On 23 Nov 2009, at 11:56, paul wrote:

ldap authentication in opsview only uses the rootdn as specified in opsview_web_local.yml. If users exist deeper in the ad tree, the user/passw is not recognized.

example:

base dn = ou=holland,dc=example,dc=com

ou=support,ou=holland,dc=example,dc=com -> opsview admins
ou=users,ou=holland,dc=example,dc=com -> opsview viewers

When the base dn is used, none of the opsview users are found. When the base dn is modified to admins tree, the admins are found, however not the viewers.

Setting the user_scope to subtree may help in this case

http://www.idevelopment.info/data/LDAP/LDAP_Resources/SEARCH_Setting_the_SCOPE_Parameter.shtml

  Duncs

--
Duncan Ferguson
Senior Developer

<<inline: image001.gif>>




Opsera Limited | Unit 69 Suttons Business Park
Reading | Berkshire | RG6 1AZ | UK

Phone:   +44 (0) 845 057 7887
Mobile:   +44 (0) 7968 148 748
Skype:   duncan_j_ferguson     Email:   [email protected]
www.opsera.com

Opsera Limited is registered in the UK under Company Number 5396532. Our registered office is Gorse View, Horsell Rise, Woking, Surrey, GU21 4RB.

_______________________________________________
Opsview-users mailing list
[email protected]
http://lists.opsview.org/lists/listinfo/opsview-users

Reply via email to