> > > I have a suggestion on this subject. What about the possibility of
> > > binding a realm to a local address for cyrus (IP based vhost)? Yes,
> > > authentication and named vhosts via username and realm is ideal, but
> > > given that that information is usually not explicitly send by the
> > > client, if the imap server could assign the realm based on some implicit
> > > information such as the IP address, then there is an answer that should
> > > work while we all wait for more widespread support of SASL realms. If
> > > there was a patch to do this, would it be accepted into CVS?
> >
> > It does mean that you must get an SSL certificate per IP address, if using
> > SSL. This would make other approaches seem better.
>
> Joe, SASL is not SSL. *plonk*
If you have a different DNS name & IP address for each virtual domain,
you'll need a different SSL certificate for each one or the browser will
complain upon establishing a connection -- long before SASL issues are
relevant. Note that I did specify "if using SSL".
So I'll deny your *plonk*, and raise you one kiddo. Pay attention!
--
Joe Rhett Chief Technology Officer
[EMAIL PROTECTED] ISite Services, Inc.
PGP keys and contact information: http://www.noc.isite.net/Staff/