Skip to content

RFC4519 group membership for posix server type#88

Merged
adamruzicka merged 5 commits intotheforeman:masterfrom
adamruzicka:unique-group-search-ext
May 6, 2025
Merged

RFC4519 group membership for posix server type#88
adamruzicka merged 5 commits intotheforeman:masterfrom
adamruzicka:unique-group-search-ext

Conversation

@adamruzicka
Copy link
Contributor

@adamruzicka adamruzicka commented Apr 22, 2025

Builds on top of previous attempts such as #72 and #78 .

This flag only affects posix servers. Without it, user's groups are looked up using the memberuid attribute per RFC2307. POSIX LDAP servers (DS389, FreeIPA when you treat it as a posix server) may support an alternative way of modelling group membership using groupOfNames - member and groupOfUniqueNames - uniqueMember attributes as described in RFC4519.

TODO:

  • fix tests

@adamruzicka adamruzicka force-pushed the unique-group-search-ext branch from 723fb90 to fc6807d Compare April 23, 2025 14:54
Copy link
Member

@ofedoren ofedoren left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks, @adamruzicka! LGTM based on answers in the follow-up PR.

@adamruzicka
Copy link
Contributor Author

Alright, it's been two weeks since last change and a week since approval, I'll hit the green button and :shipit:

@adamruzicka adamruzicka merged commit da5726b into theforeman:master May 6, 2025
10 checks passed
@adamruzicka adamruzicka deleted the unique-group-search-ext branch May 6, 2025 13:11
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants