-
-
Notifications
You must be signed in to change notification settings - Fork 2k
Closed
Labels
area/securityarea/testsbug/confirmedA bug report whose bug is confirmedA bug report whose bug is confirmedbug/solution proposedA bug report, whose bug is confirmed, and an unverified solution was proposedA bug report, whose bug is confirmed, and an unverified solution was proposedkind/bug/reportA report about a bugA report about a bugservice/dovecotservice/security/fail2ban
Milestone
Description
π Preliminary Checks
- I tried searching for an existing issue and followed the debugging docs advice, but still need assistance.
π What Happened?
with OAUTH2 enabled, sign-in with Roundcube is successful, however, the client IP is eventually banned by fail2ban.
The reason is because !include auth-oauth2.conf.ext comes after !include auth-passwdfile.inc.
Simply moving !include auth-oauth2.conf.ext above !include auth-passwdfile.inc is enough to prevent a ban, however, there was some discussion on the PR related to other issues with the ordering.
π Reproduction Steps
enable OAUTH2, enable fail2ban, sign in to account with OAUTH2, wait for fail2ban to trigger because regular passdb lookup fails before oauth2 is used.
π DMS Version
v13.3.0
π» Operating System and Architecture
Fedora CoreOS
βοΈ Container configuration files
No response
π Relevant log output
No response
Improvements to this form?
No response
polarathene
Metadata
Metadata
Assignees
Labels
area/securityarea/testsbug/confirmedA bug report whose bug is confirmedA bug report whose bug is confirmedbug/solution proposedA bug report, whose bug is confirmed, and an unverified solution was proposedA bug report, whose bug is confirmed, and an unverified solution was proposedkind/bug/reportA report about a bugA report about a bugservice/dovecotservice/security/fail2ban