LINUXOR.SK ... open source notes ...

Email - Dovecot 10-master.conf

category: solutionz · date: 2019-12-31 · updated: 2026-10-02 · author: LALA

Email Solution · Config document · referenced from Dovecot authentication

The service definitions of Dovecot: the network listeners and the UNIX sockets. Two sockets were added to the stock file, one for Postfix (SASL) and one for the delivery agent (user lookups); the IMAP port is set explicitly and the stock imaps listener is gone. Stock comments are left out, the empty blocks are the distribution's.

ItemValue
Path on the server/etc/dovecot/conf.d/10-master.conf
Shown hereDC2-A-VCMSX001
Also onDC2-B-VCMSX001 and DC2-A-VCMSX002, identical
Sockets created/var/spool/postfix/private/auth and /var/run/dovecot/auth-userdb
SoftwareDovecot 2.2 from the RHEL 7 repository; the exact package release is not recorded

The file

ini
# IMAP on port 143 only. The stock file also has an "inet_listener imaps"
# block for port 993; it is not in this file.
 service imap-login {
  inet_listener imap {
    port = 143
  }
}

# Stock and without effect: pop3 is not in "protocols" (dovecot.conf).
service pop3-login {
  inet_listener pop3 {
  }
  inet_listener pop3s {
  }
}

# Stock: LMTP on the UNIX socket /var/run/dovecot/lmtp. The service starts
# because lmtp is in "protocols"; Postfix does not deliver to it.
service lmtp {
  unix_listener lmtp {
  }
}

service imap {
}

service pop3 {
}

service auth {

  # Socket for user database lookups. The delivery agent (deliver) runs as
  # vmail and asks here where the mailbox of a recipient is.
  # CFG-ON  -> unix_listener auth-userdb {
  # CFG-ON  -> mode = 0666
  # CFG-ON  -> user = vmail
  # CFG-ON  -> group = vmail
  # CFG-ON  -> }
  unix_listener auth-userdb {
   mode = 0666
   user = vmail
   group = vmail
   }

  # Socket for Postfix. smtpd_sasl_path = private/auth in main.cf is this
  # path relative to the Postfix queue directory /var/spool/postfix.
  # CFG-ON  -> unix_listener /var/spool/postfix/private/auth {
  # CFG-ON  ->  mode = 0666
  # CFG-ON  ->  user = postfix
  # CFG-ON  ->  group = postfix
  # CFG-ON  -> }
  unix_listener /var/spool/postfix/private/auth {
    mode = 0666
    user = postfix
    group = postfix
  }
}

service auth-worker {
}

service dict {

  unix_listener dict {
  }
}

Differences between the hosts

None. The internal pair carries the auth-userdb socket and the IMAP listener too, although nothing on those two servers delivers to a mailbox or reads one.

Checked against Dovecot 2.4.5

As builtToday
unix_listener /var/spool/postfix/private/auth, mode = 0666still the documented block for Postfix SASL; the upstream example uses mode = 0660
unix_listener auth-userdb, owner vmailstill the socket dovecot-lda uses; its default group changed with configuration version 2.4.1
service lmtp started, not usedLMTP is the recommended delivery agent; its defaults changed in 2.4.1

On the Postfix side smtpd_sasl_type = dovecot with smtpd_sasl_path = private/auth is still the documented setup in Postfix 3.11. CentOS Stream 9 and 10, the upstream of RHEL 9 and 10, still carry Dovecot 2.3, so on RHEL the step from 2.2 to 2.3 comes first and the 2.4 syntax applies with upstream packages only.

← solutionz