Improve log messages for LDAP Authorization

XMLWordPrintableJSON

    • Type: Improvement
    • Resolution: Done
    • Priority: Major - P3
    • 3.3.10
    • Affects Version/s: None
    • Component/s: Security
    • None
    • Fully Compatible
    • Security 17 (07/15/16)
    • None
    • None
    • None
    • None
    • None
    • None
    • None

      A few improvements could be made to the log output from LDAP Authorization

      • Failure to map authentication names to LDAP DNs should output the full trace of every rule that was attempted.
      • LDAP name mapping rule failures should show the actual query that was executed and the failure reason
      • Forgetting ldap:// yields bad parameter to ldap_ routines. We should catch this up front.
      • We should try and minimize the number of reported errors when LDAP bind fails
      • Provide a better message for invalid scope types
      • Expected to find exactly one LDAP entity message should include the query

            Assignee:
            Spencer Jackson
            Reporter:
            Spencer Jackson
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated:
              Resolved: