Riva GroupWise for Active Directory - Admin Guide



Similar documents
This guide provides information to show how to create and manage Riva Dynamic Distribution List policies.

ATT8367-Novell GroupWise 2014 and the Directory Labs

PRODUCT WHITE PAPER LABEL ARCHIVE. Adding and Configuring Active Directory Users in LABEL ARCHIVE

Delegated Administration Quick Start

ContentWatch Auto Deployment Tool

Tool Tip. SyAM Management Utilities and Non-Admin Domain Users

Administration Guide Modular Authentication Services (NMAS) April 2013

Changing Passwords in Cisco Unity 8.x

GroupWise to PST Migrator

Creating and Issuing the Workstation Authentication Certificate Template on the Certification Authority

Cloud Services ADM. Agent Deployment Guide

HDU (Help Desk Utility) User Guide

BusinessObjects Enterprise XI Release 2

4cast Client Specification and Installation

SARANGSoft WinBackup Business v2.5 Client Installation Guide

Disaster Recovery Plan Documentation

econtrol 3.5 for Active Directory & Exchange Administrator Guide

Installation and Configuration Guide

ACTIVE DIRECTORY DEPLOYMENT

Configuring Color Access on the WorkCentre 7120 Using Microsoft Active Directory Customer Tip

DESLock+ Basic Setup Guide Version 1.20, rev: June 9th 2014

Active Directory Management. Agent Deployment Guide

Setting up Sharp MX-Color Imagers for Inbound Fax Routing to or Network Folder

Novell File Reporter 2.5 Who Has What?

NSi Mobile Installation Guide. Version 6.2

SonicWALL CDP 5.0 Microsoft Exchange User Mailbox Backup and Restore

HELP DOCUMENTATION E-SSOM DEPLOYMENT GUIDE

How To Take Advantage Of Active Directory Support In Groupwise 2014

Install SQL Server 2014 Express Edition

Installation and Configuration Guide

Moving the TRITON Reporting Databases

Installing Windows Server Update Services (WSUS) on Windows Server 2012 R2 Essentials

Installation Manual (MSI Version)

LAB 1: Installing Active Directory Federation Services

ichain Novell Welcome to ichain 2.2 SYSTEM REQUIREMENTS QUICK START

Active Directory integration with CloudByte ElastiStor

Compiled By: Chris Presland v th September. Revision History Phil Underwood v1.1

S/MIME on Good for Enterprise MS Online Certificate Status Protocol. Installation and Configuration Notes. Updated: October 08, 2014

Integrating LANGuardian with Active Directory

File Auditor for NAS, Net App Edition

DigitalPersona Pro Server for Active Directory v4.x Quick Start Installation Guide

Sophos Anti-Virus for NetApp Storage Systems user guide. Product version: 3.0

Distributing SMS v2.0

Appendix B Lab Setup Guide

Configuration. Cortado Corporate Server in a Novell environment. Version 4.0

NTP Software QFS for NAS, NetApp Edition Installation Guide

Installation Guide GroupWise 2014 January 2015

Lab A: Deploying and Managing Software by Using Group Policy Answer Key

DeviceLock Management via Group Policy

Migrating MSDE to Microsoft SQL 2008 R2 Express

To enable an application to use external usernames and passwords, you need to first configure CA EEM to use external directories.

Comodo MyDLP Software Version 2.0. Endpoint Installation Guide Guide Version Comodo Security Solutions 1255 Broad Street Clifton, NJ 07013

Releasing blocked in Data Security

Migrating Groupwise Data

Technical White Paper

Installation Guide v3.0

MadCap Software. Upgrading Guide. Pulse

Avatier Identity Management Suite

PineApp Surf-SeCure Quick

Moving the Web Security Log Database

SonicWALL CDP 5.0 Microsoft Exchange InfoStore Backup and Restore

Preparing for GO!Enterprise MDM On-Demand Service

Instructions for Configuring a SAS Metadata Server for Use with JMP Clinical

BitDefender Security for Exchange

Novell Identity Manager

Protected Trust Directory Sync Guide

Active Directory Management. Agent Deployment Guide

System Administration and Log Management

Installing GroupWise Monitor

Fax. Problems with Fax Delivery to Users CHAPTER

Multi-factor Authentication using Radius

Using SSH Secure Shell Client for FTP

GWARC Add-On User Manual for the Tangent Datacove Server Appliance

DIGIPASS Pack for Citrix on WI 4.5 does not detect a login attempt. Creation date: 28/02/2008 Last Review: 04/03/2008 Revision number: 2

Citrix Systems, Inc.

