> I  would  seriously  consider funding some of the development for an
> IMAIL/LDAP  lookup  event  sink  as  it would help my SMTP server to
> "disconnect" on dictionary attacks.

I  already  use  ORF  to reject at the envelope using LDAP lookups and
really have no need for any other intermediary. It's no-brainer if you
use  IMail's NT integration on an AD DC. All you need to do is add the
Exchange  schema  extensions  to the AD domain, since ORF is expecting
the  extended  schema--you  don't have to install or purchase Exchange
itself.  You  can run the ORF queries against any server in the domain
(which  doesn't  have  to be the same as your primary domain), meaning
that  you  can  scale  out from hitting the mailbox server directly to
hitting dedicated AD DCs that only service such MX lookups.

Building  anything  designed to interact with IMail's own ILDAP daemon
is a very bad move, as the service is barely functional, compliant, or
stable.  AD's  LDAP  services,  on  the  other  hand,  are  mature and
resilient.

The  other options that involve local text files would certainly work,
but  performance  under  load  could  not  exceed that of indexed LDAP
lookups.

--Sandy


------------------------------------
Sanford Whiteman, Chief Technologist
Broadleaf Systems, a division of
Cypress Integrated Systems, Inc.
e-mail: [EMAIL PROTECTED]

SpamAssassin plugs into Declude!
    http://www.mailmage.com/download/software/freeutils/SPAMC32/Release/

---
[This E-mail was scanned for viruses by Declude Virus (http://www.declude.com)]

---
This E-mail came from the Declude.JunkMail mailing list.  To
unsubscribe, just send an E-mail to [EMAIL PROTECTED], and
type "unsubscribe Declude.JunkMail".  The archives can be found
at http://www.mail-archive.com.

Reply via email to