Re: %{listener} not working

2022-05-19 Thread Aki Tuomi
> On 19/05/2022 11:58 cesco wrote: > > > > > > > > Hi! > > > > %{listener} is not available in authentication process, only in login > > process for logging purposes, as stated in documentation. > > > > You can use %{service} instead? > > > > Aki > > Hi > sorry, for whatever reason I

Re: %{listener} not working

2022-05-19 Thread Aki Tuomi
> On 19/05/2022 00:45 cesco wrote: > > > Hi > > I'm trying to use the variable %{listener} in the following password mysql > query: > > password_query = SELECT accounts.mcf AS password FROM accounts, domains WHERE > user = '%n' AND accounts.domain = '%d' AND accounts.domain =

Re: TLS renegotiation issue (CVE-2011-1473) in Dovecot

2022-05-16 Thread Aki Tuomi
Interesting that your security organization is worried about TLS renegotiation but do not mind people logging in without TLS... =) You have disable_plaintext_auth = no which allows plaintext auth over non-TLS connection. See

Re: Dovecot v2.3.19 released: User/PassDB lookups fail after update

2022-05-16 Thread Aki Tuomi
> doveadm(olat.vcrp.de:2723414...@bb-trunk.egroupware.de): User doesn't exist > May 15 07:24:56 Error: > doveadm(olat.vcrp.de:1167852...@bb-trunk.egroupware.de): User doesn't exist > > Reverting back to 2.3.16 fixes the problem for now. > > My doveadm config -n is attach

Re: [EXT] Re: [SAG] How to use mail_user_session_finished? (was Re: [Dovecot-news] Dovecot v2.3.19 released)

2022-05-12 Thread Aki Tuomi
> On 12/05/2022 16:10 Sylvain Robitaille wrote: > > > On Thu, 12 May 2022, Aki Tuomi wrote: > > > Can you provide us with the configuration you attempted? > > Sure, but the complete configuration is spread across a number of files: If we read

Re: How to use mail_user_session_finished? (was Re: [Dovecot-news] Dovecot v2.3.19 released)

2022-05-11 Thread Aki Tuomi
> On 12/05/2022 01:15 Sylvain Robitaille wrote: > > > On Tue, 10 May 2022, Aki Tuomi via Dovecot-news wrote: > > > + Added mail_user_session_finished event, which is emitted when the mail > > user session is finished (e.g. imap, pop3, lmtp). It also includes &g

Re: [EXT] Re: Dovecot v2.3.19 released

2022-05-10 Thread Aki Tuomi
> On 11/05/2022 08:12 A. Schulze wrote: > > > Am 11.05.22 um 06:52 schrieb Aki Tuomi: > > > > > What ssl library are you using? > It's what Debian provides: https://packages.debian.org/bullseye/libssl1.1 > > Andreas You are using something like `li

Re: Dovecot v2.3.19 released

2022-05-10 Thread Aki Tuomi
> On 11/05/2022 00:49 A. Schulze wrote: > > > Am 10.05.22 um 23:35 schrieb John Stoffel: > >>>>>> "A" == A Schulze writes: > > > > A> Am 10.05.22 um 08:33 schrieb Aki Tuomi: > >>> Hi all! > >>> > >

Re: [Dovecot-news] Pigeonhole v0.5.19 released

2022-05-10 Thread Aki Tuomi via Dovecot-news
> On 10/05/2022 09:33 Aki Tuomi wrote: > > > Hi all! > > We are pleased to release v0.5.19 of Pigeonhole. > > This release is done to maintain parity with dovecot 2.3.19 release, so it > does not contain any news-worthy changes. > > https://pigeonhole.dov

[Dovecot-news] Pigeonhole v0.5.19 released

2022-05-10 Thread Aki Tuomi via Dovecot-news
/2.3/dovecot-2.3-pigeonhole-0.5.18.tar.gz Binary packages in https://repo.dovecot.org/ Docker images in https://hub.docker.com/r/dovecot/dovecot Regards, Aki Tuomi Open-Xchange oy signature.asc Description: PGP signature ___ Dovecot-news mailing list

[Dovecot-news] Dovecot v2.3.19 released

2022-05-10 Thread Aki Tuomi via Dovecot-news
in https://hub.docker.com/r/dovecot/dovecot Regards, Aki Tuomi Open-Xchange oy -- + Added mail_user_session_finished event, which is emitted when the mail user session is finished (e.g. imap, pop3, lmtp). It also includes fields with some process statistics information. See https

Re: director service tries to start without any configuration

2022-04-29 Thread Aki Tuomi
> On 29/04/2022 12:37 Eirik Rye wrote: > > > Hello, > > - Dovecot 2.3.18 (originally Dovecot 2.3.16, but upgraded in an > attempt to fix issue) > - Ubuntu 20.04 using Dovecot repo > > In my organization have run a cluster of dovecot proxy machines, with > the director service enabled in a

