offering limited pop access

Wesley Craig wes at umich.edu
Wed Oct 29 13:32:04 EDT 2008


You can run two saslauthd's, with separate configurations and  
separate sockets.  The one for pop would use the special ldap filter,  
presumably looking for an attribute or something that only users  
authorized to use POP would have.

:wes

On 29 Oct 2008, at 09:36, Ian Eiloart wrote:
> I offer an IMAP service to 12000 users, but we don't offer POP3.
>
> However, we have a blind person who has a braille computer, with POP3
> client, but no IMAP client.
>
> I've configured a perdition proxy which can give him POP, but not IMAP
> access. However, we're moving toward using Cyrus proxyd front end,  
> with
> LDAP authentication (through SASL).
>
> Is there a way I can configure my murder cluster to perform a  
> different
> IMAP lookup for POP3 authentication, compared to IMAP  
> authentication. Or,
> is there some other way that I can restrict POP3 access to certain  
> users?
>
> I've got configuration files at
> /local/cyrus-sasl-2.1.22/lib/sasl2/imap.conf
> which just says:
>     pwcheck_method: saslauthd
>     mech_list: plain
> I presume I need a pop.conf file that's similar, but can't find any
> documentation.
>
> and
> /local/cyrus-sasl-2.1.22/etc/saslauthd.conf
> which specifies how to access the LDAP servers.
>
> I want everything the same, but with a different value for  
> ldap_filter. Can
> I just override this in pop3.conf? Or do I set sasl_ldap_filter my  
> cyrus
> configuration, instead?


More information about the Info-cyrus mailing list