[Dovecot] virtual domains and SSL certificates

John Simpson jms1 at jms1.net
Thu Aug 7 19:46:15 EEST 2008


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 2008-08-07, at 1206, Eduardo M KALINOWSKI wrote:
>
> Which leads us to the request: could it be that in a future version  
> one could select a different certificate for each IP that Dovecot  
> listens to?


i have a client who is doing this now- they own two domain names, and  
they insisted that the users of each domain not have to ever enter the  
"other" domain name at all, even for something like an IMAP or SMTP  
server name... so they have two IPs on the server, and each domain has  
its own IP address. among other things, they're running dovecot under  
daemontools, using sslserver to answer the socket and handle the SSL  
negotiations, and they have a different certificate for each service.

http://qmail.jms1.net/dovecot.shtml is a page i wrote about running  
dovecot under daemontools.

http://qmail.jms1.net/scripts/service-dovecot-xxx-run is the  
daemontools "run" script for a dovecot IMAP or POP3 service. it needs  
to be customized with the details for your service(s); i tried to put  
enough comments within the script that you shouldn't have any problem  
understanding how it works and what goes where.

- --------------------------------------------------------
| John M. Simpson  --  KG4ZOW  --  Programmer At Large |
| http://www.jms1.net/                 <jms1 at jms1.net> |
- --------------------------------------------------------
|   Hope for America  --  http://www.ronpaul2008.com/  |
- --------------------------------------------------------





-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.7 (Darwin)

iD8DBQFImybYj42MmpAUrRoRAgnlAKCJqF3zHtMB+cqGNifNwGOYY1VSKACfUDOz
uTdCQkNnbNvsVKKqoJ8l3aQ=
=JjOY
-----END PGP SIGNATURE-----


More information about the dovecot mailing list