Solved

HELP: Postfix server configuration - Verify users in Active Directory, POP3/IMAP access for Outlook, and configure Webmail

Posted on 2006-11-26
3
378 Views
Last Modified: 2013-11-22
Hello,

I work for a company that has limited resources and few employees.  We have a Windows 2003 domain and want to incorporate a mail server into our network.  I've worked with Postfix in the past, however, only as a mail relay to an Exchange server.  Now I want to configure a Postfix server that will store all mail for the domain and where the users can access their messages via Outlook and/or webmail.

I have configured Postfix with OpenLDAP, and I'm able to verify users in Active Directory from my FreeBSD system, however, none of the verified users have mailboxes in FreeBSD.

My questions are:

(1)  Which POP3/IMAP is the most secure, yet easiest to configure/maintain?
(2)  By installing a POP3/IMAP server, will that autocreate the mailboxes based on validation through LDAP, or do I need to configure that in the server or create a script?
(3)  So far I am using simple authentication to access AD from FreeBSD.  In order to secure the LDAP queries I'm assuming I need to enable SSL/TSL support on my domain, create a certificate for the domain, enable SASL support on my FreeBSD server, then test the authentication with ldapsearch?  If so, does anyone have a HOWTO already created?
(4)  What is the best Webmail server available?
(5)  Once all this is completed, would there be any ramifications to installing SpamAssassin afterwards?

Hopefully someone out there has worked on this kind of configuration.  Any assistance will be greatly appreciated.

Thanks,

Dave
0
Comment
Question by:uxphreak
3 Comments
 
LVL 61

Accepted Solution

by:
gheist earned 500 total points
Comment Utility
0) maildir format for mailboxes
1) i do use dovecot, it has no quota support like courier.
2) maybe on some user-friendly linux distro like Mandriva or Ubuntu. Postfix autocreates mailboxes on arrival, but pop3 servers tend to fail when there is no mailbox.
You have to decide where to put mailboxes, and where user data, and configure rest of zoo to use them.
3) www.openldap.org
4) egroupware, but there are simpler clients to access pop3/imap
5) spamassassin adds to postfix. it is slow as hell.

0

Featured Post

Enabling OSINT in Activity Based Intelligence

Activity based intelligence (ABI) requires access to all available sources of data. Recorded Future allows analysts to observe structured data on the open, deep, and dark web.

Join & Write a Comment

This tech tip describes how to install the Solaris Operating System from a tape backup that was created using the Solaris flash archive utility. I have used this procedure on the Solaris 8 and 9 OS, and it shoudl also work well on the Solaris 10 rel…
Introduction Regular patching is part of a system administrator's tasks. However, many patches require that the system be in single-user mode before they can be installed. A cluster patch in particular can take quite a while to apply if the machine…
This video shows how to set up a shell script to accept a positional parameter when called, pass that to a SQL script, accept the output from the statement back and then manipulate it in the Shell.
In a previous video, we went over how to export a DynamoDB table into Amazon S3.  In this video, we show how to load the export from S3 into a DynamoDB table.

763 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

7 Experts available now in Live!

Get 1:1 Help Now