It is very simple; Postfix supports LDAP natively, our Postfix
queries our DSA for all the maps.
It won't cache however. If you need caching you should run a
localOpenLDAP server and proxy the queries.
This is all true. Note, that the proxy-map in Postfix won't cache, but
it will consolidate the connections to the LDAP-server.
However beware that during a dictionary attack your Exchange might get
overloaded with requests. This is a quite common situation these days.
Another obstacle is to authenticate to the Exchange. You need to
figure some common authentication mechanism for the queries. This is
solvable, though.
--
Cheers
Petri
GSM +358 400 505 939