Displaying 20 results from an estimated 5000 matches similar to: "AuthDatabase CheckPassword broken?"
2018 Feb 01
2
AuthDatabase CheckPassword broken?
On Thu, 1 Feb 2018 10:02:10 +0200 Aki Tuomi <aki.tuomi at dovecot.fi> wrote:
>
> On 01.02.2018 08:00, Mark Foley wrote:
> > I had been using the CheckPassword authentication interface with dovecot 2.2.15,
> > https://wiki2.dovecot.org/AuthDatabase/CheckPassword, and it was working.
> >
> > After upgrading to 2.2.33.2 CheckPassword no longer works. The
2018 Feb 02
0
AuthDatabase CheckPassword broken?
Script didn't run:
File "/root/tmp/checkpwtest.py", line 8
o?= with os.fdopen(DOVECOT_PW_FD, 'r') as s:
^
SyntaxError: invalid syntax
--Mark
-----Original Message-----
From: Mark Foley <mfoley at ohprs.org>
Date: Thu, 01 Feb 2018 15:34:15 -0500
Organization: Ohio Highway Patrol Retirement System
To: dovecot at dovecot.org
Subject: Re: AuthDatabase
2018 Feb 01
0
AuthDatabase CheckPassword broken?
On 01.02.2018 08:00, Mark Foley wrote:
> I had been using the CheckPassword authentication interface with dovecot 2.2.15,
> https://wiki2.dovecot.org/AuthDatabase/CheckPassword, and it was working.
>
> After upgrading to 2.2.33.2 CheckPassword no longer works. The referenced wiki page says,
>
> Checkpassword Interface
>
> Read <username> NUL <password> NUL
2015 Sep 11
2
Need help on checkpassword userdb/passdb
I'm experimenting with checkpassword as an auth method for usedb and passdb
(http://wiki2.dovecot.org/AuthDatabase/CheckPassword). I've set up the userdb
and passdb *exactly* as the wiki suggests as the "standard way":
passdb {
driver = checkpassword
args = /user/util/bin/checkpassword
}
userdb {
driver = prefetch
}
I've created a checkpassword program that does
2015 Sep 12
0
Need help on checkpassword userdb/passdb
Not to be grumpy, but I've posted a dozen or more message to this list in the
past week about what I think might be relatively common/easy issues and have had
zero response except from Rick Romero who is trying, but hasn't actually done
what I need himself. I'm sure someone has. Perhaps these problem are too mundane
compared to CalDAV, sieve filtering and IPA to excite List interest?
2009 Nov 27
1
Proxy, using checkpassword
Hi all,
I think I may be doing something wrong but, is it possible to proxy POP and IMAP users when using a checkpassword script as the passdb?
I'm trying to write a perl script to handle authentication to a mix of SQL and POP3 sources whilst logging user passwords at the same time for a migration.
At the moment, I'm trying to set environment variables to tell dovecot what to do:
2009 Jan 19
2
checkpassword auth issues
Hi,
ok, I'm am developing a new solution that includes dovecot, and will be
wanting to use the latest sieve implementation, so I have chosen to
start with 1.2 as the base.
I had a working install of 1.1.8 installed, and got a checkpassword
setup working properly with it to authenticate a user. I used the passdb
to call checkpassword, and the prefetch userdb to tell it to use the
values that
2019 Mar 19
1
Checkpassword.
Hello,
I've run into the issue detailed at
https://wiki2.dovecot.org/AuthDatabase/CheckPassword#Security
Understandably I don't have the skills to modify checkpassword so if I do
the suggested will it work?
If you can't change the script, you can make Dovecot's checkpassword-reply
binary setuid or setgid (e.g. chgrp dovecot
/usr/libexec/dovecot/checkpassword-reply; chmod g+s
2014 Dec 31
1
Authenticating Virtual Users without domain
Hi,
I'm trying to migrate a large number of users to a new Dovecot
cluster. The existing mail system allows a user to authenticate with a
bare username if they have connected to the correct local IP on the
server.
e.g.
imap.somedomain.com = 1.1.1.1
imap.anotheromain.com = 2.2.2.2
charlie at somedomain can authnenticate as 'charlie' or
'charlie at somedomain.com' as long as
2010 Apr 19
1
Checkpassword/prefetch/master_user and problems
Hi.
I'm trying to use checkpassword for simple auth and masteruser auth.
