OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: openldap+sasl or not?

From: Magnus Bäck (magnusdsek.lth.se)
Date: Sat Apr 02 2005 - 05:29:33 CST


On Saturday, April 02, 2005 at 13:21 CEST,
     sam wun <sam.wunauthtec.com> wrote:

> I m a bit confused using openldap with sasl2 for postfix.
> Should I build openldap+sasl2 for postfix?

What do you mean? If you want SASL2 support in Postfix, build Postfix
with SASL support enabled. If you want LDAP support in SASL2, build
SASL2 with LDAP support enabled.

> As far as I known, sasl2 uses saslauthd for authentication. All user
> credential will be stored in sasldb2 file.

sasldb2 is only one of the available authentication backends.
Via auxprop you can authentication against e.g. LDAP, MySQL,
and PostgreSQL databases.

> With openldap, I supposed all user credential stored in ldap db. Am I
> correct?

Yes, if you configure SASL to lookup credentials in LDAP you must store
the credentials in LDAP.

> So if I want to use openldap for postfix+cyrus, what package should I
> compile with?

That depends on how and what you want to access via LDAP. You have not
explained the problem you are trying to solve.

--
Magnus Bäck
magnusdsek.lth.se