[Dovecot] Secure Sockets Layer client certificate authentication

Stephen Feyrer steve at toth.org.uk
Tue May 26 03:05:06 EEST 2009


Timo Sirainen wrote:
> On Mon, 2009-05-25 at 14:51 +0100, Stephen Feyrer wrote:
>>   passdb:
>>     driver: passwd-file
>>     args: /opt/etc/dovecot/h.org/passwd
> ..
>> With this configuration the client will connect over ssl and identify
>> itself with a certificate but a client password is still required.
> 
> Right. A password is always required, but you can set Dovecot to accept
> any password. Set the password field empty in the passwd file and add
> nopassword extra field. http://wiki.dovecot.org/AuthDatabase/PasswdFile
> 
> 

I have to admit I've seen that.  I  want to turn off password prompt
entirely, in effect external authentication.

Is it a bad idea to remove the password prompt if any password will be
accepted?


--
Kind regards

Stephen
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 3322 bytes
Desc: S/MIME Cryptographic Signature
Url : http://dovecot.org/pipermail/dovecot/attachments/20090526/9c8d02cc/attachment.bin 


More information about the dovecot mailing list