Readme 098 » History » Version 1
Jörg Ebeling, 02/12/2024 09:33 PM
1 | 1 | Jörg Ebeling | # LDAP-2-CardDAV Phone Book Gateway (l2cpbg) |
---|---|---|---|
2 | |||
3 | An LDAP to CardDav (1 way read) Phone Book Gateway. |
||
4 | ![Functional L2CPBG Diagram](https://projects.shbe.net/attachments/download/163/L2CPBG%200.9.5%20Diagram.svg "Functional L2CPBG Diagram") |
||
5 | |||
6 | ## Use case |
||
7 | |||
8 | Most modern (business) voice phones have the capability to do |
||
9 | comfortable LDAP directory look-up like: |
||
10 | |||
11 | - Directory search by alphabet letters |
||
12 | - Reverse lookup for in- or out-bound calls |
||
13 | - Reverse lookup by entering parts or the phone number |
||
14 | |||
15 | Unfortunately, most of the 'smaller' companies (i guess companies beyond |
||
16 | 100 employee) don't have an 'enterprise' LDAP directory, much less than |
||
17 | private persons. |
||
18 | |||
19 | Most of such companies do have something like a cloud address book, |
||
20 | often based on WebDAV / CardDAV (i.e. Nextcloud, Ownlcoud, Baïkal, |
||
21 | Daylite, Synology Contacts, ...). |
||
22 | |||
23 | This is, where this Gateway might make your live easier. |
||
24 | |||
25 | If this program (daemon/service) get started on some kind of hardware (Windows, macOS, Linux, Raspberry or the like), it will do the following: |
||
26 | |||
27 | 1. Synchronize your CardDAV Server(s), to a small local database cache |
||
28 | 2. Wait and answer for LDAP requests from your voice/desktop phone(s) |
||
29 | |||
30 | ## Features |
||
31 | |||
32 | - Query the contacts of your CardDAV address book(s) by entering |
||
33 | the alphabetic letters (or parts of the telephone number) in your (LDAP capable) phone (and dial one of the matching numbers) |
||
34 | - Reverse lookup inbound calls and display matching contact |
||
35 | informations on the phone |
||
36 | - Work with local formatted (non- E.164) entered phone numbers |
||
37 | like: '040-123456' or '001 807 1234567' as well as '+49 (0)40 |
||
38 | 1234567-8', so that there's no need to format the phone numbers of your CardDAV contacts in a special notation |
||
39 | - Supports short internal extension phone numbers as well as Fritz!Box specific **\<extension> or *\<line> format |
||
40 | - Support dial prefix for external line |
||
41 | - Support selection of a specific addressbook per phone, via "ou=\<addressbook>, \<BaseDN>" |
||
42 | - Support the merge of multiple address books from a single or multiple CardDAV Server(s) into a specified LDAP address book |
||
43 | |||
44 | ## Usage |
||
45 | |||
46 | You need some kind of 24/7 machine where this gateway live. Windows PC, |
||
47 | Linux, macOS, Raspberry or the like. |
||
48 | |||
49 | By default it will look for a configuration file in the following places (in the |
||
50 | given order): |
||
51 | |||
52 | 1. ./l2cpbg.conf |
||
53 | 2. /etc/l2cpbg.conf |
||
54 | 3. /usr/local/etc/l2cpbg.conf |
||
55 | 4. \<exec directory\>/l2cpbg.conf |
||
56 | |||
57 | It will write to a small local database directory (defaults to 'os.TempDir()/l2cpbg.db'). |
||
58 | |||
59 | At the moment there's no "Admin GUI". But for miminimal infos like "uptime", "license", "number of search requests", "number of sent result records", as well as immediate CardDAV-Server sync trigger, you might send the l2cpbg process a `SIGHUP` signal and check the logs afterwards. |
||
60 | |||
61 | You might be also interested in the output of `l2cpbg --help`. |
||
62 | |||
63 | ## License |
||
64 | |||
65 | On-Premise, one-time fee |
||
66 | |||
67 | | Version | max. phones [^1] | Version blaming in Phone Display | max. LDAP requests/h | max. phonebook entries [^2] | Gold features [^3] | Price/€ [^4] | |
||
68 | |:----------|:---------:|:--:|:---------:|:---------:|:---:|-------:| |
||
69 | |Free | 2 | ✓ | 12 | 100 | ✗ | 0,00 | |
||
70 | |Max3 | 3 | ✗ | unlimited | 500 | ✗ | 29,00 | |
||
71 | |Max5 | 5 | ✗ | unlimited | 1000 | ✗ | 49,00 | |
||
72 | |Max10 | 10 | ✗ | unlimited | 2000 | ✗ | 79,00 | |
||
73 | |Pro10 | 10 | ✗ | unlimited | unlimited | ✓ | 149,00 | |
||
74 | |Pro50 | 50 | ✗ | unlimited | unlimited | ✓ | 299,00 | |
||
75 | |Enterprise | unlimited | ✗ | unlimited | unlimited | ✓ | 499,00 | |
