Re: why use ldap?



On 12/09/08 10:30, mikegws@xxxxxxxxx wrote:
I see a lot of people using ldap in place of a "Big Aliases DB" and I'm wondering why people have gone this route.

It just seems that if there is an outage with LDAP you're SOL and mail routing falls apart.

Even if LDAP is highly available and always there - does it really make sense to have this much overhead?

What other advantages do I have to using LDAP?

I think this can be summed up as a "fried" verses "baked" approach. The "(big) aliases db" approach is "baked" as in it is prepared ahead of time. Where as the "ldap" approach is "fried" as it is check every time a message needs to be routed.

Thus the differences really fall down to the pros and cons of each approach. "Backed" usually has less over head but there is update latency associated with it. Where as "fried" has more overhead but is much closer (if not) real time.

There is also the fact that LDAP is usually used by things other than / in addition to email. Thus it could be said that email with LDAP is utilizing the existing infrastructure where as email with aliases db is using its own additional (independently updated) infrastructure.



Grant. . . .

.



Relevant Pages

  • Peer-to-Peer strong authentication
    ... peer-to-peer processes in an IBM mainframe, and IBM UNIX environment, ... This is an LDAP environment. ... strong authentication element that removes the need for Kerberous? ... does this cause overhead for each process to process virtual circuit? ...
    (comp.security.misc)
  • Partial SUMMARY: Problems with mail aliases in LDAP
    ... Migrating from NIS to LDAP on Solaris 9 with SUN Directory server 5.2 ... Using ldapaddent I've inserted mail aliases in the the aliases ou in the ... LDAP directory. ... On looking at the SUN ...
    (SunManagers)
  • Re: ldap_routing and local aliases
    ... the one problem is that this one completely preempts my aliases ... list, and local admin addresses that have been defined there, including ... This server has several domains (and the LDAP directory supports several ...
    (comp.mail.sendmail)
  • Re: Servers dependent on Active Directory
    ... I'm happy with the infrastructure too. ... appliance has the IP address of a DC hard coded to do LDAP lookups. ... and you just don't understand what those reason were just yet. ...
    (microsoft.public.windows.server.active_directory)
  • Re: ldap_routing and local aliases
    ... /etc/passwd, aliases and virtusertable are being accepted, but addresses ... but now with an address that is found in LDAP. ... the question becomes in how to get sendmail to reject messages ... local definitions (and not having to resort to listing all the local ...
    (comp.mail.sendmail)