Differences
This shows you the differences between two versions of the page.
Both sides previous revision Previous revision Next revision | Previous revision | ||
technical:ldap-integration-rba [2025/06/08 05:15] – system | technical:ldap-integration-rba [2025/06/08 06:35] (current) – [Adjusting the rights of a role] system | ||
---|---|---|---|
Line 28: | Line 28: | ||
===== Common Settings ===== | ===== Common Settings ===== | ||
- | - **Client connects:** The LDAP client (e.g., | + | <panel type=" |
- | | + | {{:technical: |
- | | + | </ |
- | | + | |
+ | * To ensure that the LDAP user has a pleasant experience | ||
+ | * As stated earlier, we also give the option to specify the attribute that will contain the groups the user belongs to. | ||
+ | * The recommended value is // | ||
+ | ----------------- | ||
===== Admin ===== | ===== Admin ===== | ||
- | - **Client connects:** The LDAP client (e.g., a user authentication script) connects to the LDAP server. | + | <panel type=" |
- | - **Bind request:** The client sends a bind request to the server, which includes the username (or DN) and password. | + | {{:technical: |
- | - **Server authenticates: | + | </ |
- | - **Bind response:** If the credentials are valid, the server responds with a bind response, indicating a successful connection. | + | * The Admin role will typically include |
+ | ----------------- | ||
===== Operator ===== | ===== Operator ===== | ||
- | - **Client connects:** The LDAP client (e.g., a user authentication script) connects to the LDAP server. | + | <panel type=" |
- | | + | {{:technical: |
- | - **Server authenticates: | + | </ |
- | - **Bind response:** If the credentials are valid, the server responds with a bind response, indicating a successful connection. | + | * The Operator role will typically have less components selected compared |
+ | ----------------- | ||
===== View ===== | ===== View ===== | ||
- | - **Client connects:** The LDAP client (e.g., a user authentication script) connects to the LDAP server. | ||
- | - **Bind request:** The client sends a bind request to the server, which includes the username (or DN) and password. | ||
- | - **Server authenticates: | ||
- | - **Bind response:** If the credentials are valid, the server responds with a bind response, indicating a successful connection. | ||
- | |||
- | --------- | ||
- | |||
- | ====== Test LDAP Settings ====== | ||
- | * There is also a **Test LDAP Settings** Button that helps you to test the LDAP settings to ensure they work as intended. | ||
- | * The tests that will be done will be matching the **LDAP Authentication Process** described earlier on this page. | ||
<panel type=" | <panel type=" | ||
- | {{: | + | {{: |
</ | </ | ||
+ | * The View role will typically have the least components selected of the available three roles. | ||
+ | |||
+ | |||
+ | --------- | ||
+ | ====== Adjusting the rights of a role ====== | ||
+ | * Should you need to adjust the rights for one of the roles, there is a dedicated section in the Wiki which covers that topic. | ||