Bug 577267 (jon24-ldap)

Summary: Support authorization via LDAP groups
Product: [Other] RHQ Project Reporter: Charles Crouch <ccrouch>
Component: No ComponentAssignee: Simeon Pinder <spinder>
Status: CLOSED CURRENTRELEASE QA Contact: Corey Welton <cwelton>
Severity: urgent Docs Contact:
Priority: urgent    
Version: unspecifiedCC: hbrock, spinder
Target Milestone: ---   
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2010-08-04 14:06:54 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On: 573818, 577791, 577800, 577817, 577828, 577829, 578485, 580127, 582471, 583748, 584355, 584994, 586435, 590718, 595452, 595482, 603050, 604733    
Bug Blocks: 577011    

Description Charles Crouch 2010-03-26 15:29:44 UTC
The idea is to enable JON administrators to associate JON roles to LDAP groups, rather than having to manually create JON roles and map JON users to them. We need to document setting up this process and what a user sees when the log in the first time after LDAP authorization is setup.

Design wiki:
http://rhq-project.org/display/RHQ/Design-LDAP+Integration

We also need to test how this scales, e.g. a dozen JON roles each associated with half a dozen ldap groups, along with a 1000 groups defined in total on the ldap server and have each JON user a member of 50 of those groups.

Comment 2 Corey Welton 2010-08-04 14:06:54 UTC
Closing these trackers.