||
76 | |||
77 | [^1]: Every device/phone which successful login to L2CPBG, lock a phone-slot (via IP) for 8 hours |
||
78 | |||
79 | [^2]: In real, the number of imported CardDAV contacts get limited |
||
80 | |||
81 | [^3]: Gold features are: Multi-instance capability, Multi-CardDAV Servers (or accounts), Multi-AddressBook-Merge |
||
82 | |||
83 | [^4]: Inkl. German VAT |
||
84 | |||
85 | Before deciding to buy a license, please ensure that L2CPBG work as expected with all your phones and your CardDAV server. If you can't test it because of a free limitations, or any other reason, don't hesitate to ask for a 60 day evaluation license. Simply drop me a mail to projects@shbe.net with your real name. |
||
86 | |||
87 | ## Installation |
||
88 | |||
89 | ### Linux Debian ".deb" packages |
||
90 | |||
91 | `dpkg -i l2cpbg_<version>_<architecture>.deb` to install the package. |
||
92 | |||
93 | - A sample configuration get places at `/etc/l2cpbg.conf`. |
||
94 | - Initial startup will fail due to wrong/missing settings in config section `[dav]`! |
||
95 | - Adapt at least `[ldap]`, `[ldap.bind]`, `[dav]` as well as `[location]` sections (in /etc/l2cpbg.conf) to your need. |
||
96 | - Once done, restart l2cpbg by `systemctrl restart l2cpbg` and check startup by `systemctrl status l2cpbg`. |
||
97 | - The full log can be read by `journalctl -u l2cpbg`. |
||
98 | - To watch the actual/live logging, use `journalctl -fu l2cpbg`. |
||
99 | |||
100 | If l2cpbg started up, adapt your phone(s) to point their "LDAP Directory" lookup requests to l2cpbg with the settings you defined in /etc/l2cpbg.conf. |
||
101 | |||
102 | ### Linux binary "tar.gz" packages ("systemd" Systems) |
||
103 | |||
104 | 1. Extract binary i.e. to /usr/local/bin: `sudo tar xvf l2cpbg_0.9.2_linux-amd64.tgz -C /usr/local/bin/ l2cpbg` |
||
105 | 2. Extract config file, i.e. to /etc: `sudo tar xvf l2cpbg_0.9.2_linux-amd64.tgz -C /etc/ l2cpbg.conf` |
||
106 | 3. Adapt config section `[ldap]`, `[ldap.bind]`, `[dav]` as well as `[location]` to your need. |
||
107 | 4. Do a first foreground start via `l2cpbg` and check terminal output for any issues. \<Ctrl-c\>, edit config and start `l2cpbg` till terminal output is okay. |
||
108 | 5. If terminal output is okay and everything work as expected. \<Ctrl-c\> to stop forground process. |
||
109 | 6. Install L2CPBG as service/daemon via `sudo l2cpbg --service=install`. You should see a single "... 'install' succeed" message. |
||
110 | 7. Now that L2CPBG got installed as a service/daemon you can use `sudo systemctrl start|stop|restart l2cpbg`. When booting next, L2CPBG should get started automatically and log output to systemd journal. |
||
111 | 8. The full log can be read by `journalctl -u l2cpbg`. |
||
112 | 9. To watch the actual/live logging, use `journalctl -fu l2cpbg`. |
||
113 | |||
114 | Adapt your phone(s) to point their "LDAP Directory" lookup requests to l2cpbg with the settings you defined in /etc/l2cpbg.conf. |
||
115 | |||
116 | Uninstalling the service/daemon is simply done by `sudo l2cpbg --service=uninstall` |
||
117 | |||
118 | ### Linux binary "tar.gz" packages ("SysV" Systems) |
||
119 | |||
120 | 1. Extract binary i.e. to /usr/local/bin: `sudo tar xvf l2cpbg_0.9.2_linux-amd64.tgz -C /usr/local/bin/ l2cpbg` |
||
121 | 2. Extract config file, i.e. to /etc: `sudo tar xvf l2cpbg_0.9.2_linux-amd64.tgz -C /etc/ l2cpbg.conf` |
||
122 | 3. Adapt config section `[ldap]`, `[ldap.bind]`, `[dav]` as well as `[location]` to your need. |
||
123 | 4. Do a first foreground start via `l2cpbg` and check terminal output for any issues. \<Ctrl-c\>, edit config and start `l2cpbg` till terminal output is okay. |
||
124 | 5. If terminal output is okay and everything work as expected. \<Ctrl-c\> to stop forground process. |
||
125 | 6. Install L2CPBG as service/daemon via `sudo l2cpbg --service=install`. You should see a single "... 'install' succeed" message. |
||
126 | 7. Now that L2CPBG got installed as a service/daemon you can use `sudo service l2cpbg start|stop|restart`. When booting next time, L2CPBG should get started automatically and log output get send to /var/log/l2cpbg.err|log. |
||