I have two programs, one called checkpassword-master (for masteruser
lookup) and another called checkpassword for normal passdb and userdb
lookup).
All works fine for non-masteruser authentication (in this case dovecot
makes a single call to checkpassword binary). But if a master-user
authenticates, dovecot execute
2008 Jun 15
3
Using checkpassword to block ips?
Hi new to the list, but we are a long time user of Dovecot via DirectAdmin
control panel.
We, like everyone else, are seeing an increase in dictionary attacks of
POP/IMAP. We want to block them.
I've searched the mailing list and found a few recommended fail2ban, which
really won't work for our case. We need to do this over many machines and
not one or two. We also like to gather
2005 Nov 23
2
checkpassword authentication
Hi,
does anyone already use the checkpassword authentication scheme?
I have not found any description how I have to configure dovecot in order to
work together with qmail?s checkpassword.
Enabling ?passdb = checkpassword /bin/checkpassword? in dovecot.conf starts
/bin/checkpassword for every authentication request, but the result does not
seem to matter for the authentication.
Without enabling
2014 May 03
1
%{orig_user} missing in checkpassword-Script
Dear dovecot maintainers:
I'm using SSL client certificates together with a checkpassword scripts
to authenticate our users.
My problem is: In the checkpassword script the AUTH_USER environment
variable will either contain the username that was configured in the
mailclient (if auth_ssl_username_from_cert=false) or the username
from the certificate (if auth_ssl_username_from_cert=true).
I
2013 Nov 25
2
Checkpassword interface for custom password check and home mounting
Hi,
I'm trying to use the checkpassword interface to do a password check and if
the check succeeds I mount the user home directory (including mail) using
the users login password and uid.
My password check seems to work, but when I add the home directory mounting
things seem to stop. Dovecot never logs the result of the password check
and nothing happens until the client gets bored and tries
2014 Jun 05
1
checkpassword memory limit
Hi. I am trying to authenticate dovecot from a wordpress database. I was thinking of using the checkpassword script to start a cli php script. That php script would then include the necessary wordpress functions, do the auth (find the wp username from user database using the email address, and authenticate with the user/pass), and return the result to the checkpassword script. I made the above
2008 Jul 23
1
cosmetic: "userdb" checkpassword
Hi,
$ dovecot --build-options
Build options: ioloop=epoll notify=inotify
Mail storages: maildir
SQL drivers:
Passdb: checkpassword
Userdb: checkpassword prefetch
Isn't "checkpassword" misplaced in the userdb list?
For me it seems that USERDB_CHECKPASSWORD is only used in configure and for
printing the build-options. Additionally checkpassword protocol does
2011 Jan 27
1
Differenft INBOX for IMAP/POP with checkpassword passdb
Hi,
I'm trying to do a setup where IMAP and POP users see different INBOX'
Like described on the virtual folder wiki page:
http://wiki.dovecot.org/Plugins/Virtual
However, for now, I'm stuck with the checkpassword passdb and prefetch
userdb
So I can't parameterize the result on %s like the example with MySQL does.
So I thought of having to different checkpassword scripts:
2008 Jul 25
2
Strange checkpassword issue
I'm helping a friend setup a small mailserver using dovecot, and I'm
finding a strange problem with checkpasswd that I haven't had on my
servers.
How is the following debug output even possible?
Jul 25 12:12:20 company2 dovecot: auth(default): master out: USER 5 joe home=/var/mail/joe.com/joe/Maildir/ uid=1005 gid=1005
Jul 25 12:12:20 company2 dovecot:
2018 Oct 17
2
dovecot passdb driver=checkpassword as external script for block ip
Refer to
https://dovecot.org/pipermail/dovecot/2015-March/099971.html
https://wiki.dovecot.org/PasswordDatabase
I tried to repeat the same thing.
Set these passdb:
passdb {
args = /myscript.sh ip=%r
driver = checkpassword
result_failure = return-fail
result_success = continue
}
passdb {
args = /etc/dovecot/dovecot-sql.conf.ext ( my working auth method )
driver = sql
}
Created
2009 Mar 23
1
Using Checkpassword with a PHP script
Hi,
im a newbee using dovecot. I want to use checkpassword, but i've no idea
how to use it.
Can somebody post a script where i can see how to include a PHP file to
verify the password and user.
Im useing Dovecot 1.0.15 and somebody have canfigure for me
Checkpassword. There is an empty checkpassword and checkpassword-reply
file and i have no idea what to do with it?
Muhammed