LDAP Authentication

From: "Taha Ozket" <tahaozket(at)gmail(dot)com>
To: pgsql-general(at)postgresql(dot)org
Subject: LDAP Authentication
Date: 2008-06-29 13:44:01
Message-ID: 6e4906da0806290644q40ab3253p27b83488861f66d2@mail.gmail.com
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-general

Hi,

I have a ldap group, "pgsql-developers". I have an user (user1) member
of this group;

group
dn: cn=pgsql-developers,ou=Groups,o=Dep,dc=x,dc=x,dc=x
objectClass: groupOfUniqueNames
objectClass: top
cn: SVN Committers
uniqueMember: uid=user1,ou=Users,o=Dep,dc=x,dc=x,dc=x

user
dn: uid=user1,ou=Users,o=Dep,dc=x,dc=x,dc=x
objectClass: person
objectClass: top
objectClass: uidObject
cn:: Denem1
sn:: Deneme2
uid: user1
userPassword:: e01ENX10WnhudnhscVIxZ1pIa0wzWm5ET3VnPT0=

I added this line to pg_hba.conf [1]

host all all 172.20.0.0/16 ldap
"ldap://localhost/basedn;cn=;,cn=pgsql-developers,ou=Groups,o=Dep,dc=x,dc=x,dc=x"

But now postgresql requires my user1 must be define under
cn=pgsql-developers,ou=Groups.. But I want to give login permission to
pgsql-developers members.

How can I change this line for give login permission to
pgsql-developers members?

[1] http://wiki.postgresql.org/wiki/LDAP_Authentication_against_AD

Responses

Browse pgsql-general by date

  From Date Subject
Next Message Magnus Hagander 2008-06-29 15:58:04 Re: LDAP Authentication
Previous Message Filip Rembiałkowski 2008-06-29 09:42:54 Re: dblink to non postgresql dbms