[Kolab-devel] Kolab and FreeIPA article
Jochen Hein
jochen at jochen.org
Wed Oct 3 23:47:38 CEST 2018
Pasi Kärkkäinen <pasik at iki.fi> writes:
> On Mon, Oct 01, 2018 at 05:21:51PM +0200, Jochen Hein wrote:
>> Pasi Kärkkäinen <pasik at iki.fi> writes:
>>
>> > Yep, please share your notes about Kolab + FreeIPA!
>>
>> I do have the following setup:
>> - Kolab has its users in Kolab-dirsrv, FreeIPA in FreeIPA-dirsrv.
>> There is no sync, just the five users I have. Kolab domain is
>> jochen.org, FreeIPA realm is JOCHEN.ORG, DNS is FreeIPA.
>> => Each user has two (possibly different) passwords.
>> - Certificates are from FreeIPA and managed by dogtag.
>> - IMAP/sieve can login with Kerberos tickets.
>> - I did 2FA with privacyidea, but I do research what I could do better.
>>
>> Anything I should elaborate?
> Hmm.. so kolab and freeipa are not really integrated at all in your environment?
> Or did I misunderstand?
Yes, that's right. I think it should be possible to share OTP
configuration and possibly email aliases, groups etc. But I never
really tried - I can manage my five users in both systems without too
much hassle. If it would be bigger, I'd work on integration harder :-)
Jochen
--
This space is intentionally left blank.
More information about the devel
mailing list