127 | |||
128 | Adapt your phone(s) to point their "LDAP Directory" lookup requests to l2cpbg with the settings you defined in /etc/l2cpbg.conf. |
||
129 | |||
130 | Uninstalling the service/daemon is simply done by `sudo l2cpbg --service=uninstall` |
||
131 | |||
132 | ### Important macOS upgrade info: |
||
133 | If you already have l2cpbg versiom 0.9.2 installed, you need to deactivate your old l2cpbg instance via `l2cpbg --service=stop` and `l2cpbg --service=uninstall`, **before** installing the new version. After installing the new version, activate it again (via `l2cpbg --service=install` and `l2cpbg --service=start`) |
||
134 | |||
135 | ### MacOS "pkg" package ("launchd" System) |
||
136 | |||
137 | The package (pkg) installer does the following: |
||
138 | |||
139 | - Extract the L2CPBG package to '/opt/l2cpbg'. |
||
140 | - Place a l2cpbg command symlink into '/usr/local/bin' (which is in PATH), so that you're able to call the gateway binary 'l2cpbg' independent of your working directory. |
||
141 | - A sample l2cpbg configuration file get places in `/usr/local/etc/l2cpbg.conf`. |
||
142 | |||
143 | After installation, initial startup would fail due to wrong/missing settings in config section `[dav]`! |
||
144 | |||
145 | 1. Change into installation directory via `cd /opt/l2cpbg` |
||
146 | 2. Edit config by opening '/usr/local/etc/l2cpbg.conf' i.e. with TextEdit `open -a TextEdit /usr/local/etc/l2cpbg.conf` |
||
147 | 3. Adapt at least `[ldap]`, `[ldap.bind]`, `[dav]` as well as your `[location]` sections to your need. When done, don't forget to save! |
||
148 | 4. Do a first foreground start via `l2cpbg` in Terminal, and check terminal output for any issues. \<Ctrl-c\> (abort l2cpbg), edit config and start `l2cpbg` again, till terminal output is okay. |
||
149 | 5. If terminal output is okay and everything work as expected. \<Ctrl-c\> (abort l2cpbg) to stop forground process. |
||
150 | 6. Install L2CPBG as service/daemon via `sudo l2cpbg --service=install`. You should see a single "... 'install' succeed" message. |
||
151 | 7. Now that L2CPBG got installed as a service/daemon you can use `sudo l2cpbg --service=start|stop|restart`. When booting next time, L2CPBG should get started automatically and log output is send to /var/log/l2cpbg.err.log. |
||
152 | |||
153 | Adapt your phone(s) to point their "LDAP Directory" lookup requests to l2cpbg with the settings you defined in /usr/local/etc/l2cpbg.conf. |
||
154 | |||
155 | Uninstalling the service/daemon is simply done by `sudo /opt/l2cpbg/l2cpbg --service=uninstall` |
||
156 | |||
157 | Uninstalling the whole package is done by `sudo /opt/l2cpbg/uninstall.sh` |
||
158 | |||
159 | ### Windows binary "zip" packages |
||
160 | |||
161 | 1. Extract content of zip package to your preferred location, i.e. `C:\Program Files\LDAP2CardDAV-Gateway`. Take attention that the 32-bit version should be installted (by convention) somewhere under `C:\Program Files (x86)`! |
||
162 | 2. Run "notepad" as Administrator, open `C:\Program Files\LDAP2CardDAV-Gateway\l2cpbg.conf` within Notepad, and adapt config section `[ldap]`, `[ldap.bind]`, `[dav]` as well as `[location]` to your need. When done, don't forget to save! |
||
163 | 3. Now it's time to try a first start of the Gateway. Run a "Command" shell as Administrator and change to the installation directory, i.e. `cd C:\Program Files\LDAP2CardDAV-Gateway`, start it in foreground by `l2cpbg.exe` and check terminal output for any issues. \<Ctrl-c\>, edit config and start `l2cpbg.exe` till terminal output is okay. |
||
164 | 4. If terminal output is okay and everything (your phones) work as expected. \<Ctrl-c\> to stop forground process. |
||
165 | 5. Install L2CPBG as service/daemon via `l2cpbg.exe --service=install`. You should see a single "... 'install' succeed" message. |
||
166 | 7. Now that L2CPBG got installed as a service you can use `l2cpbg.exe --service=start|stop|restart`. After 'start'ed as service, log entries can be viewed by Windows Event Viewer (eventvwr). When booting next time, L2CPBG should get started automatically. |
||
167 | |||
168 | Uninstalling the service/daemon is simply done by `l2cpbg.exe --service=uninstall` |
