From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from lists.gentoo.org ([140.105.134.102] helo=robin.gentoo.org) by nuthatch.gentoo.org with esmtp (Exim 4.50) id 1EN5nC-0000uC-SI for garchives@archives.gentoo.org; Wed, 05 Oct 2005 09:42:31 +0000 Received: from robin.gentoo.org (localhost [127.0.0.1]) by robin.gentoo.org (8.13.5/8.13.5) with SMTP id j959Wb7L006676; Wed, 5 Oct 2005 09:32:37 GMT Received: from morrigan.benalee.co.uk (82-45-24-36.cable.ubr13.newt.blueyonder.co.uk [82.45.24.36]) by robin.gentoo.org (8.13.5/8.13.5) with ESMTP id j959SqnO017038 for ; Wed, 5 Oct 2005 09:28:53 GMT Received: by morrigan.benalee.co.uk (Postfix, from userid 1000) id 9DDB4A840F; Wed, 5 Oct 2005 10:37:14 +0100 (BST) Subject: Re: [gentoo-security] postfix and SASL From: "Benjamin A'Lee" To: gentoo-security@lists.gentoo.org In-Reply-To: <43438579.60609@garault.org> References: <6.2.3.4.0.20051004152910.01c797b8@op.oxpub.com> <43438579.60609@garault.org> Content-Type: text/plain; charset=utf-8 Organization: University of Plymouth Student Union Computing and Media Society Date: Wed, 05 Oct 2005 10:37:13 +0100 Message-Id: <1128505033.31753.4.camel@morrigan.benalee.co.uk> Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-security@gentoo.org Reply-to: gentoo-security@lists.gentoo.org Mime-Version: 1.0 X-Mailer: Evolution 2.2.3 X-MIME-Autoconverted: from quoted-printable to 8bit by robin.gentoo.org id j959SqnO017038 Content-Transfer-Encoding: quoted-printable X-MIME-Autoconverted: from 8bit to quoted-printable by robin.gentoo.org id j959Wb8G006676 X-Archives-Salt: 5c78f394-dda5-475a-b520-2d22465c35c3 X-Archives-Hash: bd6bbec167d8a3851f78e142c7a07b93 > Joe Strusz a =C3=A9crit : >=20 > I have confirmed postfix is indeed compiled with SASL support. And i=20 > have TLS working great. However when i telnet to port 25 and=20 > issuethe ehlo command, i do receive the starttls etc... yet no AUTH=20 > PLAIN lines... Do you have smtpd_tls_auth_only enabled? I spent hours wondering why it wasn't offering AUTH until I realised I had enabled this; if it's enabled you need to be using TLS before it'll offer AUTH (as in, you actually have to type STARTTLS). What happens when you type AUTH PLAIN without it offering it? On Wed, 2005-10-05 at 09:49 +0200, Christophe Garault wrote: > Not sure but: why on port 25 and not on 465 ? I don't think it actually matters which port; IIRC it just enables STARTTLS by default on 465. Ben --=20 Termisoc Tech Officer: My Homepage: "Clothes make the man. Naked people have little or no influence on=20 society." - Mark Twain --=20 gentoo-security@gentoo.org mailing list