Re: no full syncs after upgrading to dovecot 2.3.18

2022-04-28 Thread Aki Tuomi
to 416.642.7266 > Main 1.866.411.7266 > Fax 1.888.892.7266 > > On 4/27/2022 9:01 AM, Aki Tuomi wrote: > > > > Hi! > > > > This is probably going to get fixed in 2.3.19, this looks like an issue we > > are already fixing. > > > > Aki

Re: Recovering deleted mailbox

2022-04-28 Thread Aki Tuomi
chive. Public archive administrator > >> should fix this against automated addresses collectors. > >> El 28/4/22 a les 7:48, Aki Tuomi ha escrit: > >>> > >>>> On 28/04/2022 08:33 Shawn Heisey wrote: > >>>> > >>>> > >>

Re: Recovering deleted mailbox

2022-04-28 Thread Aki Tuomi
28/4/22 a les 7:48, Aki Tuomi ha escrit: > > > >> On 28/04/2022 08:33 Shawn Heisey wrote: > >> > >> > >> On 4/27/2022 11:27 PM, Aki Tuomi wrote: > >>> There is no reason to delete the dovecot files after recovery. You can > >>>

Re: Recovering deleted mailbox

2022-04-28 Thread Aki Tuomi
> On 28/04/2022 08:57 Shawn Heisey wrote: > > > On 4/27/2022 11:48 PM, Aki Tuomi wrote: > > # drop fts data > > doveadm fts rescan -u user > > # rebuild index > > doveadm index -u user "*" > > I do full reindexes a lot more often than

Re: Recovering deleted mailbox

2022-04-27 Thread Aki Tuomi
> On 28/04/2022 08:33 Shawn Heisey wrote: > > > On 4/27/2022 11:27 PM, Aki Tuomi wrote: > > There is no reason to delete the dovecot files after recovery. You can run > > `doveadm force-resync` to ensure everything is synced. Removing the files > > just ca

Re: Can I set a different certificate per listen port?

2022-04-27 Thread Aki Tuomi
> On 27/04/2022 22:14 Kees van Vloten wrote: > > > Hi all, > > I am trying to setup dovecot to listen to imaps on the local network and > through haproxy from the internet. > > service imap-login { >   inet_listener imaps { >     port = 993 >     ssl = yes >   } >   inet_listener

Re: Recovering deleted mailbox

2022-04-27 Thread Aki Tuomi
> On 28/04/2022 01:57 Shawn Heisey wrote: > > > On 4/27/22 16:18, Sean McBride wrote: > > I have a user (coworker) that accidentally deleted a mailbox and all its > > sub-mailboxes. > > > > I use Maildir format storage. I have backups. > > > > Is it enough to put the mailbox folder back

Re: no full syncs after upgrading to dovecot 2.3.18

2022-04-27 Thread Aki Tuomi
Hi! This is probably going to get fixed in 2.3.19, this looks like an issue we are already fixing. Aki > On 26/04/2022 16:38 Paul Kudla (SCOM.CA Internet Services Inc.) > wrote: > > > Agreed there seems to be no way of posting these kinds of issues to see > if they are even being

Re: Heads-up: Exim 4.96 RC0 may break your Dovecot LDA delivery

2022-04-25 Thread Aki Tuomi
You could also just switch to LMTP instead of LDA. Aki > On 25/04/2022 16:47 Kirill Miazine wrote: > > > So my workaround was to create a simple wrapper and call it, instead of > dovecot-lda: > > $ cat /local/bin/dovecot-lda-wrapper > #!/bin/sh > exec /usr/local/libexec/dovecot/dovecot-lda

Re: Weird status... " noselect"... why ?

2022-04-23 Thread Aki Tuomi
> On 22/04/2022 21:11 Stephane Magnier wrote: > > > > > a list "" * gives me this > > * LIST (\HasChildren \UnMarked) "/" INBOX/2022-PERSONNEL/FOO2 > * LIST (\HasNoChildren \UnMarked) "/" INBOX/2022-PERSONNEL/FOO2/test > * LIST (\Noselect \HasChildren) "/" INBOX/2022-PERSONNEL/FOO2/test

Re: Permissions and ownership on /dev/shm/dovecot

2022-04-10 Thread Aki Tuomi
Hi! Dovecot uses permissions from mail user storage folder and in absence of that, the parent folder. Your pre-start script looks good. If your NFS is fast enough, it's ok to keep .cache and .log in NFS. Aki > On 25/03/2022 18:57 João Silva wrote: > > > In that case things can be more

Re: Dovecot 2.3.13 virtual mailboxes subscription problem

2022-04-10 Thread Aki Tuomi
> On 03/04/2022 16:12 Slavko wrote: > > > Hi, > > by discussion on IRC channel is post details here. > > > I am using virtual plugin in dovecot 2.3.13 and i have porblems with > subsription to these virtual mailboxes. I can setup autosubscribe to > them and it works as expected. I can

Re: Set up per user sieve rules

2022-04-10 Thread Aki Tuomi
> On 10/04/2022 06:36 Shawn Heisey wrote: > > > On 4/9/2022 9:29 PM, Austin Witmer wrote: > > I am curious Shawn, what the contents of your > > /etc/dovecot/conf.d/90-sieve.conf file is? > > It's almost all comments.  A LOT of detailed comments.  Stripping those out: > > > --- >

