[Dovecot] allow_nets overridden by cache

Timo Sirainen tss at iki.fi
Wed Oct 29 23:38:32 EET 2008


On Wed, 2008-10-29 at 19:32 +0000, Guy wrote:
>   passdb:
>     driver: passwd-file
>     args: /etc/dovecot/dovecot-master.pwd
>     master: yes
>   passdb:
>     driver: sql
>     args: /etc/dovecot/dovecot-mysql.conf

Is the allow_nets in the master passdb or sql passdb?

> In the section of logs that I showed you could see the client out:FAIL
> after the allow_nets check but a cache hit immediately afterwards
> would allow the account to login. Even if I set the auth_cache_ttl to
> 15 seconds it would still fail the allow_nets check and then get a
> cache hit and be logged in.

The cache hit in your log was marked with <hidden> since it contained a
password. Could you enable auth_debug_passwords=yes and show the logs
again?

-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 197 bytes
Desc: This is a digitally signed message part
Url : http://dovecot.org/pipermail/dovecot/attachments/20081029/98752937/attachment.bin 


More information about the dovecot mailing list