Open cesarfn4 opened 6 years ago
Usually these users are created on login by checking the external system... how would you see this working if you create them directly from the api/ui without being able to associate and verify their credentials remotely first?
The idea is that they'd be created so that you could assign permissions (and teams, in the case of radius/tacacs+ that do not have team mappings) to them, but the accounts wouldn't do anything until the user logs in.
Would this allow for organisation mapping? Ideally priv_lvl could be supported from the TACACS+ response
:+1: for this, would be great to assign existing default Teams for RADIUS/TACACS+ authentication
We should investigate if it's possible to add mapping support to RADIUS/TACACS+
ISSUE TYPE
COMPONENT NAME
SUMMARY
Ability to create users categorized as 'Enterprise' (SAML, RADIUS, TACACS+) through the UI/API.
ENVIRONMENT