Re: After client authenticated STARTTLS, no EXTERNAL?

2004-05-28 Thread Simon Josefsson
Rob Siemborski <[EMAIL PROTECTED]> writes: > On Thu, 27 May 2004, Simon Josefsson wrote: > >> Hello. Is it possible to get client authenticated STARTTLS working >> with Cyrus IMAPD, without a password login? >> >> I'm assuming EXTERNAL would b

After client authenticated STARTTLS, no EXTERNAL?

2004-05-27 Thread Simon Josefsson
SE/ST=Stockholm/L=:Stockholm/O=YXA/OU=Simon Josefsson/CN=jas/[EMAIL PROTECTED] May 27 10:35:46 yxa-iv cyrus/imapd[26577]: starttls: TLSv1 with cipher RC4-SHA (128/128 bits new) authenticated as jas [EMAIL PROTECTED]:~$ /usr/bin/gnutls-cli -s -p 143 yxa.extundo.com --x509cafile cacert.pem --x509ke

Re: Fwd: pre-login buffer overflow in Cyrus IMAP server

2002-12-05 Thread Simon Josefsson
Rob Siemborski <[EMAIL PROTECTED]> writes: > On Tue, 3 Dec 2002, Nels Lindquist wrote: > >> On 3 Dec 2002 at 9:57, Steve Wright wrote: >> >> > The message below is forwarded from bugtraq. >> > I've not seen any discussion of this, is an official fix available ? >> > The "semi-exploit" shown does i

squatted inboxes crash imapd?

2002-05-09 Thread Simon Josefsson
syslog: May 9 20:48:45 yxa imapd[7371]: open: user jas opened INBOX.msec May 9 20:48:45 yxa master[13500]: process 7371 exited, signaled to death by 11 imap protocol dump: 1209 SELECT "INBOX.msec" * FLAGS (\Answered \Flagged \Draft \Deleted \Seen) * OK [PERMANENTFLAGS (\Answered \Flagged \Dra

[ANNOUNCE] Manage sieve scripts remotely in KDE

2002-05-01 Thread Simon Josefsson
I hacked together a KIOslave to access Sieve servers from KDE. Screenshots and more information at: http://josefsson.org/kio_sieve/ It only barely works, but should be easy to improve from here. Note: It doesn't parse the sieve script, just manages them remotely.

Re: sieveshell authentication failed on Solaris

2002-02-26 Thread Simon Josefsson
Simon Matter <[EMAIL PROTECTED]> writes: > >Received: from mobile.sauter-bc.com (unknown [10.1.6.21]) > by basel1.sauter-bc.com (Postfix) with ESMTP > id D4BA757306; Tue, 26 Feb 2002 15:32:25 +0100 (CET) ... > Sender: [EMAIL PROTECTED] I was wondering why all copies from Simon Matter

Re: Reliable mailstore

2002-01-09 Thread Simon Josefsson
[EMAIL PROTECTED] writes: > We also built HA for each mailstore, such that it are in fact two > systems clustered by the kimberlite software mounting a shared > RAID in a failover situation. See > > http://oss.missioncriticallinux.com/projects/kimberlite/ > > for details. Did you considered

Re: Webmail for Cyrus Imap ?

2001-12-12 Thread Simon Josefsson
This was a interesting thread, and I was happy to see that at least one suggestion, Jawmail, supported WAP, but it caused my stock RedHat 7.1 Apache/PHP build to crash when I ran "install.php"... So, are there any other IMAP interfaces with WML support? Any experiences?

Re: Cyrus IMAP v2.1.0 BETA released

2001-12-12 Thread Simon Josefsson
Lawrence Greenfield <[EMAIL PROTECTED]> writes: > I'm pleased to announce Cyrus IMAP 2.1.0. I guess this is CVS tag cyrus-release-2-1-0, but where does development for future 2.1 versions take place? HEAD?

Re: Cluster support in Cyrus IMAPD?

2001-12-07 Thread Simon Josefsson
Ken Murchison <[EMAIL PROTECTED]> writes: > Well, you'd also have to sync /var/imap so you'd keep the mailbox db, > seen state, subscriptions and quotas in sync. You'd probably have to > quiesce Cyrus so that no mail gets delivered, read, moved, etc. > > You could use rsync to do the replicatio

Cluster support in Cyrus IMAPD?

2001-12-07 Thread Simon Josefsson
It is cheaper to buy another PC than to buy another CPU and add the CPU to your existing PC, so I would like to have two Cyrus IMAPD servers that mirror each other. Is this possible? Is the "Cyrus murder" related to this? From what I remember, it was only a front-end to multiple but separate se

Re: Impact of SSL and Stunnel on Cyrus

2001-11-29 Thread Simon Josefsson
Gary Flynn <[EMAIL PROTECTED]> writes: > I'd be interested in hearing about others' experiences on > the impact of stunnel or SASL on server resources. Any > thoughts on the relative merits of either architecture > of providing SSL sessions would also be appreciated. We'll > need to protect both

Re: [POLL] Cyrus v2.1 and SASL v2

2001-11-19 Thread Simon Josefsson
Ken Murchison <[EMAIL PROTECTED]> writes: > The biggest (only?) downside for existing installations is that any > secrets stored in sasldb would have to migrated to the new format. This > will require resetting all of the users passwords because they can not > be extracted from the old sasldb (u

Re: Sieve error in :matches clause

2001-10-23 Thread Simon Josefsson
Ken Murchison <[EMAIL PROTECTED]> writes: >> I suspect you're right, William. AFAICT this goes against the RFC however, >> since you should only get regex when you use the :regex comparator. >> >> Ken--is this a bug... a feature... a misdiagnosis...? > > It appears to be a bug caused by using f

Re: how can I get detail documents of sieve?

2001-05-13 Thread Simon Josefsson
Try http://www.ietf.org/rfc/rfc3028.txt>. Another good resource is http://www.cyrusoft.com/sieve/>.

Re: installsieve protocol as standard track

2001-02-26 Thread Simon Josefsson
Cyrus Daboo <[EMAIL PROTECTED]> writes: > I would like to see a standard protocol that all clients could > use. This would act as a 'wrapper' for whatever storage mechanism a > particular implemenation may want to use on the back-end, e.g. file > system, ACAP, IMSP, LDAP etc, but would provide si

installsieve protocol as standard track

2001-02-24 Thread Simon Josefsson
Is there any work in progress or interest in making the installsieve protocol a standards track protocol? How do existing MUAs handle uploading of Sieve scripts? ACAP?

Re: zero-fork delivery?

2001-02-23 Thread Simon Josefsson
Miroslav Zubcic <[EMAIL PROTECTED]> writes: > I'm using this: (m4 for sendmail.cf). > > MAILER_DEFINITIONS > Mcyrus, P=[IPC], F=lsDFMnqA@/:|SmXz, E=\r\n, > S=EnvFromL, R=EnvToL/HdrToL, T=DNS/RFC822/X-Unix, > A=FILE /var/imap/socket/lmtp > > deliver (that

Re: zero-fork delivery?

2001-02-23 Thread Simon Josefsson
Lawrence Greenfield <[EMAIL PROTECTED]> writes: > Right you are; running Sendmail/deliver/lmtpd is an extremely > inefficient way to deliver mail. Long message follows. Very informative, thanks! > * Don't run an MTA on the Cyrus server > > Using LMTP over TCP and LMTP AUTH, you can completely

zero-fork delivery?

2001-02-16 Thread Simon Josefsson
I'm using sendmail 8.11.2 and cyrus imapd 2.0.11, currently using "deliver" as the delivery agent. This forks two processes ("deliver" and "lmtpd") for incoming mail, right? (assuming prefork=0) As far as I can tell sendmail doesn't keep the LMTP connection up between incoming connections either