These are chat archives for allegro/ralph

22nd
May 2017
Christopher
@ni-christopher
May 22 2017 14:49
@vi4m Hi. I'm about to start a new Issue according to LDAP Authentication with OpenLDAP. Would be great if you could take a look and may have an Idea, whats the problem.
✪ vi4m Marcin Kliks
@vi4m
May 22 2017 14:50
sure, go ahead @ni-christopher. It seems we need more data
to analyze your particular problem. Do you have one?
Christopher
@ni-christopher
May 22 2017 14:52
The main problem is the "active" flag after the user creation. If the user got synced by the OpenLDAP, the active flag is unset.
I played around with MappedGroupOfNamesType and tried to map the user-group against the Ralph-Group. But this doesn't work either.
Because of our OpenLDAP does not have any memberOfAttribute at the User level.
The behavior is, that the user is being created and synced with the LDAP but not able to login.
✪ vi4m Marcin Kliks
@vi4m
May 22 2017 14:56
@mkurek it seems like you know a bit about this part of codebase? any ideas?
Christopher
@ni-christopher
May 22 2017 14:57
If I turn off AUTH_LDAP_ALWAYS_UPDATE_USER and set the active flag or add the user to the activeGroup, the User is able to log in. But thats no option for us :(
Christopher
@ni-christopher
May 22 2017 15:21
Sorry - closed the wrong browser window :P