Changes between Version 14 and Version 15 of DirectoryAuthPlugin
- Timestamp:
- Apr 19, 2015, 11:36:10 AM (9 years ago)
Legend:
- Unmodified
- Added
- Removed
- Modified
-
DirectoryAuthPlugin
v14 v15 9 9 Users are authenticated by performing an ldap_bind against a directory using their credentials. The plugin will also pull the email address and displayName from Directory and populate the `session_attribute` table. 10 10 11 == Features 11 Key features: 12 12 13 13 - Can use a service account to do lookups, or anonymous binding. 14 - Can use SSL if opensslis configured correctly.15 - Configurable ..many options to deal with the differences between directories and schema.14 - Can use SSL if [https://www.openssl.org/ openssl] is configured correctly. 15 - Configurable: many options to deal with the differences between directories and schema. 16 16 - Uses both memory and db based caching to improve performance. 17 - Now supports LARGE directories '''Updated'''.17 - Supports large directories: 18 18 - Searches Groups more efficiently using Member. 19 19 - Recurses up the tree to find subgroups. … … 44 44 ==== Prerequisites 45 45 46 - You must install AccountManagerPlugin in orderto use this plugin.46 - You must install AccountManagerPlugin to use this plugin. 47 47 - [pypi:python-ldap/ Python-LDAP] is also required. 48 48 - For SSL, you will have to install and configure OpenSSL to work with valid certificates. You can test using `ldapsearch -Z`. … … 53 53 54 54 - Starting with v0.3, a database upgrade will be required as part of the installation. 55 1. Install the plugin and its prerequisites 55 1. Install the plugin and its prerequisites. 56 56 1. Update the database: 57 57 {{{#!sh … … 62 62 See [DirectoryAuthPlugin/ConfigurationExamples ConfigurationExamples]. 63 63 64 == Common Errors64 == Common Issues 65 65 66 66 - When using SSL, the server won't authenticate. Make sure you can use `ldapsearch -Z` with the same parameters from the same host, and resolve the issues there. A handy way to do that is to use: