Hi

Apologies if this isn't directly relevant to LAM but I'm hoping that the
list audience will have come across a similar challenge and may have some
ideas or knowledge to share.

I'm trying to use an LDAP store for both user authentication and
synchronisation to Google Apps. To that end, I want groups in LDAP to serve
two purposes: security groups and mailing lists - preferably at the same
time.

I'm struggling, however, to decide what objectClasses  are best to use
here. For example, using posixGroup allows me to specify a gid, which means
I can then use those groups in UNIX security ACLs. However, for mailing
lists, I ideally need two attributes: the group owner (which I can get if I
add the groupOfUniqueNames class) and an email address for the list.

Unfortunately, although I *can* combine posixGroup and groupOfUniqueNames,
they store the membership list in different attributes. Ultimately, that
isn't a huge issue because I can tell the Google sync tool which attribute
to read for the membership, and Unix will always use the memberUid
attribute.

Has anyone else tried to accomplish anything similar - or remotely similar?
If so, how did you approach it?

>From a LAM perspective (bringing the question back onto topic!), are there
any recommendations there that might influence how I solve this?

Many thanks.

Philip
------------------------------------------------------------------------------
Master Java SE, Java EE, Eclipse, Spring, Hibernate, JavaScript, jQuery
and much more. Keep your Java skills current with LearnJavaNow -
200+ hours of step-by-step video tutorials by Java experts.
SALE $49.99 this month only -- learn more at:
http://p.sf.net/sfu/learnmore_122612 
_______________________________________________
Lam-public mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/lam-public

Reply via email to