Hi Miguel,

On 23.04.2018 16:56, Miguel Angel Gonzalez wrote:
> We are starting to use your tool and we would like to know if it's possible
> to create different toles to access where UID/GID and delete option can be
> hidden.

LAM Pro supports access levels where you can e.g. disable the delete options. 
Looks like here:

https://www.ldap-account-manager.org/static/doc/manual/images/configTypes2.png

For UID/GID there is no option to only make this read-only. You can limit 
modify access via ACLs on server side for this.


> Also, we have a LDAP schema where  groups are in different cn:
> ou=PrivateGroup,dc=company - that's for primary group
> ou=Groups,dc=company - Groups defined
> 
> So, my second question is how can we setup Active accounts types to use
> both cn?

There are two options:

1. Use dc=company as base DN for groups in your server profile. You can select 
the OU when you create new entries.

2. Add the group account type twice in your server profile. This way you can 
configure two base DNs. LAM will show each config as a separate tab inside LAM 
(since 6.0).


https://www.ldap-account-manager.org/static/doc/manual/ch03s02.html#idm759


Best regards

Roland

-- 

LDAP Account Manager
https://www.ldap-account-manager.org/

Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot
_______________________________________________
Lam-public mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/lam-public

Reply via email to