[Evolution] IMAP or POP3 accounts

Jeffrey Stedfast fejj@ximian.com
Thu, 02 Sep 2004 11:14:06 -0400


--=-X59XFFuBDGPWqQjlJHSf
Content-Type: text/plain
Content-Transfer-Encoding: quoted-printable

On Thu, 2004-09-02 at 10:38 +0800, Not Zed wrote:
> On Wed, 2004-09-01 at 16:53 +0200, nick galea wrote:=20
> > Hi,
> >=20
> > I am considering replacing Outlook on our network (approximately 100=20
> > clients) with evolution.
> >=20
> > However, i have a number of questions regarding the central management=20
> > of Evolution IMAP and POP3 account data for each user in a network:
> >=20
> > 1. The windows logon provides a single sign on for both windows and=20
> > outlook. Meaning that when a user changes his/her password in windows=20
> > this is automatic for outlook too. Is it possible to achieve a similar=20
> > thing using Evolution and active directory?
> > 2. If this is not possible with active directory then would it be=20
> > possible using Novell Edirectory? I.e if i would move from active=20
> > directory to novell edirectory for signing on, is there somehow an=20
> > integration between Evolution and edirectory which would obsolete the=20
> > need for the user to regularly change his IMAP or POP3 passwords even i=
f=20
> > he changes his windows or edirectory logon?
> Well you could change the system login and imap server/pop3 password
> using these sort of mechanisms, but that is independent of evolution.
>=20
> It wouldn't automatically change the user's 'remembered' password in
> Evolution though.  Which may or may not be an issue (e.g. if you don't
> want users remembering their passwords), but they will be re-prompted.
> True single-signon would require the use of kerberos stuff as Jeff
> mentioned.  Actually letting the users remember their password in such
> a context isn't particularly secure, since they are only stored on
> disk obfuscated and not encrypted and only relies on (enforced) unix
> filesystem permissions for security.
>=20
> > If both are not available, does anyone know whether Novell is working o=
n=20
> > such an integration? Surely this would make sense for both Evolution an=
d=20
> > Edirectory users and since both are owned by Novell....
> There is work going on in the identity management/systems management
> area, and some of it relates to Evolution (specifically to configuring
> and locking down settings), but we are not directly party to this
> work.  So I don't know the full scope of it.
>=20
> I agree this makes absolute sense.  And I would be quite surprised if
> it isn't on some roadmap somewhere.=20
> > And if not, does anyone know if this would be relatively easily=20
> > developed for Evolution? If there is demand from other users too i woul=
d=20
> > consider developing such an add-on module.
> Well one thing we have on our roadmap is integration with the gnome-
> key-ring thing, or whatever its called, which provides some
> centralised auth system, so i've heard.  I don't really know much
> about it, but assuming it is extensible, it sounds like the approach
> that will lead to this goal ... eventually ... when its done.

as far as I understand it, gnome-key-ring is basically just e-passwords
- e.g. it stores application passwords in a central location for apps to
query.

might keep the passwords encrypted on disc rather than just obfuscated
like we do currently, but I don't really know the details myself.

Jeff

--=20
Jeffrey Stedfast
Evolution Hacker - Novell, Inc.
fejj@ximian.com  - www.novell.com

--=-X59XFFuBDGPWqQjlJHSf
Content-Type: application/x-pkcs7-signature; name=smime.p7s
Content-Disposition: attachment; filename=smime.p7s
Content-Transfer-Encoding: base64
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--=-X59XFFuBDGPWqQjlJHSf--