Results 1 to 6 of 6

Thread: Master OpenLDAP on different server

  1. #1
    mrdebian is offline Active Member
    Join Date
    Mar 2010
    Posts
    25
    Rep Power
    5

    Default Master OpenLDAP on different server

    Hello all,

    I've got an implementation like described below:

    Masterldap --> OpenLDAP --> Running HTTP/HTTPS/FTP
    SlaveLDAP --> OpenLDAP --> Running Email Services (POP3/POP3S/IMAP/IMAPS/Webmail-HTTP/HTTPS)

    Entries from master are auto synced on slave. I want to migrate initially the email server (slaveldap) to a different data center on a more powerful server due to have performance issues on existing server. At the moment when a new user is been added IT staff needs to manually create /home/username and chown that folder on slaveldap server, that'all.

    I'm a little bit confused about how Zimbra works in terms of LDAP. Can I use my masterldap for authentication and just add the accounts manually on Zimbra each time a new user is been added?
    If I delete a user from my masterldap would that be removed as well or it needs to be deleted manually?

    Thanks in advance

  2. #2
    Krishopper is offline Dedicated Member
    Join Date
    Dec 2006
    Location
    Minneapolis MN
    Posts
    777
    Rep Power
    9

    Default

    Since Zimbra has its own LDAP server inside of it for its config/directory/authentication services, when I answer this I assume "Masterldap" and "SlaveLDAP" are LDAP servers that are NOT part of the LDAP server within Zimbra.

    If you point Zimbra to an external LDAP server, you still have to create the users within Zimbra on your own (or through a script) - there is no auto-provisioning built in yet.
    That being said, you would also need to manually delete the user as well.

  3. #3
    mrdebian is offline Active Member
    Join Date
    Mar 2010
    Posts
    25
    Rep Power
    5

    Default

    Thanks a lot for the reply.
    Is there a documentation about how to make an import of the users with some sort of default settings for everyone?
    I'm asking this as I've got at the moment 1200+ users and creating each one will take ages.

    Thanks

    Quote Originally Posted by Krishopper View Post
    Since Zimbra has its own LDAP server inside of it for its config/directory/authentication services, when I answer this I assume "Masterldap" and "SlaveLDAP" are LDAP servers that are NOT part of the LDAP server within Zimbra.

    If you point Zimbra to an external LDAP server, you still have to create the users within Zimbra on your own (or through a script) - there is no auto-provisioning built in yet.
    That being said, you would also need to manually delete the user as well.

  4. #4
    mmorse's Avatar
    mmorse is offline Moderator
    Join Date
    May 2006
    Location
    USA
    Posts
    6,242
    Rep Power
    21

    Default

    zmexternaldirsync (previously called zimbrasynctool) can do that one way provision (can even put it in a cron). You have to grab it and the directions doc from bug 14772 (or latest available in the source at ZimbraServer/src/bin/zmexternaldirsync with example configs under ZimbraServer/conf/externaldirsync)

    Note: Use the above at your own risk/take a backup, it's not completely hassle free yet. The proper RFE to vote for is Bug 7235 - Auto Provision New Accounts with External LDAP (aimed at both auto-creation and auto-removal)

  5. #5
    Krishopper is offline Dedicated Member
    Join Date
    Dec 2006
    Location
    Minneapolis MN
    Posts
    777
    Rep Power
    9

    Default

    There is also the Bulk Provisioning wiki page with good info.

  6. #6
    mrdebian is offline Active Member
    Join Date
    Mar 2010
    Posts
    25
    Rep Power
    5

    Default

    I've managed to transfer all accounts using the wiki details related with imapsync (used to have squirrelmail+postfix). All I need now is how to auto create users when I'm adding a new entry or deleting in my master ldap server.

    Did anyone had any success on this?

    Many thanks for the replies.

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Similar Threads

  1. Replies: 9
    Last Post: 02-25-2009, 04:39 AM
  2. Replies: 8
    Last Post: 08-07-2008, 05:18 AM
  3. Error loading on Mac OS X 10.4.10 server PPC
    By qprcanada in forum Installation
    Replies: 7
    Last Post: 10-26-2007, 06:25 AM
  4. How to disable LDAP replication on the master server
    By jpawlyn in forum Administrators
    Replies: 0
    Last Post: 04-29-2007, 10:03 AM
  5. OS X Server + OpenLDAP
    By nhajratw in forum Installation
    Replies: 9
    Last Post: 05-20-2006, 05:14 PM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •