4 ms·
That wouldn't work unless the iPhone only has to log in one time, or if you want to have to generate an application-specific password every time you want to che
by FaceKicker 15y ago
That wouldn't work unless the iPhone only has to log in one time, or if you want to have to generate an application-specific password every time you want to check your email.
- pavel_lishin 15y agoI honestly have no idea how it works. I thought that the Mail app would login once, and store some sort of 30-day auth token.
- Mavrik 15y agoEr, no. IMAP requires you to send password (encrypted or no) every time you connect.
- mike-cardwell 15y agoFYI, you can authenticate against both Googles IMAP and SMTP submission services using OAUTH. * CAPABILITY IMAP4rev1 UNSELECT IDLE NAMESPACE QUOTA ID XLIST CHILDREN X-GM-EXT-1 XYZZY SASL-IR AUTH=XOAUTH 250-AUTH LOGIN PLAIN XOAUTH
- ConstantineXVI 15y agoThe client has to support it though; can't think of a mail client I've used with oAuth support.
- mike-cardwell 15y agoOAuth was added so apps could be built which are able to access other peoples gmail accounts, but without sharing credentials. I believe there are web apps which utilise this OAuth capability, but I haven't come across any desktop apps which use it. My point still stands though, which is that you can use IMAP without passwords.
- watty 15y agoThey should be "application specific", maybe even with options to choose which parts of Google Services it can access. I don't want my Digsby generated password to be able to access my email via IMAP. It's unlikely to be leaked in plain-text but it's silly to call it application specific.