Closed Falco20019 closed 4 years ago
Thanks for all your contributions! This issue has been automatically marked as stale because it has not had recent activity. It will be closed if no further activity occurs.
Still waiting for any attention by the team.
Thanks for all your contributions! This issue has been automatically marked as stale because it has not had recent activity. It will be closed if no further activity occurs.
Still a problem
Thanks for all your contributions! This issue has been automatically marked as stale because it has not had recent activity. It will be closed if no further activity occurs.
bump
Thanks for all your contributions! This issue has been automatically marked as stale because it has not had recent activity. It will be closed if no further activity occurs.
/unstale
Thanks for all your contributions! This issue has been automatically marked as stale because it has not had recent activity. It will be closed if no further activity occurs.
Description
Adding new users to teams through LDAP fails with the message
[ldap] Connection error: Invalid filter syntax.
.Steps to reproduce
CN=LW-LI,OU=Universal,OU=Group,OU=NW,OU=DE,OU=Production,DC=my-company,DC=com
)Logs don't show any valuable information:
Assumption
I assume, it's failing here when accessing the distinguished name. In our LDAP, there is no field
dn
, justdistinguishedName
. This will result insearch.groups_from
in a filter of the form(&(cn=*)(member=))
which is of course invalid.I think, like with the
uid
, thedn
attribute needs to be configurable.I currently can't build the image myself to try it out, since our IT is using a man-in-the-middle proxy (ZScaler) with a self-signed certificate that parts of the your build chain are not trusting.
Deployment information
Deployment method: Docker compose, pretty similar to the example.
Configuration: Running docker-image
opensuse/portus:head
from today.Portus version: 2.5.0-dev@a1b9f2ebfeb84680a9dcd5629195e4c52815735c
LDAP samples (relevant excerpt)
ldaps://mos1d00001.my-company.com:636/CN=Kraemer%5C,%20Benjamin,OU=LW-LI,OU=JLS,OU=Department,OU=People,OU=User,OU=MB,OU=DE,OU=Production,DC=my-company,DC=com
ldaps://mos1d00001.my-company.com:636/LW-LI,OU=Universal,OU=Group,OU=NW,OU=DE,OU=Production,DC=my-company,DC=com