Accessing SSL parameters via dovecot variables

2023-07-21 Thread Graham Leggett via dovecot
Hi all, Dovecot supports variables, which can be used in filters. Does the SSL code expose variables linked to the client certificate? The answer today appears to be no, and if that’s true I plan to patch it, but just need to confirm I am not missing something. Regards, Graham — _

Dovecot pigeon/sieve and SELinux

2023-07-21 Thread Graham Leggett via dovecot
Hi all, I am in the process of migrating a dovecot installation from RHEL8 to RHEL9, this time round I am trying to get everything to work in selinux enforcing mode. First error I am stuck on is as follows: Error: sieve: file storage: Failed to stat sieve storage path: stat(/var/lib/dovecot/si

SASL External and LDAP - Login attempt with empty password

2023-07-25 Thread Graham Leggett via dovecot
Hi all, I am trying to configure dovecot to accept SASL EXTERNAL authentication with a client certificate and no password. I have tried the following configuration: passdb { driver = ldap # Path for LDAP configuration file, see example-config/dovecot-ldap.conf.ext args = /etc/dovecot/dov

Filtering by SASL auth mechanism

2023-07-26 Thread Graham Leggett via dovecot
Hi all, I want dovecot to behave differently depending on what SASL mechanism was used. Most specifically, if EXTERNAL, I want auth_ssl_username_from_cert to be yes, but no otherwise. There is a filtering mechanism that supports protocol, remote, etc. https://doc.dovecot.org/configuration_manu

Re: Accessing SSL parameters via dovecot variables

2023-07-26 Thread Graham Leggett via dovecot
On 24 Jul 2023, at 17:04, Michael Peddemors wrote: > On 2023-07-21 06:42, Graham Leggett via dovecot wrote: >> Hi all, >> Dovecot supports variables, which can be used in filters. >> Does the SSL code expose variables linked to the client certificate? >> The answer tod

Dovecot shared folders - examples of the "doveadm acl" command?

2023-07-30 Thread Graham Leggett via dovecot
Hi all, The old wiki has been taken down, and all the links I can find through google are now broken. Does anyone have a concrete example of “doveadm acl” to grant someone access to a shared folder? Regards, Graham — ___ dovecot mailing list -- dove

Re: Dovecot shared folders - examples of the "doveadm acl" command?

2023-08-05 Thread Graham Leggett via dovecot
On 30 Jul 2023, at 16:47, Benny Pedersen wrote: >> Does anyone have a concrete example of “doveadm acl” to grant someone >> access to a shared folder? > > https://doc.dovecot.org/search/?q=acl Unfortunately the search query above doesn’t return any examples of the doveadm acl command. For the

doveadm fts lookup: Is "search query" documented anywhere?

2023-08-05 Thread Graham Leggett via dovecot
Hi all, According to the —help option for doveadm fts, there is a “lookup” option as follows: [root@aurora ~]# doveadm fts --help usage: doveadm [-Dv] [-f ] fts [] expand [-u |-A] [-S ] lookup [-u |-A] [-S ] optimize [-u |-A] [-S ] [] rescan [-u |-A] [-S ] [] t

Re: doveadm fts lookup: Is "search query" documented anywhere?

2023-08-07 Thread Graham Leggett via dovecot
On 05 Aug 2023, at 14:18, Aki Tuomi wrote: > Did you look at https://doc.dovecot.org/3.0/man/doveadm-search-query.7/ > I did not - the page https://doc.dovecot.org/3.0/man/doveadm-fts.1/ has no link to the above, and https://doc.dovecot.