Difference between revisions of "AWX LDAP Auth with FreeIPA"

From Bitbull Wiki
Jump to navigation Jump to search
(Created page with "Just to not forget :-) AWX LDAP Auth with FreeIPA =My Settings= * LDAP Server IP: 192.168.11.202 * Bind User DN: uid=ldap-bind,cn=users,cn=accounts,dc=bit,dc=ch * Admin Grou...")
 
 
Line 20: Line 20:
 
LDAP Group Search:
 
LDAP Group Search:
 
<pre>
 
<pre>
   "dc=bitbull,dc=ch",
+
   "dc=bit,dc=ch",
 
   "SCOPE_SUBTREE",
 
   "SCOPE_SUBTREE",
 
   "(objectClass=groupOfNames)"
 
   "(objectClass=groupOfNames)"
Line 44: Line 44:
 
{
 
{
 
   "is_superuser": [
 
   "is_superuser": [
     "cn=ansibleadmin,cn=groups,cn=accounts,dc=bitbull,dc=ch"
+
     "cn=ansibleadmin,cn=groups,cn=accounts,dc=bit,dc=ch"
 
   ]
 
   ]
 
}
 
}

Latest revision as of 15:44, 22 September 2021

Just to not forget :-)

AWX LDAP Auth with FreeIPA

1 My Settings

  • LDAP Server IP: 192.168.11.202
  • Bind User DN: uid=ldap-bind,cn=users,cn=accounts,dc=bit,dc=ch
  • Admin Group DN: cn=ansibleadmin,cn=groups,cn=accounts,dc=bit,dc=ch

2 HowTo Configure

  • LDAP Server URI: ldap://192.168.11.202:389
  • LDAP Bind DN: uid=ldap-bind,cn=users,cn=accounts,dc=bit,dc=ch
  • LDAP Bind Password: ***
  • LDAP User DN Template: uid=%(user)s,cn=users,cn=accounts,dc=bit,dc=ch
  • LDAP Group Type: MemberDNGroupType
  • LDAP Require Group: cn=ansibleadmin,cn=groups,cn=accounts,dc=bit,dc=ch
  • LDAP Deny Group: Not configured
  • LDAP Start TLS: Off

LDAP Group Search:

  "dc=bit,dc=ch",
  "SCOPE_SUBTREE",
  "(objectClass=groupOfNames)"

LDAP User Attribute Map:

  "first_name": "givenName",
  "last_name": "sn",
  "email": "mail"

LDAP Group Type Parameters:

{
  "name_attr": "cn",
  "member_attr": "member"
}

LDAP User Flags By Group:

{
  "is_superuser": [
    "cn=ansibleadmin,cn=groups,cn=accounts,dc=bit,dc=ch"
  ]
}