Zimbra offers Open Source email server software and shared calendar for Linux and the Mac
Go Back   Zimbra :: Forums > Zimbra Collaboration Suite > Migration

Welcome to the Zimbra :: Forums!
Welcome, if you would like to post a comment please register. We also encourage you to explore all things Zimbra with our team and members of the community.

Reply
 
LinkBack Thread Tools Search this Thread Display Modes
  #1 (permalink)  
Old 06-06-2007, 01:42 PM
New Member
 
Posts: 5
Unhappy Mail Groups are not groupOfUniqueNames in LDAP

We are currently migrating from an iPlanet Web/Mail/Calendar environment
to Apache+Zimbra.

In our existing environment we have been using some of our mail groups to
restrict access to certain areas of our web sites. Basically access to certain
areas was allowed only to users who authenticate against our LDAP database
and are members of certain groups.

In Zimbra, Mail Distribution Lists are not "LDAP groups". i.e. they do not have
an objectClass of groupOfUniqueNames and the members of a distribution list
are identified by their email address, not their DN.

If we wanted to set up Apache authentication (mod_authnz_ldap) against our
Zimbra LDAP directory, we would not be able to validate that the user is part
of a particular group by using "require ldap-group".

Has anybody else tried to authenticate their Apache server against Zimbra
using group membership to restrict access? Any ideas how we can do this
without defining groups twice (once as a Mailing List and once as a group of
unique names)?

Thanks for any pointers.
Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes


Similar Threads

Why Join?

Registering let's you ask questions, makes it easier to search, displays any files attached to posts, and notifies you about replies.

blog.zimbra.com




 

SEO by vBSEO ©2011, Crawlability, Inc.