[Dovecot] Easy way to make all mailboxes of a user read-only

2013-04-11 Thread Stephan von Krawczynski
Hello all, I try to configure dovecot to make all imap accesses read-only for a certain user. I thought this would be possible by creating a global acl file (here global-acl) like: user=username lr and plugin { acl = vfile:/etc/dovecot/global-acls:cache_secs=300 } But that seems to be

Re: [Dovecot] Easy way to make all mailboxes of a user read-only

2013-04-11 Thread Timo Sirainen
On 11.4.2013, at 15.07, Stephan von Krawczynski sk...@ithnet.com wrote: I try to configure dovecot to make all imap accesses read-only for a certain user. I thought this would be possible by creating a global acl file (here global-acl) like: Sorry, there is still no default ACLs feature in

Re: [Dovecot] Easy way to make all mailboxes of a user read-only

2013-04-11 Thread Stephan von Krawczynski
Let me explain some more details, that seem important to understand: I cannot use acl files per folder/mailbox because the MTA creates folders dynamically (re-orders mails in folders). So I really would need some idea to tell dovecot to let a certain user access his mailbox/folders read-only, no

Re: [Dovecot] Easy way to make all mailboxes of a user read-only

2013-04-11 Thread Stephan von Krawczynski
On Thu, 11 Apr 2013 16:00:22 +0300 Timo Sirainen t...@iki.fi wrote: On 11.4.2013, at 15.07, Stephan von Krawczynski sk...@ithnet.com wrote: I try to configure dovecot to make all imap accesses read-only for a certain user. I thought this would be possible by creating a global acl file

Re: [Dovecot] Easy way to make all mailboxes of a user read-only

2013-04-11 Thread Reindl Harald
Am 11.04.2013 15:05, schrieb Stephan von Krawczynski: Let me explain some more details, that seem important to understand: I cannot use acl files per folder/mailbox because the MTA creates folders dynamically (re-orders mails in folders) why does the MTA that? normally the MTA should only

Re: [Dovecot] Easy way to make all mailboxes of a user read-only

2013-04-11 Thread Stephan von Krawczynski
On Thu, 11 Apr 2013 15:08:31 +0200 Reindl Harald h.rei...@thelounge.net wrote: Am 11.04.2013 15:05, schrieb Stephan von Krawczynski: Let me explain some more details, that seem important to understand: I cannot use acl files per folder/mailbox because the MTA creates folders

Re: [Dovecot] Easy way to make all mailboxes of a user read-only

2013-04-11 Thread Timo Sirainen
On 11.4.2013, at 16.07, Stephan von Krawczynski sk...@ithnet.com wrote: On Thu, 11 Apr 2013 16:00:22 +0300 Timo Sirainen t...@iki.fi wrote: On 11.4.2013, at 15.07, Stephan von Krawczynski sk...@ithnet.com wrote: I try to configure dovecot to make all imap accesses read-only for a certain

Re: [Dovecot] Easy way to make all mailboxes of a user read-only

2013-04-11 Thread Stephan von Krawczynski
On Thu, 11 Apr 2013 16:00:22 +0300 Timo Sirainen t...@iki.fi wrote: On 11.4.2013, at 15.07, Stephan von Krawczynski sk...@ithnet.com wrote: I try to configure dovecot to make all imap accesses read-only for a certain user. I thought this would be possible by creating a global acl file

Re: [Dovecot] Easy way to make all mailboxes of a user read-only

2013-04-11 Thread Stephan von Krawczynski
On Thu, 11 Apr 2013 16:15:23 +0300 Timo Sirainen t...@iki.fi wrote: On 11.4.2013, at 16.07, Stephan von Krawczynski sk...@ithnet.com wrote: On Thu, 11 Apr 2013 16:00:22 +0300 Timo Sirainen t...@iki.fi wrote: On 11.4.2013, at 15.07, Stephan von Krawczynski sk...@ithnet.com wrote:

Re: [Dovecot] Easy way to make all mailboxes of a user read-only

2013-04-11 Thread Timo Sirainen
On 11.4.2013, at 16.24, Stephan von Krawczynski sk...@ithnet.com wrote: The MTA can work as it used to, if it can just set a group-read permission to the files. So your read-only user would belong to that read-only-group. I'm not sure how Postfix assigns permissions, but if it can't do that

Re: [Dovecot] Easy way to make all mailboxes of a user read-only

2013-04-11 Thread Stephan von Krawczynski
On Thu, 11 Apr 2013 16:35:32 +0300 Timo Sirainen t...@iki.fi wrote: On 11.4.2013, at 16.24, Stephan von Krawczynski sk...@ithnet.com wrote: The MTA can work as it used to, if it can just set a group-read permission to the files. So your read-only user would belong to that read-only-group.

Re: [Dovecot] Easy way to make all mailboxes of a user read-only

2013-04-11 Thread Robert Schetterer
Am 11.04.2013 15:00, schrieb Timo Sirainen: On 11.4.2013, at 15.07, Stephan von Krawczynski sk...@ithnet.com wrote: I try to configure dovecot to make all imap accesses read-only for a certain user. I thought this would be possible by creating a global acl file (here global-acl) like: