Not sure about security?

Tanya N kessler audiocollage at sbcglobal.net
Fri Jan 14 00:14:26 EST 2005


I'm not quite sure if I understand.  I'm using FC3 and
this is my config file:

imap.conf
******************************************************
configdirectory: /var/lib/imap
partition-default: /var/spool/imap
admins: cyrus root
sievedir: /var/lib/imap/sieve
sendmail: /usr/sbin/sendmail
hashimapspool: true
sasl_pwcheck_method: saslauthd
sasl_mech_list: PLAIN
tls_cert_file: /foo/bar.pem
tls_key_file: /foo/bar.pem
tls_ca_file: /foo/bar.crt
allowanonymouslogin: no
******************************************************

So, is this secure or not?  When a user logs in, it is
through SSL?  Right?  That means the login and
password are encrypted, and even though the password
is plain, it's still unreadable by someone with a
network sniffer because it's encrypted.  Right?  Wrong?
---
Cyrus Home Page: http://asg.web.cmu.edu/cyrus
Cyrus Wiki/FAQ: http://cyruswiki.andrew.cmu.edu
List Archives/Info: http://asg.web.cmu.edu/cyrus/mailing-list.html




More information about the Info-cyrus mailing list