Rob Siemborski wrote:
This really shouldn't be necessary. admins can authorize as any user
(e.g. login as user cyrus with the password for them, but get rights as
rjs3). Most SASL mechanisms allow this, though the regular imap LOGIN
command does not.
As far as I know, UW imap-utils mbxcvt can only do login (with or
without TLS, so perhaps you could do client certificates and external
authentication to get around it). For my purposes, it was easier just
to hack saslauthd temporarily.
--
John A. Tamplin
Unix Systems Administrator