From: Eric Wong <e@80x24.org>
To: meta@public-inbox.org
Subject: [PATCH v2 5/5] pop3: advertise STLS in CAPA if appropriate
Date: Wed, 20 Jul 2022 09:24:13 +0000 [thread overview]
Message-ID: <20220720092413.3309948-6-e@80x24.org> (raw)
In-Reply-To: <20220720092413.3309948-1-e@80x24.org>
This is documented in RFC 2595, and POP3 clients may rely on
seeing "STLS" in CAPA output to initiate TLS negotiation.
---
Documentation/standards.perl | 1 +
lib/PublicInbox/POP3.pm | 6 ++++--
t/pop3d.t | 7 +++++++
3 files changed, 12 insertions(+), 2 deletions(-)
diff --git a/Documentation/standards.perl b/Documentation/standards.perl
index 835de3a2..c36afb5d 100755
--- a/Documentation/standards.perl
+++ b/Documentation/standards.perl
@@ -69,6 +69,7 @@ my $rfcs = [
1081 => 'Post Office Protocol – Version 3',
1939 => 'Post Office Protocol – Version 3 (STD 53)',
2449 => 'POP3 extension mechanism',
+ 2595 => 'STARTTLS for IMAP and POP3',
2384 => 'POP URL Scheme',
# TODO: flesh this out
diff --git a/lib/PublicInbox/POP3.pm b/lib/PublicInbox/POP3.pm
index 2c20c84b..ec73893c 100644
--- a/lib/PublicInbox/POP3.pm
+++ b/lib/PublicInbox/POP3.pm
@@ -343,15 +343,17 @@ sub cmd_dele {
# RFC 2449
sub cmd_capa {
my ($self) = @_;
+ my $STLS = !$self->{ibx} && !$self->{sock}->can('stop_SSL') &&
+ $self->{pop3d}->{accept_tls} ? "\nSTLS\r" : '';
$self->{expire} = ''; # "EXPIRE 0" allows clients to avoid DELE commands
- \<<EOM;
+ <<EOM;
+OK Capability list follows\r
TOP\r
USER\r
PIPELINING\r
UIDL\r
EXPIRE 0\r
-RESP-CODES\r
+RESP-CODES\r$STLS
.\r
EOM
}
diff --git a/t/pop3d.t b/t/pop3d.t
index 3d70935f..9eb110d6 100644
--- a/t/pop3d.t
+++ b/t/pop3d.t
@@ -106,6 +106,8 @@ for my $args (
my @p3s_args = ($pop3s->sockhost,
Port => $pop3s->sockport, SSL => 1, %o);
my $p3s = Net::POP3->new(@p3s_args);
+ my $capa = $p3s->capa;
+ ok(!exists $capa->{STLS}, 'no STLS CAPA for POP3S');
ok($p3s->quit, 'QUIT works w/POP3S');
{
$p3s = Net::POP3->new(@p3s_args);
@@ -127,7 +129,11 @@ for my $args (
my $np3 = Net::POP3->new(@np3_args);
ok($np3->quit, 'plain QUIT works');
$np3 = Net::POP3->new(@np3_args, %o);
+ $capa = $np3->capa;
+ ok(exists $capa->{STLS}, 'STLS CAPA advertised before STLS');
ok($np3->starttls, 'STLS works');
+ $capa = $np3->capa;
+ ok(!exists $capa->{STLS}, 'STLS CAPA not advertised after STLS');
ok($np3->quit, 'QUIT works after STLS');
for my $mailbox (('x'x32)."\@$group", $group, ('a'x32)."\@z.$group") {
@@ -239,6 +245,7 @@ EOF
my $capa = $oldc->capa;
ok(defined($capa->{PIPELINING}), 'pipelining supported by CAPA');
is($capa->{EXPIRE}, 0, 'EXPIRE 0 set');
+ ok(!exists $capa->{STLS}, 'STLS unset w/o daemon certs');
# ensure TOP doesn't trigger "EXPIRE 0" like RETR does (cf. RFC2449)
my $list = $oldc->list;
prev parent reply other threads:[~2022-07-20 9:24 UTC|newest]
Thread overview: 10+ messages / expand[flat|nested] mbox.gz Atom feed top
2022-07-19 2:49 [PATCH 0/2] preliminary POP3 daemon Eric Wong
2022-07-19 2:49 ` [PATCH 1/2] public-inbox-pop3d - a mostly read-only POP3 server Eric Wong
2022-07-19 2:49 ` [PATCH 2/2] pop3: implement IN-USE from RESP-CODES (RFC 2449) Eric Wong
2022-07-20 7:27 ` [PATCH 3/2] pop3: fix numerous bugs in delete handling Eric Wong
2022-07-20 9:24 ` [PATCH v2 0/5] public-inbox POP3 daemon Eric Wong
2022-07-20 9:24 ` [PATCH v2 1/5] public-inbox-pop3d - a mostly read-only POP3 server Eric Wong
2022-07-20 9:24 ` [PATCH v2 2/5] pop3: implement IN-USE from RESP-CODES (RFC 2449) Eric Wong
2022-07-20 9:24 ` [PATCH v2 3/5] pop3: TOP requests do not expire messages Eric Wong
2022-07-20 9:24 ` [PATCH v2 4/5] netd: setup TLS bits for well-known STARTTLS ports Eric Wong
2022-07-20 9:24 ` Eric Wong [this message]
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
List information: https://public-inbox.org/README
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=20220720092413.3309948-6-e@80x24.org \
--to=e@80x24.org \
--cc=meta@public-inbox.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
Code repositories for project(s) associated with this public inbox
https://80x24.org/public-inbox.git
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for read-only IMAP folder(s) and NNTP newsgroup(s).