Alon Bar-Lev has posted comments on this change.

Change subject: Add support for OpenLDAP as domain provider
......................................................................


Patch Set 2:

> OpenLdap is a step forward for local-authentication for oVirt. it has a 
> backend that works with /etc/passwd, alltough I think its not distributed 
> with it by default.

Local authentication != /etc/password (or nss)

Application users should not have accounts on host, having account on host adds 
many privileges not required, and exposes the application server.

Local authentication is plain old database table or embedded ldap server.

My question: who will maintain openldap issues? In our current implementation 
it is difficult to provide remedy for users who have issues with current 
supported ldap variants.

--
To view, visit http://gerrit.ovirt.org/13829
To unsubscribe, visit http://gerrit.ovirt.org/settings

Gerrit-MessageType: comment
Gerrit-Change-Id: I7fa5c92088a34d8c3881ce839963a13fe9ca4f84
Gerrit-PatchSet: 2
Gerrit-Project: ovirt-engine
Gerrit-Branch: master
Gerrit-Owner: Uwe Grawert <graw...@b1-systems.de>
Gerrit-Reviewer: Alon Bar-Lev <alo...@redhat.com>
Gerrit-Reviewer: Itamar Heim <ih...@redhat.com>
Gerrit-Reviewer: Juan Hernandez <juan.hernan...@redhat.com>
Gerrit-Reviewer: Oved Ourfali <oourf...@redhat.com>
Gerrit-Reviewer: Roy Golan <rgo...@redhat.com>
Gerrit-Reviewer: Uwe Grawert <graw...@b1-systems.de>
Gerrit-Reviewer: Yair Zaslavsky <yzasl...@redhat.com>
_______________________________________________
Engine-patches mailing list
Engine-patches@ovirt.org
http://lists.ovirt.org/mailman/listinfo/engine-patches

Reply via email to