The future of SIS

2023-10-13 Thread Sebastian Marsching
oncept and I would like to use it, but obviously I do not want to use a soon-to-be-deprecated feature in a completely new deployment. So, does anybody know an alternative solution for attachment deduplication (except file-system level deduplication)? Thanks, Sebastian smime.p7s Description:

State of wiki.dovecot.org?

2023-09-20 Thread Sebastian Philipp via dovecot
f not, could the Wiki be restored? Of course it's possible to access the Wiki contents via web.archive.org, but that's rather cumbersome and slow. Thanks and regards Sebastian [1]: http://web.archive.org/web/20230212020603/https://wiki2.dovecot.org/Director [2]: https://doc.dovecot.org/configu

Re: how to configure imapsieve to be used per user

2022-10-28 Thread Sebastian Bachmann
when you try to do something fyi fyi Happy Thursday !!! Thanks - paul Paul Kudla Scom.ca Internet Services <http://www.scom.ca> 004-1009 Byron Street South Whitby, Ontario - Canada L1N 4S3 Toronto 416.642.7266 Main 1.866.411.7266 Fax 1.888.892.7266 Email p...@scom.ca On 10/27/2022

Re: how to configure imapsieve to be used per user

2022-10-27 Thread Sebastian Bachmann
ut it looks like the script is never started. Is this because I mis-configured the path? Or something else? It is in the same folder as I store the other scripts, i.e., ~/sieve (the normal sieve scripts work fine) -Sebastian

Re: how to configure imapsieve to be used per user

2022-10-24 Thread Sebastian Bachmann
are used: https://www.iana.org/assignments/imap-metadata/imap-metadata.xhtml#imap-metadata-2 I would also be interested to know if and how that works, especially if you can add a rule when moving mails (from anywhere) to a certain mailbox for a single user. Best, Sebastian On 17.10.2022 12

Re: Replication not working - GUIDs conflict - will be merged later

2022-08-02 Thread Sebastian Marske
tion despite removing the user from replication, so the backup came in handy) * alternatively, you might be fine by deleting the folder's index files * add the user back to replication * let dsync replicate the user -> fixed It's not a very convenient way to resolve this, but maybe it helps. Any better solutions are greatly appreciated! Best Sebastian

Re: Fatal Error after upgrade to 2:2.3.19-2+debian11

2022-05-16 Thread Sebastian Kroczek
also seem to have stopped. On 16.05.22 17:14, Sebastian Kroczek wrote: Here of course the missing backtrace: #0  0x7fcb470e517c in acl_mailbox_get_aclobj (box=box@entry=0x5586bfc958f8) at acl-mailbox.c:31 #1  0x7fcb470d06ed in imap_acl_cmd_myrights (cmd=0x5586bfc0cbe8, mailbox=0x5586bfc2ae

Re: Fatal Error after upgrade to 2:2.3.19-2+debian11

2022-05-16 Thread Sebastian Kroczek
un (ioloop=0x5586bfbd9f10) at ioloop.c:762 #13 0x7fcb4734e353 in master_service_run (service=0x5586bfbd9d60, callback=callback@entry=0x5586bec3ef90 ) at master-service.c:869 #14 0x5586bec21f0a in main (argc=, argv=out>) at main.c:564 On 16.05.22 16:08, Sebastian Kroczek wrote: aft

Re: Fatal Error after upgrade to 2:2.3.19-2+debian11

2022-05-16 Thread Sebastian Kroczek
with signal SIGSEGV, Segmentation fault. #0 0x7f8e0798617c in acl_mailbox_get_aclobj (box=box@entry=0x560b7e510c08) at acl-mailbox.c:31 31 acl-mailbox.c: No such file or directory. If this is not the information you need and you want me to do something different here, please ju

Fatal Error after upgrade to 2:2.3.19-2+debian11

2022-05-16 Thread Sebastian Kroczek
couldn't figure out which one it could be. I also have no clue right now how to debug this further. Thank you very much for your help. If more information are needed, I will of course be happy to provide them. VG Sebastian Error logs = May 16 13:33:43 Fatal: imap(us

Sv: Better not post your email password on a public mailing list, was: Re: no full syncs after upgra

2022-04-27 Thread Sebastian Nielsen
Even more stupid that the IMAP port is available to the public. Should have been firewalled to authorized IPs only, then it wouldn't have mattered that the password have leaked. -Ursprungligt meddelande- Från: dovecot-boun...@dovecot.org För Daniel Lange Skickat: den 27 april 2022

Re: no full syncs after upgrading to dovecot 2.3.18

2022-04-25 Thread Sebastian Marske
my post from February [1]. @Arnaud: What OS are you running on? Best Sebastian [1] https://dovecot.org/pipermail/dovecot/2022-February/124168.html On 4/24/22 19:36, Paul Kudla (SCOM.CA Internet Services Inc.) wrote: > > Question having similiar replication issues > > pls read e

Sv: Does disabling POP3 just mean removing it from the protocols list?

