Re: [gpfsug-discuss] Question concerning integration of CES with AD authentication system

2019-07-26 Thread Christof Schmitt
ain discussion list Cc: christof.schm...@us.ibm.comSubject: [EXTERNAL] Re: [gpfsug-discuss] Question concerning integration of CES with AD authentication systemDate: Thu, Jul 25, 2019 4:31 PM  In the message dated: Thu, 24 May 2018 17:07:02 -,The pithy ruminations from Christof Schmitt on[Re: [gpfs

Re: [gpfsug-discuss] Question concerning integration of CES with AD authentication system

2019-07-25 Thread mark . bergman
In the message dated: Thu, 24 May 2018 17:07:02 -, The pithy ruminations from Christof Schmitt on [Re: [gpfsug-discuss] Question concerning integration of CES with AD authentication system] were: => Following up on an old, old post... => > Basically Samba ignores the separate

Re: [gpfsug-discuss] Question concerning integration of CES with AD authentication system

2018-05-24 Thread Christof Schmitt
> My understanding, after talking to expert people here, is that I should use the RFC2307 model for ID mapping (described here: https://goo.gl/XvqHDH). The problem is > that our ID schema is slightly different than that one described in RFC2307. In the RFC the relevant user identification fields

Re: [gpfsug-discuss] Question concerning integration of CES with AD authentication system

2018-05-24 Thread Christof Schmitt
> Basically Samba ignores the separate GID field in RFC2307bis, so one> imagines the options for changing the LDAP attributes are none> existent.   mmuserauth now has an option to use either the gid from the actual primarygroup or the gid defined for the user. See:  

Re: [gpfsug-discuss] Question concerning integration of CES with AD authentication system

2018-05-24 Thread Simon Thompson (IT Research Support)
-discuss-boun...@spectrumscale.org] on behalf of Skylar Thompson [skyl...@uw.edu] Sent: 24 May 2018 15:51 To: gpfsug-discuss@spectrumscale.org Subject: Re: [gpfsug-discuss] Question concerning integration of CES with AD authentication system On Thu, May 24, 2018 at 03:46:32PM +0100, Jonathan Buzzard

Re: [gpfsug-discuss] Question concerning integration of CES with AD authentication system

2018-05-24 Thread Skylar Thompson
On Thu, May 24, 2018 at 03:46:32PM +0100, Jonathan Buzzard wrote: > On Thu, 2018-05-24 at 14:16 +, Skylar Thompson wrote: > > I haven't needed to change the LDAP attributes that CES uses, but I > > do see --user-id-attrib in the mmuserauth documentation. > > Unfortunately, I don't see an

Re: [gpfsug-discuss] Question concerning integration of CES with AD authentication system

2018-05-24 Thread Jonathan Buzzard
On Thu, 2018-05-24 at 14:16 +, Skylar Thompson wrote: > I haven't needed to change the LDAP attributes that CES uses, but I > do see --user-id-attrib in the mmuserauth documentation. > Unfortunately, I don't see an equivalent one for gidNumber. > Is it not doing the "Samba thing" where your

Re: [gpfsug-discuss] Question concerning integration of CES with AD authentication system

2018-05-24 Thread Skylar Thompson
I haven't needed to change the LDAP attributes that CES uses, but I do see --user-id-attrib in the mmuserauth documentation. Unfortunately, I don't see an equivalent one for gidNumber. On Thu, May 24, 2018 at 08:45:00AM +, Dorigo Alvise (PSI) wrote: > Dear members, > at PSI I'm trying to

[gpfsug-discuss] Question concerning integration of CES with AD authentication system

2018-05-24 Thread Dorigo Alvise (PSI)
Dear members, at PSI I'm trying to integrate the CES service with our AD authentication system. My understanding, after talking to expert people here, is that I should use the RFC2307 model for ID mapping (described here: https://goo.gl/XvqHDH). The problem is that our ID schema is slightly