SASLAUTHD using LDAPS with Windows 2022 AD
"denis.bonavia via SASL" <[email protected]> Tue, 12 Mar 2024 11:18:41 -0400
| Newsgroups | gmane.comp.security.cyrus.sasl |
|---|---|
| Message-ID | <[email protected]> |
--17102567211.4fBCeB85.32 Date: Tue, 12 Mar 2024 11:18:41 -0400 MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: quoted-printable I would like to use Cyrus-IMAP which authenticate with Windows 2022 AD over secured ldap (ldaps) protocol. So I first started by configured Cyrus-Imap and cyrus-saslauthd using simple binding where password is not encrypted. This setup worked fin= e. Then I imported CA certificate and updated the local thrusted stores. Executed the following command: ldapwhoami -ZZ -H ldap://mynetarea.com -D "CN=3Dxxxxx,CN=3DUsers,DC=3Dxxxxxxx,DC=3Dxxx" -W and I got the proper reply. I also managed to authenticate SOGo over ldaps to the Windows 2022 AD But I had no luck with Cyrus-Imap or cyrus-saslauthd. =C2=A0 Probably it is a wrong configuration in /etc/saslauthd.conf file Does anyone have a typical configuration of saslauthd.conf to =C2=A0authenticate with Windows 2022 AD over LDAPS please. =C2=A0 Regards ------------------------------------------ Cyrus: SASL Permalink: https://cyrus.topicbox.com/groups/sasl/T1ab99e489823ea80-M8b4a47= a9934ae1922358e4ea Delivery options: https://cyrus.topicbox.com/groups/sasl/subscription --17102567211.4fBCeB85.32 Date: Tue, 12 Mar 2024 11:18:41 -0400 MIME-Version: 1.0 Content-Type: text/html; charset=UTF-8 Content-Transfer-Encoding: quoted-printable <!DOCTYPE html> <html><html><html><body><p class=3D"MsoNormal">I would like to use Cyrus-IM= AP which authenticate with Windows 2022 AD over secured ldap (ldaps) protocol.<br /><p class=3D"MsoNormal">So = I first started by configured Cyrus-Imap and cyrus-saslauthd using simple binding where password is not encrypted. This setup worked fin= e.<br /><p class=3D"MsoNormal">Then I imported CA certificate and updated t= he local thrusted stores.<br /><p class=3D"MsoNormal">Executed the following command= :<br /><p class=3D"MsoNormal" style=3D"text-indent:36pt;">ldapwhoami -ZZ -H ldap://mynetarea.com -D "CN=3Dxxxxx,CN=3DUsers,DC=3Dxxxxxxx,DC=3Dxxx&q= uot; -W<br /><p class=3D"MsoNormal">and I got the proper reply.<br /><p cla= ss=3D"MsoNormal">I also managed to authenticate SOGo over ldaps to the Windows 2022 AD<br /><p class=3D"MsoNormal">But I had no luck with Cyrus-Im= ap or cyrus-saslauthd. <span style=3D""> </span><br /><p class=3D"MsoN= ormal">Probably it is a wrong configuration in /etc/saslauthd.conf file<br /><p class=3D"MsoNormal">Does anyone have a typical configuration o= f saslauthd.conf to <span style=3D""> </span>authenticate with Windows 2022 AD over LDAPS please.<br /><p class=3D"MsoNormal"> <br /><p class=3D"MsoN= ormal">Regards<br /><div><br /></div><div id=3D"topicbox-footer" style=3D"m= argin:10px 0 0;border-top:1px solid #ddd;border-color:rgba(0,0,0,.15);paddi= ng:7px 0;"> <strong><a href=3D"https://cyrus.topicbox.com/latest" style=3D"color:inheri= t;text-decoration:none">Cyrus</a></strong> / SASL / see <a href=3D"https://cyrus.topicbox.com/groups/sasl">discussions</a> + <a href=3D"https://cyrus.topicbox.com/groups/sasl/members">participants</a> + <a href=3D"https://cyrus.topicbox.com/groups/sasl/subscription">delivery&nb= sp;options</a> <a href=3D"https://cyrus.topicbox.com/groups/sasl/T1ab99e489823ea80-M8b4a47= a9934ae1922358e4ea" style=3D"float:right">Permalink</a> </div> </body></html></html></html>= --17102567211.4fBCeB85.32--