Displaying 20 results from an estimated 11000 matches similar to: "ACL + shared-imap + nested AD groups"
2019 Feb 04
2
acl_groups from LDAP issue
Hi!
I have some trouble with userdb, ldap an extrafields for acl_groups.
There is a script in python, which fetches the groups and sets the
environment-variable ACL_GROUPS to this groups.
It works when i log in to imap (thunderbird for example shows my? public
folders which are protected by acl_groups).
But when it try
doveadm mailbox list -u user.name
the mailboxes are not listed and with
2019 Feb 04
0
acl_groups from LDAP issue
Well, you don't have postlogin scripts when running doveadm. Those are executed by *-login and usually execute the actual protocol handler.
Try
env ACL_GROUPS=whatever doveadm mailbox list -u test.user
Aki
> On 04 February 2019 at 14:39 Jakobus Sch?rz <wertstoffe at nurfuerspam.de> wrote:
>
>
> Hi!
>
> I have some trouble with userdb, ldap an extrafields for
2019 Aug 29
0
[SOLVED] Re: LMTP Post login script for acl_groups
> Am 28.08.2019 um 20:02 schrieb Aki Tuomi via dovecot <dovecot at dovecot.org>:
>
>
>> On 28/08/2019 21:01 R.N.S. via dovecot <dovecot at dovecot.org> wrote:
>>
>>
>>> Am 28.08.2019 um 19:46 schrieb Jakobus Sch?rz via dovecot <dovecot at dovecot.org>:
>>>
>>> I think, i had the same problem as you.
>>>
2019 Aug 29
0
[SOLVED] Re: LMTP Post login script for acl_groups
> Am 29.08.2019 um 11:23 schrieb Aki Tuomi via dovecot <dovecot at dovecot.org>:
>
>
> On 29.8.2019 12.18, R.N.S. via dovecot wrote:
>>
>>> Am 28.08.2019 um 20:02 schrieb Aki Tuomi via dovecot <dovecot at dovecot.org>:
>>>
>>>
>>>> On 28/08/2019 21:01 R.N.S. via dovecot <dovecot at dovecot.org> wrote:
>>>>
2019 Aug 30
1
[SOLVED] Re: LMTP Post login script for acl_groups
On 29.8.2019 12.30, R.N.S. via dovecot wrote:
>
>> Am 29.08.2019 um 11:23 schrieb Aki Tuomi via dovecot <dovecot at dovecot.org>:
>>
>>
>> On 29.8.2019 12.18, R.N.S. via dovecot wrote:
>>>> Am 28.08.2019 um 20:02 schrieb Aki Tuomi via dovecot <dovecot at dovecot.org>:
>>>>
>>>>
>>>>> On 28/08/2019 21:01
2019 Aug 29
1
[SOLVED] Re: LMTP Post login script for acl_groups
> Am 29.08.2019 um 11:30 schrieb R.N.S. via dovecot <dovecot at dovecot.org>:
>
>
>
>> Am 29.08.2019 um 11:23 schrieb Aki Tuomi via dovecot <dovecot at dovecot.org>:
>>
>>
>> On 29.8.2019 12.18, R.N.S. via dovecot wrote:
>>>
>>>> Am 28.08.2019 um 20:02 schrieb Aki Tuomi via dovecot <dovecot at dovecot.org>:
2019 Aug 29
3
[SOLVED] Re: LMTP Post login script for acl_groups
On 29.8.2019 12.18, R.N.S. via dovecot wrote:
>
>> Am 28.08.2019 um 20:02 schrieb Aki Tuomi via dovecot <dovecot at dovecot.org>:
>>
>>
>>> On 28/08/2019 21:01 R.N.S. via dovecot <dovecot at dovecot.org> wrote:
>>>
>>>
>>>> Am 28.08.2019 um 19:46 schrieb Jakobus Sch?rz via dovecot <dovecot at dovecot.org>:
2011 Jun 14
1
ACL Groups
From the wiki:
ACL groups support works by returning a comma-separated acl_groups extra
field <http://wiki2.dovecot.org/UserDatabase/ExtraFields> from userdb,
which contains all the groups the user belongs to. User's UNIX groups
have no effect on ACLs (you can "enable" them by using a special
post-login script <http://wiki2.dovecot.org/PostLoginScripting>).
2015 Mar 03
0
Synchronization problems between Win2k8R2 and samba
On 03/03/15 11:11, Jean-Fran?ois Morcillo wrote:
> Hello,
>
> I have a small test network with a Win2k8R2 DC.
>
> I've added a samba4 as second DC in this network.
> The join seems to run smoothly.
>
> But, after the join, this command: ldapsearch -LLL -x -H
> ldapi://%2Fvar%2Flib%2Fsamba%2Fprivate%2Fldap_priv%2Fldapi -b
> "dc=test,dc=dom"
2015 Mar 04
1
Synchronization problems between Win2k8R2 and samba
Le 03/03/2015 12:56, Rowland Penny a ?crit :
> On 03/03/15 11:11, Jean-Fran?ois Morcillo wrote:
>> Hello,
>>
>> I have a small test network with a Win2k8R2 DC.