Installing Client GPO Software

This means that any user from the testing domain can now logon to Cognos 8 (and therefore Controller 8 etc.).

1 of 10 1/31/2014 4:08 PM

How to Use Remote Access Using Internet Explorer

Flexible Identity. LDAP Synchronization Agent guide. Bronze. version 1.2

Active Directory Software Deployment

Creating Home Directories for Windows and Macintosh Computers

Configuring the CounterPath X-Lite SIP Softphone

Password Management Guide

Creating IBM Cognos Controller Databases using Microsoft SQL Server

IIS, FTP Server and Windows

Configuring Microsoft RADIUS Server and Gx000 Authentication. Configuration Notes. Revision 1.0 February 6, 2003

SQL Server 2008 R2 Express Installation for Windows 7 Professional, Vista Business Edition and XP Professional.

Sage HRMS 2014 Sage Employee Self Service Tech Installation Guide for Windows 2003, 2008, and October 2013

Using Group Policies to Install AutoCAD. CMMU 5405 Nate Bartley 9/22/2005

Technical Reference: Deploying the SofTrack MSI Installer

Active Directory Integration

Maintaining Windows Server 2008 File Services

Perform this procedure when you need to add a recurring payment option, or when you need to change or withdraw it.

Upgrading User-ID. Tech Note PAN-OS , Palo Alto Networks, Inc.

Verify LDAP over SSL/TLS (LDAPS) and CA Certificate Using Ldp.exe

Microsoft IAS Configuration for RADIUS Authorization

Troubleshooting: 2 Solutions to Common Problems

Information & Communication Technologies FTP and GroupWise Archives Wilfrid Laurier University

Server Software Installation Guide

Transcription:

Riva GroupWise for Active Directory - Admin Guide

Purpose of Riva GAD Purpose for Riva GroupWise for Active Directory Many organizations that have implemented Active Directory to manage user accounts, file & print, wish to continue to use GroupWise as their primary email environment. Presently, administrators must manage both AD accounts for file and print and edirectory accounts for GroupWise. This involves using a myriad of network administration tools that can include MMC, ConsoleOne, and imanager. Riva "GroupWise for Active Directory" is a policy management module in Riva that will permit using Active Directory user accounts as the primary Directory store for GroupWise. The end result is that user account management tools will be reduced to using MMC. This is accomplished by: Configuring the GroupWise System to use the same email domain that is configured for the AD domain. Configuring GroupWise post offices to use LDAP authentication to the AD domain controller for GroupWise authentication. As such, users authenticating from their GroupWise client will be validated against the AD user account instead of the edirectory account. Configure a Riva policy that will use Active Directory user accounts as the source for creating new GroupWise accounts and managing existing GroupWise accounts. All user account management will be done using MMC Active Directory Users and Computers. View On-Demand Presentations Riva Identity Integration for Active Directory and GroupWise Overview (11 min) Riva Identity Integration for Active Directory and GroupWise Demonstration (23 min)

System Requirements Riva GroupWise for Active Directory System Requirements The special nature of this policy module dictates some special system requirements: Riva will normally be installed on a Windows 2003 member server of the AD domain: o If the GroupWise system is being hosted on a Windows member server, the Riva can be installed on that server. o If the GroupWise system is hosted on a NetWare server or a SLES server, then the Riva server must be able to access the location of the wpdomain.db file of a domain through a mapped drive or UNC path with ability to read and write to the wpdomain.db file, OR, a secondary domain can be installed on the Windows server hosting Riva. Windows 2003 host server must meet the following requirements: o latest Novell windows client is installed. o applicable GroupWise client is installed. o.net 3.5 SP1 framework must be installed. o minimum 256 MB RAM. o minimum of 50 MB storage space for the Riva application (additional storage space should be available to hold the log files created by Riva). GroupWise system has to be configured (see Prepare the GW System): o the desired email domain name used in Active Directory must be added as a internet domain name hosted by the GroupWise system. o the Post Office has to be configured to use LDAP authentication to the AD domain controller. o the Post Office has to be configured to use the AD specified email domain name as the GW preferred email domain name. o Ensure that LDAP services on GWIA are not enabled or active when the GWIA agent is started/running.