2022-03-01 Thread Sebastian Nielsen
However, you SHOULD IMHO lock the access so it has to be manually opened for each user that wants it. Another way is to do a PTR lookup on IP and [DROP] the packet if its not a google IP. And then have a IP restriction on IMAP and also 587/SMTP Auth. This because there is bots out there that

Sv: Sv: Sv: dovecot mailing list (this mailing list), DKIM, SPF and DMARC

2022-02-12 Thread Sebastian Nielsen
Swedish, but Sweden & Finland are not officially part of NATO, AFAIK, and Sweden has its own currency whereas Finland did give up the markka in exchange for the Euro some 20-odd years ago I don't recall. On February 12, 2022 2:58:03 AM AKST, Sebastian Nielsen mailto:sebast...@sebbe.eu>

Sv: Sv: dovecot mailing list (this mailing list), DKIM, SPF and DMARC

2022-02-12 Thread Sebastian Nielsen
Thats a TLD ban. Meaning *.ru is banned. same applies for my domain for example, I ban *.xyz, *.date and a few others. -Ursprungligt meddelande- Från: dovecot-boun...@dovecot.org För Lev Serebryakov Skickat: den 12 februari 2022 12:08 Till: dovecot@dovecot.org Ämne: Re: Sv: dovecot

Hanging doveadm-server processes with dsync replication

2022-02-10 Thread Sebastian Marske
y suggestions on how to resolve this? [1] https://dovecot.org/pipermail/dovecot/2022-January/123907.html Best regards Sebastian # doveconf -n # 2.3.18 (9dd8408c18): /usr/local/etc/dovecot/dovecot.conf # Pigeonhole version 0.5.18 (0bc28b32) # OS: FreeBSD 13.0-RELEASE-p6 amd

Sv: dovecot mailing list (this mailing list), DKIM, SPF and DMARC

2022-02-04 Thread Sebastian Nielsen
I get it too. These appear because they don't replace either MAIL FROM: or Mime From: with the list address. This causes validations to fail since the mailing list is trying to spoof mail in your name, and of course, anti-spoofing security is going to react. DKIM can be troublesome since

Sv: banning

2022-01-08 Thread Sebastian Nielsen
I would say, lock accounts to for example IP address, ASN or GeoIP. This can be accomplished simply by a custom login handler, which also checks IP against database. And first time users, and those who change country/ISP/IP have to simply logon to a web interface (where 2FA can be required and

Sv: patch: make received-header on submission optional or optionally drop the from-part in it

2022-01-05 Thread Sebastian Nielsen
MUA/browser based things are not considered be in scope for GDPR unless they are truly unique. So you do NOT need to hide user-agent/MUA for privacy reasons. Received lines is only applicable (in scope for GDPR) if they identify the end user. A good solution to this would be to just scrap every

Sv: Force clients to use pgp encryption when sending email?

2021-12-08 Thread Sebastian Nielsen
Another solution is to use for example Ciphermail to automatically encrypt mail server-side. In this way you don't need to reject non-encrypted mail, you can just make sure it gets encrypted before it leaves premises. -Ursprungligt meddelande- Från: dovecot-boun...@dovecot.org För

RE: IPv4/v6 based access checking and logging

2021-11-12 Thread Sebastian Nielsen
If yore gonna check for IP, you should do it in pre-login so you can reject the username/password combo if the registred IP of account does not match.But guess its better to write a custom login handler for that, that also checks user's ip against database, in addition to username/password, and

replicator: Panic: data stack: Out of memory when allocating ...

2021-10-04 Thread Sebastian Podjasek
libc.so.6(__libc_start_main+0xea) [0x7f57c57b4d0a] -> dovecot/replicator(_start+0x2a) [0x55aabc671d6a] And setting vsz_limit = 0 doesn't help either - it just tries to allocate all available memory. I'm running: # 2.3.13 (89f716dc2): /etc/dovecot/dovecot.conf # Pigeonhole version 0.5.13 (cdd19fe3) # OS: Linux 5.10.0-8-amd64 x86_64 Debian 11.0 -- Sebastian Podjasek

Sv: Why do so many dovecot list mails fail dmarc?

2021-08-14 Thread Sebastian
>>Reply-to and From are both listed twice This is called "oversigning" and means that a null variant of Reply-To: and From: are signed too, preventing adding additional headers of Reply-To: And From:. This is particular important for headers that are permitted to be in a email multiple times,

Sv: Sv: function for whitelisting IPs

2021-07-15 Thread Sebastian
ce greatly. -Ursprungligt meddelande- Från: dovecot-boun...@dovecot.org För White, Daniel E. (GSFC-770.0)[NICS] Skickat: den 15 juli 2021 12:21 Till: Dovecot Mailing List Ämne: function for whitelisting IPs Sebastian, Do you have any examples of such a function and how/where it is

