LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Server
User Name
Password
Linux - Server This forum is for the discussion of Linux Software used in a server related context.

Notices


Reply
  Search this Thread
Old 02-03-2012, 11:39 PM   #1
aq_mishu
Member
 
Registered: Sep 2005
Location: Bangladesh
Distribution: RH 7.2, 8, 9, Fedora
Posts: 217

Rep: Reputation: 30
LDAP user life time


guys,
do you have any idea on the topic??

I am now using cisco WLC with local net user as a web based authentication for wifi users. also i can do the user account lifetime and after that, the account gets deleted. But now i am using proxy and also has a plan of using wccp. in this case, the wifi users first have to get the wlc page for auth. then they can go net. now as browser is with proxy, it actually can not open the page. I have tried to exclude the wlc ip but no work. now in the case if i use a external web form with ldap, i hope it will be solved. but again, so far, i found ldap users remain. where i wish them to be deleted after lifetime. so guys, can somebody help?? some link for study may be...

Mishu~
 
Old 02-04-2012, 03:58 PM   #2
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,417

Rep: Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985
if there is config in the WLC that references the users, then that's clearly nothing to do with Linux at all, you should raise a TAC case with cisco to clarify anything there. In terms of making the account unusable, then you should just set an password expiration time on the server, and then regardless of the WLC config, it will not be able to bind to LDAP with that account.
 
Old 02-05-2012, 10:50 AM   #3
aq_mishu
Member
 
Registered: Sep 2005
Location: Bangladesh
Distribution: RH 7.2, 8, 9, Fedora
Posts: 217

Original Poster
Rep: Reputation: 30
no no... it was not like that...

I have a working WLC. things are fine... and right now I can easily get what I want... but this way I dont... in cisco, we can use the lobby ambassador to open guest accounts (as local net users) (also i made a VB app that uses the telnet to do the same). Every guest accounts has a life time (what ever we set) and after that, it gets deleted. This is what exactly I want... but not using Cisco's local net users. Instead, I wish to use the AAA for this job.

So when a guest wish to have access, my men can add the account for that amount of life time and then guest can get wifi access (wlc can work with AAA). And after the time finished of the account, the account should be deleted automatically...

Now this part I wish to do using linux and thus I am looking for the ans... otherwise, Cisco's current technology is fine... but as I said, I dont want to use that...

Mishu~
 
Old 02-05-2012, 05:26 PM   #4
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,417

Rep: Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985
Well you won't have ldap deleting its own data. You would script that somehow. Maybe use an 'at' task if you really must delete the account. This seems an odd thing to want to do though if you can just use an account expiry attribute.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
[SOLVED] Apache authentication: allow LDAP group OR user named guest, but not all LDAP users AlucardZero Linux - Server 1 05-25-2011 03:21 PM
local user login takes very long time if ldap server not available guna_pmk Linux - Server 2 03-18-2011 09:26 AM
how to understand user time, sys time, wait time, idle time of CPU guixingyi Linux - Server 1 08-24-2010 10:10 AM
LDAP server not starting as user LDAP klnasveschuk Fedora 1 02-15-2007 04:49 AM
The first time using Linux in My Life ariestruong Linux - Newbie 7 03-22-2006 11:47 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Server

All times are GMT -5. The time now is 04:02 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration