Displaying 20 results from an estimated 63 matches for "secp384r1".
2017 Sep 08
1
pop3-login core dump when using TLSSTART on version dovecot-2.2.32 (OPEN)
...LS session is coming up and it works fine until I log off, then it's core dump. Open sslvesrion is openssl-1.0.2k.
We ran dovecot-2.2.27 before we upgraded to dovecote-2.2.32, and that seems to work fine. (not core dumping)
Arvid
LOG
Sep 05 14:27:34 pop3-login: Debug: SSL: elliptic curve secp384r1 will be used for ECDH and ECDHE key exchanges
Sep 05 14:30:30 pop3-login: Debug: SSL: elliptic curve secp384r1 will be used for ECDH and ECDHE key exchanges
Sep 05 14:30:30 pop3-login: Debug: SSL: elliptic curve secp384r1 will be used for ECDH and ECDHE key exchanges
Sep 05 14:30:42 pop3-login: Deb...
2017 Sep 11
1
pop3-login core dump when using TLSSTART on version dovecot-2.2.32 (INTERNAL)
...until I log off, then it's core dump. Open sslvesrion is openssl-1.0.2k.
> We ran dovecot-2.2.27 before we upgraded to dovecote-2.2.32, and that
> seems to work fine. (not core dumping)
>
>
> Arvid
>
>
> LOG
> Sep 05 14:27:34 pop3-login: Debug: SSL: elliptic curve secp384r1 will
> be used for ECDH and ECDHE key exchanges Sep 05 14:30:30 pop3-login:
> Debug: SSL: elliptic curve secp384r1 will be used for ECDH and ECDHE
> key exchanges Sep 05 14:30:30 pop3-login: Debug: SSL: elliptic curve
> secp384r1 will be used for ECDH and ECDHE key exchanges Sep 05...
2017 Sep 11
1
pop3-login core dump when using TLSSTART on version dovecot-2.2.32 (INTERNAL)
...dump. Open sslvesrion is openssl-1.0.2k.
>> We ran dovecot-2.2.27 before we upgraded to dovecote-2.2.32, and that
>> seems to work fine. (not core dumping)
>>
>>
>> Arvid
>>
>>
>> LOG
>> Sep 05 14:27:34 pop3-login: Debug: SSL: elliptic curve secp384r1 will
>> be used for ECDH and ECDHE key exchanges Sep 05 14:30:30 pop3-login:
>> Debug: SSL: elliptic curve secp384r1 will be used for ECDH and ECDHE
>> key exchanges Sep 05 14:30:30 pop3-login: Debug: SSL: elliptic curve
>> secp384r1 will be used for ECDH and ECDHE key exc...
2016 Jun 26
2
Looking for NTLM config example
...driver = passwd
> > }
> > verbose_ssl = yes
> >
> >
> > I configured Thunderbird for NTLM authentication, then tried sending a message, I got the
> > following in /var/log/dovecot_info:
> >
> > Apr 22 01:37:57 imap-login: Debug: SSL: elliptic curve secp384r1 will be used for ECDH and ECDHE key exchanges
> > Apr 22 01:37:57 imap-login: Debug: SSL: elliptic curve secp384r1 will be used for ECDH and ECDHE key exchanges
> > Apr 22 01:37:57 auth: Debug: Loading modules from directory: /usr/local/lib/dovecot/auth
> > Apr 22 01:37:57 imap-lo...
2016 Dec 12
2
Dovecot 2.2.27 & windows 10 outlook (no auth attempts in 0 secs) error.
Hello.
Few days ago upgraded from v2.2.26.0 >v2.2.27 and now windows 10, with
any outlook version (2007,2010,2013,2016) doesn't connect IMAP SSL:
Dec 12 12:29:35 server dovecot: imap-login: Debug: SSL: elliptic curve
secp384r1 will be used for ECDH and ECDHE key exchanges
Dec 12 12:29:35 server dovecot: imap-login: Debug: SSL: elliptic curve
secp384r1 will be used for ECDH and ECDHE key exchanges
Dec 12 12:29:35 server dovecot: imap-login: Debug: SSL: where=0x10,
ret=1: before/accept initialization [x.x.x.x]
Dec 12 12:29...
2016 Apr 22
3
Looking for NTLM config example
...y/my.server.name.key
userdb {
args = username_format=%n allow_all_users=yes
driver = passwd
}
verbose_ssl = yes
I configured Thunderbird for NTLM authentication, then tried sending a message, I got the
following in /var/log/dovecot_info:
Apr 22 01:37:57 imap-login: Debug: SSL: elliptic curve secp384r1 will be used for ECDH and ECDHE key exchanges
Apr 22 01:37:57 imap-login: Debug: SSL: elliptic curve secp384r1 will be used for ECDH and ECDHE key exchanges
Apr 22 01:37:57 auth: Debug: Loading modules from directory: /usr/local/lib/dovecot/auth
Apr 22 01:37:57 imap-login: Info: Disconnected: Auth...