Sv: 2FA/MFA with IMAP & postfix/submission

2021-07-15 Thread Sebastian
The thing is, that people must stop expecting "being able to access mail whenever you are" without extra steps. Best solution is to offer a webmail with TOTP or SQRL or similiar secure auth method. Then have that webmail adds IP or country into trusted list, so if you want to access IMAP mail

Re: Sv: 2FA/MFA with IMAP & postfix/submission

2021-07-15 Thread Sebastian Nielsen
Problem is that not many client support it - especially mobile ones.So wireguard VPN is the way to go, much simpler for the users. Originalmeddelande Från: Rick Romero Datum: 2021-07-15 17:04 (GMT+01:00) Till: dovecot@dovecot.org Ämne: Re: Sv: 2FA/MFA with IMAP &

Sv: function for whitelisting IPs

2021-07-15 Thread Sebastian
meddelande- Från: dovecot-boun...@dovecot.org För White, Daniel E. (GSFC-770.0)[NICS] Skickat: den 15 juli 2021 12:21 Till: Dovecot Mailing List Ämne: function for whitelisting IPs Sebastian, Do you have any examples of such a function and how/where it is used ? -Original Message

Sv: 2FA/MFA with IMAP & postfix/submission

2021-07-14 Thread Sebastian
Main problem is that not many clients do natively support multifactor. Some clients, do popup a login dialog if the server rejects the password as invalid, which can be used to create a "cheaty variant" of multifactor, but some clients just popup an error dialog and tell the user to just correct

Sv: What imap ssl/auth settings work best with MS Outlook?

2021-04-30 Thread Sebastian
But whats specified for MX isn't neccessarly the endpoint endusers should use as their incoming/outgoing servers, especially if the MX is routed through a external spamfiltering service. -Ursprungligt meddelande- Från: dovecot-boun...@dovecot.org För @lbutlr Skickat: den 30 april 2021

Sv: Sv: Sv: Sv: Sv: Avoid duplicate emails in the sent folder

2021-04-06 Thread Sebastian
on't have race conditions for now. I prefer doing this than createing a secondary Sent folder. On Sun, 2021-04-04 at 14:43 +0200, Sebastian wrote: > Why won't it work to just, as I said, create a separate folder, like > Sent2, which you use as a "midpoint" to land all your externall

Sv: Avoid duplicate emails in the sent folder

2021-04-04 Thread Sebastian
Why? Isn't it better to fix misbehaving clients server-side? For example, some clients I have (OEM built-in clients) are for example putting the date 1970-01-01 on all outgoing emails (and also on incoming emails which lacks a Date: header) causing them to land at the bottom of the inbox view

Sv: Sv: Sv: Sv: Avoid duplicate emails in the sent folder

2021-04-04 Thread Sebastian
dré Rodier Skickat: den 4 april 2021 14:40 Till: Dovecot Mailing List Ämne: Re: Sv: Sv: Sv: Avoid duplicate emails in the sent folder On Sun, 2021-04-04 at 14:31 +0200, Sebastian wrote: > Also another important thing to take in consideration: > > An email that is sent outgoing from an SMTP se

Sv: Sv: Sv: Avoid duplicate emails in the sent folder

2021-04-04 Thread Sebastian
in the same acount, to the Sent folder). -Ursprungligt meddelande- Från: dovecot-boun...@dovecot.org För André Rodier Skickat: den 4 april 2021 14:10 Till: Dovecot Mailing List Ämne: Re: Sv: Sv: Avoid duplicate emails in the sent folder Hello Sebastian, On Sun, 2021-04-04 at 14:00 +0200, Sebastia

Sv: Sv: Sv: Avoid duplicate emails in the sent folder

2021-04-04 Thread Sebastian
folder. -Ursprungligt meddelande- Från: dovecot-boun...@dovecot.org För André Rodier Skickat: den 4 april 2021 14:10 Till: Dovecot Mailing List Ämne: Re: Sv: Sv: Avoid duplicate emails in the sent folder Hello Sebastian, On Sun, 2021-04-04 at 14:00 +0200, Sebastian wrote: > Thats why

Sv: Sv: Avoid duplicate emails in the sent folder

2021-04-04 Thread Sebastian
. -Ursprungligt meddelande- Från: dovecot-boun...@dovecot.org För André Rodier Skickat: den 4 april 2021 13:57 Till: Dovecot Mailing List Ämne: Re: Sv: Avoid duplicate emails in the sent folder Thanks, Sebastian. I just tried this, but it is working too well. If I want to import emails from

Sv: Avoid duplicate emails in the sent folder

2021-04-04 Thread Sebastian
I have a sieve filter called "sent.sieve" Where I just do this: discard; Then in sieve settings: plugin { sieve_plugins = sieve_imapsieve sieve_extprograms sieve_global_extensions = +vnd.dovecot.execute sieve_execute_bin_dir = /usr/bin/ imapsieve_mailbox2_name = Sent

Sv: ssl_verify_client_cert=yes does not require a client certificate [invalid signature!]

2021-03-26 Thread Sebastian
What I have understand, you are able in configuration to reject transactions with those that doesn't present a valid certificate. Ergo, they can connect, but they can't do anything. -Ursprungligt meddelande- Från: dovecot-boun...@dovecot.org För Hristo Venev Skickat: den 27 mars 2021

SV: SV: Looking for a guide to collect all e-mail from the ISP mail server

2020-10-27 Thread Sebastian Nielsen
>>Whatever Gmail wants is essentially a defacto standard. Gmail have solved it with a Oauth authorization scheme. Basically, first time setting up mail, you are asked to authenticate by 2FA in a webview, then a shared secret is established, that is used during SMTP and IMAP time. Both Hotmail

SV: Looking for a guide to collect all e-mail from the ISP mail server

2020-10-27 Thread Sebastian Nielsen
>>EU have very strict laws on the security of email and the requirement to keep it archived and to ensure the data cannot get out. No. GDPR is very organization-specific, meaning that a small organization or non-profit with 5 employees, don't need the same security as a 100 employee

SV: Looking for a guide to collect all e-mail from the ISP mail server

2020-10-27 Thread Sebastian Nielsen
l: dovecot mailing list Ämne: Re: Looking for a guide to collect all e-mail from the ISP mail server On 25 Oct 2020, at 22:47, Sebastian Nielsen wrote: > The second way, is to not have webmail at all, but instead have a authentication gateway in browser, where you must auth with 2FA and captcha. The

SV: Looking for a guide to collect all e-mail from the ISP mail server

2020-10-27 Thread Sebastian Nielsen
>> Running an unmaintained mail server is a BAD thing. Of course. You maintain it. >>I think you are confusing gmail and google apps (or whatever it is called now, seems to change all the time). Google apps uses the same restrictions. What I recall, you can disable SPF and DKIM checks for

SV: SV: Looking for a guide to collect all e-mail from the ISP mail server

2020-10-26 Thread Sebastian Nielsen
Till: dovecot ; sebastian Ämne: RE: SV: Looking for a guide to collect all e-mail from the ISP mail server > and also the problem is that gmail imposes heavy spam filters and "reputation blocks" > meaning smaller providers with low email volumes, are put in the spam folder, even

SV: Looking for a guide to collect all e-mail from the ISP mail server

2020-10-25 Thread Sebastian Nielsen
>> why not just point them at a hosting service like google apps, and let google keep things up to date? Costs money, and also the problem is that gmail imposes heavy spam filters and "reputation blocks" meaning smaller providers with low email volumes, are put in the spam folder, even if they

SV: Looking for a guide to collect all e-mail from the ISP mail server

2020-10-25 Thread Sebastian Nielsen
>>"Never use a browser for email." I don't agree. In fact, using a browser for email or atleast initial setup, is actually more secure. This because SMTP/IMAP clients normally don't support 2FA, so you would have to "hack" a solution to enable 2FA for email. This can be made in 2 ways:

SV: forwarding email with sieve of spf domains

2020-10-25 Thread Sebastian Nielsen
He of course meant the From: MIME sender. This can fail in a SPF check if identity aligment is set to strict. Rewriting the From: heasder is one way to solve it, another way which preserves the original message in full, is to encapsulate the original message ina new message/rfc822 container

SV: forwarding email with sieve of spf domains

2020-10-25 Thread Sebastian Nielsen
Yes, putting the From: into Reply-To: is a good idea to ensure the reply button in receiver´s client doesn't break. But remember to ONLY do it when Reply-To: is not present. To avoid removing important information from the email, like the original sender, it can be good to always add a header

SV: SV: How to Modify Message and add more Attachments

2020-10-06 Thread Sebastian Nielsen
bited, you can even use email to send super sensitive details. -Ursprungligt meddelande- Från: dovecot-boun...@dovecot.org För Marc Roos Skickat: den 6 oktober 2020 23:42 Till: dovecot ; sebastian Ämne: RE: SV: How to Modify Message and add more Attachments > >Thats because

SV: How to Modify Message and add more Attachments

2020-10-06 Thread Sebastian Nielsen
Thats because in your example the data is sent outside the facility to a third party (in this case, wetransfer/outlook) And wetransfer/outlook is operated in third countries, which can cause GDPR problems as the legal protection for the data disappears. The OP were asking about a solution which

SV: How to Modify Message and add more Attachments

2020-10-06 Thread Sebastian Nielsen
No. Many think that sensitive data is prohibited to process/store as email at all, but thats not true. What can be prohibited, is sending sensitive data as email, ergo letting it leave as SMTP email, depending on circumstances, because that might mean that the sensitive data is sent unencrypted.

RE: 2 factor authentication

2020-08-24 Thread Sebastian Nielsen
Yes, but not many client support it. Use a IP locking solution instead, where the 2FA solution is used to approve IPs for the account instead. Originalmeddelande Från: The Doctor Datum: 2020-08-24 14:07 (GMT+01:00) Till: dovecot@dovecot.org Ämne: 2 factor authentication Is 2

SV: Outlook vs Thunderbird (re disabling SSL)

2020-07-07 Thread Sebastian Nielsen
>>Actually, there is a regedit "trick" for Win7 but that is beyond the ability >>of our customers to apply, and that doesn't help the older Apple device users. You could build a .reg file with the trick inside, and then distribute it to your users. However it wont solve the Apple problem.

SV: SV: Outlook vs Thunderbird

2020-07-07 Thread Sebastian Nielsen
a come out of the pipe. -Ursprungligt meddelande- Från: dovecot-boun...@dovecot.org För Alexander Dalloz Skickat: den 7 juli 2020 18:30 Till: dovecot@dovecot.org Ämne: Re: SV: Outlook vs Thunderbird Am 07.07.2020 um 18:11 schrieb Sebastian Nielsen: > Plaintext access is no problem if t

SV: Outlook vs Thunderbird

2020-07-07 Thread Sebastian Nielsen
Plaintext access is no problem if the connection is secured via other means - for example internal network or VPN. If the IMAP server cannot be accessed from the outside, and the traffic don't travel over wifi or public networks, no danger. -Ursprungligt meddelande- Från:

SV: handling spam from gmail.

2020-06-11 Thread Sebastian Nielsen
be a victim of spoofed Gmail email. Best regards, Sebastian Nielsen -Ursprungligt meddelande- Från: dovecot-boun...@dovecot.org För Marc Roos Skickat: den 11 juni 2020 10:21 Till: dovecot ; users Ämne: handling spam from gmail. I am sick of this gmail spam. Does anyone know

SV: What causes mails to get striked-over only, and not deleted?

2020-05-22 Thread Sebastian Nielsen
ve/Plugins/IMAPSieve -Ursprungligt meddelande- Från: dovecot-boun...@dovecot.org För Robert L Mathews Skickat: den 23 maj 2020 01:43 Till: dovecot@dovecot.org Ämne: Re: What causes mails to get striked-over only, and not deleted? On 5/22/20 4:01 PM, Sebastian Nielsen wrote: > and th

What causes mails to get striked-over only, and not deleted?

2020-05-22 Thread Sebastian Nielsen
I have tried with this sieve config: imapsieve_mailbox1_name = Sent imapsieve_mailbox1_causes = COPY APPEND imapsieve_mailbox1_after = file:/etc/dovecot/sieve/sent.sieve and this sieve file (sent.sieve): discard; This should clearly cause the mail to be deleted right? But whats happen,

SV: SV: Marking all emails in "Trash" as opened, and also prohibiting email clients from creating ne

2020-05-09 Thread Sebastian Nielsen
en in trash, its still unread. -Ursprungligt meddelande- Från: dovecot-boun...@dovecot.org För Mark Constable Skickat: den 10 maj 2020 03:48 Till: dovecot@dovecot.org Ämne: Re: SV: Marking all emails in "Trash" as opened, and also prohibiting email clients from creating ne On 10

SV: Marking all emails in "Trash" as opened, and also prohibiting email clients from creating new ma

2020-05-09 Thread Sebastian Nielsen
, it doesn't select emails written from appendfile in exim4, which is good. So now I somehow need to get exim4 to actually delete the email completely and not just mark it for deletion. -Ursprungligt meddelande- Från: Sebastian Nielsen Skickat: den 9 maj 2020 19:33 Till: dovecot

SV: Marking all emails in "Trash" as opened, and also prohibiting email clients from creating new ma

2020-05-09 Thread Sebastian Nielsen
e newly created email is simply discarded. No error message or error codes should be returned to IMAP client. (The reason I want this, is because I have configured my outgoing SMTP server to populate Sent, and some email clients doesn't have the option to "Don't store a copy of the email in Sent f

Marking all emails in "Trash" as opened, and also prohibiting email clients from creating new mails

2020-05-09 Thread Sebastian Nielsen
uld be returned to IMAP client. (The reason I want this, is because I have configured my outgoing SMTP server to populate Sent, and some email clients doesn't have the option to "Don't store a copy of the email in Sent folder" resulting in duplicates) Best regards, Sebastian

Re: Feature wishlist: Allow to hide client IP/host in submission service

2019-08-28 Thread Sebastian Krause via dovecot
Timo Sirainen wrote: > Yeah, it would be useful to hide the client's IP and do it by > default. Actually I think there shouldn't even be an option to not > hide it. Or would it be better or worse to just not have the > Received header added at all? I don't think it's a good idea to just hide the

Re: Feature wishlist: Allow to hide client IP/host in submission service

2019-08-27 Thread Sebastian Krause via dovecot
Tom Sommer wrote: > Check https://github.com/dovecot/core/pull/74 > > Unsure if it covers Submission though Unfortunately not, the "Received" header is added here and there is no check for an option:

Feature wishlist: Allow to hide client IP/host in submission service

2019-08-25 Thread Sebastian Krause via dovecot
by mail.example.com with ESMTPSA id 8bV9D+51Yl1FOwAA1ctoJQ (envelope-from ) for ; Sun, 25 Aug 2019 13:50:06 +0200 Sebastian

dovecot-lda "-f" argment optional?

