Zimbra offers Open Source email server software and shared calendar for Linux and the Mac
Go Back   Zimbra :: Forums > Zimbra Collaboration Suite > Administrators

Welcome to the Zimbra :: Forums!
Welcome, if you would like to post a comment please register. We also encourage you to explore all things Zimbra with our team and members of the community.

Reply
 
LinkBack Thread Tools Search this Thread Display Modes
  #1 (permalink)  
Old 09-05-2007, 06:40 AM
Starter Member
 
Posts: 2
Default Zimbra account x AD account

Good morning

First: congratulations about Zimbra!

Second: I tried to search in Wiki, Forums, documentation and Google .. but i donīt found a solution!

Third: I have the following environment: Zimbra 4.5 running on CentOS authenticating users in MS AD.

Now, my problem...

The problem is that the "SamAccountName" in AD differs that "Account Name" in Zimbra, and then users cannot authenticate.

Ex.:
My MS AD account is: x011208@domain.com (a registration code)
My zimbra account is: emersonlb@domain.com with an alias called x011208@domain.com

So, if atuthentication configured in Zimbra is "Internal", the users can authenticate with alias, but if is "External Active Directory" this not works!

My questions: The alias can be used for authentication in MS AD??
How can i configure Zimbra to use the alias to authenticate users in MS AD??

If i invert the alias with the account name, the authentication is successfull, but the address that is sent in messages is not the valid one (the alias is sent in from field).

Thanks!!!
Reply With Quote
  #2 (permalink)  
Old 09-05-2007, 08:20 AM
Moderator
 
Posts: 6,237
Default

Welcome to the forums,
What happens if you set the canonical address? (displays in the 'From:" field of messages that are sent.)
so main account: x011208@domain.com
canonical alias: emersonlb@domain.com

Last edited by mmorse; 09-05-2007 at 09:30 AM..
Reply With Quote
  #3 (permalink)  
Old 09-05-2007, 10:21 AM
Starter Member
 
Posts: 2
Default It works, but...

Thanks for the quickly response, mmorse!

You solution works, but generates another problem ...

I need to migrate these accounts from Domino, so i utilize the ZCS Migration Wizard for Domino.
This wizard imports automatically all the alias of each user registered in domino to the alias fields in Zimbra.
So, if i need to utilize the canonical address, the migration proccess (or part of them) need will be manual (or via script).

The Wizard also imports the "internet address" from domino to the "Account Name" automatically. So if i use your solution, will need also to do this modification manuallly after migration.

Another solution that i found is to configure the "E-mail Identities" in "Options" to always send e-mails using an alias address. And keep the account name with the same value as AD accoutn, but this is also manual process.

If i dont found any other solution, this help me very much.
But the best solution it would be to utilize the aliases to authenticate the users in MS AD, so the entire process will be automatic.

Ps.: Iīm also searching if is possible to modificate something in the AD directory (Ex.: accept the e-mail address for authentication).
Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes


Similar Threads

Why Join?

Registering let's you ask questions, makes it easier to search, displays any files attached to posts, and notifies you about replies.

blog.zimbra.com




 

SEO by vBSEO ©2011, Crawlability, Inc.