Hi guys. I’ve a problem and I don’t know how to solve it.
This is my case: I have an email account in Mailcow and I create an App password for it only for Cardav/Caldav and EAS/ActiveSync protocols so IMAP clients can login with principal account password and ActiveSync and Cardav clients with app password.
If I delete ALL app password and I would to connect a device with Activesync or Caldav/Cardav protocol, I can’t because it doesn’t accept principal account password. I have to create another app password.
I would expect that if there were no password apps, I would have to log in with the master password

Anyone could help me please?
Sorry for my bad english.

Thank you

    kernel_panic I would expect that if there were no password apps, I would have to log in with the master password

    It depends on which protocols you allow for your “master password”, which is the login password to mailcow.
    You can also decide which protocols are allowed to log in with your login password, but when you have 2FA enabled that could be a problem. This is why app passwords exist.

      Have something to say?

      Join the community by quickly registering to participate in this discussion. We'd like to see you joining our great moo-community!

      esackbauer Yes. Now I have NO app password but I have to create it if I want to use EAS/ActiveSync or Cardav/Caldav protocols.
      I have 2fa for my email account in mailcow app and no 2fa in my sogo space.
      If I disable 2fa for my email account in mailcow app I can use master password for EAS/Caldav/Cardav too.

      Browsing this forum, I found another user with the same problem: mailcow community Icon Enable 2FA in Mailcow admin blocks Activesync

      So what is your problem? It works as expected.

      I have to create App password only for Eas/Cardav/Caldav? IMAP, SMTP can use master password without problems?

        • esackbauer

          • Community Hero
          Moolevel 431
        • Edited

        kernel_panic
        Yes.
        IMAP, SMTP = Dovecot,
        EAS, Caldav, carddav = SOGo.
        Authentication is wired differently between the two products.

        Actually I have disabled ALL protocols with my login password. I use app password for each client.

          No one is typing