Qmail-LDAP
[Top] [All Lists]

Re: Where should I place the LDAP server?

To: qmail-ldap@qmail-ldap.org
Subject: Re: Where should I place the LDAP server?
From: Turbo Fredriksson <turbo@bayour.com>
Date: Thu, 22 Feb 2007 20:21:13 +0100
Delivered-to: sp-com-lists@consult.net
Delivered-to: qmail-ldap-list@securepoint.com
Delivered-to: mailing list qmail-ldap@qmail-ldap.org
In-reply-to: <f5ba7b270702212330t7aec33eay416120d14dcec750@mail.gmail.com> (sato x.'s message of "Thu, 22 Feb 2007 14:30:58 +0700")
Mailing-list: contact qmail-ldap-help@qmail-ldap.org; run by ezmlm
Organization: QMail LDAP expert wannabe
References: <f5ba7b270702212330t7aec33eay416120d14dcec750@mail.gmail.com>
Sender: Turbo Fredriksson <turbo@pumba>
User-agent: Gnus/5.1007 (Gnus v5.10.7) Emacs/20.7 (gnu/linux)
Quoting "sato x" <gladiol4@gmail.com>:

> Is it reliable to place the LDAP server in a local area network,
> since my mail server located in our DMZ?

Isn't that against the whole point of a firewall!? Refuse access FROM the
external/DMZ to the local network, but ALLOW (in rare cases) FROM the local
network TO the external/DMZ?

> For a number of 300 users, will the (linux) firewall (with 100MB ethernet
> card) cope with the traffic from the mail server?

I'd say EASILY!! But on the other hand, if those 300 users get ten thousand
mail per hour, with big attachement, then I'd guess the answer is NO WAY! :)

It's just a matter how SIZE, not AMOUNT... Count yourself. On a 100MB ethernet
(which I asume is actuall 100Mb - MB is for MegaBytes and Mb is for MegaBits)
you can send 10MB (MegaByte) / second (in VERY good conditions - six/seven is
probably more resonable)... Do you send that much data TODAY? How much data
do you send today (when you know this, deduct that from seven and you know how
much is left for the mail traffic).

This is just rough numbers, but it will give you an idea on how to proceed
if you must be ABSOLUTLY SURE...

> I mean, all the authentication traffic from mail server to LDAP server.

That's also a couple of bytes (you'll have to measure that as well) for each
mail - can't remember how many queries Qmail-LDAP does per mail, but it's a
couple...
-- 
Nazi toluene SEAL Team 6 Treasury North Korea security Ft. Bragg
nuclear Soviet attack Saddam Hussein DES congress CIA plutonium
[See http://www.aclu.org/echelonwatch/index.html for more about this]
[Or http://www.europarl.eu.int/tempcom/echelon/pdf/rapport_echelon_en.pdf]
If neither of these works, try http://www.aclu.org and search for echelon.
Note. This is a real, not fiction.
http://www.theregister.co.uk/2001/09/06/eu_releases_echelon_spying_report/
http://www.aclu.org/safefree/nsaspying/23989res20060131.html#echelon

<Prev in Thread] Current Thread [Next in Thread>