From 5948417cee85dc612de3db29724df24b5d33f686 Mon Sep 17 00:00:00 2001 From: Ralf Haferkamp Date: Tue, 12 Apr 2022 16:37:31 +0200 Subject: [PATCH] Refresh idm setup docs after LDAP config changes --- docs/extensions/idm/setup.md | 32 ++++++++++++-------------------- 1 file changed, 12 insertions(+), 20 deletions(-) diff --git a/docs/extensions/idm/setup.md b/docs/extensions/idm/setup.md index 13c13f8b10..3a5f728dcd 100644 --- a/docs/extensions/idm/setup.md +++ b/docs/extensions/idm/setup.md @@ -19,37 +19,29 @@ the users and groups backend (this setup also disables the glauth and accounts s ``` export GRAPH_IDENTITY_BACKEND=ldap -export GRAPH_LDAP_URI=ldaps://localhost:9235 +export LDAP_URI=ldaps://localhost:9235 +export LDAP_INSECURE="true" +export LDAP_USER_BASE_DN="ou=users,o=libregraph-idm" +export LDAP_USER_SCHEMA_ID="ownclouduuid" +export LDAP_USER_SCHEMA_MAIL="mail" +export LDAP_USER_SCHEMA_USERNAME="uid" +export LDAP_USER_OBJECTCLASS="inetOrgPerson" +export LDAP_GROUP_BASE_DN="ou=groups,o=libregraph-idm" +export LDAP_GROUP_SCHEMA_ID="ownclouduuid" +export LDAP_GROUP_SCHEMA_MAIL="mail" +export LDAP_GROUP_SCHEMA_GROUPNAME="member" +export LDAP_GROUP_OBJECTCLASS="groupOfNames" export GRAPH_LDAP_BIND_DN="uid=libregraph,ou=sysusers,o=libregraph-idm" export GRAPH_LDAP_BIND_PASSWORD=idm -export GRAPH_LDAP_USER_EMAIL_ATTRIBUTE=mail -export GRAPH_LDAP_USER_NAME_ATTRIBUTE=uid -export GRAPH_LDAP_USER_BASE_DN="ou=users,o=libregraph-idm" -export GRAPH_LDAP_GROUP_BASE_DN="ou=groups,o=libregraph-idm" export GRAPH_LDAP_SERVER_WRITE_ENABLED="true" export IDP_INSECURE="true" -export IDP_LDAP_FILTER="(&(objectclass=inetOrgPerson)(objectClass=owncloud))" -export IDP_LDAP_URI=ldaps://localhost:9235 export IDP_LDAP_BIND_DN="uid=idp,ou=sysusers,o=libregraph-idm" export IDP_LDAP_BIND_PASSWORD="idp" -export IDP_LDAP_BASE_DN="ou=users,o=libregraph-idm" export IDP_LDAP_LOGIN_ATTRIBUTE=uid -export IDP_LDAP_UUID_ATTRIBUTE="ownclouduuid" -export IDP_LDAP_UUID_ATTRIBUTE_TYPE=binary export PROXY_ACCOUNT_BACKEND_TYPE=cs3 export OCS_ACCOUNT_BACKEND_TYPE=cs3 -export STORAGE_LDAP_HOSTNAME=localhost -export STORAGE_LDAP_PORT=9235 -export STORAGE_LDAP_INSECURE="true" -export STORAGE_LDAP_BASE_DN="o=libregraph-idm" export STORAGE_LDAP_BIND_DN="uid=reva,ou=sysusers,o=libregraph-idm" export STORAGE_LDAP_BIND_PASSWORD=reva -export STORAGE_LDAP_LOGINFILTER='(&(objectclass=inetOrgPerson)(objectclass=owncloud)(|(uid={{login}})(mail={{login}})))' -export STORAGE_LDAP_USERFILTER='(&(objectclass=inetOrgPerson)(objectclass=owncloud)(|(ownclouduuid={{.OpaqueId}})(uid={{.OpaqueId}})))' -export STORAGE_LDAP_USERATTRIBUTEFILTER='(&(objectclass=owncloud)({{attr}}={{value}}))' -export STORAGE_LDAP_USERFINDFILTER='(&(objectclass=owncloud)(|(uid={{query}}*)(cn={{query}}*)(displayname={{query}}*)(mail={{query}}*)(description={{query}}*)))' -export STORAGE_LDAP_USERGROUPFILER='(&(objectclass=groupOfNames)(member={{query}}*))' -export STORAGE_LDAP_GROUPFILTER='(&(objectclass=groupOfNames)(objectclass=owncloud)(ownclouduuid={{.OpaqueId}}*))' export OCIS_RUN_EXTENSIONS=settings,storage-metadata,graph,graph-explorer,ocs,store,thumbnails,web,webdav,storage-frontend,storage-gateway,storage-userprovider,storage-groupprovider,storage-authbasic,storage-authbearer,storage-authmachine,storage-users,storage-shares,storage-public-link,storage-appprovider,storage-sharing,proxy,idp,nats,idm,ocdav export OCIS_INSECURE=true bin/ocis server