Zimbra offers Open Source email server software and shared calendar for Linux and the Mac
Go Back   Zimbra :: Forums > Zimbra Collaboration Suite > Administrators

Welcome to the Zimbra :: Forums!
Welcome, if you would like to post a comment please register. We also encourage you to explore all things Zimbra with our team and members of the community.

Reply
 
LinkBack Thread Tools Search this Thread Display Modes
  #1 (permalink)  
Old 09-18-2008, 08:30 AM
Active Member
 
Posts: 28
Default Authenticate using Active Directory when binding to Zimbra's LDAP server?

Our Zimbra server is configured to authenticate using our Active Directory and this works fine. Our users can use their active directory password to login to IMAP and POP3 and of course the Web Client.

The problem is that they can NOT bind to Zimbra's ldap server in order to access the GAL with clients such as Thunderbird.

Is there any way to authenticate using Active Directory when binding to Zimbra's ldap server?

I know anonymous bind is available but I want to require authentication.

Thanks for any suggestions.
Reply With Quote
  #2 (permalink)  
Old 10-06-2008, 01:58 PM
Active Member
 
Posts: 28
Default Come on...Can't ANYONE help me please??

Ok, I've figured this much out.

I know saslauthd authentication is working because I've tested it using `testsaslauthd` and I've also used authenticated SMTP which uses saslauthd. I can also see saslauthd's authentication efforts in the /var/log/zimbra.log.

I simply want OpenLDAP to use saslauthd as described by Pass-Through Authentication Instructions

I added a slapd.conf file to /opt/zimbra/cyrus-sasl/lib/sasl2/ with the following content.

Code:
#
# This is ${cyrus-sasl-prefix}/lib/sasl2/slapd.conf
#
pwcheck_method: saslauthd
saslauthd_path: /opt/zimbra/cyrus-sasl/state/mux
I added "{SASL}username" to the userPassword attribute of a user object in LDAP...this should tell LDAP to use saslauthd to authenticate the user.

I restarted all services and tried to connect to LDAP and it keeps telling me I'm using invalid credentials AND I can't see any saslauthd authentication efforts in the /var/log/zimbra.log.

Can ANYONE tell me how to get this to work?

Can anyone tell me if Zimbra's openldap is compiled with the "--enable-spasswd" option which is required for openldap to use saslauthd?

Thanks in advance.
Reply With Quote
  #3 (permalink)  
Old 10-08-2008, 12:34 PM
Active Member
 
Posts: 28
Default

Can't SOMEONE (preferably an employee?) AT LEAST tell me if Zimbra's OpenLDAP is compiled with the "--enable-spasswd" option which is required for openldap to use saslauthd?
Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes


Similar Threads

Why Join?

Registering let's you ask questions, makes it easier to search, displays any files attached to posts, and notifies you about replies.

blog.zimbra.com




 

SEO by vBSEO ©2011, Crawlability, Inc.