search for: paravi

Displaying 15 results from an estimated 15 matches for "paravi".

Did you mean: parav
2015 Jul 01
4
Dovecot auth username mapping
...conds to see the same thing. I was hoping that was a possible replacement for this, but my goodness it was so incredibly slow! This would definitely be an option though, as it does serve the purpose. I just can?t figure out how to fix the performance issue. Any thoughts to this? ~ Laz Peterson Paravis, LLC Ph: 951.319.3240 x201 > On Jul 1, 2015, at 3:24 PM, Axel Luttgens <axel.luttgens at skynet.be> wrote: > > >> Le 1 juil. 2015 ? 04:38, Laz C. Peterson > >> a ?crit : >> >> I have an interesting case here ? >> >> Virtual mailboxes, dom...
2015 Jul 01
2
Dovecot auth username mapping
I have an interesting case here ? Virtual mailboxes, domain/username/aliases stored in MySQL, authentication done using PAM. PAM authenticates through Kerberos, which are internal realms and not the email domains ? for example, my username would be laz at PARAVIS.LOCAL <mailto:laz at PARAVIS.LOCAL> and my email address would be laz at paravis.net <mailto:laz at paravis.net>. All of this works just fine. But what I want to do is allow the users to log in using their email address and not their full Kerberos name. It is becoming laborious to h...
2015 Jul 02
0
Dovecot auth username mapping
It?s actually unbelievable how much slower LDAP auth is than PAM. Does anyone have any suggestions how I can improve Dovecot LDAP auth? I have tried caching authentications and that doesn?t help either. ~ Laz Peterson Paravis, LLC Ph: 951.319.3240 x201 > On Jul 1, 2015, at 4:41 PM, Laz C. Peterson <laz at paravis.net> wrote: > > Thank you for the response Axel. I will look into that. > > I did attempt to switch the PAM/Kerberos authentication to Dovecot LDAP authentication, but now performance...
2015 Jul 01
0
Dovecot auth username mapping
...rson > a ?crit : > > I have an interesting case here ? > > Virtual mailboxes, domain/username/aliases stored in MySQL, authentication done using PAM. PAM authenticates through Kerberos, which are internal realms and not the email domains ? for example, my username would be laz at PARAVIS.LOCAL <mailto:laz at PARAVIS.LOCAL> and my email address would be laz at paravis.net <mailto:laz at paravis.net>. > > All of this works just fine. But what I want to do is allow the users to log in using their email address and not their full Kerberos name. It is becoming labo...
2015 Jul 02
1
Dovecot auth username mapping
Peter, Yes that is a possibility. I will try disabling PAM (or switching the auth order) and see if that makes a difference. Thanks for the suggestion! ~ Laz Peterson Paravis, LLC Ph: 951.319.3240 x201 > On Jul 1, 2015, at 11:34 PM, Peter Chiochetti <pch at myzel.net> wrote: > > Am 2015-07-02 um 01:41 schrieb Laz C. Peterson: >> >> I did attempt to switch the PAM/Kerberos authentication to Dovecot >> LDAP authentication, but now perf...
2015 Jul 21
3
dovecot proxy/director and high availability design
...I admit its a fair amount of moving parts and areas for failure but I think it maybe the balance needed to achieve the service level availability I'm after while still allowing for maintenance on the systems w/o clients noticing. -Chad On Jul 20, 2015, at 1:04 PM, Laz C. Peterson <laz at paravis.net> wrote: > I?m trying to do this too. But the goal would be simply for automatic failover to the other datacenter. Everything is working if the server?s unique hostname is entered, but I want to do something like round robin DNS that mail clients will automatically attempt to connect t...
2018 Dec 30
2
Issue with LMTP proxying and port number
...ss is that it?s not getting the port directive from either static or sql ? since the docs state that if these settings aren't specified, it will always use the same connection type for the proxy that it received the connection on. Any thoughts? I can share config if necessary. ~ Laz Peterson Paravis, LLC -------------- next part -------------- An HTML attachment was scrubbed... URL: <https://dovecot.org/pipermail/dovecot/attachments/20181230/ff2ee956/attachment.html>
2015 Jul 21
0
dovecot proxy/director and high availability design
...is slightly different, as I want to have HA available across datacenters without using BGP or having control over the IP space (so, no anycast). Just a simple way to get the clients redirected to the other Dovecot server when I lose an entire datacenter network for whatever reason. ~ Laz Peterson Paravis, LLC > On Jul 20, 2015, at 5:32 PM, Chad M Stewart <cms at balius.com> wrote: > > > Round-robin DNS last I checked can be fraught with issues. > > While doing something else I came up with this idea: Clients --> Load Balancer(HAProxy) --> Dovecot Proxy(DP) --&g...
2015 Jul 20
3
dovecot proxy/director and high availability design
I'm trying to determine which dovecot components to use and how to order them in the network path from client to mail store. If I have say 1,000 users, all stored in MySQL (or LDAP) and have 4 mail stores, configured into 2, 2 node pods. MS1 and MS2 are pod1 and are configured with replication (dsync) and host users 0-500. MS3 and MS4 are pod2 and are configured with replication between
2018 Dec 30
0
Issue with LMTP proxying and port number
> On 31 Dec 2018, at 0.43, Laz C. Peterson <laz at paravis.net> wrote: > > Hello there, > > Everything was working fine on Dovecot 2.2.10 (on CentOS 7), but after updating to version 2.2.36, our director servers are not able to proxy LMTP. > > We are sending mail from exim to the local Dovecot LMTP socket, which then used to send i...
2015 Jul 21
2
dovecot proxy/director and high availability design
...fferent, as I want to have HA available across datacenters without using BGP or having control over the IP space (so, no anycast). Just a simple way to get the clients redirected to the other Dovecot server when I lose an entire datacenter network for whatever reason. > > ~ Laz Peterson > Paravis, LLC > >> On Jul 20, 2015, at 5:32 PM, Chad M Stewart <cms at balius.com> wrote: >> >> >> Round-robin DNS last I checked can be fraught with issues. >> >> While doing something else I came up with this idea: Clients --> Load Balancer(HAProxy) -->...
2013 Oct 02
2
Username issue with Dovecot LDA, IMAP and Winbind Authentication
Hi there Dovecot community -- I'll try to make this short. Here's the setup ? Ubuntu 12.04, Postfix, Dovecot, along with Amavis/Clamd/Spamassassin. Postfix is currently receiving emails for virtual users in multiple domains, all of which are authenticating through Winbind to Windows AD servers. The users log in to the POP/IMAP/SMTP services using the format user at domain.corp (the
2018 Dec 31
2
Re: Issue with LMTP proxying and port number
...; imap_quota" } protocol pop3 { ? mail_max_userip_connections = 50 } local 10.9.0.0/18 { ? doveadm_password = ?# hidden, use -P to show it } On Sunday, December 30, 2018 03:08 PM PST, Sami Ketola <sami.ketola at dovecot.fi> wrote: ??On 31 Dec 2018, at 0.43, Laz C. Peterson <laz at paravis.net> wrote:?Hello there,?Everything was working fine on Dovecot 2.2.10 (on CentOS 7), but after updating to version 2.2.36, our director servers are not able to proxy LMTP.?We are sending mail from exim to the local Dovecot LMTP socket, which then used to send it to our internal mail servers on...
2015 Jul 20
0
dovecot proxy/director and high availability design
...g if the server?s unique hostname is entered, but I want to do something like round robin DNS that mail clients will automatically attempt to connect to the other IP if they cannot get to the first address. Unfortunately mail applications don?t really do this like web browsers do ? ~ Laz Peterson Paravis, LLC > On Jul 20, 2015, at 10:29 AM, Chad M Stewart <cms at balius.com> wrote: > > > I'm trying to determine which dovecot components to use and how to order them in the network path from client to mail store. > > > If I have say 1,000 users, all stored in MySQL...
2016 Jun 07
3
Slow auth
On Tue, 2016-06-07 at 11:45 -0500, Edgar Pettijohn wrote: > You have Pam as your passdb driver. Yes, because I have to. How else would I get Dovecot to authenticate users against my FreeIPA server? -- Ranbir -------------- next part -------------- A non-text attachment was scrubbed... Name: signature.asc Type: application/pgp-signature Size: 819 bytes Desc: This is a digitally signed