<html>
<head>
<meta content="text/html; charset=ISO-8859-1"
http-equiv="Content-Type">
</head>
<body text="#000000" bgcolor="#FFFFFF">
<div class="moz-cite-prefix">On 04/27/2015 04:51 PM, Rich Megginson
wrote:<br>
</div>
<blockquote cite="mid:553EA140.3000209@redhat.com" type="cite">
<meta content="text/html; charset=ISO-8859-1"
http-equiv="Content-Type">
<div class="moz-cite-prefix">On 04/27/2015 07:49 AM, Ivars
Strazdiņš wrote:<br>
</div>
<blockquote
cite="mid:41FE99FD-11D7-49B7-9C5A-94363CF1FFFF@sets.lv"
type="cite">
<meta http-equiv="Content-Type" content="text/html;
charset=ISO-8859-1">
<meta http-equiv="Content-Type" content="text/html;
charset=ISO-8859-1">
Hi there,
<div class="">I am preparing to move our site e-mail
authentication backend to FreeIPA. That is, integrate Postfix
with FreeIPA.</div>
<div class="">Let's suppose user has two or more e-mail
addresses,</div>
<div class=""><a moz-do-not-send="true"
href="mailto:joe@site.com" class="">joe@site.com</a></div>
<div class=""><a moz-do-not-send="true"
href="mailto:joe.user@site.com" class="">joe.user@site.com</a></div>
<div class=""><br class="">
</div>
<div class="">Currently we use smtp_generic_maps on Postfix side
to ensure that mail always leaves site as <a
moz-do-not-send="true" href="mailto:joe.user@site.com"
class="">joe.user@site.com</a></div>
<div class=""><br class="">
</div>
<div class="">Is there a way to ensure in FreeIPA that user's
default address is <a moz-do-not-send="true"
href="mailto:joe.user@site.com" class="">joe.user@site.com</a> so
that Postfix could do a smtp_generic_maps lookup in LDAP
server and get the default address?</div>
<div class=""><br class="">
</div>
<div class="">And another question - is it possible to maintain
e-mail aliases in FreeIPA? Say, to expand address <a
moz-do-not-send="true" href="mailto:list@site.com" class="">list@site.com</a> to
users <a moz-do-not-send="true" href="mailto:joe@site.com"
class="">joe@site.com</a>, <a moz-do-not-send="true"
href="mailto:john@site.com" class="">john@site.com</a> and <a
moz-do-not-send="true" href="mailto:mary@site.com" class="">mary@site.com</a>?</div>
<div class="">Any suggestions are welcome, I am just beginning
to work with LDAP.</div>
</blockquote>
<br>
I myself don't know. However, there are some email howto's on the
389 site: <a moz-do-not-send="true" class="moz-txt-link-freetext"
href="http://www.port389.org/docs/389ds/tech-docs.html#mail">http://www.port389.org/docs/389ds/tech-docs.html#mail</a><br>
<br>
Hopefully someone with actual experience integrating Postfix and
LDAP will chime in on this thread. If not, try the <a
moz-do-not-send="true" class="moz-txt-link-abbreviated"
href="mailto:389-users@lists.fedoraproject.org">389-users@lists.fedoraproject.org</a>
list - there are some email server operators there.<br>
<br>
</blockquote>
<br>
Here is one of the pointers:
<a class="moz-txt-link-freetext" href="https://www.dalemacartney.com/2013/03/14/deploying-postfix-with-ldap-freeipa-virtual-aliases-and-kerberos-authentication/">https://www.dalemacartney.com/2013/03/14/deploying-postfix-with-ldap-freeipa-virtual-aliases-and-kerberos-authentication/</a><br>
<br>
<br>
<blockquote cite="mid:553EA140.3000209@redhat.com" type="cite">
<blockquote
cite="mid:41FE99FD-11D7-49B7-9C5A-94363CF1FFFF@sets.lv"
type="cite">
<div class=""><br class="">
</div>
<div style="orphans: auto; widows: auto;" class=""><span
style="orphans: 2; text-align: -webkit-auto; widows: 2;"
class="">Thanks for you time and kind regards,</span></div>
<div style="orphans: auto; widows: auto;" class=""><span
style="orphans: 2; text-align: -webkit-auto; widows: 2;"
class="">Ivars</span></div>
<div class=""> <br class="">
</div>
<br>
<fieldset class="mimeAttachmentHeader"></fieldset>
<br>
</blockquote>
<br>
<br>
<fieldset class="mimeAttachmentHeader"></fieldset>
<br>
</blockquote>
<br>
<br>
<pre class="moz-signature" cols="72">--
Thank you,
Dmitri Pal
Sr. Engineering Manager IdM portfolio
Red Hat, Inc.</pre>
</body>
</html>