| Param name | Description |
|---|---|
|
location_id
optional |
Set the current location context for the request Validations:
|
|
organization_id
optional |
Set the current organization context for the request Validations:
|
|
auth_source_ldap
required |
Validations:
|
|
auth_source_ldap[name]
required |
Validations:
|
|
auth_source_ldap[host]
required |
The hostname of the LDAP server Validations:
|
|
auth_source_ldap[port]
optional , nil allowed |
defaults to 389 Validations:
|
|
auth_source_ldap[account]
optional , nil allowed |
Validations:
|
|
auth_source_ldap[base_dn]
optional , nil allowed |
Validations:
|
|
auth_source_ldap[account_password]
optional , nil allowed |
required if onthefly_register is true Validations:
|
|
auth_source_ldap[attr_login]
optional , nil allowed |
required if onthefly_register is true Validations:
|
|
auth_source_ldap[attr_firstname]
optional , nil allowed |
required if onthefly_register is true Validations:
|
|
auth_source_ldap[attr_lastname]
optional , nil allowed |
required if onthefly_register is true Validations:
|
|
auth_source_ldap[attr_mail]
optional , nil allowed |
required if onthefly_register is true Validations:
|
|
auth_source_ldap[attr_photo]
optional , nil allowed |
Validations:
|
|
auth_source_ldap[onthefly_register]
optional , nil allowed |
Validations:
|
|
auth_source_ldap[usergroup_sync]
optional , nil allowed |
sync external user groups on login Validations:
|
|
auth_source_ldap[tls]
optional , nil allowed |
Enable LDAPS. Disabling it clears any previously set CA certificate(s). Validations:
|
|
auth_source_ldap[cacert]
optional , nil allowed |
PEM-encoded CA certificate(s) used for LDAPS verification. When set, only these certificates are trusted and the system trust store is not used. Leave empty to use the system trust store. In containerized deployments, the container’s trust store is used, so the CA certificate(s) may need to be provided here explicitly. Validations:
|
|
auth_source_ldap[groups_base]
optional , nil allowed |
groups base DN Validations:
|
auth_source_ldap[use_netgroups]
DEPRECATED
optional , nil allowed |
use NIS netgroups instead of posix groups, applicable only when server_type is posix or free_ipa. Deprecated in favor of ldap_group_membership = nis_netgroups Validations:
|
|
auth_source_ldap[ldap_group_membership]
optional , nil allowed |
type of group membership to use, applicable only when server_type is posix, free_ipa or netiq. Option rfc4519 is only applicable when server_type is posix. Validations:
|
|
auth_source_ldap[server_type]
optional , nil allowed |
type of the LDAP server Validations:
|
|
auth_source_ldap[ldap_filter]
optional , nil allowed |
LDAP filter Validations:
|
|
auth_source_ldap[location_ids]
optional , nil allowed |
REPLACE locations with given ids Validations:
|
|
auth_source_ldap[organization_ids]
optional , nil allowed |
REPLACE organizations with given ids. Validations:
|