Hi Duncan,

That indeed fixed our challenge

Thanks!

Paul

Duncan Ferguson wrote:

On 23 Nov 2009, at 11:56, paul wrote:

ldap authentication in opsview only uses the rootdn as specified in opsview_web_local.yml. If users exist deeper in the ad tree, the user/passw is not recognized.

example:

base dn = ou=holland,dc=example,dc=com

ou=support,ou=holland,dc=example,dc=com -> opsview admins
ou=users,ou=holland,dc=example,dc=com -> opsview viewers

When the base dn is used, none of the opsview users are found. When the base dn is modified to admins tree, the admins are found, however not the viewers.

Setting the user_scope to subtree may help in this case

http://www.idevelopment.info/data/LDAP/LDAP_Resources/SEARCH_Setting_the_SCOPE_Parameter.shtml

  Duncs


------------------------------------------------------------------------




Opsera Limited | Unit 69 Suttons Business Park
Reading | Berkshire | RG6 1AZ | UK

Phone:   +44 (0) 845 057 7887
Mobile:   +44 (0) 7968 148 748
Skype:   duncan_j_ferguson     Email:   duncan.fergu...@opsera.com
www.opsera.com

Opsera Limited is registered in the UK under Company Number 5396532. Our registered office is Gorse View, Horsell Rise, Woking, Surrey, GU21 4RB.

------------------------------------------------------------------------

_______________________________________________
Opsview-users mailing list
Opsview-users@lists.opsview.org
http://lists.opsview.org/lists/listinfo/opsview-users

_______________________________________________
Opsview-users mailing list
Opsview-users@lists.opsview.org
http://lists.opsview.org/lists/listinfo/opsview-users

Reply via email to