2018-04-17 Thread Sebastian Arcus
I use dovecot-lda to deliver incoming email from Exim to Dovecot. After having some problems with email bounces with empty envelope sender not being delivered because of an empty -f argument, I discovered that Exim can pass email to Dovecot using dovecot-lda without using the -f argument at

Is FTS needed for Subject/Recipient/Sender server-side searches?

2018-04-16 Thread Sebastian Arcus
I've had a number of Dovecot installs happily running for quite a few years now, but I've just stumbled over a new issue. I am trying to get some iPhones to do server-side email searches through ActiveSync/Exchange protocol -> Horde -> Dovecot. The bit I can't figure out is if I need to

Re: Recommended tool for migrating IMAP servers

2017-12-05 Thread Sebastian Arcus
On 04/12/17 23:15, Steve Litt wrote: On Mon, 4 Dec 2017 12:53:15 -0800 (PST) Joseph Tam wrote: "Davide Marchi" writes: UW-IMAP's mailutil, imapsync, YippieMove and Larch. Whatever you use, *don't* use UW-IMAP's mailutil unless you got lots of time to

Re: [PATCH] Add support for lower TLS version than default

2017-08-27 Thread Sebastian Andrzej Siewior
t;always" enabling TLS1.0 by default (since the !SSLv2 !SSLv3 line would enable TLS1.0+ and so set min protocol version TLS1.0). So it is up to you, I could prepare a patch doing that… Sebastian

Re: [PATCH] Add support for lower TLS version than default

2017-08-27 Thread Sebastian Andrzej Siewior
ange its definition to use as a minimal version, be my guest. Or if you plan to scan the string and match for the lowest version then this could work, too. Sebastian

[PATCH] Add support for lower TLS version than default

2017-08-27 Thread Sebastian Andrzej Siewior
-by: Sebastian Andrzej Siewior <sebast...@breakpoint.cc> --- src/config/all-settings.c|1 + src/lib-master/master-service-ssl-settings.c |2 ++ src/lib-master/master-service-ssl-settings.h |1 + src/login-common/ssl-proxy-openssl.c | 15 ++- 4

Re: Dovecot - Postfix Calender Synchronisation

2017-08-23 Thread Sebastian Arcus
. Sebastian

Re: pop 110/995, imap 143/993 ?

2017-08-22 Thread Sebastian Arcus
On 22/08/17 01:56, Peter wrote: Lest anyone think STARTTLS MITM doesn't happen, https://threatpost.com/eff-calls-out-isps-modifying-starttls-encryption-commands/109325/3/ Right, the attack does happen, but it can be prevented by properly configuring the server and client. Not only for

Re: pop 110/995, imap 143/993 ?

2017-08-21 Thread Sebastian Arcus
On 21/08/17 22:18, Joseph Tam wrote: Lest anyone think STARTTLS MITM doesn't happen, https://threatpost.com/eff-calls-out-isps-modifying-starttls-encryption-commands/109325/3/ Not only for security, I prefer port 993/995 as it's just plain simpler to initiate SSL from the get-go rather

Re: pop 110/995, imap 143/993 ?

2017-08-21 Thread Sebastian Arcus
On 21/08/17 16:25, Robert Wolf wrote: On Mon, 21 Aug 2017, Sebastian Arcus wrote: On 21/08/17 13:39, Robert Wolf wrote: On Mon, 21 Aug 2017, Sebastian Arcus wrote: On 21/08/17 10:37, Gedalya wrote: On 08/21/2017 07:28 AM, voy...@sbt.net.au wrote: is there a 'preferred way'? should I

Re: pop 110/995, imap 143/993 ?

2017-08-21 Thread Sebastian Arcus
On 21/08/17 13:39, Robert Wolf wrote: On Mon, 21 Aug 2017, Sebastian Arcus wrote: On 21/08/17 10:37, Gedalya wrote: On 08/21/2017 07:28 AM, voy...@sbt.net.au wrote: is there a 'preferred way'? should I tell users to use 143 over 993 ? or 993 over 143? or? There is no concrete answer

Re: pop 110/995, imap 143/993 ?

2017-08-21 Thread Sebastian Arcus
On 21/08/17 10:37, Gedalya wrote: On 08/21/2017 07:28 AM, voy...@sbt.net.au wrote: is there a 'preferred way'? should I tell users to use 143 over 993 ? or 993 over 143? or? There is no concrete answer. There are various opinions and feelings about this. The opinion againt 993/995 is that

Re: pop 110/995, imap 143/993 ?

