[rt-users] ExternalAuth - is there a way to assign groups based on LDAP group when creating the RT user?

Kevin Falcone falcone at bestpractical.com
Fri Aug 6 15:02:23 EDT 2010

On Wed, Jul 28, 2010 at 11:42:36AM -0400, Mike Johnson wrote:
>    As the subject says,
>    I'm looking for a way that ExternalAuth can assign groups when it creates the RT user based on
>    group info in the LDAP.

This isn't currently supported, and I don't know that it will be added
in the near future.  You may be able to use the current work in the
RT::Extension::LDAPImport git repo to do what you want.


>    For example,
>    in LDAP John Doe is part of a group called Supportstaff.
>    in RT, when John Doe logs in, I want his user to be added to the group support so that he'll
>    automatically get access to whatever "support" has access to in RT.
>    I love that LDAP can be used to authenticate, but I don't see how I can setup permissions for
>    LDAP users until they've logged into RT once, so the account is visible in RT to add to
>    groups....
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 195 bytes
Desc: not available
URL: <http://lists.bestpractical.com/pipermail/rt-users/attachments/20100806/ffb4eea0/attachment.sig>

More information about the rt-users mailing list