||
169 | |||
170 | ## Configfile syntax |
||
171 | |||
172 | Since version 0.9.0 the config file syntax has changed from 'ini' to 'toml'. Not a big deal, but you need to adapt some entries. Mainly strings have to be entered within quotes! |
||
173 | |||
174 | Following a quick minimal sample: |
||
175 | ``` |
||
176 | # Comments get started with a hash character |
||
177 | |||
178 | # |
||
179 | # The Gateway will act as LDAP Server, listening |
||
180 | # for requests from your phone(s). |
||
181 | # |
||
182 | [ldap] |
||
183 | host = "0.0.0.0" |
||
184 | #port = 1389 |
||
185 | base = "dc=example, dc=com" |
||
186 | |||
187 | [ldap.bind] |
||
188 | dn = "cn=pbx" |
||
189 | pass = "your-password" |
||
190 | |||
191 | # |
||
192 | # Your CardDAV server where this Gateway get the contacts from |
||
193 | # |
||
194 | [dav] |
||
195 | server = "https://cloudserver.example.com/remote.php/dav" |
||
196 | user = "cloud-login-name" |
||
197 | pass = "cloud-login-password" |
||
198 | #pass = "[AES256]encrypted-cloud-login-password" # Please see command line option '--encryptPassword' |
||
199 | |||
200 | [location] |
||
201 | int = 1 # Your international code. 1 = US, 49 = Germany, ... |
||
202 | area = 807 # Your local area code (without a leading 0) |
||
203 | maxarealength = 7 |
||
204 | country = "EN" |
||
205 | ``` |
||
206 | |||
207 | ### Config file description (by section) |
||
208 | |||
209 | #### \[ldap\] = LDAP Server settings |
||
210 | |||
211 | `host` : Which IP to listen for LDAP requests. Defaults to "0.0.0.0" = 'Listen on all interfaces'. You've to point your LDAP phone settings to this machines IP/hostname. |
||
212 | |||
213 | `port` : Which port to listen for LDAP requests. Defaults to port 1389. The standard LDAP port is 389, so you need to change your phone to the port you configure here. |
||
214 | |||
215 | `base` : This LDAP's 'base DN'. Choose whatever you want, but use the same settings within your phone's LDAP settings. Defaults to 'dc=example, dc=com'. |
||
216 | |||
217 | #### \[ldap.bind\] = LDAP bind/auth settings |
||
218 | |||
219 | `dn` : Distinguish name. Name, how the phone has to log into/authorize |
||
220 | to the gateway. |
||
221 | |||
222 | `pass` : Related 'dn' password, a phone has to use when logging in/authorize to the gateway. |
||
223 | |||
224 | #### \[dav\] or \[dav.xxx\]= WebDav/CardDav server settings |
||
225 | |||
226 | `server` : Your WebDAV/CardDAV server address/URL. Please see 'Limitations'! |
||
227 | |||
228 | `user` : WebDav username with read access to the relevant addressbook which shall be requested for phone book lookups. Might also be a 'shared' address book. |
||
229 | |||
230 | `pass` : Related user password. If you don't like to store your CardDAV-Server password in clear-text here, you've also the possibility to use the AES-256 encrypted variant of the password here. Please check l2cpbg's command line option `--encryptPassword` (see `l2cpbg --help`). If you already stored the encrypted password variant here, you can also check/validate it with command line option `--testDavPassword`. |
||
231 | |||
232 | `addressbooks` : Optional regular expression string of matchable addressbook(s) |
||
233 | used for phone book lookups. If unsure, enter something. l2cpbg will log |
||
234 | all found address books of the logged in CardDav user during startup and |
||
235 | log them as 'Non-matching' or 'Matching' address book(s). |
||
236 | |||
237 | `mergeas` : Optional multi CardDAV/account feature. |
||
238 | Merge the configured CardDAV server section as ou=\<mergeas string\> LDAP organisation unit. With this config option you've the possibility to merge multiple CardDAV server or accounts either into a single 'merged' LDAP addressbook, or in separate ones. However you like. When importing them into separate ones, you've the possibility to choose them within you phone via the BaseDN option. |
||
239 | By this you've i.e. the possibility to import a company wide phonebook, as well as a (or multiple) private one(s). |
||
240 | |||
241 | `syncinterval` : Interval of CardDav sync checks. Given as string with suffix 'm' for minutes, or 'h' as hours. Has to be greater than "2m". |