2017-08-21 Thread Sebastian Arcus
On 21/08/17 00:28, voy...@sbt.net.au wrote: just setting a new Dovecot server to migrate from older system, but, I have a general question: 1. I've set the server with self issued cert, and both pop/imap StartTLS/110/143 SSL/993/995 (apologies if I'm using wrong naming terminology) is there a

Re: Too many references: cannot splice

2016-12-02 Thread Sebastian Köhler
st... > You will find more info. and a patch there. I can confirm the patch is > working for us. I have applied that patch to the server and I will report back in a couple of days if it is also working for us. -- Sebastian

Too many references: cannot splice

2016-12-02 Thread Sebastian Köhler
Hello, multiple times per day one of our Dovecot servers has the problem that it suddenly refuses to accept new connections and then floods the logs with these messages: Dec 2 12:43:06 alfa3201 dovecot: pop3-login: Error: fd_send(pop3, 18) failed: Too many references: cannot splice Dec 2

Re: Memory leak or misconfiguration: Repeated allocation of very large block

2015-10-25 Thread Sebastian Wolfgarten
Hi Timo, alright, thanks I will recompile without gc - this is a standard build option on FreeBSD but I will get the port maintainer to maybe change this. Best regards Sebastian > Am 24.10.2015 um 23:19 schrieb Timo Sirainen <t...@iki.fi>: > > On 24 Oct 2015, at 14:59, Sebas

Memory leak or misconfiguration: Repeated allocation of very large block

2015-10-24 Thread Sebastian Wolfgarten
Dear all, I am using Dovecot 2.2.19 and I keep on getting the following warnings in my mail.log file on FreeBSD 10: Oct 24 10:45:28 server1 dovecot: imap: Error: GC Warning: Repeated allocation of very large block (appr. size 20480): Oct 24 10:45:28 server1 dovecot: imap: Error: May lead to

Re: [Patch] Fix hang in safe_sendfile on SmartOS

2015-09-07 Thread Sebastian Wiedenroth
> Am 07.09.2015 um 21:34 schrieb Timo Sirainen <t...@iki.fi>: > > On 07/16/2015 06:03 PM, Sebastian Wiedenroth wrote: >> Fix hang in safe_sendfile on SmartOS >> >> The call to sendfile on SmartOS can fail with EOPNOTSUPP. This is a valid >> error

Re: [Patch] Fix hang in safe_sendfile on SmartOS

2015-08-04 Thread Sebastian Wiedenroth
ping? If more information or a system to test the issue on is required please let me know, I’m sure I can provide those. If this list is not the correct place for patches I’m also happy to learn where else to send it. Thanks. Best regards, Sebastian Am 16.07.2015 um 17:03 schrieb Sebastian

doveadm search -A problem with dropped privileges

2015-07-19 Thread Sebastian Kricner
} ssl_cert = /xx/xx/xx/xx.xx.xx ssl_key = /xx/xx/xx/xx.xx.xx ssl_parameters_regenerate = xx days userdb { driver = passwd } protocol lda { mail_plugins = sieve expire } protocol imap { imap_idle_notify_interval = xx mins mail_max_userip_connections = xx mail_plugins = expire } Regards Sebastian

[Patch] Fix hang in safe_sendfile on SmartOS

2015-07-16 Thread Sebastian Wiedenroth
# HG changeset patch # User Sebastian Wiedenroth sebastian.wiedenr...@skylime.net # Date 1437050484 -7200 # Thu Jul 16 14:41:24 2015 +0200 # Node ID 7ef3a533b097e8e6590e754dc56ad308ab29233b # Parent e3640ccaa76d77a9658126d1f8f306480dad8af7 Fix hang in safe_sendfile on SmartOS The call

Re: [Dovecot] TLS/SSL for Win8 Outlook

2014-05-21 Thread Sebastian Goodrick
worked with all other clients but win8/outlook, plus the old dovecot install worked with win8/outlook as well. Regards, Sebastian -BEGIN PGP SIGNATURE- Version: GnuPG v1 Comment: Using GnuPG with Thunderbird - http://www.enigmail.net/ iEYEARECAAYFAlN85ssACgkQR7+YB0Qzbnpp7QCfWajiArksReRecfnBO

Re: [Dovecot] TLS/SSL for Win8 Outlook

2014-05-18 Thread Sebastian Goodrick
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi Sebastian, sorry for the delay ,i could not reproduce your problem, speculate you have wrong settings in your server/client setup and/or you have firewall loadbalancers, proxies between server and client which fail with some ciphers Thank you

[Dovecot] Virtual folder for selected users only? (1.2.15)

2014-02-18 Thread Sebastian Schäfer
/mails/bergschaf/sebastian[at]bergschaf.net {homedir} = /var/mails {maildir} = bergschaf/sebastian[at]bergschaf.net user_query = SELECT homedir AS home, concat('maildir:', maildir) AS mail, uid, gid, concat('maildir:storage=', (quota*1024)) as quota FROM mail_users WHERE username = '%u' now i want

Re: [Dovecot] Virtual folder for selected users only? (1.2.15)

