On Fri, 2009-07-17 at 00:12 +0200, Axel Luttgens wrote:
With large installations with multiple servers that could allow user
to see e.g. if they're on the same server as someone else they know, or when they get moved to a different servers, etc.. But is this a real issue? Maybe not.I tend to agree with the latter. First, hiding the info would tend towards security through obscurity. Second, it is very likely that the info would anyway be leaked through
some other parts of the transport layers. Third, one may hope that the security of smtp/imap/pop softwares
doesn't depend on the availability of such info. ;-)
It's not really about the security, but more about exposing some information that maybe the IMAP service provider would have preferred if you didn't know about.