Re: resend whole inbox to user

2022-04-07 Thread Aki Tuomi
> On 07/04/2022 09:49 Shawn Heisey wrote: > > > On 2022-04-06 13:29, Marc wrote: > > I was wondering if there is some way to force an imap client to > > 're-download' all the messages from the inbox. I can remember in the > > 'old days' that when the connection was dropped during a pop

Re: remove duplicate emails

2022-04-05 Thread Aki Tuomi
> On 04/04/2022 13:44 Jean-Max Reymond wrote: > > > Hi, > I have postfix running and sometimes and I have some duplicate emails > with the same Message-ID. > With dovecot sieve, I understand that duplicate option remove these > emails but I don't understand the configuration to apply. >

Re: Dovecot Submission - rate limiting

2022-03-31 Thread Aki Tuomi
> On 31/03/2022 17:00 itan...@univ-brest.fr wrote: > > > Hello, > > is there any way to rate limit submission mail (counting per user) when > using Dovecot/Submission (no Postfix)? > > Using a milter seems impossible. > Using Dovecot Events seems "too" global (not per users

Re: Dovecot 2.3.18 and OpenMetrics-Prometheus problem

2022-03-25 Thread Aki Tuomi
> On 17/03/2022 17:54 Aki Tuomi wrote: > > > > On 17/03/2022 17:23 Christian Rößner wrote: > > > > > > Hi, > > > > > Am 17.03.2022 um 10:43 schrieb Eirik Rye : > > > > > > On 25/02/2022 11:50, Christian Rößner wro

Re: Pop3 Panic Error

2022-03-24 Thread Aki Tuomi
> On 24/03/2022 09:32 Aki Tuomi wrote: > > > > On 24/03/2022 09:29 Aurel Mihai wrote: > > > > > > Hello, > > after upgrade to version 2.3.18, we enconter a lot of errors, such as: > > > > Mar 22 14:08:32 mail2 dovecot: pop3(user@dom

Re: Pop3 Panic Error

2022-03-24 Thread Aki Tuomi
> On 24/03/2022 09:29 Aurel Mihai wrote: > > > Hello, > after upgrade to version 2.3.18, we enconter a lot of errors, such as: > > Mar 22 14:08:32 mail2 dovecot: pop3(user@domain)<52269><3y3GeM3aQ+tWadtM>: > Panic: file lib-event.c: line 585 (event_reason_code_prefix): assertion > failed:

Re: log failed plaintext password for specific user only

2022-03-23 Thread Aki Tuomi
> On 23/03/2022 12:18 mj wrote: > > > Op 23-03-2022 om 11:11 schreef Aki Tuomi: > > > > Well, is the sha1 value same every time? If it is, then they are trying > > same password each time. > > > > Aki > > Yes, understood. :-) > > T

Re: log failed plaintext password for specific user only

2022-03-23 Thread Aki Tuomi
> On 23/03/2022 11:47 mj wrote: > > > Hi, > > We are logging failed authentication attempts, with the attempted > password as auth_verbose_passwords=sha1 > > The question: is it possible to configure auth_verbose_passwords=plain > for a specific user only? Turning it on globally would be

Re: running alternate dovecot instances on the same server

2022-03-20 Thread Aki Tuomi
> On 20/03/2022 22:36 Chris Hoogendyk wrote: > > > I'm posting to the list, but not on the list. I presume that means a > reply-all to get to me as well > as the list? > > We have two servers (dovecot --version:  2.2.22 (fe789d2)) that handle email > for two different > departments. >

Re: Dovecot 2.3.18 and OpenMetrics-Prometheus problem

2022-03-17 Thread Aki Tuomi
> On 17/03/2022 17:23 Christian Rößner wrote: > > > Hi, > > > Am 17.03.2022 um 10:43 schrieb Eirik Rye : > > > > On 25/02/2022 11:50, Christian Rößner wrote: > >> dovecot_sieve_actions_total{"duration_10001_10"} 88 > > > > This label specification is invalid (it's missing the label

Re: AW: AW: invalid lz4 chunk size??

2022-03-16 Thread Aki Tuomi
complexity is hidden > by mailcow. > Thanks, Joachim > > -Ursprüngliche Nachricht- > Von: Aki Tuomi > Gesendet: Wednesday, 16 March 2022 08:38 > An: Joachim Lindenberg ; dovecot@dovecot.org > Betreff: Re: AW: invalid lz4 chunk size?? > > Hi, > > looks a lot l

Re: sieve-filter not respecting :create flag of fileinto

2022-03-16 Thread Aki Tuomi
> On 16/03/2022 09:19 Aki Tuomi wrote: > > > > On 15/03/2022 01:13 David Arroyo wrote: > > > > > > On Mon, Mar 14, 2022, at 03:46, Aki Tuomi wrote: > > > can you provide output of mail_debug=yes logs during delivery? > > > > Sure, a

Re: AW: invalid lz4 chunk size??

