Gmail and Outlook sitting in a tree, not t-a-l-k-i-n-g to me or thee
- Reference: 1588596311
- News link: https://www.theregister.co.uk/2020/05/04/gmail_pop_imap_wobble/
- Source link:
The issues appeared to kick off at around 11:30 BST and continues to prevent those who prefer to access their Googly mail via means other than the browser. The problem appears to be related to POP3 and IMAP access; if you're connecting to Google's servers using those services, then sending and receiving email could be a challenge.
Google [1]had planned to turn off access to G Suite account data for apps not using OAuth for first-time users from 15 June 2020 and all accounts from 15 February 2021, but [2]back-pedalled in March , putting the move on hold "until further notice."
Or until Star Wars day, judging by the wailing on Twitter.
[3]@gmail There seems to be some issue with connectivity. IMAP and POP both are down for third party apps. Also checked the settings of my gmail account - the third party app and less secure app setting had disappeared from the settings page. My entire organization is trying to login — Arjit Dashputre (@ArjitDashputre) [4]May 4, 2020
Google itself has remained tight-lipped on the issue, with its Gmail social media orifice insisting there were no disruptions. Indeed, devices or apps running with OAuth have continued to behave correctly and the Gmail website is unaffected.
Hi Khaled. Currently, there are no disruptions with Gmail. Could you share more details on what seems to be happening with your Gmail account? We'll do our best to help. — Gmail (@gmail) [5]May 4, 2020
Far be it from us to suggest that this might be a fitting reminder that it is time to consider a move to something a little more modern rather than trying to access Google email from a third party client.
The G Suite team, doubtless mindful that people tend to pay for its services, acknowledged a problem and reassured users that the problem is being looked into.
Hey Maaz, thanks for reporting this. Our Support Team is currently investigating the issue so this can be solved as soon as possible. Thanks for your patience. -RS — G Suite (@gsuite) [6]May 4, 2020
The Register has contacted Google to find out who kicked the plug out of that ageing server under the desk. We will update if a response is forthcoming. ®
Sponsored: [7]Forrester Build a Digital Experience Portfolio
[1] https://www.theregister.co.uk/2019/12/17/google_tightens_the_screw_on_less_secure_apps_will_block_most_access_from_june_2020/
[2] https://gsuiteupdates.googleblog.com/2019/12/less-secure-apps-oauth-google-username-password-incorrect.html
[3] https://twitter.com/gmail?ref_src=twsrc%5Etfw
[4] https://twitter.com/ArjitDashputre/status/1257277079420391424?ref_src=twsrc%5Etfw
[5] https://twitter.com/gmail/status/1257273600362545153?ref_src=twsrc%5Etfw
[6] https://twitter.com/gsuite/status/1257278560903073794?ref_src=twsrc%5Etfw
[7] https://go.theregister.co.uk/tl/1936/-8554/forrester-build-a-digital-experience-portfolio?td=wptl1936
No, of course you can let that single provider access all of your mail accounts and put its long pointy nose into them too....
I got rid of third party email server even for my personal use years ago.
re: Google Mail
still using this? How quaint. Well... if you want all your emails scanned by Google then carry on.
Re: re: Google Mail
It's impossible for e-mail to work without the receiving server reading the e-mail. The only way this wouldn't be the case if the body of the e-mail was encrypted and therefore could only be rendered by the recipient. Then the receiving server would be reading the encrypted body.
It's what the receiving server/person/company does with the data they collect or could collect that may be an issue.
Re: re: Google Mail
if the body of the e-mail was encrypted and therefore could only be rendered by the recipient...
... the security of the sign-on would be largely immaterial too.
There's an awful lot to be said for encrypted e-mail. It's almost inconceivable that e-mail if invented today would not be encrypted and yet somehow we're still still in the shadow of UUCP.
Re: re: Google Mail
I use gmail to communicate with friends and other humans. I use secure mail services for anything that needs to be secure.
Er, what?
I'm honestly at a loss here trying to understand what's so bad about - for example - using the Outlook desktop client to handle email from an Exchange account, and both my Fastmail account and a Clook account via IMAP.
Or is the problem just that I'm not down with the cool kids?
Re: is the problem just that I'm not down with the cool kids?
Probably that. But neither am I, you know. I use Gmail for my professional mail only. For the rest, I have a French national mail account (with La Poste, the French mail service), and then I have my personal mail server for everything strictly private, between friends and a special spam account for when I have to sign up to some site that doesn't deserve it.
I access my Gmail with a Chrome, obviously (work, remember ?), but I forward everything I get to one of my personal accounts which I access with Lotus Notes via POP.
For all the rest of my email accounts, I use Thunderbird, which is configured to not leave mail on the server. And I purge my Gmail account as soon as a thread is no longer relevant.
In other words, my mail is local, I don't leave it on someone else's server. Not even mine.
"The problem appears to be related to POP3 and IMAP access; if you're connecting to Google's servers using those services, then sending and receiving email could be a challenge."
Especially sending email would be a challenge that way, as neither POP 3 nor IMAP is for sending email. That would be SMTP.
Google's SMTP was also down this morning, but is up again now (at least for me).
OAuth2 lock-out
OAuth2 is a fucking bind to implement on third-party email clients because you've got to crowbar a full browser into the IMAP/POP authentication stage and there are no real standards for authentication, each provider does it is own way and email client developers have to reverse engineer it.
This is what happens when you let huge corporations take control of open standards.
But one piece of software/app per provider protected by its OAuth2 wall is more modern (the author knows what he's doing when he drops that word into the article).
I'd suggest that what's required is something a few decades LESS "modern" - how about ditching cancerous authoritarian providers like GMail and Outlook.com and going back to completely standards compliant email services that don't bind you to provider lock-in or intrude into your entire online life?
I can never understand why people read email in a browser, rather than 'modern' it seems totally antiquated to me. Outlook started demanding my gmail password this morning - ironically it is only my backup for if my main email goes down.
Hit me this morning
Took me ages to get Outlook working with GMAIL again - found the answer by accident. I'd been looking at the security area, but under the gmail settings POP3/IMAP tab I found that while it showed POP3 had been enabled for a long time there was no option selected. I selected Allow POP3 and all worked again.
Thought it was just me as I could find no news at the time (around midday UK time) but looks like maybe Google took a simple annoying route to try and stop people using third party clients.
Far be it from us to suggest...
Hmmm, not sure who "us" is here, but one of the uses of email received as an email rather than a monitored stream of html is the ability to parse it for one's own purposes.
Spam filters work in this way, and therefore it would appear that what is being advocated as "best practice" is that Google knows what's best as regards what is and isn't spam.
That's one purpose. With browser-email we're going back to the days of independent silos of information, needing to be transcribed and entered into a different silo. I write email parsers for customers that need the ability to automatically process orders and such-like, in order to revolutionise their productivity. If orders have to be copied and pasted from a browser-based interface there is a reliance on the operator doing it correctly, and who's to say that the provider might intersperse the message with formatting that breaks copy/paste.
Whatever it's worth...
Had a report of this this morning.
Had a look at the settings on the machine in question.
The only thing needing tdoing was switching the "Security and Authentication >> Authentication method" to "OAuth2".
After that, everything went back to "normal" Monday-mode.
"Far be it from us to suggest that this might be a fitting reminder that it is time to consider a move to something a little more modern rather than trying to access Google email from a third party client."
Are you suggesting we should be more up to date by having different apps for different mail providers? How very modern!