Zimbra offers Open Source email server software and shared calendar for Linux and the Mac
 
Go Back   Zimbra - Forums > Zimbra Collaboration Suite > Mobility > Zimbra Mobile

Welcome to the Zimbra - Forums!
Welcome, if you would like to post a comment please register. We also encourage you to explore all things Zimbra with our team and members of the community.

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 06-22-2009, 02:21 PM
Intermediate Member
 
Posts: 16
Default iPhone 3.0 contacts LDAP

Anyone got a way to use LDAP on iPhone 3.0 to add contacts to the iPhone... I got IMAP email and CalDAV working with the Zimbra server, but the contacts using LDAP would make desktop syncing less needed...
Reply With Quote
  #2 (permalink)  
Old 09-15-2009, 09:00 PM
Starter Member
 
Posts: 1
Default me too

i also have caldav + imap working and ldap would be great
Reply With Quote
  #3 (permalink)  
Old 09-16-2009, 06:12 AM
Advanced Member
 
Posts: 246
Default

If you have port 389 open on your firewall you can add an address book to the iPhone and point it to your Zimbra server and it will pull in your contacts. We did it as a test here for one of our IT people who has one.

Go to your settings and go to mail and add account. Select other and select Add LDAP account and add your settings. Should be good to go.

dj
Reply With Quote
  #4 (permalink)  
Old 09-16-2009, 06:43 AM
Zimbra Consultant & Moderator
 
Posts: 12,388
Default

It's not a good idea to expose your Zimbra LDAP to the outside world as it's not, as yet, secure.
__________________
Regards


Bill
Reply With Quote
  #5 (permalink)  
Old 09-16-2009, 07:09 AM
Outstanding Member
 
Posts: 548
Default

Agreed. If you do that, anyone can browse your ldap and harvest the addresses/names.

Instead, you might use a VPN. Otherwise you should wait for secure ldap and/or Carddav support.
__________________
Elliot Wilen
Berkeley, CA
Reply With Quote
  #6 (permalink)  
Old 09-16-2009, 07:23 AM
Advanced Member
 
Posts: 246
Default

Quote:
Originally Posted by phoenix View Post
It's not a good idea to expose your Zimbra LDAP to the outside world as it's not, as yet, secure.
I agree with you there. It's not a good idea but they were asking

dj
Reply With Quote
  #7 (permalink)  
Old 09-21-2009, 12:41 PM
Special Member
 
Posts: 133
Default

and by not secure you mean that anyone can access it without a password?

Any ideas when this will be secure? Or another way to get a shared address book on an iphone for my company?
Reply With Quote
  #8 (permalink)  
Old 09-21-2009, 01:00 PM
Outstanding Member
 
Posts: 548
Default

Last I checked, you can access the LDAP directory without a password, and it appears to send info over a non-secure channel.

This bugzilla entry suggests you can use TLS but may not really be relevant: Bug 16601 – Secure Access To LDAP

This possibly-related bug is still open: Bug 13832 – run zimbra ldap over ssl

This seems to be the "really important" bug for purposes of this topic: Bug 15378 – Obviate the need for and disallow LDAP anonymous binds

And note that this seems to be fixed as of GnR.

Also see this discussion: Disable Anonymous LDAP Browse
__________________
Elliot Wilen
Berkeley, CA
Reply With Quote
  #9 (permalink)  
Old 09-21-2009, 01:15 PM
Special Member
 
Posts: 133
Default

so I have used the command

Quote:
It's fixed for GnR release - in ZCS 6.0 the new behavior is:

Anonymous searches of the LDAP directory:
-Are disabled on fresh installs.
-Are allowed on upgrades, matching the old behavior of previous releases.

To disable anonymous access after upgrading: On each LDAP server run /opt/zimbra/libexec/zmldapanon -d as the zimbra user.

To enable anonymous access at any point: On each LDAP server run /opt/zimbra/libexec/zmldapanon -e as the zimbra user.
To disable anonymous access, so what are the security holes in allowing ldap access now to the internet?
Reply With Quote
  #10 (permalink)  
Old 09-22-2009, 03:08 AM
Trained Alumni
 
Posts: 76
Default

Quote:
Originally Posted by dljordaneku View Post
If you have port 389 open on your firewall you can add an address book to the iPhone and point it to your Zimbra server and it will pull in your contacts. We did it as a test here for one of our IT people who has one.

Go to your settings and go to mail and add account. Select other and select Add LDAP account and add your settings. Should be good to go.

dj
did this work for anyone?
__________________
YetOpen S.r.l. ~ Your open source partner
Lecco (LC) - ITALY
http://www.yetopen.it
Reply With Quote
Reply


Thread Tools
Display Modes


Similar Threads

Why Join?

Registering let's you ask questions, makes it easier to search, displays any files attached to posts, and notifies you about replies.

Zimbrablog.com