Hari Sekhon created AMBARI-21506: ------------------------------------ Summary: User/group mapping rules similar to Hadoop's auth_to_local Key: AMBARI-21506 URL: https://issues.apache.org/jira/browse/AMBARI-21506 Project: Ambari Issue Type: New Feature Components: ambari-server Affects Versions: 2.5.1 Environment: HDP 2.6 + Kerberos + AD LDAP multi-domain forest Reporter: Hari Sekhon Priority: Blocker
Feature Request to add user/group mapping rules similar to Hadoop's auth_to_local. This will allow munging users/groups and rule based remappings to differentiate duplicate users in multi-domain Active Directory forests where the LDAP results returned from the global catalog include duplicate usernames which need to be translated with a prefix/suffix in order to differentiate between domains to prevent users from different domains sharing logins, permissions etc. -- This message was sent by Atlassian JIRA (v6.4.14#64029)