White, Daniel E. (GSFC-770.0)[NICS] via FreeIPA-users wrote:
> I have been trying various LDAP extensions without success.
> 
> Most Google-able information is years old.
> 
>  
> 
> Anyone use this :
> https://www.freeipa.org/page/Setting_up_MediaWiki_to_run_against_FreeIPA  ?

My first foray into the Kerberos world eons ago was to Kerberize a MW
server and I used a similar method as described in the user-contributed
article. I didn't end up adding in any LDAP integration but setting up
auto-creation of a MW user was pretty straightforward IIRC.

For my simple use case IIRC I just stripped the username off the
principal and used that (similar to $wgAuthRemoteuserDomain). That won't
work for AD users as you could have conflicts.

Honestly for me the hardest part was setting up a KDC with LDAP
integration (3 full days IIRC) in the pre-IPA days.

rob
_______________________________________________
FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org
To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org
  • [Freeipa-users] Medi... White, Daniel E. (GSFC-770.0)[NICS] via FreeIPA-users
    • [Freeipa-users]... Rob Crittenden via FreeIPA-users
      • [Freeipa-us... White, Daniel E. (GSFC-770.0)[NICS] via FreeIPA-users

Reply via email to