2022-03-16 Thread Aki Tuomi
on one side and rely on replication to get > the copy replaced? If that makes sense, which commands do you recommend? > Thanks, > Joachim > > -Ursprüngliche Nachricht- > Von: Joachim Lindenberg > Gesendet: Thursday, 3 March 2022 12:06 > An: 'Aki Tuomi'

Re: sieve-filter not respecting :create flag of fileinto

2022-03-16 Thread Aki Tuomi
> On 15/03/2022 01:13 David Arroyo wrote: > > > On Mon, Mar 14, 2022, at 03:46, Aki Tuomi wrote: > > can you provide output of mail_debug=yes logs during delivery? > > Sure, attached. > > David Thanks. Seems like folder creation is not attempted. Could be a bug, I'll take a look. Aki

Re: allow_nets equivalent for all users?

2022-03-14 Thread Aki Tuomi
> On 14/03/2022 18:48 Bryan K. Walton wrote: > > > On Mon, Mar 14, 2022 at 06:33:16PM +0200, Aki Tuomi wrote: > > > > If you really want, you can add default_fields = allow_nets=value or > > override_fields = allow_nets=value to the passdb. > > &

Re: allow_nets equivalent for all users?

2022-03-14 Thread Aki Tuomi
> On 14/03/2022 18:31 Bryan K. Walton wrote: > > > Hi, > > It is my understanding that allow_nets is a field that gets used in a > password database, and therefore is a per-user setting. > > Is there an equivalent method for defining allowed network(s) for ALL > users? In other words, a

Re: sieve-filter not respecting :create flag of fileinto

2022-03-14 Thread Aki Tuomi
> On 12/03/2022 00:04 David Arroyo wrote: > > > Hello, > > I recently significantly modified my sieve rules for filing mailing list > posts in my Fastmail inbox. The rules contain a few rules that file mail > like so: > > fileinto :create ml.${5}${4}{$3}{$2}{$1}; # reversed list-id >

Re: AntiVirus in Maildir

2022-03-14 Thread Aki Tuomi
> On 14/03/2022 08:43 Robert Schetterer wrote: > > > Am 14.03.22 um 05:56 schrieb Masakazu Hirose: > > Hi all, > > > > I run a mail server on Maildir. > > Does Dovecot work correctly if I delete the mail files stored in > > Maildir? Do I need to run the doveadm command? > > > > I want to

Re: doveadm complains about virtual namespace

2022-03-06 Thread Aki Tuomi
> On 07/03/2022 00:30 Roberto Sanchez wrote: > > > Hi, > > I’ve setup my server __user__nd mail sending/receiving is all working without > issue. However, a cron script that cleans up the Junk folder and runs: > > doveadm expunge -A mailbox Junk savedbefore 60d > > gives out the

Re: invalid lz4 chunk size??

2022-03-03 Thread Aki Tuomi
> On 03/03/2022 12:24 Joachim Lindenberg wrote: > > > Hello, > when accessing one mailbox via ActiveSync / SoGo / Dovecot I get the > following error repeatedly in dovecot log: > imap(somemail...@example.org)<1579><***>: Error: Mailbox Sent: UID=1553: > read(compress()) failed: read()

Re: AW: multiple doveadm ports?

2022-03-02 Thread Aki Tuomi
d? > Thanks > Joachim > > -Ursprüngliche Nachricht- > Von: Aki Tuomi > Gesendet: Wednesday, 2 March 2022 09:13 > An: Joachim Lindenberg ; dovecot@dovecot.org > Betreff: Re: multiple doveadm ports? > > > > On 02/03/2022 10:08 Joachim Lindenberg wrote: > > > &

Re: multiple doveadm ports?

2022-03-02 Thread Aki Tuomi
> On 02/03/2022 10:08 Joachim Lindenberg wrote: > > > Hello, > > I am trying to add another doveadm listener but am struggling with that. The > primary reason is that I want to enable replication between two systems and > want the replication to be encrypted using TLS. However there are

Re: Does disabling POP3 just mean removing it from the `protocols` list?

2022-03-01 Thread Aki Tuomi
> On 02/03/2022 07:54 Benny Pedersen wrote: > > > On 2022-03-02 02:53, Sean McBride wrote: > > Thanks all for your replies. > > > > I have no need/desire to support anything google-related, so those > > concerns don't apply, but thanks for pointing them out. > > > > So is it just a matter

Re: Custom Authentication Method

2022-02-28 Thread Aki Tuomi
> On 01/03/2022 03:54 Matthew R wrote: > > > Hi guys, we're using Dovecot/Postfix here for our mail system. I'd like to > switch the `passdb` authentication on Dovecot from PAM over to a custom > implementation. We'd prefer to have some sort of script check the password > with an external

Re: Dovecot 2.3.18 and OpenMetrics-Prometheus problem

2022-02-25 Thread Aki Tuomi
> On 25/02/2022 12:23 Christian Rößner wrote: > > > Hi, > > I have defined several metrics in Dovecot and activated the metrics service. > After the I tried to include this in Prometheues, but I get strange errors. I > gave up now after several hours in the hope that this might be a bug.

