<html>
  <head>
    <meta content="text/html; charset=ISO-8859-1"
      http-equiv="Content-Type">
  </head>
  <body text="#000000" bgcolor="#FFFFFF">
    <div class="moz-cite-prefix">On 04/27/2015 04:51 PM, Rich Megginson
      wrote:<br>
    </div>
    <blockquote cite="mid:553EA140.3000209@redhat.com" type="cite">
      <meta content="text/html; charset=ISO-8859-1"
        http-equiv="Content-Type">
      <div class="moz-cite-prefix">On 04/27/2015 07:49 AM, Ivars
        Strazdiņš wrote:<br>
      </div>
      <blockquote
        cite="mid:41FE99FD-11D7-49B7-9C5A-94363CF1FFFF@sets.lv"
        type="cite">
        <meta http-equiv="Content-Type" content="text/html;
          charset=ISO-8859-1">
        <meta http-equiv="Content-Type" content="text/html;
          charset=ISO-8859-1">
        Hi there,
        <div class="">I am preparing to move our site e-mail
          authentication backend to FreeIPA. That is, integrate Postfix
          with FreeIPA.</div>
        <div class="">Let's suppose user has two or more e-mail
          addresses,</div>
        <div class=""><a moz-do-not-send="true"
            href="mailto:joe@site.com" class="">joe@site.com</a></div>
        <div class=""><a moz-do-not-send="true"
            href="mailto:joe.user@site.com" class="">joe.user@site.com</a></div>
        <div class=""><br class="">
        </div>
        <div class="">Currently we use smtp_generic_maps on Postfix side
          to ensure that mail always leaves site as <a
            moz-do-not-send="true" href="mailto:joe.user@site.com"
            class="">joe.user@site.com</a></div>
        <div class=""><br class="">
        </div>
        <div class="">Is there a way to ensure in FreeIPA that user's
          default address is <a moz-do-not-send="true"
            href="mailto:joe.user@site.com" class="">joe.user@site.com</a> so

          that Postfix could do a smtp_generic_maps lookup in LDAP
          server and get the default address?</div>
        <div class=""><br class="">
        </div>
        <div class="">And another question - is it possible to maintain
          e-mail aliases in FreeIPA? Say, to expand address <a
            moz-do-not-send="true" href="mailto:list@site.com" class="">list@site.com</a> to

          users <a moz-do-not-send="true" href="mailto:joe@site.com"
            class="">joe@site.com</a>, <a moz-do-not-send="true"
            href="mailto:john@site.com" class="">john@site.com</a> and <a
            moz-do-not-send="true" href="mailto:mary@site.com" class="">mary@site.com</a>?</div>
        <div class="">Any suggestions are welcome, I am just beginning
          to work with LDAP.</div>
      </blockquote>
      <br>
      I myself don't know.  However, there are some email howto's on the
      389 site: <a moz-do-not-send="true" class="moz-txt-link-freetext"
        href="http://www.port389.org/docs/389ds/tech-docs.html#mail">http://www.port389.org/docs/389ds/tech-docs.html#mail</a><br>
      <br>
      Hopefully someone with actual experience integrating Postfix and
      LDAP will chime in on this thread.  If not, try the <a
        moz-do-not-send="true" class="moz-txt-link-abbreviated"
        href="mailto:389-users@lists.fedoraproject.org">389-users@lists.fedoraproject.org</a>
      list - there are some email server operators there.<br>
      <br>
    </blockquote>
    <br>
    Here is one of the pointers:
<a class="moz-txt-link-freetext" href="https://www.dalemacartney.com/2013/03/14/deploying-postfix-with-ldap-freeipa-virtual-aliases-and-kerberos-authentication/">https://www.dalemacartney.com/2013/03/14/deploying-postfix-with-ldap-freeipa-virtual-aliases-and-kerberos-authentication/</a><br>
    <br>
    <br>
    <blockquote cite="mid:553EA140.3000209@redhat.com" type="cite">
      <blockquote
        cite="mid:41FE99FD-11D7-49B7-9C5A-94363CF1FFFF@sets.lv"
        type="cite">
        <div class=""><br class="">
        </div>
        <div style="orphans: auto; widows: auto;" class=""><span
            style="orphans: 2; text-align: -webkit-auto; widows: 2;"
            class="">Thanks for you time and kind regards,</span></div>
        <div style="orphans: auto; widows: auto;" class=""><span
            style="orphans: 2; text-align: -webkit-auto; widows: 2;"
            class="">Ivars</span></div>
        <div class=""> <br class="">
        </div>
        <br>
        <fieldset class="mimeAttachmentHeader"></fieldset>
        <br>
      </blockquote>
      <br>
      <br>
      <fieldset class="mimeAttachmentHeader"></fieldset>
      <br>
    </blockquote>
    <br>
    <br>
    <pre class="moz-signature" cols="72">-- 
Thank you,
Dmitri Pal

Sr. Engineering Manager IdM portfolio
Red Hat, Inc.</pre>
  </body>
</html>