What about a very simply workout solution for all these problems:
1. For the LDAP authentication use a proxy server (with the LDAP module) placed
on the front of MH.
It works like a rock with an additional bonus, the port 80 for access.
I am using Apache as the proxy. Nginx is advertised as a much better
choice but I have no experience with it yet.
2. As for the authorisation the idea is to use a LMS s/w, which has a powerful
roles capabilities.
We are currently working on the MH integration to Moodle.
You obviously need to implement SSO to avoid a secondary authentication: from
Moodle to MH via proxy.
Leslaw
On 17 Jan 2012, at 20:24, Christopher Brooks wrote:
>> 2. LDAP is working with MH for authorization (user roles).
>>
>> Not in theory, but on an installed or test system.
>
> This is working for us, in production, since September. Details at:
>
> http://opencast.jira.com/wiki/display/MH/University+of+Saskatchewan+CAS+and+LDAP+integration
>
> It's my understanding that no one has gotten LDAP working for
> authentication. We use CAS for this, for instance.
>
> Using LDAP for authentication should be a spring security issue (we
> just use spring security as the framework). Using it for authorization
> people should be able to follow our recipe.
>
> I don't know of others using LDAP in production, but I know a number of
> folks are interested in it (and AD).
>
> Chris
> --
> Christopher Brooks, BSc, MSc
> ARIES Laboratory, University of Saskatchewan
>
> Web: http://www.cs.usask.ca/~cab938
> Phone: 1.306.966.1442
> Mail: Advanced Research in Intelligent Educational Systems Laboratory
> Department of Computer Science
> University of Saskatchewan
> 176 Thorvaldson Building
> 110 Science Place
> Saskatoon, SK
> S7N 5C9
> _______________________________________________
> Matterhorn-users mailing list
> [email protected]
> http://lists.opencastproject.org/mailman/listinfo/matterhorn-users
Dr Leslaw Zieleznik
OBIS (Oxford Brookes Information Solutions)
Oxford Brookes University
[email protected]
Tel: +44 (0)1865 483973
_______________________________________________
Matterhorn-users mailing list
[email protected]
http://lists.opencastproject.org/mailman/listinfo/matterhorn-users