Re: Different auth logging with cache lookup. (OPEN)

2022-02-22 Thread Aki Tuomi
> On 22/02/2022 09:42 Eikås Arvid wrote: > > > dovecot-2.3.5 and centos 7 > User and IP are logged in both scenarios. > auth-worker(26145): sql(user,1.1.1.1,): Password mismatch > auth-worker(13380): cache(u...@online.no,1.1.1.1): Password mismatch > > > > > dovecot-2.3.17 and rhel 8 >

Re: postfix, dovecot-lda, /run/dovecot/stats-writer socket permision and local user delivery, again

2022-02-21 Thread Aki Tuomi
> On 21/02/2022 23:24 Michael Tokarev wrote: > > > Hi! > > There are many questions on the 'net about the same theme: > lda(mjt): Error: net_connect_unix(/run/dovecot/stats-writer) failed: > Permission denied > > dovecot-lda is run from postfix as mailbox_command for local users. > >

Re: Debug shared namespace issues

2022-02-18 Thread Aki Tuomi
> On 18/02/2022 15:17 Kees van Vloten wrote: > > > On 18-02-2022 13:34, Aki Tuomi wrote: > >> On 18/02/2022 14:27 Kees van Vloten wrote: > >> > >> > >> Hi Team, > >> > >> I am still having troubles with the shared na

Re: Dovecot with Microsoft Azure OAUTH2 ?

2022-02-18 Thread Aki Tuomi
> On 02/02/2022 17:11 Max Kostikov wrote: > > > Does anyone have experience successfully setting up Dovecot OAUTH2 for > authentication with Microsoft Azure? > I'm not sure what to use as tokeninfo_url and introspection_url in the > Dovecot configuration. > I would appreciate any help and

Re: Debug shared namespace issues

2022-02-18 Thread Aki Tuomi
> On 18/02/2022 14:27 Kees van Vloten wrote: > > > Hi Team, > > I am still having troubles with the shared namespace. > > mail_shared_explicit_inbox = yes > namespace { >     type = shared >     separator = "~" Why do you actually have quotes here? Shouldn't be needed or wanted. Can

Re: Fwd: Memory problems with config service

2022-02-18 Thread Aki Tuomi
rsonal reply) > > > > Mensaje reenviado > Asunto: Re: Memory problems with config service > Fecha: Wed, 16 Feb 2022 16:19:32 +0100 > De: Víctor Rubiella Monfort > Para: Aki Tuomi > > > # 2.2.27 (): /etc/dovecot/dovecot.c

Re: Shared mailbox visible but not readable

2022-02-17 Thread Aki Tuomi
> On 17/02/2022 19:34 Kees van Vloten wrote: > > > After the previous thread, I am now able to see / list the structure of > a shared mailbox but cannot see the messages. > > doveadm acl get -u test2 INBOX > ID Global Rights > user=test1admin create delete expunge insert

Re: mail-crypt and mbox format

2022-02-17 Thread Aki Tuomi
>>> looking for a cookbook, just an opinion on whether it is worth converting. >>> >>> We've used mbox format going back before CentOS 5, so change is hard. >>> >>> Environment is CentOS 7, Dovecot, Sendmail, Pigeonhole, MailScanner, >>> Mailwatch SQL,

Re: Fwd: Mailbox sharing not working

2022-02-17 Thread Aki Tuomi
> On 17/02/2022 11:16 Kees van Vloten wrote: > > > On 17-02-2022 10:02, Aki Tuomi wrote: > >> On 17/02/2022 10:39 Kees van Vloten wrote: > >> > >> > >> On 17-02-2022 09:16, Aki Tuomi wrote: > >>>> On 17/02/2022 10:14 Kees

Re: Fwd: Mailbox sharing not working

2022-02-17 Thread Aki Tuomi
> On 17/02/2022 10:39 Kees van Vloten wrote: > > > On 17-02-2022 09:16, Aki Tuomi wrote: > >> On 17/02/2022 10:14 Kees van Vloten wrote: > >> > >> On 17-02-2022 07:28, Aki Tuomi wrote: > >>>> On 16/02/2022 21:40 Kees van Vloten wrote: &

Re: Mailbox sharing not working

2022-02-17 Thread Aki Tuomi
> On 17/02/2022 10:14 Kees van Vloten wrote: > > > On 17-02-2022 07:28, Aki Tuomi wrote: > >> On 16/02/2022 21:40 Kees van Vloten wrote: > >> > >> > >> Hi Team, > >> > >> > >> I am trying to setup mailbox shari

Re: Mailbox sharing not working

2022-02-16 Thread Aki Tuomi
> On 16/02/2022 21:40 Kees van Vloten wrote: > > > Hi Team, > > > I am trying to setup mailbox sharing. But although user test2 shares > INBOX with test1, it is not visible for user1. > > doveadm  acl get -u test2 INBOX > ID Global Rights > user=test1    admin create delete

