Back to bug 1393407

Who When What Removed Added
Red Hat Bugzilla Rules Engine 2016-11-09 13:20:50 UTC Keywords FutureFeature
Flags testing_ack? planning_ack? ovirt-4.1?
Ondra Machacek 2016-11-09 13:21:27 UTC CC mperina
Ondra Machacek 2016-11-09 13:22:08 UTC Link ID oVirt gerrit 57520
Ondra Machacek 2016-11-09 13:22:19 UTC Status ASSIGNED POST
Pavel Stehlik 2016-11-16 08:53:41 UTC QA Contact pstehlik grafuls
Flags testing_ack? testing_ack+
Yaniv Lavi 2016-12-08 14:40:34 UTC Target Milestone ovirt-4.1.0-alpha ovirt-4.1.0-beta
Lukas Svaty 2016-12-13 14:59:24 UTC CC lsvaty
Flags testing_plan_complete-
Oved Ourfali 2016-12-14 09:02:06 UTC Status POST MODIFIED
CC oourfali
Lukas Svaty 2016-12-14 12:34:47 UTC Flags testing_plan_complete- testing_plan_complete?
Martin Perina 2016-12-19 10:35:15 UTC Status MODIFIED ON_QA
Target Release --- 1.3.0
Gonza 2016-12-20 16:43:50 UTC Flags testing_plan_complete? testing_plan_complete-
Martin Perina 2017-01-05 21:14:24 UTC Doc Text Feature:

During authorization part of the login flow we are fetching group memberships of the user including nested groups. Currently nested group memberhips is resolved by recursive LDAP searches, which could take significant amount of time.

Reason:

Result:

This fix adds usage of a special Active Directory feature called LDAP_MATCHING_RULE_IN_CHAIN, which allows you to fetch complete group memberships including nested groups in one LDAP search.
Doc Type If docs needed, set a value Enhancement
Byron Gravenorst 2017-01-27 01:41:40 UTC CC bgraveno
Doc Text Feature:

During authorization part of the login flow we are fetching group memberships of the user including nested groups. Currently nested group memberhips is resolved by recursive LDAP searches, which could take significant amount of time.

Reason:

Result:

This fix adds usage of a special Active Directory feature called LDAP_MATCHING_RULE_IN_CHAIN, which allows you to fetch complete group memberships including nested groups in one LDAP search.
During the authorization stage of the login flow, the user's group memberships including nested groups are retrieved. Nested group memberships are resolved using recursive LDAP searches, which could take significant amount of time.

This update uses a special Active Directory feature called LDAP_MATCHING_RULE_IN_CHAIN, which allows you to fetch complete group memberships, including nested groups in one LDAP search.
Gonza 2017-02-06 11:02:49 UTC Status ON_QA VERIFIED
Sandro Bonazzola 2017-02-15 14:48:54 UTC Status VERIFIED CLOSED
Resolution --- CURRENTRELEASE
Last Closed 2017-02-15 09:48:54 UTC
Shivraj 2017-09-24 01:42:43 UTC CC omachace, shipatil
Flags needinfo?(omachace)
Ondra Machacek 2017-09-26 14:35:38 UTC Flags needinfo?(omachace)
Red Hat One Jira (issues.redhat.com) 2021-05-01 16:45:50 UTC Link ID Red Hat Issue Tracker RHV-40254

Back to bug 1393407