Modify

Opened 8 years ago

#5996 new defect

LdapPlugin should cascade group memberships

Reported by: simon@… Owned by: Emmanuel Blot
Priority: high Component: LdapPlugin
Severity: normal Keywords:
Cc: Trac Release: 0.11

Description

Groups can be defined either through its direct members (which can be users or other groups), or through the memberOf attribute of users or other groups. LdapPlugin should support both methods. Also, LdapPlugin should support indirect membership of a group (where a user is a member of a group that is in its turn member of another group). Where supported matching syntax 0.113556.1.4.1941 should be used.

Typically, the LDAP query could look something like:

(&(objectClass=user)(memberOf:1.2.840.113556.1.4.1941:=CN=groupName))

Attachments (0)

Change History (0)

Modify Ticket

Change Properties
Set your email in Preferences
Action
as new The owner will remain Emmanuel Blot.

Add Comment


E-mail address and name can be saved in the Preferences.

 
Note: See TracTickets for help on using tickets.