Re: Memory problems with config service

2022-02-16 Thread Aki Tuomi
> On 16/02/2022 07:30 Víctor Rubiella Monfort wrote: > > > Hi all, > I'm having problems with memory in config service. I increased vsz_limit to > 10GB but continue with this errors when try to reload or restart dovecot: > > config: Panic: data stack: Out of memory when allocating

Re: JWT tokens, timestamps and doubles (microseconds)

2022-02-14 Thread Aki Tuomi
> On 14/02/2022 12:24 Aleš Krajník wrote: > > > Hi all, > > I am having troubles with OAuth2 setup with local introspection of JWT > tokens. > > This happens, when the JWT tokens contain timestamps as doubles, with > microseconds, for example with the following payload: > > { > "aud":

Re: Unable to connect from macOS mail client

2022-02-13 Thread Aki Tuomi
session=<5mZDV+HXxK+dMMgU> > > How to fix it? > > — > Necktwi alert 46 means that you are not using fullchain cert in your ssl_cert. The ssl_cert file should contain the cert followed by intermediate certs between the cert and root, so clients can form trust path to root. Aki Tuomi

Re: mail-crypt and mbox format

2022-02-11 Thread Aki Tuomi
dmail, Pigeonhole, MailScanner, > Mailwatch SQL, Thunderbird clients. > > Thanks, > Doug > On Friday, February 11, 2022, 09:31:09 AM EST, Aki Tuomi > wrote: > > > > > > On 11/02/2022 16:26 cincodemayo...@yahoo.com > > wrote: > > > > >

Re: mail-crypt and mbox format

2022-02-11 Thread Aki Tuomi
Mail crypt will not work with it. Mbox format has limited support of features. --- Aki Tuomi

Re: Different handling of upper and lower case while indexing/searching with Solr

2022-02-10 Thread Aki Tuomi
> On 10/02/2022 13:46 Patrik Peng wrote: > > > On 10.02.22 11:25, Aki Tuomi wrote: > > You can configure dovecot with > > > > auth_username_format=%Lu > > > > which downcases the username provided by the customer, as well. > > Accordi

Re: Different handling of upper and lower case while indexing/searching with Solr

2022-02-10 Thread Aki Tuomi
> On 10/02/2022 11:58 Patrik Peng wrote: > > > On 10.02.22 10:43, Aki Tuomi wrote: > > Probably easiest fix is to fix the users in database to all lowercase, as > > you are likely returning `user` attribute in your SQL queries. > We thought about this as well,

Re: Different handling of upper and lower case while indexing/searching with Solr

2022-02-10 Thread Aki Tuomi
> On 10/02/2022 11:36 Patrik Peng wrote: > > > On 09.02.22 17:47, Christian Kivalo wrote: > > > How are your users added to your auth backend? > > We use a SQL DB as auth backend. Users are added by an external application. > New accounts are all added as lowercase, but it could be possible

Re: Sv: dovecot mailing list (this mailing list), DKIM, SPF and DMARC

2022-02-09 Thread Aki Tuomi
We did that replacement for a while, but people complained. We have ARC signing there, unfortunately it only works if you trust it. Aki > On 04/02/2022 23:10 Sebastian Nielsen wrote: > > > I get it too. These appear because they don't replace either MAIL FROM: or > Mime From: with the list

Re: On mailbox full, retry for 4 days or similar instead of reject

2022-02-08 Thread Aki Tuomi
> On 08/02/2022 09:09 Narcis Garcia wrote: > > > +1 > > > > Narcis Garcia > > __ > I'm using this dedicated address because personal addresses aren't > masked enough at this mail public archive. Public archive administrator > should fix this against automated addresses

Re: Lucene support for FTS - EOL date.

2022-02-06 Thread Aki Tuomi
Hi! fts-lucene and fts-squat are going to be removed in next major release, which is going to be released this year. We are planning to add xapian based replacement for lucene. Aki > On 05/02/2022 23:33 Jacek Grabowski wrote: > > > We are talking about the large-scale commercial use of

Re: How to "activate" a mail directory?

2022-02-05 Thread Aki Tuomi
> On 05/02/2022 12:08 Peter Nabbefeld wrote: > > > Hello, > > as I need a mailbox locally only just for filtering, I've tried to > manually create it (using Maildir as backend): > > 1. Created a folder in the appropriate location under /home/vmail with > subfolders cur, new, tmp. > 2. Set

Re: v2.3.17 quota-dict related sql errors

2022-02-05 Thread Aki Tuomi
> On 05/02/2022 21:01 Pascal Volk > wrote: > > > On 18/12/2021 20.56, Pascal Volk wrote: > > On 2021-12-04 22.18, I wrote: > >> Hi there, > >> > >> I've updated Dovecot from v2.3.14 (cee3cbc0d) to v2.3.17 (e2aa53df5b). > >> Right after the update, dovecot begun flooding the mail.log and >

Re: [EXT] AW: Re: Dovecot installation problem (libssl_iostream_openssl.so is not portable!)

