OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Re: Postfix -> EIMS AUTH failure

From: Victor Duchovni (Victor.DuchovniMorganStanley.com)
Date: Thu Aug 02 2007 - 16:12:39 CDT


On Thu, Aug 02, 2007 at 04:05:36PM -0500, Hugh Sontag wrote:

> >Postfix 2.5.1 has not been released yet... Perhaps you mean 2.1.5?
>
> Yes, the version is 2.1.5.
>
> >Probably CRAM-MD5 and DIGEST-MD5 are not actually working. Try "PLAIN".
>
> If the EIMS server returns
>
> 250-AUTH CRAM-MD5 DIGEST-MD5 NTLM PLAIN LOGIN
>
> how do I get Postfix to use only plaintext?
>
> I searched the documentation and the examples for this, and I found:
>
> # Specify zero or more of the following:
> #
> # noplaintext: disallow methods that use plaintext passwords
> # noactive: disallow methods subject to active (non-dictionary) attack
> # nodictionary: disallow methods subject to passive (dictionary) attack
> # noanonymous: disallow methods that allow anonymous authentication
>
> Is there a way to tell Postfix to not use the encrypted methods?

Yes, but 2.1.5 is too old.

    http://www.postfix.org/postconf.5.html#smtp_sasl_mechanism_filter

--
        Viktor.

Disclaimer: off-list followups get on-list replies or get ignored.
Please do not ignore the "Reply-To" header.

To unsubscribe from the postfix-users list, visit
http://www.postfix.org/lists.html or click the link below:
<mailto:majordomopostfix.org?body=unsubscribe%20postfix-users>

If my response solves your problem, the best way to thank me is to not
send an "it worked, thanks" follow-up. If you must respond, please put
"It worked, thanks" in the "Subject" so I can delete these quickly.