[Dovecot] SSL/TLS with Outlook client

Steffen Kaiser skdovecot at smail.inf.fh-bonn-rhein-sieg.de
Thu Nov 15 09:30:56 EET 2007


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Wed, 14 Nov 2007, Nikolay Shopik wrote:

>>> The IMAP spec does not contain an identification of the client application 
>>> to the server. There is no "HELO" as in SMTP.
>> And HELO in SMTP is entirely unreliable, unverifiable, and on many servers 
>> completely skippable.
> RFC says you SHOULD use FQDN for HELO nothing more. But still you can add SPF 
> record for your HELO so nobody can foged your server HELO, thats it.

Well, I brought up HELO as an example just to say that the IMAP protocol 
has no concept at all that a client can say to the server which kind of 
client, e.g. "MS Outlook" vs. "Thunderbird", it is.

Maybe, the user agent string in HTTP would fit better.
Also: unreliable, user-settable, I know.

Bye,

- -- 
Steffen Kaiser
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)

iQEVAwUBRzv1sC9SORjhbDpvAQKfIwf/TnzcxJfJdncQRMK+rviHISvVSJxT6tYs
MLFgYBMGfrHEJLKAxHx27fINS9e7Zm0ne6SZuAmIBzY7SO5fYo9uraU9qX2Iw5Lr
ygzZaGfwCzqWXyX8tZ6+cYRGlJNF66FcN4hpqnFbLUalpKWJzN69GOuAi5hV6zMR
3sJlC3WMant6zp5T3Lg1vmH4zXLC3PmJfevYskFNcQvzBN1OSDUEtQ0NOQjAFdt4
YUBOOX95oIXspN4+3iN/ddxZazUCpPFiVhAVadTYR0/ys2n235eI8fTD4/EAXjph
xL0+kl5wYSGGzwJ2b0jJLJ4Xr+3iNMJlp2+KcoR4rwRQp4alxEKfsg==
=wTS3
-----END PGP SIGNATURE-----


More information about the dovecot mailing list