Open-Xchange Hosted Edition Directory Integration



Similar documents
Open-Xchange OXtender for Business Mobility

Open-Xchange Whitepaper Open-Xchange Server 6 Architecture Overview

Active Directory LDAP

OVERVIEW. DIGIPASS Authentication for Office 365

Open-Xchange Server High Availability

Authentication in Apache Lenya

WHITEPAPER. SECUREAUTH 2-FACTOR AS A SERVICE 2FaaS

Funambol Exchange Connector v6.5 Installation Guide

Open-Xchange Server Backup Whitepaper

INTEGRATION GUIDE. DIGIPASS Authentication for Google Apps using IDENTIKEY Federation Server

LDAP / SSO Authentication

Session Code*: 0310 Demystifying Authentication and SSO Options in Business Intelligence. Greg Wcislo

September 9 11, 2013 Anaheim, California 507 Demystifying Authentication and SSO Options in Business Intelligence

BlackBerry Enterprise Service 10. Version: Configuration Guide

How To Install Storegrid Server On Linux On A Microsoft Ubuntu 7.5 (Amd64) Or Ubuntu (Amd86) (Amd77) (Orchestra) (For Ubuntu) (Permanent) (Powerpoint

Copyright 2014 Jaspersoft Corporation. All rights reserved. Printed in the U.S.A. Jaspersoft, the Jaspersoft

Customize Mobile Apps with MicroStrategy SDK: Custom Security, Plugins, and Extensions

HP Device Manager 4.7

bla bla OX App Suite Using Clients

Alert Notification of Critical Results (ANCR) Public Domain Deployment Instructions

LDAP and Active Directory Guide

Pronestor Room & Catering

Authentication Methods

CYAN SECURE WEB HOWTO. NTLM Authentication

Cloud Services ADM. Agent Deployment Guide

POA 2.8 Hotfix 02 Release Notes

Using LDAP Authentication in a PowerCenter Domain

Red Hat Enterprise ipa

Configuration Guide BES12. Version 12.1

LDAP User Guide PowerSchool Premier 5.1 Student Information System

INTEGRATION GUIDE. DIGIPASS Authentication for Salesforce using IDENTIKEY Federation Server

HOTPin Integration Guide: Microsoft Office 365 with Active Directory Federated Services

OnCommand Performance Manager 1.1

PRiSM Security. Configuration and considerations


PZVM1 Administration Guide. V1.1 February 2014 Alain Ganuchaud. Page 1/27

1 Thunderbird v3 and IMAP/SMTP Configuration

docs.hortonworks.com

Migration Guide Software, Database and Version Migration

BarTender Print Portal. Web-based Software for Printing BarTender Documents WHITE PAPER

Course 20533: Implementing Microsoft Azure Infrastructure Solutions

Configuration Guide. BlackBerry Enterprise Service 12. Version 12.0

Federated Directory Services

SQL Server Setup for Assistant/Pro applications Compliance Information Systems

How To Install Ctera Agent On A Pc Or Macbook With Acedo (Windows) On A Macbook Or Macintosh (Windows Xp) On An Ubuntu (Windows 7) On Pc Or Ipad

LDAPCON Sébastien Bahloul

Video Administration Backup and Restore Procedures

Integrating EJBCA and OpenSSO

How To Synchronize the easystore to the AD

Section 4 Application Description - LDAP

From centralized to single sign on

Q&A Session for Understanding Atrium SSO Date: Thursday, February 14, 2013, 8:00am Pacific

Specops Command. Installation Guide

Active Directory Management. Agent Deployment Guide

VERALAB LDAP Configuration Guide

FaxCore 2007 Getting Started Guide (v1.0)

Brivo Directory Agent. User Guide

Document OwnCloud Collaboration Server (DOCS) User Manual. How to Access Document Storage

Remote Authentication and Single Sign-on Support in Tk20

INSTALLATION GUIDE Version 1.2

How To Use Directcontrol With Netapp Filers And Directcontrol Together

TIBCO BusinessConnect Trading Partner Administration. Software Release 6.0 November 2011

AskCody Connect Connect your Outlook or AD to AskCody s solutions seamlessly. Everything included!

Ciphermail Gateway Web LDAP Authentication Guide

TIBCO Spotfire Platform IT Brief

Table of Contents. Open-Xchange Authentication & Session Handling. 1.Introduction...3

Web Applications Access Control Single Sign On

DEPLOYMENT ROADMAP March 2015

Domain Management with EMC Unisphere for VNX

Secure Messaging Server Console... 2

Implementing Microsoft Azure Infrastructure Solutions

Configuring Nex-Gen Web Load Balancer

Implementing Microsoft Azure Infrastructure Solutions 20533B; 5 Days, Instructor-led

Copyright

Course 20533B: Implementing Microsoft Azure Infrastructure Solutions

Identity Management in Liferay Overview and Best Practices. Liferay Portal 6.0 EE

identity management in Linux and UNIX environments

ORACLE MOBILE APPLICATION FRAMEWORK DATA SHEET

Siteminder Integration Guide

Summary. How-To: Active Directory Integration. April, 2006

Active Directory and DirectControl

VMware Identity Manager Administration

Univention Corporate Server. Operation of a Samba domain based on Windows NT domain services

Centralized Oracle Database Authentication and Authorization in a Directory

To enable an application to use external usernames and passwords, you need to first configure CA EEM to use external directories.

Use Enterprise SSO as the Credential Server for Protected Sites

Open-Xchange Server High availability Daniel Halbe, Holger Achtziger

Single Sign On. SSO & ID Management for Web and Mobile Applications

Installation Guide. . All right reserved. For more information about Specops Inventory and other Specops products, visit

SharePoint AD Information Sync Installation Instruction

ITG Software Engineering

Mobile Devices: Server and Management Lesson 06 Device Management

Pre Sales Communications

BlackBerry Enterprise Server for Microsoft Exchange Version: 5.0 Service Pack: 2. Feature and Technical Overview

Implementing Microsoft Azure Infrastructure Solutions

SITRANS RD500 Configuring the RD500 with PSTN or GSM modems and Windows-based servers and clients for communication Objective:

XMPP Instant Messaging and Active Directory

Using LDAP for User Authentication

FileDrawer An Enterprise File Sharing and Synchronization (EFSS) solution.

Transcription:

OPEN-XCHANGE Whitepaper Open-Xchange Hosted Edition Directory Integration Concept to integrate Open-Xchange Hosted Edition into Company Directory Services v1.00 Author: Editors: Layout: Manuel Kraft Manuel Kraft Robert Colombara

1. Introduction Open-Xchange Server Hosted Edition is the most advanced Linux based Groupware solution for hosted environments. Open-Xchange Server Hosted Edition is superior in the following areas: - Open-Xchange Server offers the most comprehensive Groupware functionality based on modern user interface technologies and includes E-Mail, calendaring, contact management, intelligent document sharing, smart linking and much more. - The architecture is designed specifically for deployment in the hosted market. Due to the use of standard protocols and well documented interfaces, it is possible to integrate Open-Xchange Hosted Edition into existing E-Mail and Directory structures. There are many reasons for deciding to integrate the Open-Xchange Server into an existing company wide directory service. Such an integration brings benefits from the reuse of existing user base and allows central administration and sharing of the same authentication data with other services. In addition it overcomes certain limitations inherent in the OpenLDAP server, like scalability and replication. This whitepaper describes several ways to integrate Open-Xchange Hosted Edition into existing company directories. This whitepaper is not meant as a complete How-To Guide with in depth documentation of configuration files or programming examples. This paper describes the concepts on an architectural level. Obviously a System Administrator requires knowledge of Open-Xchange Hosted Edition, Java and the Linux Operating System as well as of the existing company directory service in order to implement a successful integration. Copyright 2005-2008, OPEN-XCHANGE Inc. - 2 -

2. Architecture Overview This chapter gives a brief overview of the architecture of the Open-Xchange Hosted Edition. In general the Open-Xchange Hosted Edition consists of the Open-Xchange Groupware Service and the Open-Xchange Administration Service. All data is handled by back-end services, which are specially designed to store exactly these types of data. Essentially, there are the following types of data storage: Database (SQL) E-Mail (IMAP/SMTP) File System The Open-Xchange Administration Framework This chapter shortly describes how to administer an Open-Xchange Hosted Edition when it is integrated in the back-end services. In a standard setup, the Open-Xchange Server s Command Line Tools are used to administer all users/groups/resources etc. through the Open-Xchange Server. The administrative command line tools communicate with the server through the JAVA-RMI interface which allows access to all administrative tasks. On the Open- Xchange Server there is a daemon running which will listen for RMI calls and which coordinates necessary actions with the relevant back-end services to respond to them. All functions of the command line tools are available as a Java-RMI Interface. So, programming own administration tools or even an UI is possible with JAVA skills. In short this means that while data is stored by back-end services, calls to those services are handled by the Open-Xchange server itself. Open-Xchange Directory Integration Whitepaper v1.00-3 -

3. Directory Integration This chapter presents a way to integrate the Open-Xchange Hosted Edition into existing Company Directory services. Open-Xchange Hosted Edition has many interfaces which make it possible to integrate into a directory server. There are 2 required points of integration: Users should authenticate against the already running LDAP Server. - This means that already existing users login to the Open-Xchange server with their current username and password. The LDAP data of users/groups must be in sync with the Open-Xchange Database. Copyright 2005-2008, OPEN-XCHANGE Inc. - 4 -

. Authentication against LDAP via the Open-Xchange Authentication Plugin Mechanism. The Open-Xchange Hosted Edition has an Interface which can be implemented to use the current LDAP Server as the preferred authentication instance. To implement the Open-Xchange authentication mechanism, a simple JAVA program has to be written which binds to the current LDAP Server with data given from the Open- Xchange login mask. After a successful LDAP bind/search the JAVA program returns the user and the context in which the user resides in. The key advantage of this technology is that the users can keep their already assigned LDAP usernames and passwords and even if they change their LDAP password they can still login to the Open-Xchange Hosted Edition. This technique requires that all users are already imported to the Open-Xchange Database either via command line tools or via JAVA RMI Interfaces.. Synchronization of LDAP Data The Open-Xchange Server has its own database containing user and group information. So it is mandatory that these both data sources are in sync. For example if a user was initially imported into the Open-Xchange Database via command line tools and has been married afterwards, his name has to be changed in the LDAP Server and the Open-Xchange Database. To achieve this synchronization Open-Xchange has tools and interfaces which can be used to update the user data easily. In our example we assume that the user will update his data in the LDAP Server through an already existing UI in case the user updates LDAP data which are also used or needed by the Open-Xchange Server. In this case the UI has to call the Open-Xchange System to also update the data in the Open- Xchange System. This can be done either via the already introduced simple command line tools or using JAVA RMI calls to the Open-Xchange Administration Service.. Detailed Information If you need more detailed information like Java examples for authenticating against LDAP Servers, do not hesitate to contact us. URL: http://www.open-xchange.com E-Mail: sales@open-xchange.com Open-Xchange Directory Integration Whitepaper v1.00-5 -