White, Daniel E. (GSFC-770.0)[NICS] via FreeIPA-users wrote: > I have been trying various LDAP extensions without success. > > Most Google-able information is years old. > > > > Anyone use this : > https://www.freeipa.org/page/Setting_up_MediaWiki_to_run_against_FreeIPA ?
My first foray into the Kerberos world eons ago was to Kerberize a MW server and I used a similar method as described in the user-contributed article. I didn't end up adding in any LDAP integration but setting up auto-creation of a MW user was pretty straightforward IIRC. For my simple use case IIRC I just stripped the username off the principal and used that (similar to $wgAuthRemoteuserDomain). That won't work for AD users as you could have conflicts. Honestly for me the hardest part was setting up a KDC with LDAP integration (3 full days IIRC) in the pre-IPA days. rob _______________________________________________ FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org