>>
>> I've added a samba4 as second DC in this network.
>> The join seems to run smoothly.
>>
>> But, after the join, this command: ldapsearch -LLL -x -H
>>
2009 Oct 15
0
Regarding changing ACL with LDAP or SAMBA
Hi
I am trying to change the ACL for a Active Directory group using Perl on
Linux. The problem is that there are no Perl bindings for Samba and I
couldn't find any UNIX compatible module that can me do this.
This is the same as setting "Managed By" and then clicking "(X) Manager
can update membership list" in the AD admin tools.
# ldapmodify -x -h Server -W -D
2015 Mar 02
2
Attributes are base64 encoded
Hello,
I've added a samba4 as a second DC in a network where the first DC is a
Win2k8R2.
The join seems to run smoothly.
But after the join an ldapsearch -LLL -x -H
ldapi://%2Fvar%2Flib%2Fsamba%2Fprivate%2Fldap_priv%2Fldapi on the samba,
return some strage things:
? some attributes like unicodePwd and supplementalCredentials are missing
? lots of attributes are base64 encode (ex: memberOf::
2019 Aug 28
0
LMTP Post login script for acl_groups
Further information below.
> Am 28.08.2019 um 14:52 schrieb R.N.S. via dovecot <dovecot at dovecot.org>:
>
> Hi,
>
> I use a post login script for imap, to fetch acl groups from LDAP. Because Dovecot can only deal with a single value, which must be a comma seperated list of groups, I decided to use a post login script do deal with multi values in LDAP:
>
> This looks
2024 Nov 19
2
High cpu load on LDAP
On 19/11/24 02:29, Heinz H?lzl via samba wrote:
> hi,
>
> I have to activate the thread again ...
>
> we keep having preformance problems on the DC, especially on Monday
> morning when the PCs are switched on and the users log in.
>
> some ldap-searches take a very long time, sometimes even over 15
> seconds
>
> e.g:
>
> ldapsrv_SearchRequest: LDAP
2009 Dec 15
4
Why dovecot does not want to read my acl file?
Hi,
Simple Scenario: Shared namespace and a specific UNIX group should have
access to it. System is Debian lenny (stable).
# cat /etc/dovecot/dovecot.conf
[...]
namespace public {
separator = .
prefix = Shared.
location = maildir:/var/mail/shared
}
mail_executable = /usr/local/sbin/dovecot-imap-fix.sh
mail_drop_priv_before_exec = no #just to make sure
[...]
# dpkg -l | grep dovecot
ii
2019 Aug 28
2
LMTP Post login script for acl_groups
Hi,
I use a post login script for imap, to fetch acl groups from LDAP. Because Dovecot can only deal with a single value, which must be a comma seperated list of groups, I decided to use a post login script do deal with multi values in LDAP:
This looks like this in LDAP:
rnsMSACLGroup: admin
rnsMSACLGroup: automx
rnsMSACLGroup: amavis
rnsMSACLGroup: postfix
rnsMSACLGroup: dovecot
rnsMSACLGroup:
2015 Dec 12
2
Nested Group control doesn't work
Hey guys,
We can perform this LDAP query against Windows Server 2012 no problem, but
against samba it's failing:
(&(sAMAccountName={0})(memberOf:1.2.840.113556.1.4.1941:=CN=graylog_users,OU=Applications,OU=Groups,DC=ad,DC=corp,DC=xxx,DC=com))
Is that "nested group" tree control (memberOf:1.2.840.113556.1.4.1941:)
supported? If not, is there a better way to design this ldap
2017 Oct 31
2
Help with Nesting
How do i resolve this?
symbol <- c('RRR' ,'GGG')
for(i in seq_along(symbol)) {
dat <- Quandl("LLL/symbol[i]")
}
required solutionis a loop where Quandl is a function and it loops as flows,
Quandl("LLL/RRR")
Quandl("LLL/GGG")
2015 Dec 14
1
Nested Group control doesn't work
Thanks, that's extremely helpful. I searched but wasn't able to find that
bug report.... Just to clarify, there are no known workarounds, correct?
*Jonathan S. Fisher*
*VP - Information Technology*
*Spring Venture Group*
On Sat, Dec 12, 2015 at 10:06 PM, Andrew Bartlett <abartlet at samba.org>
wrote:
> On Sat, 2015-12-12 at 10:25 -0600, Jonathan S. Fisher wrote:
> > Hey
2014 Jun 27
1
Issues with users and groups they belong to
Hello everyone,
I'm having a problem with the replication of the Active Directory from a
Windows Server 2003 r2 DC to a Samba 4.1.6 (Ubuntu 14.04) DC.
The problem we have is that the *memberOf* attribute is missing on two
users in the Samba ldap database after adding them to a group on the
Windows DC. I can't easily add these through a Ldap administration tool and
can't add them to