||
242 | |||
243 | `chunksize` : If an address book get loaded the first time, it get loaded in "chunks of contacts" in this given size. You may increase this value for quicker initial load, but if your CardDAV server answer with an "507 Insufficient Storage" error or similar, you need to lower this value. Default to 200. This option was added in L2CPBG version 0.8.1. |
||
244 | |||
245 | `insecurecert` controls whether a client verifies the server's certificate |
||
246 | chain and host name. If insecurecert is true, crypto/tls accepts any |
||
247 | certificate presented by the server and any host name in that certificate. |
||
248 | In this mode, TLS is susceptible to machine-in-the-middle attacks unless |
||
249 | custom verification is used. This should be used only for testing or in |
||
250 | trusted environments. Defaults to *false*. This option was added in L2CPBG version 0.9.1. |
||
251 | |||
252 | #### \[location\] = Local area settings |
||
253 | |||
254 | `int` : International area code (1 = North America, ..., 44 = United |
||
255 | Kingdom, 49 = Germany, ...) of your location. |
||
256 | |||
257 | `area` : Local area code without leading 0 (20 = London (UK), 40 = |
||
258 | Hamburg (DE), ...). |
||
259 | |||
260 | `areaPrefix` : Dial prefix for national calls. Mostly "0". Defaults to "0". |
||
261 | ATTENTION: Has to be entered as string like "0". |
||
262 | |||
263 | `maxarealength` : Longest possible length of a telephone number within |
||
264 | your local area. If a CardDAV or incoming number is shorter or equal, it's |
||
265 | identified as a number within your local area. |
||
266 | |||
267 | `country` : Two-letter [ISO 3166-1 alpha-2](https://wikipedia.org/wiki/ISO_3166-1_alpha-2) country code (i.e. US, GB, DE, ...). |
||
268 | |||
269 | `maxintlength` : Maximum length of internal phone numbers. These numbers |
||
270 | don't get harmonized or E.164 converted. |
||
271 | |||
272 | `prettifyNums` : By default phone numbers loaded from CardDAV get prettified in two ways: |
||
273 | At first, if a CardDAV number is stored in international format, but you live in the same country, the international part get removed. |
||
274 | At second, the number get formatted in (spaced or braced) number groups as it's common in your country. |
||
275 | You can disable this prettifying by setting the value to false. |
||
276 | |||
277 | `prettifyNoAreaInSameArea` : Strip local area code from destination number when located in same area. Boolean true|false, defaults to true. |
||
278 | |||
279 | `prettifyRemoveSpaces` : Boolean (true|false) which will remove all spaces from a prettified phone number. Defaults to false. |
||
280 | |||
281 | `extdialprefix` : Optional external dial prefix for getting an external line. Get prefixed before the phone number if outgoing number length \> `maxintlength` |
||
282 | |||
283 | #### [log] = Logging |
||
284 | |||
285 | `level` : Log level. Might be one of "trace", "debug", "info", "warn", "error" or "fatal". Defaults to "info". |
||
286 | |||
287 | The log levels are organized as follows: |
||
288 | |||
289 | `trace` : This is the most verbose log level. It logs simply everything. |
||
290 | Never use it in production environment as it might produce an awful amount of log entries! |
||
291 | When started as Windows-Service, 'trace' messages doesn't get send to windows event console. |
||
292 | |||
293 | `debug` : Logs a lot internal stuff, probably interesting when searching |
||
294 | a solution for an issue. Should not be used in production environment as |
||
295 | it produce also a lot log entries! |
||
296 | When started as Windows-Service, 'debug' messages doesn't get send to windows event console. |
||
297 | |||
298 | `info` : This is the most usual log level. Logs only stuff which is relevant. |
||
299 | |||
300 | `warn` : Logs stuff which doesn't behave as expected. Not critical (generic functionality should be okay) but should be noticed/checked. |
||
301 | |||
302 | `error` : Something essential/critical happened. Functionality is limited or aborted at all. |
||
303 | |||
304 | `fatal` : Game over. |
||
305 | |||
306 | #### [db] = Internal database |
||
307 | |||
