LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 01-06-2010, 06:59 AM   #1
Neelima_MAV
LQ Newbie
 
Registered: Sep 2009
Posts: 4

Rep: Reputation: 0
How to assign access privileges to users in LDAP server


In researching current ldap issue (not being able to do anything but log in) it seems that there are no concepts of privileges, roles, etc. that could be assigned to a user in LDAP.
I've only seen fields that deal with name, organization, etc., not with application-specific access control.

I have to assign certain access privileges to users authenticated via LDAP server based on the privilege level mentoned in the LDAP server. How to attain this.
 
Old 01-06-2010, 07:39 AM   #2
Simon Bridge
LQ Guru
 
Registered: Oct 2003
Location: Waiheke NZ
Distribution: Ubuntu
Posts: 9,211

Rep: Reputation: 198Reputation: 198
As in - access controls?
http://www.zytrax.com/books/ldap/ch6/

access to <what> [ by <who> [<accesslevel>] [<control>] ]+
 
Old 01-07-2010, 11:04 PM   #3
Neelima_MAV
LQ Newbie
 
Registered: Sep 2009
Posts: 4

Original Poster
Rep: Reputation: 0
Question How to assign access privileges to users in LDAP server

Hi Simon Bridge,

I'm giving my problem here more clearly.
I have an LDAP server in a remote location. My LDAP client is the router I'm using. All the users that are logged into the router are privileged as Administrator, Guest and SSLVPN users. Usually these user privileges are set by the Router itself. But now, my requirement is that I should get this user privilege information from the LDAP server.

Can you please help me here as how to set the privileges and how to get this info from server.

Thanks in Advance,
Neelima.
 
Old 01-08-2010, 07:21 AM   #4
Simon Bridge
LQ Guru
 
Registered: Oct 2003
Location: Waiheke NZ
Distribution: Ubuntu
Posts: 9,211

Rep: Reputation: 198Reputation: 198
OK - I can see that.

http://www.yolinux.com/TUTORIALS/Lin...XLDAPTUTORIALS
Has several section about user passwordds and privileges - you'd have to adapt them to your requirements. Its a tad old but still useful for understanding.

I'll sleep on it.
 
Old 01-10-2010, 11:03 PM   #5
Neelima_MAV
LQ Newbie
 
Registered: Sep 2009
Posts: 4

Original Poster
Rep: Reputation: 0
Hi Simon Bridge,

That tutorial was really useful to understand the process of authentication, but has no clue of how to pass attributes from the LDAP server to LDAP client.

Can any body please help me here?

Thanks in advance,

Neelima.
 
Old 01-11-2010, 05:23 AM   #6
Simon Bridge
LQ Guru
 
Registered: Oct 2003
Location: Waiheke NZ
Distribution: Ubuntu
Posts: 9,211

Rep: Reputation: 198Reputation: 198
The server decides, not the client.

/etc/openldap/slapd.conf you'll see that you can specify the ACLs of what data users can read and/or write.
http://www.gentoo.org/doc/en/ldap-howto.xml
... has some examples.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
How I can assign to a user some administrative privileges? Md.Abul Quashem Linux - Enterprise 2 10-27-2008 12:26 PM
how to assign mount privileges to non-root user srinivas1224 Linux - Networking 1 10-23-2008 10:41 AM
Assign different folders/users to different IPs on the same dedicated server yuye811 Linux - Server 2 12-17-2007 12:13 PM
Samba Server w/ LDAP Users haydenyoung Linux - Server 0 09-25-2007 05:39 AM
how to assign users access to new partitions wycolorado SUSE / openSUSE 2 01-01-2005 09:48 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 02:05 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration