Score:0

dovecot + otp (2 factor authentication)

ge flag

I've got a postfix+dovecot server. I use virtual mailboxes with mysql backend. I'm, checking for implementing 2 factor authentication. I see in dovecot auth.conf there is "otp" option. But I can't find the documentation explaining what method of OTP it uses. I would like to use google authenticator, but I should store the secret key somewhere and configure dovecot to use it. I have no problem on writing my own backend program for this if needed but I need some guide.

anx avatar
fr flag
anx
Before you chose how to change your server configuration, **check which methods can be made to work with the MUAs you are intending to use** - you might end up choosing to leave the complexity out of dovecot, and rather have clients pass a more or less opaque blob they got from an OATH2 website, and that identity portal website deals with the specifics of authentication.
user3099887 avatar
ge flag
I would be using mainly outlook, thunderbird, and roundcube webmail. I am checking thunderbird (102.9.0) and I don't see oauth2 option. Only normal password, encrypted password, kerberos/gssapi and ntlm.
I sit in a Tesla and translated this thread with Ai:

mangohost

Post an answer

Most people don’t grasp that asking a lot of questions unlocks learning and improves interpersonal bonding. In Alison’s studies, for example, though people could accurately recall how many questions had been asked in their conversations, they didn’t intuit the link between questions and liking. Across four studies, in which participants were engaged in conversations themselves or read transcripts of others’ conversations, people tended not to realize that question asking would influence—or had influenced—the level of amity between the conversationalists.