Re: Review Request 47976: LDAP sync cannot handle if the member attribute value is not DN or id
--- This is an automatically generated e-mail. To reply, visit: https://reviews.apache.org/r/47976/#review135472 --- Ship it! Ship It! - Daniel Gergely On máj. 27, 2016, 8:14 du, Oliver Szabo wrote: > > --- > This is an automatically generated e-mail. To reply, visit: > https://reviews.apache.org/r/47976/ > --- > > (Updated máj. 27, 2016, 8:14 du) > > > Review request for Ambari, Daniel Gergely, Robert Levas, Robert Nettleton, > and Sebastian Toader. > > > Bugs: AMBARI-16875 > https://issues.apache.org/jira/browse/AMBARI-16875 > > > Repository: ambari > > > Description > --- > > In some rare cases, member attribute value for a group/user can be > constructed. (not baseDN/uid, sometimes ldap proxies does that) > > Added 2 feature to fix these problems (to manipulate queries that are used > during sync): > > 2.1.) use regexp to get the useful informations from a custom member > attribute value: (for groups/users) > "authentication.ldap.sync.userMemberReplacePattern" > "authentication.ldap.sync.groupMemberReplacePattern" > > e.g.: > member:
Re: Review Request 47976: LDAP sync cannot handle if the member attribute value is not DN or id
--- This is an automatically generated e-mail. To reply, visit: https://reviews.apache.org/r/47976/#review135310 --- Ship it! Ship It! - Robert Levas On May 27, 2016, 4:14 p.m., Oliver Szabo wrote: > > --- > This is an automatically generated e-mail. To reply, visit: > https://reviews.apache.org/r/47976/ > --- > > (Updated May 27, 2016, 4:14 p.m.) > > > Review request for Ambari, Daniel Gergely, Robert Levas, Robert Nettleton, > and Sebastian Toader. > > > Bugs: AMBARI-16875 > https://issues.apache.org/jira/browse/AMBARI-16875 > > > Repository: ambari > > > Description > --- > > In some rare cases, member attribute value for a group/user can be > constructed. (not baseDN/uid, sometimes ldap proxies does that) > > Added 2 feature to fix these problems (to manipulate queries that are used > during sync): > > 2.1.) use regexp to get the useful informations from a custom member > attribute value: (for groups/users) > "authentication.ldap.sync.userMemberReplacePattern" > "authentication.ldap.sync.groupMemberReplacePattern" > > e.g.: > member:
Review Request 47976: LDAP sync cannot handle if the member attribute value is not DN or id
--- This is an automatically generated e-mail. To reply, visit: https://reviews.apache.org/r/47976/ --- Review request for Ambari, Daniel Gergely, Robert Levas, Robert Nettleton, and Sebastian Toader. Bugs: AMBARI-16875 https://issues.apache.org/jira/browse/AMBARI-16875 Repository: ambari Description --- In some rare cases, member attribute value for a group/user can be constructed. (not baseDN/uid, sometimes ldap proxies does that) Added 2 feature to fix these problems (to manipulate queries that are used during sync): 2.1.) use regexp to get the useful informations from a custom member attribute value: (for groups/users) "authentication.ldap.sync.userMemberReplacePattern" "authentication.ldap.sync.groupMemberReplacePattern" e.g.: member: