<div dir="ltr">Bron,<div><br></div><div>I found the issue. I've logged this with Kolab. Their plugins are initiating unneeded imap logins every time the user simply select a message. If you are interested, here's the bug report.</div><div><br></div><div><a href="https://issues.kolab.org/show_bug.cgi?id=5219">https://issues.kolab.org/show_bug.cgi?id=5219</a><br></div><div><br></div><div>Thanks for all your help!!!</div><div><br></div><div><br></div></div><div class="gmail_extra"><br><div class="gmail_quote">On Mon, Sep 7, 2015 at 12:26 AM, Bron Gondwana <span dir="ltr"><<a href="mailto:brong@fastmail.fm" target="_blank">brong@fastmail.fm</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">Yeah, so tls to localhost is dumb. That's security theatre at its silliest. Best to turn that off.<br>
<br>
Here's some possibilities to make it not required:<br>
<br>
imapd.conf:<br>
allowplaintext: yes<br>
sasl_mech_list: PLAIN LOGIN<br>
<br>
There used to be a sasl layer thing we did too... "-p 1" in cyrus.conf for the imapd line that listens on localhost will tell sasl that you already have a protection layer.<br>
<br>
Bron.<br>
<div class="HOEnZb"><div class="h5"><br>
<br>
On Mon, Sep 7, 2015, at 12:15, <a href="mailto:signaldeveloper@gmail.com">signaldeveloper@gmail.com</a> wrote:<br>
> Hey Rudy!<br>
><br>
> As far as entropy: Probably not, it's brand new. One user (me.. Testing) is playing on it. This is something I've never touched and know very little about, can you explain?<br>
><br>
> And can you explain: Is saslauthd compiled against /dev/urandom?<br>
><br>
> Thanks again guys..<br>
><br>
> - Paul<br>
><br>
><br>
><br>
><br>
> Sent from my iPhone<br>
><br>
> > On Sep 6, 2015, at 9:50 PM, Rudy Gevaert <Rudy.Gevaert@UGent.be> wrote:<br>
> ><br>
> ><br>
> > Quoting <a href="mailto:signaldeveloper@gmail.com">signaldeveloper@gmail.com</a>, Mon, 07 Sep 2015:<br>
> ><br>
> >> Hosts file is fine I checked that, thanks. Kolab uses 389 to<br>
> >> authenticate for everything, so Cyrus is using LDAP as you can see<br>
> >> above. I think the problem lies in the constant TLS logins into<br>
> >> Cyrus for every click:<br>
> >><br>
> >> imap[2281]: login: localhost [::1] <a href="mailto:johndoe@domain.com">johndoe@domain.com</a> PLAIN+TLS User<br>
> >> logged in<br>
> >> SESSIONID=<es1.domain.com-2281-1441500890-1-15740725055571902363><br>
> >> Sep 5 20:54:51 es1 imap[2281]: USAGE <a href="mailto:johndoe@domain.com">johndoe@domain.com</a> user:<br>
> >> 0.009998 sys: 0.006999<br>
> >><br>
> >><br>
> >> Again its only one user, on roundcube... I am afraid to put any more<br>
> >> users on it. There doesn't seem to be much of performance tweaks<br>
> >> with Cyrus around the web either...<br>
> ><br>
> > does your system have enough entropy?<br>
> ><br>
> > Is saslauthd compiled against /dev/urandom?<br>
> ><br>
> > Rudy<br>
> ><br>
> > --<br>
> > -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- --<br>
> > Rudy Gevaert e-mail: Rudy.Gevaert@UGent.be<br>
> > Directie ICT, Afdeling Infrastructuur<br>
> > Groep Systemen tel: <a href="tel:%2B32%209%20264%204750" value="+3292644750">+32 9 264 4750</a><br>
> > Universiteit Gent fax: <a href="tel:%2B32%209%20264%204994" value="+3292644994">+32 9 264 4994</a><br>
> > Krijgslaan 281, gebouw S9, 9000 Gent, Belgie <a href="http://www.UGent.be" rel="noreferrer" target="_blank">www.UGent.be</a><br>
> > -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- --<br>
> ><br>
> ><br>
> > ----<br>
> > Cyrus Home Page: <a href="http://www.cyrusimap.org/" rel="noreferrer" target="_blank">http://www.cyrusimap.org/</a><br>
> > List Archives/Info: <a href="http://lists.andrew.cmu.edu/pipermail/info-cyrus/" rel="noreferrer" target="_blank">http://lists.andrew.cmu.edu/pipermail/info-cyrus/</a><br>
> > To Unsubscribe:<br>
> > <a href="https://lists.andrew.cmu.edu/mailman/listinfo/info-cyrus" rel="noreferrer" target="_blank">https://lists.andrew.cmu.edu/mailman/listinfo/info-cyrus</a><br>
> ----<br>
> Cyrus Home Page: <a href="http://www.cyrusimap.org/" rel="noreferrer" target="_blank">http://www.cyrusimap.org/</a><br>
> List Archives/Info: <a href="http://lists.andrew.cmu.edu/pipermail/info-cyrus/" rel="noreferrer" target="_blank">http://lists.andrew.cmu.edu/pipermail/info-cyrus/</a><br>
> To Unsubscribe:<br>
> <a href="https://lists.andrew.cmu.edu/mailman/listinfo/info-cyrus" rel="noreferrer" target="_blank">https://lists.andrew.cmu.edu/mailman/listinfo/info-cyrus</a><br>
<br>
<br>
</div></div><span class="HOEnZb"><font color="#888888">--<br>
Bron Gondwana<br>
<a href="mailto:brong@fastmail.fm">brong@fastmail.fm</a><br>
</font></span><div class="HOEnZb"><div class="h5">----<br>
Cyrus Home Page: <a href="http://www.cyrusimap.org/" rel="noreferrer" target="_blank">http://www.cyrusimap.org/</a><br>
List Archives/Info: <a href="http://lists.andrew.cmu.edu/pipermail/info-cyrus/" rel="noreferrer" target="_blank">http://lists.andrew.cmu.edu/pipermail/info-cyrus/</a><br>
To Unsubscribe:<br>
<a href="https://lists.andrew.cmu.edu/mailman/listinfo/info-cyrus" rel="noreferrer" target="_blank">https://lists.andrew.cmu.edu/mailman/listinfo/info-cyrus</a><br>
</div></div></blockquote></div><br></div>