2022-02-04 Thread Aki Tuomi
ith ProtonMail Secure Email. > > --- Original Message --- > > Aki Tuomi schrieb am Freitag, 4. Februar 2022 um > 19:17: > > > On 04/02/2022 20:14 Dimitri dimitri_em...@protonmail.com wrote: > > > > No One? > > > > Nobody there who can help m

Re: Dovecot installation problem (libssl_iostream_openssl.so is not portable!)

2022-02-04 Thread Aki Tuomi
> On 04/02/2022 20:14 Dimitri wrote: > > > No One? > > Nobody there who can help me? > Did you ensure you cleaned up openssl 3.0 files before trying again? Aki

[Dovecot-news] Notification about branch and versioning changes

2022-02-03 Thread Aki Tuomi via Dovecot-news
apply to Pigeonhole. We will also align Pigeonhole release version to match Dovecot, ie. the next major is 2.4.x and not 0.6. We will send more information about the upcoming major release as it progresses. Regards, Aki Tuomi Open-Xchange oy signature.asc Description: PGP sig

[Dovecot-news] Pigeonhole v0.5.18 released

2022-02-03 Thread Aki Tuomi via Dovecot-news
-pigeonhole-0.5.18.tar.gz https://pigeonhole.dovecot.org/releases/2.3/dovecot-2.3-pigeonhole-0.5.18.tar.gz Binary packages in https://repo.dovecot.org/ Docker images in https://hub.docker.com/r/dovecot/dovecot Regards, Aki Tuomi Open-Xchange oy -- - duplicate: Users without a home directory can

[Dovecot-news] Dovecot v2.3.18 released

2022-02-03 Thread Aki Tuomi via Dovecot-news
https://dovecot.org/releases/2.3/dovecot-2.3.18.tar.gz.sig Binary packages in https://repo.dovecot.org/ Docker images in https://hub.docker.com/r/dovecot/dovecot Regards, Aki Tuomi Open-Xchange oy -- * Removed mail_cache_lookup_finished event. This event wasn't especially useful, but it increased

Re: How to use virtual "All" and "Flagged" mailbox?

2022-01-31 Thread Aki Tuomi
ostfix > inet_listener { > port = 12340 > } > } > service stats { > unix_listener stats-reader { > group = vmail > mode = 0660 > user = vmail > } > unix_listener stats-writer { > group = vmail > mode = 0660 > user = vmail > } > } > ssl = requi

Re: PLAIN password scheme issue with {}

2022-01-31 Thread Aki Tuomi
> On 31/01/2022 19:34 Kris von Mach wrote: > > > Hello, > > Using PLAIN password scheme and a user having a password with {} for > example {RnDR8DaD} causes the authentication to fail: > > auth-worker(85632): Error: conn unix:auth-worker (uid=143): > auth-worker<>:

Re: Set mail crypt private password with OAUTH?

2022-01-31 Thread Aki Tuomi
-file. Aki > On 31/01/2022 13:00 Max Kostikov wrote: > > > With removed userdb_mail_crypt_private_password part in the > password_query it doesn't work at all even with standard password > authentication. > > > Aki Tuomi писал(а) 2022-01-31 12:52: > >

Re: Set mail crypt private password with OAUTH?

2022-01-31 Thread Aki Tuomi
he decryption key is correct but for some reason it doesn't > > applied when key decryption. > > > > > > Aki Tuomi писал(а) 2022-01-31 12:09: > >> In fact now that I looked through your configs one more, this is > >> already what you are doing, excep

Re: silly quesiton [ot]

2022-01-31 Thread Aki Tuomi
> On 31/01/2022 12:29 Benny Pedersen wrote: > > > On 2022-01-31 10:45, Aki Tuomi wrote: > > > Commercial Dovecot has had the ability to store mails & indexes in > > Object Storage for years now, we are not "working on it" anymore. > > so no o

Re: Set mail crypt private password with OAUTH?

2022-01-31 Thread Aki Tuomi
with `doveadm mailbox cryptokey export -u user -U` Aki > On 31/01/2022 12:03 Aki Tuomi wrote: > > > Hgm. You have userdb lookups enabled, why not just move the entire > mail_crypt_private_password handling there instead of passdb? This way it'll > work with LMTP/LDA as well

Re: Set mail crypt private password with OAUTH?

2022-01-31 Thread Aki Tuomi
master userdb out: > USER#0111609564161#011max.kosti...@gmail.com#011home=/var/vmail/gmail.com/max.kostikov/#011mail=maildir:/var/vmail/gmail.com/max.kostikov/#011uid=150#011gid=8#011quota=dirsize:storage=0#011userdb_mail_crypt_private_password=#011auth_mech=XOAUTH2#011auth_token=a8a38b31197804

Re: Set mail crypt private password with OAUTH?

2022-01-31 Thread Aki Tuomi
> 98ae0f998f9139ebe20a97de77f162dcdeed496e38c9b5910186f999f3ef66c8: > Password not available in=463 out=1872 deleted=0 expunged=0 trashed=0 > hdr_count=1 hdr_bytes=115 body_count=0 body_bytes=0 > > > Aki Tuomi писал(а) 2022-01-31 11:33: > > try adding > > > >

RE: silly quesiton [ot]

2022-01-31 Thread Aki Tuomi
> On 31/01/2022 10:36 Marc wrote: > > > > > > Just ideas. > > Maybe an idea to participate on a Microsoft forum? They like to use db's for > email, and they are removing everything what is nice in order to push people > into their cloud. So lots to change for the better there. > > It's

Re: Set mail crypt private password with OAUTH?

