[aklug] Re: courer-imap-ssl (with Postfix)

From: David J. Weller-Fahy <dave-lists-aklug@weller-fahy.com>
Date: Mon Nov 22 2010 - 17:12:43 AKST

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

* Christopher Howard <cmhoward@frigidcode.com> [2010-11-22 19:03 -0500]:
> On Mon, Nov 22, 2010 at 02:38:17PM -0900, adam bultman wrote:
> > But mine works just fine. I even have SSL working, and I don't
> > believe it was all that difficult to set up.
>
> For progeny: If found the problem: it was the in the
> /etc/courier/authlib/authdaemonrc file. The "authmodulelist" variable
> was set the "authmysql" instead of "authpam". I forgot that I had put
> it that way several weeks ago when I was trying to follow a tutorial
> on setting up virtual mailhost systems (which was more complicated
> than what I actually wanted).
>
> Can someone explain the difference between SSL security and STARTTLS?

The simple version is that SSL starts the secure link, then begins
communicating. STARTTLS starts communicating, and then starts the
secure link. STARTTLS also gives the option of having your secure and
unsecure communication on the same port, which is useful if you want to
have unsecure logins to your mail server.

Wikipedia has a pretty good rundown of the protocols and SSLv2's
flaws (which SSLv3 and TLSv1 were designed to deal with).

Regards,
- --
dave [ please don't CC me ]
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (Darwin)

iEYEARECAAYFAkzrIxgACgkQzahokXOb2UwZ9gCcCImAnAGyRcfCGR26NUQSiPh2
zO8AoJT9UmKR5TpIgwoaUhwcwa3VFazb
=tAg0
-----END PGP SIGNATURE-----
---------
To unsubscribe, send email to <aklug-request@aklug.org>
with 'unsubscribe' in the message body.
Received on Mon Nov 22 17:12:55 2010

This archive was generated by hypermail 2.1.8 : Mon Nov 22 2010 - 17:12:55 AKST