標籤:cmdbbuild openldap
CMDBuild+openldap實行驗證
PS:由於營運各種工具太多,帳號管理太過複雜,so,用ldap集中驗證就好。這裡講解CMDBuild
cmdbbuild的具體功能不做具體講解,這裡直接講解。
CMDBBuild端注意事項:
結合使用ldap的話,需要注意,cmdb端需要有相應的使用者以及分組,當然,密碼隨意!
so
配置資訊如下:
## Authentication method chain (the first match stops the auth chain)#auth.methods=HeaderAuthenticator,CasAuthenticator,LdapAuthenticator,DBAuthenticator#auth.methods=LdapAuthenticator,DBAuthenticatorauth.methods=LdapAuthenticator #這裡必須將(DBAuthenticator)去掉,DBAuthenticator作用是使用本機資料庫資訊驗證登陸。#serviceusers=portlet#serviceusers.privileged=workflow#force.ws.password.digest=true#### HEADER###header.attribute.name=username#### CAS###cas.server.url=https://casserver/cas#cas.login.page=/login#cas.service.param=service#cas.ticket.param=ticket#### LDAP##ldap.server.address=192.168.*.* #ldap地址,當然可以是網域名稱之類的啦ldap.server.port=389ldap.use.ssl=falseldap.basedn=dc=***,dc=comldap.bind.attribute=uid #本機使用者名到ldap驗證什麼條目#ldap.search.filter=(&(objectClass=myclass1)(objectClass=myclass2)) #search過濾##Accept only none (anonymous bind) and simple (simple bind) 僅支援簡單認證和匿名認證#ldap.search.auth.method=none##This section is only for simple bindldap.search.auth.method=simple #ldap.search.auth.principal=ou=People,dc=***,dc=com #ldap.search.auth.password=****
本文出自 “豆包的部落格” 部落格,請務必保留此出處http://407711169.blog.51cto.com/6616996/1535671