[Kolab-devel] Kolab and FreeIPA article

Jochen Hein jochen at jochen.org
Wed Oct 3 23:47:38 CEST 2018


Pasi Kärkkäinen <pasik at iki.fi> writes:

> On Mon, Oct 01, 2018 at 05:21:51PM +0200, Jochen Hein wrote:
>> Pasi Kärkkäinen <pasik at iki.fi> writes:
>> 
>> > Yep, please share your notes about Kolab + FreeIPA! 
>> 
>> I do have the following setup:
>> - Kolab has its users in Kolab-dirsrv, FreeIPA in FreeIPA-dirsrv.
>>   There is no sync, just the five users I have. Kolab domain is
>>   jochen.org, FreeIPA realm is JOCHEN.ORG, DNS is FreeIPA.
>>   => Each user has two (possibly different) passwords.
>> - Certificates are from FreeIPA and managed by dogtag.
>> - IMAP/sieve can login with Kerberos tickets.
>> - I did 2FA with privacyidea, but I do research what I could do better.
>> 
>> Anything I should elaborate?

> Hmm.. so kolab and freeipa are not really integrated at all in your environment?
> Or did I misunderstand?

Yes, that's right.  I think it should be possible to share OTP
configuration and possibly email aliases, groups etc.  But I never
really tried - I can manage my five users in both systems without too
much hassle.  If it would be bigger, I'd work on integration harder :-)

Jochen

-- 
This space is intentionally left blank.


More information about the devel mailing list