Google Groups Home
Help | Sign in
Message from discussion ESOE & rbac / sessiondata.xml
The group you are posting to is a Usenet group. Messages posted to this group will make your email address visible to anyone on the Internet.
Your reply message has not been sent.
Your post was successful
Helmut  
View profile
 More options Jun 20, 1:44 am
From: Helmut <antant...@gmx.at>
Date: Thu, 19 Jun 2008 08:44:40 -0700 (PDT)
Local: Fri, Jun 20 2008 1:44 am
Subject: ESOE & rbac / sessiondata.xml
Hello,

I'm currently evaluating ESOE for a project I'm working on. After
installing it and securing a ressource via SSO I'm trying to
understand how the policy configuration/role management with a ldap
directory is working. In http://esoeproject.org/confluence/display/eu/ESOE+Features
you're writing, that you are supporting even "distributed" ldap
systems and roles - therefore a (simple) RBAC system should be
implementable by ESOE. But I didn't find any information how this
could be achieved?
I'm new to ldap too - currently I implemented roles as
groupOfUniqueNames, which have (muliple) uniqueMembers, referencing
the users for this role. Are there any assumptions about the ldap
layout?

And a second question: In your policy examples your referencing
username, email etc. as user attributes. I figured out that a mapping
from the ldap attributes to these names is done in a sessiondata.xml -
but I don't know where this configuration file has to be saved and/or
referenced.

Beside these questions, the project setup and documentation is really
great! :)

regards,

helmut


    Reply to author    Forward  
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.

Create a group - Google Groups - Google Home - Terms of Service - Privacy Policy
©2008 Google