


I am an independent IT consultant and one of my main clients is a university in Germany, where S/MIME support in Roundcube would be a very nice to have feature since all users have S/MIME certificates, however it's not a priority requirement and there are no plans for it right now. So maybe you'd like to put some bounties on these steps for anyone to pick up, or we could contract directly. I think that progression should also make it easy for someone to pick up the work if I have to abandon it.
ROUNDCUBE VS SQUIRRELMAIL CODE
This allows me to build the code up without worrying about ancillary functionality and "bookkeeping" type stuff until I get to step 2, and I won't need to have private keys around until step 4. This is how I'd go about implementing it: S/MIME: Certificate info in Contacts details page (optional) S/MIME: Handling of certs attached to incoming messages S/MIME: Sending signed/encrypted messages But on a webmail server that wants to offer DANE validation of S/MIME certs, it is reasonable IMHO to require they use a DNSSEC validating recursive resolver so the webmail server itself only needs to validate that the zone is DNSSEC signed (easy to do) and doesn't need to do the DNSSEC validation itself. I believe current version of OpenSSL support DNSSEC validation, not sure if the php wrapper does. Whoever is working on this should take that draft RFC into consideration so that roundcube can DANE validate S/MIME certs sent by other users. The mail service I provide is webmail only, I would want the S/MIME keys/certs on the webmail server which some people rightfully object to but those people should be using mail services that are not webmail only. With DANE support coming to S/MIME (see ) it would let me publish a DANE record 2 1 1 intermediate certificate that could be used to sign S/MIME certs for each user account that wants it without the cost of certificate authorities. For some operating systems there are "homemade" patches available, but none is official.I would really love this. The Horde community has not yet provided a patch. Sneaky users could even send such a special image file to themselves and gain shell access using the security flaw.
ROUNDCUBE VS SQUIRRELMAIL FULL
This will however let you end up with the third level like "" and ".com".Īt this time however I strongly discourage the use of Horde, because a security issue has been found that enables an attacker to gain full access to a server simply by sending a prepared image file to a user who uses Horde and opens that mail.

SquirrelMail in 2022 by cost, reviews, features, integrations, deployment, target market, support options, trial offers, training options, years in business, region, and more using the chart below. Then you users can always choose which one to use.Ģ) You can create subdomains and set their "webmail" sub(-sub)-domain to Horde and Roundcube per subdomain. What’s the difference between Postfix, Roundcube, and SquirrelMail Compare Postfix vs. your own version of Horde or your own of Roundcube or others like Squirrel Mail etc.
ROUNDCUBE VS SQUIRRELMAIL INSTALL
But there are two workarounds if you wish to provide your users with a choice:ġ) You can create subdomains to your domain and install your own webmail clients, e.g. It does not work on php 5. Squirrelmail works but is outdated in how it looks. Click to expand.This setting can only be made based on a domain name, not based on a specific user. Roundcube looks better but many things do not work optimal or not at all.
