Re: Systemd and listen restriction to localhost not enforced
8 Jul
2015
8 Jul
'15
9:56 p.m.
Sven Strickroth <sven@cs-ware.de> writes:
in /etc/dovecot/conf.d/10-master.conf I have restricted IMAP to localhost only:
service imap-login { inet_listener imap { address = 127.0.0.1 #port = 143 } inet_listener imaps { #port = 993 #ssl = yes } }
However, /lib/systemd/system/dovecot.socket make it listen on 0.0.0.0:143 and [::]:143 causing the service being available to the public which it should not. - IMHO this is a security issue.
I don't know much about systemd, but you'll probably need dovecot configuration
listen = 127.0.0.1
Joseph Tam <jtam.home@gmail.com>
3474
Age (days ago)
3474
Last active (days ago)
0 comments
1 participants
participants (1)
-
Joseph Tam