308 | `directory` : An own directory where to store the internal database. Defaults to |
||
309 | 'os.TempDir()/l2cpbg.db' which is not very useful on Linux based systems as it normally get cleaned after each reboot. |
||
310 | |||
311 | Choose yourself where to store the database. |
||
312 | If you've a small CardDAV server with <= 200 contacts, let the DB in the default location. |
||
313 | An initial sync of 200 contacts (after a reboot) will be quickly done. |
||
314 | Not much storage space is needed. An CardDAV server with approx. 4 thousand contacts, take about 10 MByte storage. |
||
315 | |||
316 | ATTENTION: If you use one of the .deb packages, the binary get started as user=l2cpbg. |
||
317 | Thus, the given directory, manually need to made owned by l2cpbg via |
||
318 | `chown -R l2cpbg:l2cpbg /your/db/directory`! Otherwise the DB process will fail on missing read/write permissions! |
||
319 | |||
320 | #### [ldap.map...] = LDAP/CardDav mapping |
||
321 | |||
322 | Every LDAP attribute which is used within a phone(s) filter or response, need to have a corresponding CardDav mapping which get done as follows: |
||
323 | |||
324 | First you need to define a separate block for the LDAP attribute in the following syntax: `[ldap.map.<ldap attribute name (case sensitive)>]` |
||
325 | Within such a LDAP mapping block you have to define: |
||
326 | |||
327 | `dav` : Corresponding CardDav field/attribute name. |
||
328 | |||
329 | and optional define the following settings: |
||
330 | |||
331 | `itypes` : Case insensitive regular expression (RE2 syntax) of including relevant CardDav types or *Apple addressbook label* (Apple Adressbook extension: X-ABLabel). |
||
332 | |||
333 | `etypes` : Case insensitive regular expression (RE2 syntax) of **excluding** relevant CardDav types or *Apple addressbook label* (Apple Adressbook extension: X-ABLabel). |
||
334 | |||
335 | `index` : Zero based index in the case of a multi-value CardDav field. |
||
336 | |||
337 | For an overview of the predefined/default LDAP/CardDav mappings, take a |
||
338 | look into 'l2cpbg.sample.conf' file. |
||
339 | |||
340 | ## Phone configuration |
||
341 | |||
342 | ### Gigaset |
||
343 | |||
344 | Here's a configuration sample of a Gigaset N510 IP PRO: |
||
345 | ![Gigaset N510 IP PRO settings sample for L2CPBG 0.7.0](https://projects.shbe.net/attachments/download/19/config_gigaset-n510-ip-pro_v070_de.jpg "Gigaset N510 IP PRO settings sample for L2CPBG 0.7.0") |
||
346 | Take attention that 'Server Address' point to the machine where this gateway lives (as well as 'Serverport') |
||
347 | |||
348 | 'BaseDN', 'Common User Name' and 'Common Password' get filled with the same values as defined in your L2CPG config file. |
||
349 | |||
350 | ### Mitel (Aastra) |
||
351 | |||
352 | At first, you need to know that Mitel's LDAP implementation is a little bit different than the one from the other phones. |
||
353 | While the other phones always do a live request to the LDAP server when searching for a contact or phone number, |
||
354 | Mitel does 36 initial "give me all contacts" for "sn=0*, 1*, ..., a*, b*, ..., z*" once it boot, or during configured schedule (but not more often than once a day?!). |
||
355 | |||
356 | So, once Mitel loaded all contacts, it handles all searches internally. Also reverse-lookup searches for incoming calls get handled internally. |
||
357 | This in turn means, that most of L2CPBG's number prettyfying might disturb i.e. Mitels reverse lookup logic. |
||
358 | Because of this, you better should disable the relevant prettyfying via L2CPBG's config entries: |
||
359 | ```shell |
||
360 | [location] |
||
361 | prettifyNoAreaInSameArea = false |
||
362 | prettifyRemoveSpaces = true |
||
363 | ``` |
||
364 | This will result in more ugly phone numbers within the directory, but probably give better results for Mitel-internal reverse lookup searches. |
||
365 | |||
366 | Next: |
||
367 | |||
368 | Mitel's LDAP directory configuration can't be done within the Phone's or Web GUI. |
||
369 | Instead of, it need to be done within the provisioning file(s) startup.cfg, \<model\>.cfg and/or \<MAC\>.cfg (please check your Mitel documentation how to provision). |
