How to Use This Template

Download Report

Transcript How to Use This Template

WatIAM & uwldap
WatIAM & uwldap
Presentation Overview:
@uwaterloo.ca history
Email Terminology
How does email addressed to @uwaterloo.ca get to a
mailbox?
WatIS WatIAM?
How are uwldap, email and WatIAM connected?
Q&A
WatITis | Strengthening Collaboration | December 8, 2009 | WatIAM & uwldap
A Short History Lesson
Required to deliver to @uwaterloo.ca
MX -> ego overloaded
Mailservices `cluster' created
Address lookups into uwldap
Mailertable lookups into uwldap
=> Load sharing & redundancy
WatITis | Strengthening Collaboration | December 8, 2009 | WatIAM & uwldap
WatIS uwldap?
OpenLDAP implementation which:
Directs campus email
Stores data for Ocal
Public data is queryable: by email clients (Outlook,
Thunderbird, etc.); WatIAM White Pages; Unix uwdir
command; etc.
Attributes values contain campus telephone
number, email information, office number, Ocal
attributes, etc.
WatITis | Strengthening Collaboration | December 8, 2009 | WatIAM & uwldap
WatIS mailservices?
mailservices is a University of Waterloo
implementation for email handling and email storage.
Services include:
greylisting
blacklisting
botnet detection
scanning for SPAM and viruses
For this presentation we will refer to uwldap and
mailboxes, and avoid mailservices.
WatITis | Strengthening Collaboration | December 8, 2009 | WatIAM & uwldap
uwldap to mailbox
@uwaterloo.ca
uwldap Attribute
Attribute Value
dn
uid=cvanoost, ou= people, dc=uwaterloo,
dc=ca
mailLocalAddress
[email protected]
[email protected]
mail
[email protected]
mailRoutingAddress
[email protected]
Email addressed to [email protected]:
1.Lookup mailLocalAddress = [email protected]
(because of the @uwaterloo.ca)
2.return the mailRoutingAddress.
3.pass the email to mailRoutingAddress
WatITis | Strengthening Collaboration | December 8, 2009 | WatIAM & uwldap
uwldap to mailbox
@uwaterloo.ca
mailLocal
mailLocal
mailLocal
@uwaterloo.ca
mailRouting
user@artsservices
But host MX points to mailservices, so internally:
Mailertable:
artsservices
host artsservices
WatITis | Strengthening Collaboration | December 8, 2009 | WatIAM & uwldap
Short Circuiting
uwldap
User on
admmail
email
Mail
services
User on
artsservices
No short circuit
User on
connect
Mail
services
email
User on
admmail
WatIS WatIAM?
Actors
Public End Users
Presentation
Layer
White Pages
User Interface
UW End Users
(Employees, Students, Guests)
Administrators
Identity Manager
Admin UI
Identity Manager
User Interface
Identity Services (IdM)
Web Service
Policy & Configuration
Services Layer
Account
Reconciliation
Provisioning
Administration
User SelfService
Extract File
HRMS
Data Layer
Logging &
Reporting
ADS
Quest
Email Services
LDAP
IDM Data
Telephone
Services
UWdir
(bootstrapping,
email, web)
uwldap to mailbox
@uwaterloo.ca
uwldap Attribute
Attribute Value
dn
uid=cvanoost, ou= people, dc=uwaterloo,
dc=ca
mailLocalAddress
[email protected]
[email protected]
mail
[email protected]
mailRoutingAddress
[email protected]
Email addressed to [email protected]:
1.Lookup mailLocalAddress = [email protected]
(because of the @uwaterloo.ca)
2.return the mailRoutingAddress.
3.pass the email to mailRoutingAddress
WatITis | Strengthening Collaboration | December 8, 2009 | WatIAM & uwldap
WatIAM to uwldap
WatITis | Strengthening Collaboration | December 8, 2009 | WatIAM & uwldap
WatIAM Admin Interface
WatITis | Strengthening Collaboration | December 8, 2009 | WatIAM & uwldap
Long accountIds?
Example:cvanoostveen
WatIAM stores a long value, but is not considered
an account in WatIAM, ADS or in uwldap.
WatIAM creates a long value for the extract file and
for email.
WatITis | Strengthening Collaboration | December 8, 2009 | WatIAM & uwldap
Future Directions – Vanity email
addresses
CTSC & UCIST
mailLocalAddress
[email protected][email protected]
Present suggestions
Admin management of mailLocalAddress(es)
Uniqueness in uwaterloo.ca name space
Needs to work for connect and mailservices
Roll out to employees first
WatITis | Strengthening Collaboration | December 8, 2009 | WatIAM & uwldap
Future Directions – Vanity email
addresses
Future Directions – Official
Student Email Address
http://www.adm.uwaterloo.ca/infocist/emailuse.html
(Exec Council, 2003)
 The University, through its Faculties, provides an
email address and account to all students for the
receipt of official communications and their
participation in an academic program at UW.
 The University uses an email address like
[email protected] in official correspondence
with students.
 Etc.
WatITis | Strengthening Collaboration | December 8, 2009 | WatIAM & uwldap
Future Directions – Student
email
Centralizing mailboxes
 Consistency for user
 Reliability
Vanity email addresses
Use [email protected] address
Would like to make our option more attractive –
but encourage more use?
WatITis | Strengthening Collaboration | December 8, 2009 | WatIAM & uwldap
Questions?
WatITis | Strengthening Collaboration | December 8, 2009 | WatIAM & uwldap