From owner-freebsd-questions@FreeBSD.ORG Sat Mar 15 19:07:01 2014 Return-Path: Delivered-To: freebsd-questions@FreeBSD.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1 with cipher ADH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id EA16B4C1 for ; Sat, 15 Mar 2014 19:07:01 +0000 (UTC) Received: from cerebro.liukuma.net (cerebro.liukuma.net [IPv6:2a00:d1e0:1000:1b00::2]) by mx1.freebsd.org (Postfix) with ESMTP id 98173AC9 for ; Sat, 15 Mar 2014 19:07:01 +0000 (UTC) Received: from cerebro.liukuma.net (localhost [127.0.0.1]) by cerebro.liukuma.net (Postfix) with ESMTP id F3CCC8A0120; Sat, 15 Mar 2014 21:06:56 +0200 (EET) DKIM-Filter: OpenDKIM Filter v2.8.3 cerebro.liukuma.net F3CCC8A0120 DKIM-Signature: v=1; a=rsa-sha256; c=simple/simple; d=liukuma.net; s=liukudkim; t=1394910416; bh=9/B/Mhx9IzCnLKmy99bPYbIIPGSkwZtZP4u45UEL6IE=; h=From:To:References:In-Reply-To:Subject:Date; b=HWEoC/aIUss/ZxGC8l/yXYknhK/1dZDYHBQSAsisjvpNjJZGiIjEUo7dZbeytD8Qj HHJmtjZjZBxM6on1T6iPI86PwxEZ4sG43x58kZbIjKgPxjKm/gjp7q321O5oeCEcMS NWjaZIUR+rhCZyCiZN5JI/d+HnmWh3BscJ9Rh8jk= X-Virus-Scanned: amavisd-new at liukuma.net Received: from cerebro.liukuma.net ([127.0.0.1]) by cerebro.liukuma.net (cerebro.liukuma.net [127.0.0.1]) (amavisd-new, port 10026) with ESMTP id 0QSbUiEfv72F; Sat, 15 Mar 2014 21:06:56 +0200 (EET) Received: from Rivendell (dsl-kmibrasgw1-54f8d4-179.dhcp.inet.fi [84.248.212.179]) (using TLSv1 with cipher AES128-SHA (128/128 bits)) (Client did not present a certificate) (Authenticated sender: ignatz@cerebro.liukuma.net) by cerebro.liukuma.net (Postfix) with ESMTPSA id D2BF48A0103; Sat, 15 Mar 2014 21:06:55 +0200 (EET) DKIM-Filter: OpenDKIM Filter v2.8.3 cerebro.liukuma.net D2BF48A0103 Message-ID: From: "Reko Turja" To: "Drew Tomlinson" , References: In-Reply-To: Subject: Re: Help with SMTP AUTH Date: Sat, 15 Mar 2014 21:06:54 +0200 MIME-Version: 1.0 Content-Type: text/plain; format=flowed; charset="iso-8859-1"; reply-type=response Content-Transfer-Encoding: 7bit X-Priority: 3 X-MSMail-Priority: Normal Importance: Normal X-Mailer: Microsoft Windows Live Mail 15.4.3555.308 X-MimeOLE: Produced By Microsoft MimeOLE V15.4.3555.308 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.17 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 15 Mar 2014 19:07:02 -0000 From: Drew Tomlinson Sent: Saturday, March 15, 2014 8:10 PM To: freebsd-questions@FreeBSD.org Subject: Help with SMTP AUTH > I'm running FreeBSD 10 with Postfix 2.11, Cyrus SASL 2.1.26, and saslauthd > 2.1.26 . I've followed various tutorials on the Net and even checked my > current configs against backups from a machine that died but used to run > smtp auth successfully. > > I've also tested using testsaslauthd and get the OK message: Edit /usr/local/lib/sasl2/smtpd.conf and put following in there (add additional mechs if needed/desired): pwcheck_method: saslauthd mech_list: plain login Then check that you have something like this in postfix/master.cf in addition of other settings: smtps inet n - n - - smtpd -o smtpd_sasl_auth_enable=yes -o smtpd_tls_wrappermode=yes -o smtpd_tls_security_level=encrypt # -o smtpd_etrn_restrictions=reject # Submission kept for older client conformity submission inet n - n - - smtpd -o smtpd_etrn_restrictions=reject -o smtpd_sasl_auth_enable=yes -o smtpd_tls_security_level=encrypt and in postfix main.cf something like this: smtpd_sasl_security_options = noanonymous smtpd_sasl_local_domain = $myhostname broken_sasl_auth_clients = yes smtpd_sasl_authenticated_header = yes This should help you further, Reko