[OGo-Users] Administrator account not visible for other users?

Adam Tauno Williams users@opengroupware.org
Mon, 21 May 2007 13:41:06 -0400


--=-uynROvdI2QpAqZsYHtyF
Content-Type: text/plain
Content-Transfer-Encoding: quoted-printable

> > I think having a regular user as the administrator is not advised.
> > don't think a user would want to operate in such a mode anyway.
> > I see. I did it this way because I tried to avoid to have an extra >
> > ogo admin account in my LDAP directory - probably a bad idea.
> > If I understand the docs correctly, when authenticating against
>> LDAP, the ogo admin (10000) must exist also in the LDAP directory.

That is my understanding.  Of course the OGo administrative account does
not need to be a full fledged "user account"  a simpleSecurityObject
with the appropriate uid and a password is sufficient.  You merely have
to provide some context to bind with.  If you are very clever with LDAP
you may be able to eliminate the duplicate account using aliases or
referrals.

> It is not=20
> possible to mix LDAP authentication with a password stored in the ogo=20
> database, right?

Not to my knowledge.

> May I even suggest you put a short hint in your (very helpful)=20
> Administrator's Guide?

Will do.

--=-uynROvdI2QpAqZsYHtyF
Content-Type: application/pgp-signature; name=signature.asc
Content-Description: This is a digitally signed message part

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (GNU/Linux)

iD8DBQBGUdmyLRePpNle04MRAkjFAJ98ZL0RCNluoBfSfs38ajGuJUsshwCcCzvX
8uuc+W0DgTWNTYJOVMZgdos=
=D1ll
-----END PGP SIGNATURE-----

--=-uynROvdI2QpAqZsYHtyF--