2018 Dec 27
4
dsync connection issue
I'm trying to move from my exising server to a new site. In preparation
for this I've set up the new server as per the first attachment.
I've added additional (temporary) setting to the new site as per these
instructions
https://wiki2.dovecot.org/Migration/Dsync
but when I try to do a backup with the following command from the old to
the new site
sudo doveadm -D -o
2016 Jun 26
2
Looking for NTLM config example
...driver = passwd
> > }
> > verbose_ssl = yes
> >
> >
> > I configured Thunderbird for NTLM authentication, then tried sending a message, I got the
> > following in /var/log/dovecot_info:
> >
> > Apr 22 01:37:57 imap-login: Debug: SSL: elliptic curve secp384r1 will be used for ECDH and ECDHE key exchanges
> > Apr 22 01:37:57 imap-login: Debug: SSL: elliptic curve secp384r1 will be used for ECDH and ECDHE key exchanges
> > Apr 22 01:37:57 auth: Debug: Loading modules from directory: /usr/local/lib/dovecot/auth
> > Apr 22 01:37:57 imap-lo...
2016 Apr 22
2
Aborted login (auth failed)
Hi,
My SSL auth got invalid, so I updated my SSL configuration (Apache works)
This ist the log:
---
Apr 22 11:01:55 rosi dovecot: imap-login: Debug: SSL: elliptic curve
secp384r1 will be used for ECDH and ECDHE key exchanges
Apr 22 11:01:55 rosi dovecot: imap-login: Debug: SSL: elliptic curve
secp384r1 will be used for ECDH and ECDHE key exchanges
Apr 22 11:01:55 rosi dovecot: auth: Debug: auth client connected (pid=3466)
Apr 22 11:01:55 rosi dovecot: auth: Debug: client in...
2018 Jul 30
2
2.3.2.1 - EC keys suppport?
...ion: supported_groups (len=10)
??? Type: supported_groups (10)
??? Length: 10
??? Supported Groups List Length: 8
??? Supported Groups (4 groups)
??????? Supported Group: x25519 (0x001d)
??????? Supported Group: secp256r1 (0x0017)
??????? Supported Group: secp521r1 (0x0019)
??????? Supported Group: secp384r1 (0x0018)
Apparently [ brainpool ] would apparently not fit into any of those
groups. Perhaps a bug in OpenSSL 1.1.0h thus.
2017 Jul 12
0
Cannot Authenticate user with Kerberos/GSSAPI
...numerous time with slightly different settings hoping
something will work, but I always get the same message.
Why? I need to figure this out ASAP.
Here is the dovecot log when user dsmith attempts to connect to dovecot from the Tbird client:
Jul 11 19:29:43 imap-login: Debug: SSL: elliptic curve secp384r1 will be used for ECDH and ECDHE key exchanges
Jul 11 19:29:43 imap-login: Debug: SSL: elliptic curve secp384r1 will be used for ECDH and ECDHE key exchanges
Jul 11 19:29:43 auth: Debug: Loading modules from directory: /usr/local/lib/dovecot/auth
Jul 11 19:29:43 auth: Debug: Read auth token secret f...
2018 Jul 31
2
2.3.2.1 - EC keys suppport?
...>> ??? Length: 10
>> ??? Supported Groups List Length: 8
>> ??? Supported Groups (4 groups)
>> ??????? Supported Group: x25519 (0x001d)
>> ??????? Supported Group: secp256r1 (0x0017)
>> ??????? Supported Group: secp521r1 (0x0019)
>> ??????? Supported Group: secp384r1 (0x0018)
>>
>> Apparently [ brainpool ] would apparently not fit into any of those
>> groups. Perhaps a bug in OpenSSL 1.1.0h thus.
>>
>>
> Turned out not being a bug in OpenSSL after all. From the cli it works
> with no issues this way:
>
> [ openssl s_ser...
2017 Jul 11
0
stopped being able to kerberos/GSSAPI authenticate with new email accounts
...rip=192.168.0.99, lip=192.168.0.2, mpid=6429, TLS, session=<OxGMYRFUsADAqABj>
Here is that same user set up on a new client computer, with all the same settings (as far as I
can tell. This one apparently doesn't even try kerberos.
Jul 11 18:08:25 imap-login: Debug: SSL: elliptic curve secp384r1 will be used for ECDH and ECDHE key exchanges
Jul 11 18:08:25 imap-login: Debug: SSL: elliptic curve secp384r1 will be used for ECDH and ECDHE key exchanges
Jul 11 18:08:25 auth: Debug: auth client connected (pid=1055)
Jul 11 18:08:25 imap-login: Debug: SSL: where=0x10, ret=1: before/accept initial...
2015 Sep 10
1
My dovecot works fine against Active Directory 2003, but not against AD2008
...Initials=quota_rule=*:storage=%$MB
> > ---------------
> >
> >
> > --------------------------
> > Log trace using PORT 389:
> > --------------------------
> > Sep 7 19:00:35 <dovecotServer> dovecot: imap-login: Debug: SSL:
> > elliptic curve secp384r1 will be used for ECDH and ECDHE key exchanges
> > Sep 7 19:00:35 <dovecotServer> dovecot: imap-login: Debug: SSL:
> > elliptic curve secp384r1 will be used for ECDH and ECDHE key exchanges
> > Sep 7 19:00:35 <dovecotServer> dovecot: imap-login: Debug: SSL:
> >...
2015 Sep 09
0
My dovecot works fine against Active Directory 2003, but not against AD2008
...Password=password
> user_attrs = Initials=quota_rule=*:storage=%$MB
> ---------------
>
>
> --------------------------
> Log trace using PORT 389:
> --------------------------
> Sep 7 19:00:35 <dovecotServer> dovecot: imap-login: Debug: SSL:
> elliptic curve secp384r1 will be used for ECDH and ECDHE key exchanges
> Sep 7 19:00:35 <dovecotServer> dovecot: imap-login: Debug: SSL:
> elliptic curve secp384r1 will be used for ECDH and ECDHE key exchanges
> Sep 7 19:00:35 <dovecotServer> dovecot: imap-login: Debug: SSL:
> where=0x10, ret=1: b...
2017 Jul 11
1
Unable to Kerberos/GSSAPI an existing user on new workstation
...numerous time with slightly different settings hoping
something will work, but I always get the same message.
Why? I need to figure this out ASAP.
Here is the dovecot log when user dsmith attempts to connect to dovecot from the Tbird client:
Jul 11 19:29:43 imap-login: Debug: SSL: elliptic curve secp384r1 will be used for ECDH and ECDHE key exchanges
Jul 11 19:29:43 imap-login: Debug: SSL: elliptic curve secp384r1 will be used for ECDH and ECDHE key exchanges
Jul 11 19:29:43 auth: Debug: Loading modules from directory: /usr/local/lib/dovecot/auth
Jul 11 19:29:43 auth: Debug: Read auth token secret f...
2016 Dec 12
0
Dovecot 2.2.27 & windows 10 outlook (no auth attempts in 0 secs) error.
...2016 13:00, Mart Pirita wrote:
> Hello.
>
>
> Few days ago upgraded from v2.2.26.0 >v2.2.27 and now windows 10, with
> any outlook version (2007,2010,2013,2016) doesn't connect IMAP SSL:
>
>
> Dec 12 12:29:35 server dovecot: imap-login: Debug: SSL: elliptic curve
> secp384r1 will be used for ECDH and ECDHE key exchanges
> Dec 12 12:29:35 server dovecot: imap-login: Debug: SSL: elliptic curve
> secp384r1 will be used for ECDH and ECDHE key exchanges
> Dec 12 12:29:35 server dovecot: imap-login: Debug: SSL: where=0x10,
> ret=1: before/accept initialization [x...
2017 Feb 14
0
openssl 1.1.0d breaks Android7 TLS connects
...L_CTX_set_ecdh_auto(ssl_ctx, 1);
#else
/* For OpenSSL < 1.0.2, ECDH temporary key parameter selection
must be
performed manually. Attempt to select the same curve as that used
in the server's private EC key file. Otherwise fall back to the
NIST P-384 (secp384r1) curve to be compliant with RFC 6460 when
AES-256 TLS cipher suites are in use. This fall back option does
however make Dovecot non-compliant with RFC 6460 which requires
curve NIST P-256 (prime256v1) be used when AES-128 TLS cipher
suites are in use. At...
2018 Dec 26
2
Problem with different certificates
Hello!
Dovecot manages different domains. Today I renewed the certifiactes from letsencrypt
and since that time, dovecot does not recognized the certs for different domains anymore:
This is part of my config:
ssl = yes
ssl_cert = < /etc/letsencrypt/live/bitcorner.de/fullchain.pem
ssl_key = < /etc/letsencrypt/live/bitcorner.de/privkey.pem
local 37.120.166.21 { # instead of IP you can also
2015 Sep 10
0
How to "Windows Authenticate"
...though that was in there from the
> > beginning and is shown in the example wiki
> > http://wiki2.dovecot.org/HowTo/ActiveDirectoryNtlm)
> >
> > Anyway, in both tests my error messages were the same:
> >
> > Sep 08 18:38:16 imap-login: Debug: SSL: elliptic curve secp384r1 will be
> > used for ECDH and ECDHE key exchanges
> > Sep 08 18:38:16 imap-login: Debug: SSL: elliptic curve secp384r1 will be
> > used for ECDH and ECDHE key exchanges
> > Sep 08 18:38:16 auth: Debug: auth client connected (pid=8758)
> > Sep 08 18:38:16 auth: Debug: c...