#392 RFE: User whitelist
Closed: Fixed None Opened 14 years ago by sgallagh.

Right now, we have only a user blacklist (filter_users) on the SSSD. It would be nice if we could configure a machine to allow only a limited set of the users from a particular domain to log into a machine.

For example, a corporate laptop may be set up to do ID and AUTH to a corporate server, but maybe we would only want one user (and perhaps a central admin) to have access to the machine.

I know we have the HBAC controls in the FreeIPA backend, but it might be nice to have a generic user_whitelist for non FreeIPA domains.


Fields changed

milestone: NEEDS_TRIAGE => SSSD 1.1

Fixed by 16ac0d6

doc: 0 => 1
fixedin: => 1.1.0
resolution: => fixed
status: new => closed
tests: 0 => 1

Added section Configuring Access Control to Deployment Guide

doc: 1 => 0
docupdated: 0 => 1

Fields changed

tests: 1 => 0
testsupdated: 0 => 1

Fields changed

rhbz: => 0

Metadata Update from @sgallagh:
- Issue assigned to sbose
- Issue set to the milestone: SSSD 1.1

7 years ago

SSSD is moving from Pagure to Github. This means that new issues and pull requests
will be accepted only in SSSD's github repository.

This issue has been cloned to Github and is available here:
- https://github.com/SSSD/sssd/issues/1434

If you want to receive further updates on the issue, please navigate to the github issue
and click on subscribe button.

Thank you for understanding. We apologize for all inconvenience.

Login to comment on this ticket.

Metadata