2014-02-18 Thread Sebastian Schäfer
supported since 1.2.x - am I wrong? What are the advantages of upgrading to 2.x? Are there security issues? Thanks! best, sebastian

Re: [Dovecot] IMAP ANNOTATE Extension RFC5257

2014-01-22 Thread Sebastian Schlatow
On Mi, 2014-01-22 at 14:14 -0700, Michael M Slusarz wrote: Quoting Robert Schetterer r...@sys4.de: Am 21.01.2014 20:31, schrieb Sebastian Schlatow: Hello, Does Dovecot support the IMAP ANNOTATE Extension RFC5257 http://tools.ietf.org/html/rfc5257? If not, are there any plans

[Dovecot] Shared mailboxes / IMAP folder performance

2014-01-21 Thread Sebastian Schlatow
Hello, how performant is an IMAP shared folder / mailbox if it contains 2 million mails? Is it possible two have such a quantity of mails in a shared folder? Is it possible to search that shared folder for mails in a fast way? Regards Sebastian

Re: [Dovecot] Shared mailboxes / IMAP folder performance

2014-01-21 Thread Sebastian Schlatow
Am 21.01.2014 17:51, schrieb Robert Schetterer: Am 21.01.2014 17:31, schrieb Sebastian Schlatow: Hello, how performant is an IMAP shared folder / mailbox if it contains 2 million mails? Is it possible two have such a quantity of mails in a shared folder? Is it possible to search that shared

[Dovecot] IMAP ANNOTATE Extension RFC5257

2014-01-21 Thread Sebastian Schlatow
Hello, Does Dovecot support the IMAP ANNOTATE Extension RFC5257 http://tools.ietf.org/html/rfc5257? If not, are there any plans to implement the extension? If not, why there is no plan to implement this feature? Regards Sebastian

Re: [Dovecot] Wait for interface to become available instead of dying?

2013-06-11 Thread Sebastian Arcus
On 11/06/13 00:21, Reindl Harald wrote: Am 10.06.2013 21:04, schrieb Sebastian Arcus: On 10/06/13 13:14, Reindl Harald wrote: Am 10.06.2013 11:45, schrieb Sebastian Arcus: At the moment, if one of the interfaces specified with listen= in dovecot.conf is not up when Dovecot is started

Re: [Dovecot] Wait for interface to become available instead of dying?

2013-06-11 Thread Sebastian Arcus
On 11/06/13 08:18, Robert Schetterer wrote: Am 11.06.2013 09:00, schrieb Sebastian Arcus: At the moment, if one of the interfaces specified with listen= in dovecot.conf is not up when Dovecot is started, then Dovecot just refuses to start. Is there an option to make Dovecot start anyway

[Dovecot] Wait for interface to become available instead of dying?

2013-06-10 Thread Sebastian Arcus
At the moment, if one of the interfaces specified with listen= in dovecot.conf is not up when Dovecot is started, then Dovecot just refuses to start. Is there an option to make Dovecot start anyway, and just use the interface when it becomes available? It is inconvenient to have Dovecot refuse

Re: [Dovecot] Wait for interface to become available instead of dying?

2013-06-10 Thread Sebastian Arcus
On 10/06/13 13:14, Reindl Harald wrote: Am 10.06.2013 11:45, schrieb Sebastian Arcus: At the moment, if one of the interfaces specified with listen= in dovecot.conf is not up when Dovecot is started, then Dovecot just refuses to start. Is there an option to make Dovecot start anyway

Re: [Dovecot] Sieve/pigeonhole with Exim and Dovecot LDA

2013-05-30 Thread Sebastian Arcus
On 20/05/13 23:40, Gedalya wrote: On 05/20/2013 05:13 PM, Sebastian Arcus wrote: On 20/05/13 17:12, Gedalya wrote: On 05/20/2013 12:02 PM, Sebastian Arcus wrote: Exim doesn't seem to have any variable expansion for the From field If using the From header actually makes sense to you

Re: [Dovecot] Sieve/pigeonhole with Exim and Dovecot LDA

2013-05-21 Thread Sebastian Arcus
On 21/05/13 01:38, Gedalya wrote: On 05/20/2013 07:37 PM, Sebastian Arcus wrote: That's an interesting one. I've been running several sites for a few years now with exim in smart relay - without connection_max_messages = 1 - and had no problems so far. Maybe it's because only few lan clients

[Dovecot] Sieve/pigeonhole with Exim and Dovecot LDA

2013-05-20 Thread Sebastian Arcus
I am trying to configure my Dovecot installation to provide Vacation/Out-of-the-office emails using the Sieve plugin. My setup is a little bit peculiar: Internet Internet | ^ V |

Re: [Dovecot] Sieve/pigeonhole with Exim and Dovecot LDA

2013-05-20 Thread Sebastian Arcus
On 20/05/13 16:12, Sebastian Arcus wrote: I am trying to configure my Dovecot installation to provide Vacation/Out-of-the-office emails using the Sieve plugin. My setup is a little bit peculiar: Internet Internet

  1   2   >