Zimbra offers Open Source email server software and shared calendar for Linux and the Mac
Go Back   Zimbra :: Forums > Zimbra Collaboration Suite > Administrators

Welcome to the Zimbra :: Forums!
Welcome, if you would like to post a comment please register. We also encourage you to explore all things Zimbra with our team and members of the community.

Reply
 
LinkBack Thread Tools Search this Thread Display Modes
  #1 (permalink)  
Old 04-03-2010, 10:40 AM
Active Member
 
Posts: 25
Default Master OpenLDAP on different server

Hello all,

I've got an implementation like described below:

Masterldap --> OpenLDAP --> Running HTTP/HTTPS/FTP
SlaveLDAP --> OpenLDAP --> Running Email Services (POP3/POP3S/IMAP/IMAPS/Webmail-HTTP/HTTPS)

Entries from master are auto synced on slave. I want to migrate initially the email server (slaveldap) to a different data center on a more powerful server due to have performance issues on existing server. At the moment when a new user is been added IT staff needs to manually create /home/username and chown that folder on slaveldap server, that'all.

I'm a little bit confused about how Zimbra works in terms of LDAP. Can I use my masterldap for authentication and just add the accounts manually on Zimbra each time a new user is been added?
If I delete a user from my masterldap would that be removed as well or it needs to be deleted manually?

Thanks in advance
Reply With Quote
  #2 (permalink)  
Old 04-03-2010, 05:03 PM
Outstanding Member
 
Posts: 717
Default

Since Zimbra has its own LDAP server inside of it for its config/directory/authentication services, when I answer this I assume "Masterldap" and "SlaveLDAP" are LDAP servers that are NOT part of the LDAP server within Zimbra.

If you point Zimbra to an external LDAP server, you still have to create the users within Zimbra on your own (or through a script) - there is no auto-provisioning built in yet.
That being said, you would also need to manually delete the user as well.
Reply With Quote
  #3 (permalink)  
Old 04-04-2010, 12:00 AM
Active Member
 
Posts: 25
Default

Thanks a lot for the reply.
Is there a documentation about how to make an import of the users with some sort of default settings for everyone?
I'm asking this as I've got at the moment 1200+ users and creating each one will take ages.

Thanks

Quote:
Originally Posted by Krishopper View Post
Since Zimbra has its own LDAP server inside of it for its config/directory/authentication services, when I answer this I assume "Masterldap" and "SlaveLDAP" are LDAP servers that are NOT part of the LDAP server within Zimbra.

If you point Zimbra to an external LDAP server, you still have to create the users within Zimbra on your own (or through a script) - there is no auto-provisioning built in yet.
That being said, you would also need to manually delete the user as well.
Reply With Quote
  #4 (permalink)  
Old 04-04-2010, 07:31 AM
Moderator
 
Posts: 6,237
Default

zmexternaldirsync (previously called zimbrasynctool) can do that one way provision (can even put it in a cron). You have to grab it and the directions doc from bug 14772 (or latest available in the source at ZimbraServer/src/bin/zmexternaldirsync with example configs under ZimbraServer/conf/externaldirsync)

Note: Use the above at your own risk/take a backup, it's not completely hassle free yet. The proper RFE to vote for is Bug 7235 - Auto Provision New Accounts with External LDAP (aimed at both auto-creation and auto-removal)
Reply With Quote
  #5 (permalink)  
Old 04-04-2010, 08:14 AM
Outstanding Member
 
Posts: 717
Default

There is also the Bulk Provisioning wiki page with good info.
Reply With Quote
  #6 (permalink)  
Old 04-15-2010, 02:09 AM
Active Member
 
Posts: 25
Default

I've managed to transfer all accounts using the wiki details related with imapsync (used to have squirrelmail+postfix). All I need now is how to auto create users when I'm adding a new entry or deleting in my master ldap server.

Did anyone had any success on this?

Many thanks for the replies.
Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes


Similar Threads

Why Join?

Registering let's you ask questions, makes it easier to search, displays any files attached to posts, and notifies you about replies.

blog.zimbra.com




 

SEO by vBSEO ©2011, Crawlability, Inc.