Red Hat Bugzilla – Bug 18727
imapd/pop*d have internal SSL support but still use/depend on stunnel
Last modified: 2007-04-18 12:29:07 EDT
In the imap-4.7c2-12 package shipped with RH7.0 the imapd, ipop?d servers
are built with internal SSL support, i.e. when run from port imaps/pop-?s
they will detect and use SSL by themselves.
In the specfile however imapd and ipo?d are set to start via stunnel.
This is both redundant and unfortunate, since when run via stunnel the
daemons won't get the true client ip adress from which the connection
originated. Instead they get 127.0.0.1 (localhost). This completely breaks
DRAC (dynamic relay authorization control) AKA POP-before-SMTP.
The native SSL support was added some time after the stunnel setup was added to
the package. We'll have to change this. I'll mark this one as resolved when we
get a package built with the changes.
You can mark this resolved, v2000 has been uploaded. (even for RH6.x).
fixed on errata :
* Tue Oct 10 2000 Nalin Dahyabahai <firstname.lastname@example.org>
- switch to internal SSL support instead of using stunnel (#18727)