Hi,

I have a patch for qmail-ldap to get it working with Microsoft ADS, this will 
be great for me (other than the stability of ADS) as it will mean I am one step closer 
to a single point of authentication.

The patch I have found maps LDAP_MAILSTORE to "userprinciplename", this is a 
uniquie name thats used for logging into a domain, and LDAP_UID to "mail" in 
the ADS. This isn't really going to work for me because it will mean changing 
the usernames for around 4000 users, and although each user can do their own 
- its been ruled out as an option by management for support reasons (imagine 
a help desk when that change goes ahead - shudder)

Right now under OpenLDAP, our uid is the same as our mailMessageStore anyway, 
so I was thinking that I could just map both LDAP_MAILSTORE and LDAP_UID to 
"userprinciplename" this would solve all my problems if it worked.

What, if any, are the side effects of doing this? (I don't mean use ADS, I mean tying 
LDAP_MAILSTORE and LDAP_UID together like this)

Would people recommend that I don't do this?

-- 
Thanks

Andrew McCall
Internet System Administrator
I.C.T. Division
Oldham MBC
Civic Centre
West Street
Oldham
OL1 1UU

Tel : 0161 911 3990
Fax : 0161 911 3998
Email : [EMAIL PROTECTED]


**********************************************************************
This email and any files transmitted with it are confidential and
intended solely for the use of the individual or entity to whom they
are addressed. If you have received this email in error please notify
the system manager.

This footnote also confirms that this email message has been swept by
MIMEsweeper for the presence of computer viruses.

www.oldham.gov.uk
**********************************************************************

Reply via email to