||
370 | |||
371 | Following the required Mitel provisioning entries, based on L2CPBG's default config. |
||
372 | Don't forget to adapt if you changed these within your L2CPBG's config: |
||
373 | |||
374 | ```shell |
||
375 | # General LDAP Settings: |
||
376 | ldap enabled: 1 |
||
377 | ldap name: CardDAV |
||
378 | ldap server: cn=phone:your-password@<L2CPBG's IP>:1389 |
||
379 | ldap base dn: dc=example, dc=com |
||
380 | ldap search scope: subtree |
||
381 | |||
382 | # Reverse Lookup: |
||
383 | # For best results, use num of local phone number digit + number of area code digits, but not higher than 9 |
||
384 | # Example: |
||
385 | # You complete local phone number is: +49 8421 12345 |
||
386 | # Your local phone number is 5 nums long + area code length is 4 = 9 |
||
387 | directory digits match: 9 |
||
388 | |||
389 | # LDAP Attribute definitions |
||
390 | # (required because they seem to have no defaults) |
||
391 | ldap cn attribute: cn |
||
392 | ldap first name attribute list: givenName |
||
393 | ldap last name attribute list: sn |
||
394 | ldap company attribute list: company |
||
395 | ldap job title attribute list: title |
||
396 | ldap business street attribute list: street |
||
397 | ldap business city attribute list: l |
||
398 | ldap business state attribute list: st |
||
399 | ldap business postal code attribute list: postalCode |
||
400 | ldap business country attribute list: c |
||
401 | ldap home street attribute list: homeStreet |
||
402 | ldap home city attribute list: homeCity |
||
403 | ldap home state attribute list: homeState |
||
404 | ldap home postal code attribute list: homePostalCode |
||
405 | ldap home country attribute list: homeCountry |
||
406 | ldap business phone 1 attribute list: telephoneNumber |
||
407 | ldap home phone 1 attribute list: homePhone |
||
408 | ldap mobile phone attribute list: mobile |
||
409 | ldap business fax attribute list: facsimileTelephoneNumber |
||
410 | ldap email 1 attribute list: mail |
||
411 | ldap email 2 attribute list: homeMail |
||
412 | ``` |
||
413 | Reboot your phone and when it seem to be ready, wait further 2 to 3 minutes till it start to request all LDAP Addresses from L2CPBG's LDAP Server (see L2CPBG's log, journal or event messaages). |
||
414 | |||
415 | Go to the phone's web GUI and define a 'Directory' key (Left menue: Operation / Softkeys and XML) |
||
416 | |||
417 | ### Yealink |
||
418 | |||
419 | Another configuration sample of a Yealink SIP-T52S: |
||
420 | ![Yealink SIP-T52S settings sample for L2CPBG 0.7.0](https://projects.shbe.net/attachments/download/18/config_yealink-t52s_fw7084_v070_en.jpg "Yealink SIP-T52S settings sample for L2CPBG 0.7.0") |
||
421 | Take attention that 'Server Address' point to the machine where this gateway lives (as well as 'Port'). |
||
422 | |||
423 | 'Base', 'User Name' and 'Password' get filled with the same values as defined in your L2CPG config file. |
||
424 | |||
425 | ### Snom |
||
426 | |||
427 | The LDAP configuration of Snom phones look similar to the ones of |
||
428 | Gigaset or Yealink. |
||
429 | But a user reported that entering `(|(cn=*%*)(sn=*%*)(givenName=*%*)(company=*%*))` within 'LDAP name filter' did the trick for working name searches. |
||
430 | |||
431 | ## Special / Gold features |
||
432 | |||
433 | ### Multi-Instances (Pro or Evaluation license required) |
||
434 | |||
435 | There might be special configuration requirements like different CardDAV Server/Phonebook combinations/permissions, or multi-locations requirements which can't yet configured in L2CPBG. |
||
436 | |||
437 | For such special cases, you might start multiple L2CPBG instances. Each with his own configuration or even with the more comfortable merge/overlay configuration loading. |
||
438 | |||
439 | Imagine: You already have a standard instance running, like described within the [Installation](https://projects.shbe.net/projects/l2cpbg/wiki/Readme_093#Installation) section. But now you've a special requirement like a office branch (which has access through your office VPN to your L2CPBG server) for which you need other [location] settings. |
||
440 | |||
441 | `--instance-suffix` functionality might solve this for you! |
