Zimbra offers Open Source email server software and shared calendar for Linux and the Mac
Go Back   Zimbra :: Forums > Zimbra Collaboration Suite > Administrators

Welcome to the Zimbra :: Forums!
Welcome, if you would like to post a comment please register. We also encourage you to explore all things Zimbra with our team and members of the community.

Reply
 
LinkBack Thread Tools Search this Thread Display Modes
  #1 (permalink)  
Old 02-19-2006, 04:15 PM
New Member
 
Posts: 3
Default External LDAP - auto Account creation

Hi Guys,

I've just set up the GA release on a FC4 and everything is running fine.

It's looking really great! However.. ..

I have authentication via External LDAP to our site-wide LDAP servers.

Whilst the external ldap authentication works fine, it requires me to add each account to Zimbra by hand. Is this correct functionality?

e.g. We have ~1200 users in our LDAP, do I need to add each of these accounts one at a time? Ideally Zimbra would read off our internal LDAP servers dynamically, i.e. if we add a new account to our internal LDAP servers, the user will automatically get a mail account in Zimbra. I have seen the batch-provisioning command (zmprov) which uses a text file of usernames, but this would only work at the initial setup stage. After that, we would still need to keep our internal LDAP servers and the Zimbra accounts in sync manually.

Am i going about this the wrong way?

At this point I haven't added the Zimbra LDAP schema to our site-wide schema, but can do so if that is required.

Any instruction on how to make this setup work would be great. I've looked thru the doco and forums but can't find anything relevant.

Cheers

J
Reply With Quote
  #2 (permalink)  
Old 02-19-2006, 09:22 PM
Zimbra Employee
 
Posts: 2,103
Default

we don't currently support provisioning of the type you've described. If you want to avoid creating all the accounts by hand via the UI, you can write a simple script to dump your account db and use zmprov to create the accounts in zimbra.
Reply With Quote
  #3 (permalink)  
Old 10-27-2006, 02:44 PM
Member
 
Posts: 12
Default

I have the same issue ! Are there any plans to suppor this auto creation of users ?

Chris
Reply With Quote
  #4 (permalink)  
Old 10-31-2006, 07:08 AM
Special Member
 
Posts: 123
Default

I'm not developer, but I think that a Perl script (that finds out informations about accounts in a branch of the LDAP tree source) can do the trick.

The input arguments would be the source DN, and the most useful would be that the script runs every day in order to sync the modifications on the source LDAP tree (if your accounts' source is an LDAP tree).

I think it would be great too if this script could search through any LDAP tree (MS Active Directory, Novell eDirectory, OpenLDAP, etc ...).

Is there a developer ready to write that script ???
Reply With Quote
  #5 (permalink)  
Old 10-31-2006, 08:56 AM
Member
 
Posts: 12
Default

It would be nice if this could run in an automated mode. For example, the authentication is done via LDAP, if the user exists in LDAP, zimbra checks if the user exist in Zimbra, if not it will automatically create the user in Zimbra.

I am using OTRS www.otrs.org, they do exactly that. It is writen in perl and you can map all attributes in ldap to there internal attributes.

Chris
Reply With Quote
  #6 (permalink)  
Old 08-12-2008, 12:22 PM
Zimbra Consultant & Moderator
 
Posts: 20,312
Default

Quote:
Originally Posted by spacegoose View Post
I'm using external LDAP auth, and would like it if Zimbra auto-created the zimbra mailbox if the external LDAP auth is successful and the acct doesn't already exist in zimbra.
There's already a request in bugzilla for this feature, search and vote.

Quote:
Originally Posted by spacegoose View Post
Would also like a script that would auto-create the accounts from a dump of my external LDAP - but this would be less ideal than the above automatic solution.
Check in bugzilla if there's already an RFE, if not file one and vote on it.
__________________
Regards


Bill

Last edited by phoenix; 08-12-2008 at 12:25 PM..
Reply With Quote
  #7 (permalink)  
Old 08-12-2008, 12:23 PM
Member
 
Posts: 14
Thumbs up I would like this too!

I'm using external LDAP auth, and would like it if Zimbra auto-created the zimbra mailbox if the external LDAP auth is successful and the acct doesn't already exist in zimbra.

Would also like a script that would auto-create the accounts from a dump of my external LDAP - but this would be less ideal than the above automatic solution.

Thanks,
s g
Reply With Quote
  #8 (permalink)  
Old 08-14-2008, 08:16 AM
Starter Member
 
Posts: 2
Default

We need to the same thing plus more. Our organization environment is dynamic and users will get different COS depending on certain attributes. This is not just during account creation but is ongoing. to make matters worst it doesn't look like openLdap has any kind of changelog to figure out what changed/created/deleted.
Reply With Quote
  #9 (permalink)  
Old 08-14-2008, 08:35 AM
Moderator
 
Posts: 1,554
Default

You'd want something like Novell's Identity Manager.
Reply With Quote
  #10 (permalink)  
Old 08-14-2008, 11:11 AM
nrc nrc is offline
Special Member
 
Posts: 156
Default

You want to vote for Bug #2235 - Auto Provision New Accounts with External LDAP.
Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes


Similar Threads

Why Join?

Registering let's you ask questions, makes it easier to search, displays any files attached to posts, and notifies you about replies.

blog.zimbra.com




 

SEO by vBSEO ©2011, Crawlability, Inc.