot -n > > doesn't show settings that have been explicitly set to defaults. > > Ahhh, I hadn't noticed that... > > So, shou

Re: [Dovecot] v2.0 configuration parsing

2009-09-03 Thread Timo Sirainen
On Mon, 2009-08-10 at 13:57 -0400, Timo Sirainen wrote: > I'm trying to figure out how exactly v2.0 should be parsing > configuration files. The most annoying part is if it should always just > "use whatever comes first in config" or try some kind of a "use most > specific rule". I've now impleme

Re: [Dovecot] avoiding DoS

2009-09-03 Thread Noel Butler
On Thu, 2009-09-03 at 11:07 -0400, David Halik wrote: > Hi, > > I was just looking for some advice on avoiding getting DoS'd from brute > force log in attempts. We came in this morning to find that one of our > Solaris 9 dovecot severs had wedged overnight due to a brute force > connection att

[Dovecot] imap and pop3 benchmark

2009-09-03 Thread Thomas G. Lau
Dear All, does anyone got any program which could benchmark imap and pop3 in terms of message per second?