Ticket #545 (closed enhancement: fixed)
Linux Authentication against eBox LDAP
| Reported by: | akrouskop@… | Owned by: | juruen@… |
|---|---|---|---|
| Milestone: | 0.9.1 | Component: | users |
| Severity: | normal | Keywords: | ldap authentication |
| Cc: |
Description
As mentioned in this thread on Ubuntu Forums, currently eBox is using OpenLDAP but keeps the LDAP source "internal." It would be great if eBox tweaked it's LDAP set up such that it had all the POSIX entries and make the LDAP server queryable from other Linux servers so it could be used for Linux user authentication.
My organization is looking for a centralized authentication solution. We looked at eBox and were very excited by it's potential until we realized that it's leveraging of OpenLDAP was in this "internal only" state.
Attachments
Change History
comment:2 Changed 6 years ago by akrouskop@…
Awesome.
I'm glad to hear the positive response that this would be feasible. For our purposes, read-only would be totally fine. I'll look forward to 0.9.1 (and would prefer to use this "out of the box" rather than run a hacked up version.)
comment:3 Changed 6 years ago by juruen@…
- Status changed from new to assigned
- estimatedhours changed from 0 to 8
comment:4 follow-up: ↓ 5 Changed 6 years ago by anonymous
- hours changed from 0 to 4
- Status changed from assigned to closed
- Resolution set to fixed
- totalhours changed from 0.0 to 4.0
comment:5 in reply to: ↑ 4 Changed 6 years ago by kurinando@…
- Status changed from closed to reopened
- Resolution fixed deleted
Replying to anonymous: It's already possible to use ebox as ldap server to the whole network? If so is any type of guide to use ebox with ubuntu? thx
comment:6 Changed 5 years ago by ejhernandez@…
- Status changed from reopened to closed
- Resolution set to fixed
The OpenLDAP server is already listening to internal interfaces since 0.9.1 release. As this forum post howto (1) shows, eBox may act as an auth place for linux machines as well.
comment:7 Changed 5 years ago by anonymous
http://sdfgdfg.freehostingz.com/index1.html infotronics attendance enterprise
Hi,
This feature has been asked a few times, and it seems reasonable. You have to take into account that you should use the ldap in read-only mode from outside.
I'll try to implement this feature for the next release 0.9.1 which is due in a few weeks. However, if you need it earlier, i can tell you how to hack a few files to have it working.