phpgroupware-users
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[phpGroupWare-users] Strangness with phpgw and ldap...


From: Marco Gaiarin
Subject: [phpGroupWare-users] Strangness with phpgw and ldap...
Date: Thu, 22 Feb 2007 15:00:47 +0100
User-agent: Mutt/1.5.12-2006-07-14

[another installation of PHPGW, totally unrelated to the sitemgr
trouble exposed on past email, please don't mix this email! ;)]


Ok, phpgw internally use the same nunberspace for users and group, so
there's no way to have an user and a group with the same UID.

OK, as a tempative to fix this design flaw/behaviour, in LDAP schema
the phpgwAccountID/phpgwGroupID: fields was added, so we can use
different ID for POSIX and phpgw.


I've recently added phpgw to an existing LDAP/Samba installation,
imported user and group and found that there's no way to proper set
ACL, because user acl override group and group acl override users, even
if i've set phpgwAccountID=uidNumber+10000 to preventing ID clash.
Also, membership are taken into account using POSIX ID, not phpgw ID.


The only usefulness of phpgwAccountID/phpgwGroupID seems that the user
can login (if i set phpgwAccountID=POSIX ID=some other group ID the user
cannot login at all), but after that ACL and group membership are a
mess.


Right? I can do something about that?

-- 
dott. Marco Gaiarin                                 GNUPG Key ID: 240A3D66
  Associazione ``La Nostra Famiglia''                http://www.sv.lnf.it/
  Polo FVG  -  Via della Bontà, 7 - 33078  -  San Vito al Tagliamento (PN)
  marco.gaiarin(at)sv.lnf.it      tel +39-0434-842711  fax +39-0434-842797




reply via email to

[Prev in Thread] Current Thread [Next in Thread]