Date: Tue, 08 Aug 2006 12:06:30 -0500 From: Paul Schmehl <pauls@utdallas.edu> To: freebsd-questions@freebsd.org Subject: Re: Postfix & SASL Authentication Message-ID: <44D8C496.80105@utdallas.edu> In-Reply-To: <20060808120629.F5AF.GERARD@seibercom.net> References: <20060808101410.6387.GERARD@seibercom.net> <44D8A932.8050601@utdallas.edu> <20060808120629.F5AF.GERARD@seibercom.net>
next in thread | previous in thread | raw e-mail | index | archive | help
[-- Attachment #1 --] Gerard Seibert wrote: > Paul Schmehl wrote: > >> Sasl is attempting to use sasldb2 *before* it uses /etc/passwd (or pam, >> as the case may be.) It's harmless in any case. What do you have in >> the smtpd.conf file? (/usr/local/lib/sasl2/smtpd.conf) > > This is the contents: > > ## Global Values > pwcheck_method: auxprop > auxprop_plugin: sasldb > log_level: 7 > mech_list: PLAIN LOGIN > > Apparently you're using the sasldb2 database for logins? If so, the sasldb2 database needs to be readable by postfix, and it has to be populated with the usernames@domains that you need. Have you populated the db? You would probably be better off using saslauthd as your pwcheck_method. Then start saslauthd with the -a sasldb flag. (See man 8 saslauthd.) Auxprop is an older method that wasn't very dependable. -- Paul Schmehl (pauls@utdallas.edu) Adjunct Information Security Officer The University of Texas at Dallas http://www.utdallas.edu/ir/security/ [-- Attachment #2 --] 0 *H 010 + 0 *H N00AA=e0 *H 010 UUS10U VeriSign, Inc.1<0:U3Class 2 Public Primary Certification Authority - G21:08U1(c) 1998 VeriSign, Inc. - For authorized use only10UVeriSign Trust Network0 990331000000Z 090330235959Z01'0%U The University of Texas System10UVeriSign Trust Network1;09U2Terms of use at https://www.verisign.com/rpa (c)991200U)Class 2 CA - OnSite Individual Subscriber1-0+U$The University of Texas at Dallas CA00 *H 0 "zھ6p`0`S/5ɨ)=d}чTxxLIA ҥ~BQNths]1)%c#Dj9FXúKzI#C2 00)U"0 010UPrivateLabel1-1400 `HB0DU =0;09`HE0*0(+
