Mauricio Tavares
2013-Sep-19  04:50 UTC
[Dovecot] Yet another going from 1.2 to 2.X question: authentication
So in 1.2.9 I had something like this:
[...]
socket listen {
        master {
                path = /var/run/dovecot/auth-master
                mode = 0600
                user = virtual # User running Dovecot LDA's deliver
        }
}
# Dovecot as SASL Auth
socket listen {
        client {
                path = /var/spool/postfix/private/dovecot-auth
                mode = 0660
                user = postfix
                group = postfix
        }
}
I see I can, per http://wiki2.dovecot.org/HowTo/PostfixAndDovecotSASL,
setup the sasl entry as
# Dovecot as SASL Auth
service auth {
        unix_listener /var/spool/postfix/private/dovecot-auth
        mode = 0660
        user = postfix
        group = postfix
}
what about the lda? From http://wiki2.dovecot.org/LDA I take it would
be as simple as
service auth {
        unix_listener auth-userdb {
                mode = 0600
                user = virtual # User running Dovecot LDA's deliver
        }
}
Am I correct?
Noel Butler
2013-Sep-19  06:40 UTC
[Dovecot] Yet another going from 1.2 to 2.X question: authentication
On Thu, 2013-09-19 at 00:50 -0400, Mauricio Tavares wrote:> So in 1.2.9 I had something like this: > > [...] > > socket listen { > master { > path = /var/run/dovecot/auth-master > mode = 0600 > user = virtual # User running Dovecot LDA's deliver > } > } > > # Dovecot as SASL Auth > socket listen { > client { > path = /var/spool/postfix/private/dovecot-auth > mode = 0660 > user = postfix > group = postfix > } > } > > I see I can, per http://wiki2.dovecot.org/HowTo/PostfixAndDovecotSASL, > setup the sasl entry as > > # Dovecot as SASL Auth > service auth { > unix_listener /var/spool/postfix/private/dovecot-auth > mode = 0660 > user = postfix > group = postfix > } > > what about the lda? From http://wiki2.dovecot.org/LDA I take it would > be as simple as > > service auth { > unix_listener auth-userdb { > mode = 0600 > user = virtual # User running Dovecot LDA's deliver > } > } > > Am I correct?Yes, but no need for two service auth's, put them under the one. you might want to also include group= in addition to user, probably wont matter too much if you don't, I cant remember the consequences of not. -------------- next part -------------- A non-text attachment was scrubbed... Name: signature.asc Type: application/pgp-signature Size: 490 bytes Desc: This is a digitally signed message part URL: <http://dovecot.org/pipermail/dovecot/attachments/20130919/0053838a/attachment-0001.bin>