LDAP login fails if user cannot access group used for is_superuser flag #737

Open
opened 2022-10-18 20:18:22 +02:00 by magicfelix · 2 comments
Member

E.g. in Puavo, users are not allowed to see members of Groups they aren't members themselves.
Therefore, the is_superuser check fails, which breaks login.

E.g. in Puavo, users are not allowed to see members of Groups they aren't members themselves. Therefore, the is_superuser check fails, which breaks login.
Author
Member

mentioned in merge request AlekSIS-App-LDAP!1754

mentioned in merge request AlekSIS-App-LDAP!1754
Owner

@magicfelix Please clarify: Why is this a bug in AlekSIS? Isn't that more of a broken configuration? The data configured for is_superuser obviously must be readable…

@magicfelix Please clarify: Why is this a bug in AlekSIS? Isn't that more of a broken configuration? The data configured for `is_superuser` obviously must be readable…
Sign in to join this conversation.
No milestone
No project
No assignees
2 participants
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
aleksis/AlekSIS-Core#737
No description provided.