1
19.7 Legacy Series / LDAP Groups
« on: January 24, 2020, 03:45:54 pm »
Hi,
I using opnSense Firewall, and do some LDAP tests for an project. I add the the LDAP Server and set it as backend auth and checked also syncgroups. I added on local Firewall the same group name as it is on the server, but if I login to the firewall I got the error that no page is set for the user. The group I created is privileges set to all_views. The same is with the VPN Users, then I got from openvpn (just userauth no SSL) authorized error. Is it now possible to not sync user to the firewall and auth it against the groups or should I switch over to pfsense again? There is a checkbox in groups if its a remote or local group.
regards
Christopher.
Output from tester:
I using opnSense Firewall, and do some LDAP tests for an project. I add the the LDAP Server and set it as backend auth and checked also syncgroups. I added on local Firewall the same group name as it is on the server, but if I login to the firewall I got the error that no page is set for the user. The group I created is privileges set to all_views. The same is with the VPN Users, then I got from openvpn (just userauth no SSL) authorized error. Is it now possible to not sync user to the firewall and auth it against the groups or should I switch over to pfsense again? There is a checkbox in groups if its a remote or local group.
regards
Christopher.
Output from tester:
Code: [Select]
memberof => CN=opnsneseAdmin,OU=Access-Groups,OU=Groups-Objects,OU=0 foo,DC=foo,DC=int CN=GG-Admin-User,OU=Access-Groups,OU=Groups-Objects,OU=0