Re: LDAP Authentication

From: "Brian A(dot) Seklecki (Mobile)" <bseklecki(at)collaborativefusion(dot)com>
To: Magnus Hagander <magnus(at)hagander(dot)net>
Cc: Taha Ozket <tahaozket(at)gmail(dot)com>, pgsql-general(at)postgresql(dot)org
Subject: Re: LDAP Authentication
Date: 2008-07-03 02:50:35
Message-ID: 1215053435.9810.61.camel@localhost.localdomain
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-general

On Sun, 2008-06-29 at 17:58 +0200, Magnus Hagander wrote:
> This is not something you currently can do. We can only do LDAP
> authentication, not authorization. There's no way to restrict it to a
> particular group.

We're very interested in this functionality (nss_ldap for PgSQL) -- so
if there's a joint-development effort that we can contribute man-hours
or development resources (challenge grant funding, hardware, etc.) to,
let us know.

~BAS

> One way to accomplish what you're trying to do is to have a script
> that
> synchronizes the members of the group to PostgreSQL accounts (account
> name and role membership only), and still use LDAP for authentication.

IMPORTANT: This message contains confidential information and is intended only for the individual named. If the reader of this message is not an intended recipient (or the individual responsible for the delivery of this message to an intended recipient), please be advised that any re-use, dissemination, distribution or copying of this message is prohibited. Please notify the sender immediately by e-mail if you have received this e-mail by mistake and delete this e-mail from your system.

In response to

Browse pgsql-general by date

  From Date Subject
Next Message Tom Lane 2008-07-03 03:55:54 Re: Memory use in 8.3 plpgsql with heavy use of xpath()
Previous Message J Ottery 2008-07-03 02:43:42 Date Formatting for dd/mm/yyyy