Back to bug 1375685

Who When What Removed Added
RHEL Program Management 2016-09-13 18:19:17 UTC Keywords ZStream
Edu Alcaniz 2016-09-20 12:30:42 UTC CC ayoung, ealcaniz
Flags needinfo?(ayoung)
Edu Alcaniz 2016-09-20 13:24:23 UTC Priority high urgent
CC nlevinki
Hardware Unspecified x86_64
Flags needinfo?(nlevinki)
OS Unspecified Linux
Severity high low
Pablo Iranzo Gómez 2016-09-21 07:21:11 UTC CC pablo.iranzo
Link ID Red Hat Knowledge Base (Solution) 2621281
Pablo Iranzo Gómez 2016-09-21 07:42:31 UTC Severity low high
Martin Schuppert 2016-09-21 11:28:25 UTC CC mschuppe
Adam Young 2016-09-23 18:42:34 UTC Flags needinfo?(ayoung) needinfo?(nlevinki)
Lon Hohberger 2016-09-26 14:16:30 UTC Priority urgent high
Target Milestone --- async
Nathan Kinder 2016-09-27 03:49:54 UTC Flags needinfo?(ayoung)
Lon Hohberger 2016-09-28 14:25:12 UTC Status NEW ASSIGNED
Adam Young 2016-09-28 14:43:41 UTC Doc Text Some Directories use a concept of POSIX groups where the entities of users in the groups are represented as UIDs, not full DNs such as:

dn: cn=group1, cn=groups,dc=domain,dc=com
....
memberUid: user1
memberUid: user2
....

while in the driver of LDAP was hardcoded that the entities could be only full DNs, like:

dn: cn=group1, cn=groups,dc=domain,dc=com
....
memberUid: uid=user1,cn=users,dc=domain,dc=com
memberUid: uid=user2,cn=users,dc=domain,dc=com
Doc Type If docs needed, set a value Bug Fix
Flags needinfo?(ayoung)
Lon Hohberger 2016-09-28 15:27:55 UTC Status ASSIGNED MODIFIED
Fixed In Version openstack-keystone-8.0.1-3.el7ost
errata-xmlrpc 2016-09-29 17:59:12 UTC Status MODIFIED ON_QA
Martin Lopes 2016-10-10 04:54:54 UTC CC mlopes
Doc Text Some Directories use a concept of POSIX groups where the entities of users in the groups are represented as UIDs, not full DNs such as:

dn: cn=group1, cn=groups,dc=domain,dc=com
....
memberUid: user1
memberUid: user2
....

while in the driver of LDAP was hardcoded that the entities could be only full DNs, like:

dn: cn=group1, cn=groups,dc=domain,dc=com
....
memberUid: uid=user1,cn=users,dc=domain,dc=com
memberUid: uid=user2,cn=users,dc=domain,dc=com
In certain cases, directories use the concept of POSIX groups, where the entities of users in the groups are represented as UIDs, not full DNs such as:

dn: cn=group1, cn=groups,dc=domain,dc=com
....
memberUid: user1
memberUid: user2
....

The LDAP driver was previously hardcoded for full DN entities, for example:

dn: cn=group1, cn=groups,dc=domain,dc=com
....
memberUid: uid=user1,cn=users,dc=domain,dc=com
memberUid: uid=user2,cn=users,dc=domain,dc=com
....

This update adds support for LDAP backends using POSIX groups.
nlevinki 2016-10-26 10:07:18 UTC QA Contact nlevinki rduartes
Lon Hohberger 2016-11-07 21:18:00 UTC Status ON_QA VERIFIED
errata-xmlrpc 2016-11-08 12:53:26 UTC Status VERIFIED RELEASE_PENDING
errata-xmlrpc 2016-11-14 19:58:29 UTC Status RELEASE_PENDING CLOSED
Resolution --- ERRATA
Last Closed 2016-11-14 14:58:29 UTC

Back to bug 1375685