Hi all We are trying to setup an internal corporate IM for work. So because all services are aligned to AD, new IM must also (jabber 2.2.6)
I've successfully done LDAP auth against AD. It works but we need a little custom. Lucky me, my sysadmin uses groups for people. So there is a group for each department exist in organization. I'd like to know how should I configure sm.xml to tell jabber client to use groups so when a new user logs in, he/she can have already his/her list completed, and an old user can update his/her list and see new user as a member of a department. Here is some AD data: Users are below cn=users,dc=domain,dc=com Groups are below CN=Recipients,CN=Users,DC=domain,dc=com Here is an user: dn: CN=Daniel Lucio Quiroz,CN=Users,DC=domain,DC=com homeMDB: CN=Mailbox Store (SEKMETH),CN=First Storage Group,CN=InformationStore ,CN=SEKMETH,CN=Servers,CN=EMAIL-XXX,CN=Administrative Groups,CN=XXX,CN=Mi crosoft Exchange,CN=Services,CN=Configuration,DC=domain,DC=com, memberOf:: Q049U0FUX25hdmVnYWNpw7NuLENOPVJlY2lwaWVudHMsQ049VXNlcnMsREM9aW5zeXM tY29ycCxEQz1jb20sREM9bXg= memberOf: CN=grupo-insys,CN=Recipients,CN=Users,DC=domain,DC=com memberOf: CN=NOMSN,CN=Users,DC=domain,DC=com memberOf: CN=Domain User,CN=Users,DC=domain,DC=com memberOf: CN=DomainImplantacion,CN=Users,DC=domain,DC=com,DC=mx accountExpires: 0 badPasswordTime: 128793802067031250 badPwdCount: 0 codePage: 0 cn: Daniel Lucio Quiroz company: XXX, S.A. DE C.V. countryCode: 0 c: mx department:: SW1wbGVtZW50YWNpw7Nu description: XXX, S.A. DE C.V. displayName: Daniel Lucio Quiroz dSCorePropagationData: 20071031175907.0Z dSCorePropagationData: 16010101000001.0Z mail: [email protected] facsimileTelephoneNumber: +52(55)XXXX YYYY givenName: Daniel initials: LD instanceType: 4 lastLogoff: 0 lastLogon: 128775727784687500 legacyExchangeDN: /o=XXX/ou=EMAIL-XXX/cn=Recipients/cn=llucio l: Distrito Federal lockoutTime: 0 logonCount: 4 logonHours:: //////////////////////////// distinguishedName: CN=Daniel Lucio Quiroz,CN=Users,DC=domain,DC=com objectCategory: CN=Person,CN=Schema,CN=Configuration,DC=domain,DC=com objectClass: top objectClass: person objectClass: organizationalPerson objectClass: user objectGUID:: CB9ArQnD+0yZKPm17eTtVg== objectSid:: AQUAAAAAAAUVAAAAtLfNIs18QWZDFwoyHwYAAA== otherTelephone: 53225200 physicalDeliveryOfficeName: Calle postalCode: 1030 primaryGroupID: 513 proxyAddresses: X400:c=US;a= ;p=XXX;o=EMAIL-XXX;s=Lucio;g=Daniel; proxyAddresses: SMTP:[email protected] proxyAddresses: MS:INSYS/EMAILXXX/LLUCIO proxyAddresses: CCMAIL:Lucio, Daniel at EMAIL-XXX pwdLastSet: 128775704410937500 name: Daniel Lucio Quiroz sAMAccountName: dlucio sAMAccountType: 805306368 showInAddressBook: CN=All Users,CN=All Address Lists,CN=Address Lists Containe r,CN=XXX,CN=Microsoft Exchange,CN=Services,CN=Configuration,DC=domain,D C=com showInAddressBook: CN=Default Global Address List,CN=All Global Address Lists, CN=Address Lists Container,CN=XXX,CN=Microsoft Exchange,CN=Services,CN=Conf iguration,DC=domain,DC=com st: Distrito Federal sn: Lucio textEncodedORAddress: c=US;a= ;p=XXX;o=EMAIL-XXX;s=Lucio;g=Daniel; userAccountControl: 512 userPrincipalName: [email protected] uSNChanged: 5088273 uSNCreated: 1780208 whenChanged: 20090218033857.0Z whenCreated: 20070507215202.0Z msExchADCGlobalNames: NT5:081F40AD09C3FB4C9928F9B5EDE4ED560000000026B16194EF1B C801 msExchADCGlobalNames: forest:o=INSYS0000000060D8A5530021C801 msExchADCGlobalNames: FOREST:42DEC2F816EEDF4D85D826708B683AA00000000026B16194E F1BC801 msExchADCGlobalNames: EX5:cn=llucio,cn=Recipients,ou=EMAIL-XXX,o=XXX:organ izationalperson$person$top0000000060D8A5530021C801 homeMTA: CN=Microsoft MTA,CN=SEKMETH,CN=Servers,CN=EMAIL-XXX,CN=Administrati ve Groups,CN=XXX,CN=Microsoft Exchange,CN=Services,CN=Configuration,DC=doma in,DC=com msExchHomeServerName: /o=XXX/ou=EMAIL-XXX/cn=Configuration/cn=Servers/cn=S EKMETH mailNickname: dlucio mAPIRecipient: TRUE mDBUseDefaults: TRUE replicatedObjectVersion: 0 replicationSignature:: BOeWmC8lu022Q0McEmiITA== msExchMailboxGuid:: 7dbeV1PhTUiTG9lqTIZC6Q== msExchMailboxSecurityDescriptor:: AQAEgEAAAABcAAAAAAAAABQAAAACACwAAQAAAAACJAAB AAIAAQUAAAAAAAUVAAAAtLfNIs18QWZDFwoyHwYAAAEFAAAAAAAFFQAAALS3zSLNfEFmQxcKMvQBA AABBQAAAAAABRUAAAC0t80izXxBZkMXCjL0AQAA dLMemDefault: 1 msExchALObjectVersion: 366 msExchPoliciesIncluded: {737B0860-7FCA-4F06-B150-6DD2513A3F61},{26491CFC-9E50- 4857-861B-0CB8DF22B5D7} msExchUserAccountControl: 0 Here is a group: dn: CN=grupo-insys,CN=Recipients,CN=Users,DC=domain,DC=com member:: Q049QmxhbmNhIEZhYmlvbGEgUMOpcmV6IEFsdmFyZXosQ049VXNlcnMsREM9aW5zeXMtY 29ycCxEQz1jb20sREM9bXg= member:: Q049TWlndWVsIFbDoXpxdWV6IEFyYW5hLENOPVVzZXJzLERDPWluc3lzLWNvcnAsREM9Y 29tLERDPW14 member:: Q049RXJpY2sgSGVybsOhbmRleiBQb3NhZGFzLENOPVVzZXJzLERDPWluc3lzLWNvcnAsR EM9Y29tLERDPW14 member: CN=Fernando Becerra Pliego,CN=Users,DC=domain,DC=com member: CN=Daniel Lucio Quiroz,CN=Users,DC=domain,DC=com cn: grupo-xxx displayName: grupo-xxx mail: [email protected] groupType: 8 instanceType: 4 legacyExchangeDN: /o=XXX/ou=EMAIL-XXX/cn=Recipients/cn=grupo-xxx distinguishedName: CN=grupo-xxx,CN=Recipients,CN=Users,DC=domain,DC=com objectCategory: CN=Group,CN=Schema,CN=Configuration,DC=domain,DC=com objectClass: top objectClass: group objectGUID:: awOM6QU0p0C3mQDN17G2ng== objectSid:: AQUAAAAAAAUVAAAAtLfNIs18QWZDFwoySAgAAA== proxyAddresses: X400:c=US;a= ;p=XXX;o=EMAIL-XXX;s=grupo-xxx; proxyAddresses: SMTP:[email protected] proxyAddresses: MS:INSYS/EMAILXXX/GRUPOXXX proxyAddresses: CCMAIL:grupo-xxx at EMAIL-XXX name: grupo-xxx sAMAccountName: grupo-xxx sAMAccountType: 268435457 showInAddressBook: CN=All Groups,CN=All Address Lists,CN=Address Lists Contain er,CN=XXX,CN=Microsoft Exchange,CN=Services,CN=Configuration,DC=domain, DC=com showInAddressBook: CN=Default Global Address List,CN=All Global Address Lists, CN=Address Lists Container,CN=XXX,CN=Microsoft Exchange,CN=Services,CN=Conf iguration,DC=domain,DC=com textEncodedORAddress: c=US;a= ;p=XXX;o=EMAIL-XXX;s=grupo-xxx; uSNChanged: 4874281 uSNCreated: 2049989 whenChanged: 20090116190533.0Z whenCreated: 20071031185514.0Z msExchADCGlobalNames: NT5:6B038CE90534A740B79900CDD7B1B69E000000008296F2A0F51B C801 msExchADCGlobalNames: forest:o=INSYS00000000A0BC4E9B3052C801 msExchADCGlobalNames: FOREST:42DEC2F816EEDF4D85D826708B683AA0000000008296F2A0F 51BC801 msExchADCGlobalNames: EX5:cn=grupo-xxx,cn=Recipients,ou=EMAIL-XXX,o=XXX: groupofnames$person$top00000000A0BC4E9B3052C801 mailNickname: grupo-xxx replicatedObjectVersion: 33 replicationSignature:: BOeWmC8lu022Q0McEmiITA== reportToOriginator: TRUE reportToOwner: FALSE unmergedAtts:: bQBlAG0AYgBlAHIAAABFAFgANQA6AGMAbgA9AGIAcgBlAGIAbwBsAGwAZQBkAG8 ALABjAG4APQBSAGUAYwBpAHAAaQBlAG4AdABzACwAbwB1AD0ARQBNAEEASQBMAC0ASQBOAFMAWQBT ACwAbwA9AEkATgBTAFkAUwA6AG8AcgBnAGEAbgBpAHoAYQB0AGkAbwBuAGEAbABwAGUAcgBzAG8Ab gAkAHAAZQByAHMAbwBuACQAdABvAHAAAAAAAAAA dLMemDefault: 1 msExchALObjectVersion: 29 msExchPoliciesIncluded: {737B0860-7FCA-4F06-B150-6DD2513A3F61},{26491CFC-9E50- 4857-861B-0CB8DF22B5D7} TIA -- To unsubscribe send a mail to [email protected]
