====== Zimbra with Zextras Auth ======
FIXME Unfinished
**Zextras Auth**: https://docs.zextras.com/zextras-suite-documentation/latest/auth.html
**Zextras Auth Blog Post**: https://community.zextras.com/zextras-auth/
**Zextras Drive**: https://docs.zextras.com/zextras-suite-documentation/latest/drive.html
**Zextras Mobile**: https://www.zextras.com/mobile/
**Zextras Auth** is a feature implemented as a **Zimbra zimlet**. Among other things, it allows **users** to control and manage access credentials for their own mobile devices and apps.
Once you start using **Zextras Auth**, you will have to use it for all your mobile devices and apps (except CardDAV apps which still use the ZWC credentials). This includes **Microsoft Outlook** and **Outlook Mobile** app.
By default, all devices and apps use the Zimbra Web Client (ZWC) credentials. **With Zextras Auth, you will have a different and very secure password for each mobile device or app.**
In the event of a lost or stolen device, Zimbra users can even **remotely wipe** a connected device without needing an administrator.
{{ :internet:mail:zimbra:zimbra_zextras_wipe.png?direct&650 |Wipe a Stolen Device}}
===== Why Zextras Auth =====
E-mail security, hacking and malware infections are a huge concern these days. Zextras Auth aims to mitigate these risks.
Almost everyone has had a situation where they were forced to **reconfigure all of their mail client apps and devices** when they changed or lost their Zimbra Web Client password.
Using Zextras Auth, each app and device has a very secure and independent password that significantly improves security by creating strong passwords that only work on the intended device. This means that in the event of a compromize, the stolen credentials will not be useful to the attacker.
Further, if a device is lost or stolen, it is easy to revoke the password for specific device (or remotely wipe it) without having to reconfigure **all** your other devices.
===== Using Zextras Auth =====
**Zextras Auth passwords don't need to be managed, written down or remembered.** In the event of needing to know the password for your app or mobile device, you **just create a new password with a couple of clicks**. This too improves security significantly.
{{ :internet:mail:zimbra:zimbra_zextras_auth_1.png?direct&600 |Access the Zextras Auth Feature}}
{{:internet:mail:zimbra:zimbra_zextras_auth_2.png?direct&450 |Zextras Auth Passwords}} {{ :internet:mail:zimbra:zimbra_zextras_auth_3.png?direct&400|Create a New Password}}
===== Zextras 2FA =====
**2FA**: https://community.zextras.com/improve-the-security-using-zextras-2fa/
{{ :internet:mail:zimbra:zextras_2fa.png?direct&750 |Zextras 2FA Architecture}}