Opened 7 years ago

# LdapPlugin should cascade group memberships

Reported by: Owned by: simon@… eblot high LdapPlugin normal 0.11

### Description

Groups can be defined either through its direct members (which can be users or other groups), or through the memberOf attribute of users or other groups. LdapPlugin should support both methods. Also, LdapPlugin should support indirect membership of a group (where a user is a member of a group that is in its turn member of another group). Where supported matching syntax 0.113556.1.4.1941 should be used.

Typically, the LDAP query could look something like:

(&(objectClass=user)(memberOf:1.2.840.113556.1.4.1941:=CN=groupName))