====== Zimbra with Zextras Auth ====== FIXME Unfinished **Zextras Auth**: https://docs.zextras.com/zextras-suite-documentation/latest/auth.html **Zextras Auth Blog Post**: https://community.zextras.com/zextras-auth/ **Zextras Drive**: https://docs.zextras.com/zextras-suite-documentation/latest/drive.html **Zextras Mobile**: https://www.zextras.com/mobile/ **Zextras Auth** is a feature implemented as a **Zimbra zimlet**. Among other things, it allows **users** to control and manage access credentials for their own mobile devices and apps. Once you start using **Zextras Auth**, you will have to use it for all your mobile devices and apps (except CardDAV apps which still use the ZWC credentials). This includes **Microsoft Outlook** and **Outlook Mobile** app. By default, all devices and apps use the Zimbra Web Client (ZWC) credentials. **With Zextras Auth, you will have a different and very secure password for each mobile device or app.** In the event of a lost or stolen device, Zimbra users can even **remotely wipe** a connected device without needing an administrator. {{ :internet:mail:zimbra:zimbra_zextras_wipe.png?direct&650 |Wipe a Stolen Device}} ===== Why Zextras Auth ===== E-mail security, hacking and malware infections are a huge concern these days. Zextras Auth aims to mitigate these risks. Almost everyone has had a situation where they were forced to **reconfigure all of their mail client apps and devices** when they changed or lost their Zimbra Web Client password. Using Zextras Auth, each app and device has a very secure and independent password that significantly improves security by creating strong passwords that only work on the intended device. This means that in the event of a compromize, the stolen credentials will not be useful to the attacker. Further, if a device is lost or stolen, it is easy to revoke the password for specific device (or remotely wipe it) without having to reconfigure **all** your other devices. ===== Using Zextras Auth ===== **Zextras Auth passwords don't need to be managed, written down or remembered.** In the event of needing to know the password for your app or mobile device, you **just create a new password with a couple of clicks**. This too improves security significantly. {{ :internet:mail:zimbra:zimbra_zextras_auth_1.png?direct&600 |Access the Zextras Auth Feature}} {{:internet:mail:zimbra:zimbra_zextras_auth_2.png?direct&450 |Zextras Auth Passwords}} {{ :internet:mail:zimbra:zimbra_zextras_auth_3.png?direct&400|Create a New Password}} ===== Zextras 2FA ===== **2FA**: https://community.zextras.com/improve-the-security-using-zextras-2fa/ {{ :internet:mail:zimbra:zextras_2fa.png?direct&750 |Zextras 2FA Architecture}}