-
-
Notifications
You must be signed in to change notification settings - Fork 4
Allow AD integration to filter LDAP groups #693
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Conversation
|
Putting the CRD change decision into RFC. |
sbernauer
left a comment
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
CRD and code LGTM. Let's wait for the decision
|
WDYT of calling it |
|
Accepted during the meeting, with @sbernauer's suggestion. |
sbernauer
left a comment
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
LGTM. Was waiting for you to resolve the conflicts ^^
Description
Fixes #691
This PR adds a new field
additionalGroupAttributeFilterstoOpaCluster.spec.clusterConfig.userInfo.backend.experimentalActiveDirectory:Any group must match all attributes specified here in order to be included in the UIF report.
Release Note
The OPA user-info-fetcher can now filter Active Directory group membership by LDAP attributes.
Definition of Done Checklist