SASLAUTHD using LDAPS with Windows 2022 AD

"denis.bonavia via SASL" <[email protected]> Tue, 12 Mar 2024 11:18:41 -0400
Newsgroups gmane.comp.security.cyrus.sasl
Message-ID <[email protected]>
--17102567211.4fBCeB85.32
Date: Tue, 12 Mar 2024 11:18:41 -0400
MIME-Version: 1.0
Content-Type: text/plain; charset=UTF-8
Content-Transfer-Encoding: quoted-printable

I would like to use Cyrus-IMAP which authenticate with Windows
2022 AD over secured ldap (ldaps) protocol.


So I first started by configured Cyrus-Imap and cyrus-saslauthd
using simple binding where password is not encrypted. This setup worked fin=
e.


Then I imported CA certificate and updated the local
thrusted stores.


Executed the following command:


ldapwhoami -ZZ -H
ldap://mynetarea.com -D "CN=3Dxxxxx,CN=3DUsers,DC=3Dxxxxxxx,DC=3Dxxx" -W


and I got the proper reply.


I also managed to authenticate SOGo over ldaps to the
Windows 2022 AD


But I had no luck with Cyrus-Imap or cyrus-saslauthd. =C2=A0


Probably it is a wrong configuration in /etc/saslauthd.conf
file


Does anyone have a typical configuration of saslauthd.conf
to =C2=A0authenticate with Windows 2022 AD
over LDAPS please.


=C2=A0


Regards



------------------------------------------
Cyrus: SASL
Permalink: https://cyrus.topicbox.com/groups/sasl/T1ab99e489823ea80-M8b4a47=
a9934ae1922358e4ea
Delivery options: https://cyrus.topicbox.com/groups/sasl/subscription

--17102567211.4fBCeB85.32
Date: Tue, 12 Mar 2024 11:18:41 -0400
MIME-Version: 1.0
Content-Type: text/html; charset=UTF-8
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE html>
<html><html><html><body><p class=3D"MsoNormal">I would like to use Cyrus-IM=
AP which authenticate with Windows
2022 AD over secured ldap (ldaps) protocol.<br /><p class=3D"MsoNormal">So =
I first started by configured Cyrus-Imap and cyrus-saslauthd
using simple binding where password is not encrypted. This setup worked fin=
e.<br /><p class=3D"MsoNormal">Then I imported CA certificate and updated t=
he local
thrusted stores.<br /><p class=3D"MsoNormal">Executed the following command=
:<br /><p class=3D"MsoNormal" style=3D"text-indent:36pt;">ldapwhoami -ZZ -H
ldap://mynetarea.com -D &quot;CN=3Dxxxxx,CN=3DUsers,DC=3Dxxxxxxx,DC=3Dxxx&q=
uot; -W<br /><p class=3D"MsoNormal">and I got the proper reply.<br /><p cla=
ss=3D"MsoNormal">I also managed to authenticate SOGo over ldaps to the
Windows 2022 AD<br /><p class=3D"MsoNormal">But I had no luck with Cyrus-Im=
ap or cyrus-saslauthd. <span style=3D"">&nbsp;</span><br /><p class=3D"MsoN=
ormal">Probably it is a wrong configuration in /etc/saslauthd.conf
file<br /><p class=3D"MsoNormal">Does anyone have a typical configuration o=
f saslauthd.conf
to <span style=3D"">&nbsp;</span>authenticate with Windows 2022 AD
over LDAPS please.<br /><p class=3D"MsoNormal">&nbsp;<br /><p class=3D"MsoN=
ormal">Regards<br /><div><br /></div><div id=3D"topicbox-footer" style=3D"m=
argin:10px 0 0;border-top:1px solid #ddd;border-color:rgba(0,0,0,.15);paddi=
ng:7px 0;">

<strong><a href=3D"https://cyrus.topicbox.com/latest" style=3D"color:inheri=
t;text-decoration:none">Cyrus</a></strong>
  / SASL / see
<a href=3D"https://cyrus.topicbox.com/groups/sasl">discussions</a>
  +
<a href=3D"https://cyrus.topicbox.com/groups/sasl/members">participants</a>
  +
<a href=3D"https://cyrus.topicbox.com/groups/sasl/subscription">delivery&nb=
sp;options</a>
<a href=3D"https://cyrus.topicbox.com/groups/sasl/T1ab99e489823ea80-M8b4a47=
a9934ae1922358e4ea" style=3D"float:right">Permalink</a>
</div>
</body></html></html></html>=

--17102567211.4fBCeB85.32--