[Dovecot] Virtual Domains and Master Users

Roderick A. Anderson raanders at acm.org
Thu Oct 16 16:28:23 EEST 2008


Timo Sirainen wrote:
> On Oct 15, 2008, at 11:19 PM, Roderick A. Anderson wrote:
> 
>> Can I have a master users list for each virtual domain?  I'm not sure 
>> from what I read on the page:
> 
> Not really. There are two possibilities that I can think of:
> 
> a) Use passdb checkpassword and verify that the master user 
> ($MASTER_USER environment) is valid for the current username.

I'll look into this.

> b) Let the user log in and change mail_executable to be a script that 
> does the same check as a). This is potentially dangerous, since it works 
> only for imap/pop3 process, not necessarily for others that may come in 
> future or e.g. SMTP AUTH..
> 
>>  passdb passwd-file {
>>     args = /var/mail/vhosts/%d/passwd.masterusers
>>     master = yes
>>     pass = yes
>>  }
> 
> This allows you to list master at domain users in separate files, but each 
> user can still authenticate as anyone from any domain.

Does the IMAP specification call for Master Users (I don't remember 
seeing it?)  Or is this an implementation specific (Dovecot, et al.) 
_feature_?

How difficult would it be to make per-domain master user(s) a part of 
Dovecot?


Rod
-- 


Rod
-- 



More information about the dovecot mailing list