||
442 | |||
443 | Do the following to configure and install a new instance: |
||
444 | |||
445 | 1. We need to give the new instance some kind of meaningfull name. In the following we decide for 'foo' |
||
446 | 2. Copy your l2cpbg.conf file (as described in [Installation](https://projects.shbe.net/projects/l2cpbg/wiki/Readme_093#Installation)) to l2cpbg-foo.conf, and open it in notepad (or whichever editor your prefer |
||
447 | 3. Change the [ldap] port to a free port. I.e. from 1389 to 1390 |
||
448 | 4. If you have configured a [db] directory, give the new instance a separate (and exclusive) db directoy. If you don't have a configured [db] directory entry, you can leave it as it is. By default the db get stored at OS.Tempdir()/l2cpbg-\<instance-suffix\>.db |
||
449 | 5. Change the configuration stuff why you where interested in a separate instance. |
||
450 | 6. Test your new configuration in foreground (the same way as you did during the normal instance installation see [Installation](https://projects.shbe.net/projects/l2cpbg/wiki/Readme_093#Installation), but with '--config' option pointing to your new instance configuration. |
||
451 | 7. Once the configuration is good, you can call `l2cpbg.exe --instance-suffix=foo --service=start|stop|restart` like during normal install (except the additional parameter --instance-suffix=foo) |
||
452 | |||
453 | When dealing with the configuration of multi-instances, you will heavily benefit from L2CPBG's possibility to do merge/overlay config loading, which is not more than loading each subsequent config on top of the previous one. |
||
454 | By this you'll have i.e. your main configuration in l2cpbg.conf whereas your l2cpbg-foo.conf contains only the two or three config changes you're interested in. Then, by adding `--config=<your config directory>/l2cpbg.conf,<your config directory>/l2cpbg-foo.conf` as l2cpbg command option, it's done. |
||
455 | |||
456 | ## Compatibility |
||
457 | |||
458 | L2CPBG was tested with: |
||
459 | |||
460 | - CardDAV Server: |
||
461 | - [Baïkal](https://sabre.io/baikal/) version 0.7.x |
||
462 | - [Daylite](https://www.marketcircle.com/) |
||
463 | - [Nextcloud](https://nextcloud.com/) version 13, 15, 16, 18, 20, 22, 25, 26, 27 |
||
464 | - [Synology Contacts](https://www.synology.com/dsm/packages/Contacts) |
||
465 | - Desktop & Mobile Phones: |
||
466 | - [Gigaset](https://www.gigasetpro.com/) N510 IP PRO, N670 IP Pro |
||
467 | - [Grandstream](http://www.grandstream.com/) GXP2170 |
||
468 | - [Mitel 6800](https://www.mitel.com/products/6800-sip-phones-business) and [6900](https://www.mitel.com/de-de/produkte/telefone-und-zubehoer/ip-telefone-und-peripherie/6900-ip-series) Series |
||
469 | - [Snom](https://www.snom.com/) 300, D315, D335 |
||
470 | - [Yealink](https://www.yealink.com/) SIP-T52S, SIP-T54S, SIP-T54W, SIP-T58 (Android) |
||
471 | - [Fanvil](https://fanvil.com/) X3U, X7C, X210 |
||
472 | - Soft-Phones & Tools: |
||
473 | - [PhoneSuite CTI](https://phonesuite.de) |
||
474 | - Gateway Host OS: |
||
475 | - [Debian](https://www.debian.org/) Stretch 9.x, Buster 10.x (running at amd64 as well as ARMv7), Bullseye 11.x |
||
476 | - [Gentoo](https://www.gentoo.org) amd64 |
||
477 | - [Alpine Linux](https://www.alpinelinux.org/) x86_64 v3.x |
||
478 | - [macOS](https://www.apple.com/macos/) ™ Sierra 10.12.6, Catalina 10.15.7, Big Sur 11.6<!--, Ventura 13.1 --> |
||
479 | - [Ubuntu](https://ubuntu.com/) 20.04, 22.04 |
||
480 | - [Windows](https://www.microsoft.com/windows) 10, Server 2016 |
||
481 | |||
482 | ## Limitations and Known Issues |
||
483 | |||
484 | - The internal LDAP Server doesn't support LDAPS (encrypted LDAP |
||
485 | communication) at the moment. Therefore |
||
486 | **it should not be used in an untrusted network!** |
||
487 | If you're interested to run it in an untrusted network, |
||
488 | please drop me a short note. |
||
489 | |||
490 | ## Support & getting help |
||
491 | |||
492 | For getting help or discussing l2cpbg, please browse the [L2CPBG |
||
493 | Forum](https://projects.shbe.net/projects/l2cpbg/boards) or check/open |
||
494 | the [Tickets](https://projects.shbe.net/projects/l2cpbg/issues) area. |