Gentoo Forums
Gentoo Forums
Gentoo Forums
Quick Search: in
Postfixadmin passwords need {PLAIN-MD5}
View unanswered posts
View posts from last 24 hours

 
Reply to topic    Gentoo Forums Forum Index Networking & Security
View previous topic :: View next topic  
Author Message
audiodef
Watchman
Watchman


Joined: 06 Jul 2005
Posts: 6656
Location: The soundosphere

PostPosted: Wed Jun 19, 2019 4:05 pm    Post subject: Postfixadmin passwords need {PLAIN-MD5} Reply with quote

How do I get Postfixadmin to insert {PLAIN-MD5} at the beginning of each hashed password string? My mail server needs this or passwords won't be recognized.
_________________
decibel Linux: https://decibellinux.org
Github: https://github.com/Gentoo-Music-and-Audio-Technology
Facebook: https://www.facebook.com/decibellinux
Discord: https://discord.gg/73XV24dNPN
Back to top
View user's profile Send private message
Hu
Administrator
Administrator


Joined: 06 Mar 2007
Posts: 23062

PostPosted: Thu Jun 20, 2019 1:42 am    Post subject: Reply with quote

MD5 for password storage is long since deprecated, especially if it is not even salted. Wouldn't it be better to store the hashes using an algorithm that satisfies current best practices?
Back to top
View user's profile Send private message
audiodef
Watchman
Watchman


Joined: 06 Jul 2005
Posts: 6656
Location: The soundosphere

PostPosted: Thu Jun 20, 2019 2:04 am    Post subject: Reply with quote

Yes, and I plan to get to that when I have time to sit down and really go over my whole mail system. I guess I can just handle it manually until then.
_________________
decibel Linux: https://decibellinux.org
Github: https://github.com/Gentoo-Music-and-Audio-Technology
Facebook: https://www.facebook.com/decibellinux
Discord: https://discord.gg/73XV24dNPN
Back to top
View user's profile Send private message
szatox
Advocate
Advocate


Joined: 27 Aug 2013
Posts: 3487

PostPosted: Thu Jun 20, 2019 4:10 pm    Post subject: Reply with quote

I guess you're not going to get much help with the original question anyway, so here's a little tip for the future improvement:
I've found delegating authentication to dovecot pretty convenient. Postfix still needs access to the database so it can read aliases, but with authentication delegated to dovecot, postfix does not limit your options to md5 anymore.
Back to top
View user's profile Send private message
audiodef
Watchman
Watchman


Joined: 06 Jul 2005
Posts: 6656
Location: The soundosphere

PostPosted: Mon Jun 24, 2019 6:33 pm    Post subject: Reply with quote

Nice tip, thanks, szatox. :)
_________________
decibel Linux: https://decibellinux.org
Github: https://github.com/Gentoo-Music-and-Audio-Technology
Facebook: https://www.facebook.com/decibellinux
Discord: https://discord.gg/73XV24dNPN
Back to top
View user's profile Send private message
Display posts from previous:   
Reply to topic    Gentoo Forums Forum Index Networking & Security All times are GMT
Page 1 of 1

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum