IceWarp has released a security update addressing two medium-severity vulnerabilities identified during routine security audits. As part of this update, the legacy RCP API has been removed from IceWarp Epos 2 (14.2.0.12) when used with MailStore.
Re-establishing the Connection
To restore connectivity between IceWarp and MailStore:
- Download the RPC.zip folder
- Extract the RPC folder from the downloaded .zip file
- Copy the RPC folder to /icewarp/html folder
Please note that you will have to download and copy the RPC every time you upgrade your server.
Secure the Connection
After restoring the RCP folder, you must restrict access by defining the authorised IP address:
- Open the Remote Administration Console.
- Navigate to WEB > General.
- Double-click on the [Default]
- Click on the Access tab in the newly opened window
- Add a new rule as shown in the screenshot below and insert the IP address of MailStore.
- After that, restrict all other IP addresses from accessing the RPC folder
- Make sure the IP mask is " *.*.*.* " and the rule should be displayed under the first RPC rule
Comments
0 comments
Article is closed for comments.