<p dir="ltr"><br>
On 19-Jan-2016 1:26 pm, "Robert Xu" <<a href="mailto:robxu9@gmail.com">robxu9@gmail.com</a>> wrote:<br>
><br>
> Okay, so it's a good thing I caught this - LDAP is storing passwords<br>
> in clear text. That is unacceptable.</p>
<p dir="ltr">Whoops! That's outrageous. Totally unacceptable.</p>
<p dir="ltr">><br>
> Can someone figure out a way to make LDAP store them hashed? We cannot<br>
> proceed with passwords in clear text.</p>
<p dir="ltr">I can check into this. Where's the data store for LDAP? Also, did you check if there's a setting in lemonldap to enable encrypted passwords. At any rate, such a setting should be default.</p>
<p dir="ltr">><br>
> On 18 January 2016 at 20:03, Robert Xu <<a href="mailto:robxu9@gmail.com">robxu9@gmail.com</a>> wrote:<br>
> > Uhh, I can - but it's ugly. I'll put the patches up somewhere I guess.<br>
> ><br>
> > On 18 Jan 2016 19:00, "Raphaël Jadot" <<a href="mailto:rj@hodo.fr">rj@hodo.fr</a>> wrote:<br>
> >><br>
> >> Maybe silly question but is your hack shareable upstream?<br>
> >><br>
> >> --<br>
> >> Sent from Yandex.Mail for mobile<br>
> >><br>
> >> 19.01.2016, 00:39, "Robert Xu" <<a href="mailto:robxu9@gmail.com">robxu9@gmail.com</a>>:<br>
> >><br>
> >><br>
> >> :)<br>
> >><br>
> >> Okay - so for Discourse, the best option would be to use SAML<br>
> >> (<a href="https://github.com/kirushik/discourse_saml_auth_proxy">https://github.com/kirushik/discourse_saml_auth_proxy</a>). This will<br>
> >> ensure that attributes stay in sync between LemonLDAP and Discourse.<br>
> >><br>
> >> I can get OpenProject set up with CAS, so you can authenticate there.<br>
> >><br>
> >> I'll need to get Kahinah running with CAS, and we'll see if we can get<br>
> >> our own <a href="http://abf.openmandriva.org">abf.openmandriva.org</a> to use CAS or SAML (ask fedya?).<br>
> >><br>
> >> Robert<br>
> >><br>
> >> On 18 January 2016 at 10:20, Raphaël Jadot <<a href="mailto:rj@hodo.fr">rj@hodo.fr</a>> wrote:<br>
> >><br>
> >> That's AWESOME :)<br>
> >><br>
> >> --<br>
> >> Sent from Yandex.Mail for mobile<br>
> >><br>
> >> 17.01.2016, 06:13, "Robert Xu" <<a href="mailto:robxu9@gmail.com">robxu9@gmail.com</a>>:<br>
> >><br>
> >><br>
> >> hi all,<br>
> >><br>
> >> I've added custom username support to lemonldap::ng. I think I covered<br>
> >> all areas - but please let me know if I missed some edge case.<br>
> >><br>
> >> lemonldap::ng still needs the ability to modify email addresses, but I<br>
> >> think we can leave that off to another time.<br>
> >><br>
> >> this means we are ready to start connecting systems to lemonldap::ng.<br>
> >> what should we do first?<br>
> >><br>
> >> cheers,<br>
> >> Robert<br>
> >><br>
> >><br>
> >> --<br>
> >> cheers, Robert :: <a href="http://github.com/robxu9">github.com/robxu9</a><br>
> >><br>
> >><br>
> >><br>
> >><br>
> >><br>
> >><br>
> >> --<br>
> >> cheers, Robert :: <a href="http://github.com/robxu9">github.com/robxu9</a><br>
><br>
><br>
><br>
> --<br>
> cheers, Robert :: <a href="http://github.com/robxu9">github.com/robxu9</a><br>
><br>
> _______________________________________________<br>
> OM-Infra mailing list<br>
> <a href="mailto:OM-Infra@ml.openmandriva.org">OM-Infra@ml.openmandriva.org</a><br>
> <a href="http://ml.openmandriva.org/mailman/listinfo/om-infra_ml.openmandriva.org">http://ml.openmandriva.org/mailman/listinfo/om-infra_ml.openmandriva.org</a><br>
</p>