You are viewing a plain text version of this content. The canonical link for it is here.
Posted to commits@guacamole.apache.org by "Michael Jumper (JIRA)" <ji...@apache.org> on 2017/01/28 04:46:24 UTC

[jira] [Commented] (GUACAMOLE-101) Allow arbitrary filtering of LDAP users

    [ https://issues.apache.org/jira/browse/GUACAMOLE-101?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15843846#comment-15843846 ] 

Michael Jumper commented on GUACAMOLE-101:
------------------------------------------

In fact ... perhaps the LDAP support should be expanded to support multiple directories / base DNs. There's been recent interest in this on the mailing lists, and it's pretty clear that having only one derived filter for one directory under one base DN is insufficient:

http://apache-guacamole-incubating-users.2363388.n4.nabble.com/Ldap-amp-password-change-td319.html

> Allow arbitrary filtering of LDAP users
> ---------------------------------------
>
>                 Key: GUACAMOLE-101
>                 URL: https://issues.apache.org/jira/browse/GUACAMOLE-101
>             Project: Guacamole
>          Issue Type: Improvement
>          Components: guacamole-auth-ldap
>    Affects Versions: 0.9.9
>            Reporter: annie weng
>            Priority: Minor
>
> Currently, there is no way to filter LDAP login other than "ldap-username-attribute" and "ldap-user-base-dn". We need a way to filter LDAP authentication base on arbitrary criteria like group membership, thus the option will need to support arbitrary LDAP search filters.



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)