2022-01-31 Thread Aki Tuomi
ed=0 trashed=0 hdr_count=1 > hdr_bytes=0 body_count=0 body_bytes=0 > > I've tried to add > > pass_attrs = > userdb_mail_crypt_private_password=%{userdb:userdb_mail_crypt_private_password} > > into the pass_attrs = > userdb_mail_crypt_private_password=%{us

Re: Dovecot installation problem (libssl_iostream_openssl.so is not portable!)

2022-01-30 Thread Aki Tuomi
> On 28/01/2022 18:00 Dimitri wrote: > > > Hi there, > > i try to install dovecot from source with the following configuration: > > ./configure --prefix=/test/core/dovecot --with-ssldir=/test/core/dovecot/tls > > the configuration runs fine with the following output at the end: > > Install

Re: Set mail crypt private password with OAUTH?

2022-01-30 Thread Aki Tuomi
> On 28/01/2022 21:27 Max Kostikov wrote: > > > We currently use Dovecot and mailbox encryption via the > mail-crypt-plugin. > With standard password authentication, we set the value of the > individual > password to encrypt the contents of the > userdb_mail_crypt_private_password >

Re: How to use virtual "All" and "Flagged" mailbox?

2022-01-30 Thread Aki Tuomi
> On 26/01/2022 19:48 A B wrote: > > > Hello, > > I'm trying to use the virtual "All" and "Flagged" mailboxes as described in > 15-mailboxes.conf. > > The information here > (https://doc.dovecot.org/configuration_manual/virtual_plugin/) doesn't really > touch on how to actually interact

Re: Sync via ssh fails when ssl is active

2022-01-30 Thread Aki Tuomi
> On 25/01/2022 15:35 Christian Mack wrote: > > > Hello > > Am 20.01.22 um 16:32 schrieb Johan: > > > > Jan 20 16:13:09 doveadm: Error: doveconf: Fatal: Error in configuration > > file /etc/dovecot/conf.d/10-ssl.conf line 16: ssl_cert: Can't open file > >

Re: Fwd: Dsync replication - delayed replication (Sync lock)

2022-01-30 Thread Aki Tuomi
Did you check what process the locking PID was? Aki > On 25/01/2022 12:20 Claudio Corvino wrote: > > > Hi, > we have the same issue and the same configuration except for Dovecot version, > ours is the latest into Dovecot repo; in addition we do not have DNS round > robin. > Does anybody

Re: Received invalid SSL certificate: unable to get certificate CRL

2022-01-30 Thread Aki Tuomi
> On 26/01/2022 11:19 Markus Winkler wrote: > > > Hi Laura, > > On Wed, 26 Jan 2022 at 12:09:04AM +, Laura Smith wrote: > >‐‐‐ Original Message ‐‐‐ > >> > >> I thought that > >> > >> ssl_ca = >> > >> is worth a try. > > > > > >Does ssl_ca even apply to dsync/imapc ? > > as I

Re: NTLM fails: dovecot: auth: Fatal: Unknown authentication mechanism 'NTLM'

2022-01-30 Thread Aki Tuomi
You can probably use auth_default_realm for this, see https://doc.dovecot.org/settings/core/?highlight=realm#core_setting-auth_default_realm Aki > On 24/01/2022 20:05 da...@kosmosisland.com wrote: > > > Hello Aki, > > Thank you, that works. But it doesn't solve my main problem. Newer >

Re: pop3-login logging double Disconencted

2022-01-25 Thread Aki Tuomi
On 26 January 2022 4.08.04 UTC, Noel Butler wrote: >Hi all, > >Wondering if anyone else is seeing this double Disconnected in the logs >with current stable version, it only happens for pop3-login, and only >with Too many commands... other pop3-login logging with Disconnected >like

Re: NTLM fails: dovecot: auth: Fatal: Unknown authentication mechanism 'NTLM'

2022-01-22 Thread Aki Tuomi
On 23 January 2022 1.29.43 UTC, David Koski wrote: >Is NTLM now dead?  The Readme says: > >2020-10-23 16:24:09 -0400 Josef 'Jeff' Sipek > (48d6f7282) > >     auth: Remove ntlm mechanism & the LANMAN and NTLM password schemes > >> >> Regards, >> David Koski >> > You should use GSSAPI instead.

Re: AW: Upgrade only piegenhole to 0.5.17?

2022-01-20 Thread Aki Tuomi
> On 20/01/2022 23:44 mau...@gmx.ch wrote: > > > it’s possible to update only sieve 0.5.17, on existing Debian Buster Dovecot > installation? > Running now -> sieve: Pigeonhole version 0.5.4 There are sone sieve versions that work with older dovecot versions, but the safest option is to run

<    1   2   3   4   5   6   7   8   9   10   >