Well, I have a dedicated hosting server service and it has a Plesk panel for its administration, as many will know Plesk comes with RoundCube as the default service for webmail access.
My issue is that the users of a created email account do not have direct control over the options of their account, that is, with the current configuration they cannot directly change their password from the webmail service or do other administrative activities on their account. However, if when creating an email account in Plesk I activate the "can be used to log in to Plesk" function, the user can use their email address and password as a user to enter on Plesk login to a limited panel of functions that allows them to do such activities I mentioned above, it even has the direct option on the panel of "Open Webmail" and these gets me to my question.
When you use this option, it sends you to the webmail service address with the following link "https://webmail.yourdomain.tld/roundcube/index.php?_user=usersaccount%40yourdomain.tld" and this takes you to the login page of RoundCube with the user field already filled with "usersaccount@yourdomain.tld".
Is there a way to also provide RoundCube with the password field as well?
I have tried adding the option "&_pass=userpass" to the end of the link but this does not work, like doing "https://webmail.yourdomain.tld/roundcube/index.php?_user=usersaccount%40yourdomain.tld&_pass=userpass".
My idea is to change the index.php file of the webmail subdomain by one developed that imitates the Plesk login but related to webmail access, that saves the credentials on a temporarily cookie and also modify the link of the "Open Webmail" option to include the password field so that the user can directly to their account, giving the end user a feeling of an integrated platform, something similar to what is currently done in cPanel. Since currently, as it is, the Plesk login is at an distant address from that webmail login part and there is no relationship from RoundCube with the Plesk address that could give the user any hint that they can manage their account without the need for intervention from the server administrator, therefore, as the platform is developed until now, the option for the end user to manage their account directly is almost as if it did not exist.