Details
-
New Feature
-
Status: Reopened
-
Minor
-
Resolution: Unresolved
-
None
-
None
-
None
Description
As described below, the current LDAP support will query user group membership, but only immediate membership. Unlike the database auth, nested user groups are not supported. Support for nested user groups should be added.
Note that while Active Directory supports a specific filter for retrieving recursive group memberships, leveraging that would need to be done carefully. Other LDAP servers may not support that filter, and an alternative, standards-conforming mechanism would need to be used by default. If it is possible to automatically detect that the LDAP server supports this, that would be ideal. Another option might be to provide some mechanism for overriding the filter that Guacamole will use to determine membership.
Attachments
Issue Links
- is duplicated by
-
GUACAMOLE-1086 Add support for nested LDAP groups
- Closed