Uploaded image for project: 'Apache Guacamole - Contributions'
  1. Apache Guacamole - Contributions
  2. GUAC-1115

Support complex LDAP organizational structures

    XMLWordPrintable

    Details

    • Type: Story
    • Status: Done
    • Priority: Critical
    • Resolution: Done
    • Affects Version/s: None
    • Fix Version/s: 0.9.9
    • Component/s: guacamole-auth-ldap
    • Labels:
    • Sprint:
      DEV 2015-10-30
    • Story Points:
      5

      Description

      The current LDAP authentication module in Guacamole is very basic. It takes the username and adds the LDAP base DN. This is not sufficient for a directory where users are scattered across multiple distinct OUs under the base DN.

      The LDAP module should instead:

      1. Perform a search for the parameter which identifies the user (uid/samaccountname) under the ENTIRE subtree from the base DN
      2. Use just the uid/samaccountname to identify the user

        Attachments

          Issue Links

            Activity

              People

              Assignee:
              mike.jumper Michael Jumper
              Reporter:
              darkpila Andrea Ghirardini
              Votes:
              6 Vote for this issue
              Watchers:
              9 Start watching this issue

                Dates

                Created:
                Updated:
                Resolved:

                  Time Tracking

                  Estimated:
                  Original Estimate - 4h
                  4h
                  Remaining:
                  Time Spent - 3.5h Remaining Estimate - 0.5h
                  0.5h
                  Logged:
                  Time Spent - 3.5h Remaining Estimate - 0.5h
                  3.5h