NTLM fails: dovecot: auth: Fatal: Unknown authentication mechanism 'NTLM'

Aki Tuomi aki.tuomi at open-xchange.com
Mon Jan 31 06:21:52 UTC 2022


You can probably use auth_default_realm for this, see https://doc.dovecot.org/settings/core/?highlight=realm#core_setting-auth_default_realm

Aki


> On 24/01/2022 20:05 david at kosmosisland.com wrote:
> 
>  
> Hello Aki,
> 
> Thank you, that works.  But it doesn't solve my main problem.  Newer
> versions of Outlook started to parse the "@domain" out of the
> "user at domain" which yielded only "user".  I found that by prepending a '\'
> (backslash) it would yield "user at domain" correctly.  But with GSSAPI, the
> backslash fails and removing it allows for correct authentication of the
> whole user name including "@domain".  The problem now is having to
> configure all the many clients in the field that have the backslash
> prepended to the user name.  Is here a way around this with version 2.3?
> 
> Regards,
> David Koski
> david at kosmosisland.com
> dkoski at sutinen.com
> 
> >
> >
> > On 23 January 2022 1.29.43 UTC, David Koski <david at kosmosisland.com>
> > wrote:
> >>Is NTLM now dead?  The Readme says:
> >>
> >>2020-10-23 16:24:09 -0400 Josef 'Jeff' Sipek
> >><jeff.sipek at open-xchange.com> (48d6f7282)
> >>
> >>     auth: Remove ntlm mechanism & the LANMAN and NTLM password
> >> schemes
> >>
> >>>
> >>> Regards,
> >>> David Koski
> >>>
> >>
> >
> > You should use GSSAPI instead.
> >
> > Aki
> >


More information about the dovecot mailing list