Prepare the GW System Prepare the GroupWise System They key to making this work is to prepare the GroupWise system to use the same email domain settings as the Active Directory domain, and force the GroupWise Post Offices to use LDAP authentication to the Active Directory domain controller. This will ensure that existing edirectory/groupwise are linked to the Active Directory user accounts, and new AD user accounts are properly created in edirectory for GroupWise. Step 1 - Add the Desired Email Domain to the GroupWise System Step 2 - Configure the Post Office Preferred Email Domain Step 3 - Configure Post Office LDAP Authentication Step 4 - Ensure that LDAP Services for the GWIA are Disabled Step 1 - Add the Desired Email Domain to the GroupWise System 1. Open MMC and confirm the email domain name assigned to user accounts that will be created / synchronized to the GroupWise System (important note - you are limited to one email domain per GroupWise Post Office). In this example, the email domain used in Active Directory is DEV03-EX03.local 2. Open ConsoleOne and add the Active Directory email domain to the GroupWise system. o Select the "GroupWise System" in the tree pane. From the main menu, select "Tools" > "GroupWise System Operations" > "Internet Addressing".

o Click "Create" and add the Active Directory email domain name and click "OK". and click "OK". o In the "GroupWise Administrator" window select "Yes" or "No" to answer the question "Do you want to update the edirectory Internet EMail Address for all affected users. o Click "OK". Step 2 - Configure the Post Office Preferred Email Domain 1. In ConsoleOne, set the preferred email domain for the Post Office: o Select the Post Office object in the tree view under the GroupWise System. Right-click the Post Office and choose "Properties". o Under the "GroupWise" tab, select "Internet Addressing". o Use the "Internet domain name:" drop-down list and select the desired Active Directory email domain added in Step 1 above.

o Click "Apply". In the "GroupWise Administrator" window select "Yes" or "No" to answer the question "Do you want to update the edirectory Internet EMail Address for all affected users. o Click "Close". Step 3 - Configure the Post Office LDAP Authentication 1. In ConsoleOne, create a LDAP server in the GroupWise system: o Select the "GroupWise System" in the tree pane. From the main menu, select "Tools" > "GroupWise System Operations" > "LDAP Servers". o Click "Add" and enter the necessary information to add a LDAP server entry.

Click "OK". o In the "Configure LDAP Servers" window click "Close". 2. In ConsoleOne, set the LDAP authentication properties for the Post Office. o Select the Post Office object in the tree view under the GroupWise System. Right-click the Post Office and choose "Properties". o Under the "GroupWise" tab, select "Security". o Check "LDAP Authentication". o Click the "Select Servers" button. In the Select LDAP Servers window, highlight the correct LDAP server in the "Available Servers" pane and click the left arrow button. This will move the selected LDAP server to the "Selected Servers" pane. Click the "Close" button. o In the "GroupWise Security" window click the "Apply" and "Close" buttons.

3. You will need to restart the Post Office Agent (service) to enforce the email domain and LDAP authentication changes. Step 4 - Ensure that LDAP Services for GWIA are Disabled 1. In ConsoleOne, verify that LDAP service is not enabled for the GWIA: o In the edirectory tree pane, open the Domain object that contains the GWIA agent. Ensure that ConsoleOne is looking for "Gateways" objects. o Right-click the "GWIA" object and select "Properties". o Under the "LDAP" tab, ensure that "Enable LDAP service" is not checked.

o Click "Cancel". 2. (Optional) verify that the running GWIA agent (service) does not have the LDAP service enabled.

Install Riva GAD

Create Riva GAD Policy