#4362 Add attributelevelrights support to ipaldap
Closed: wontfix 5 years ago Opened 9 years ago by pviktori.

Currently, handling attributelevelrights is in ldap2 and baseldap, with some duplication. The can_read/can_write helpers always contact LDAP, so they're ineffective especially when multiple attributes need to be checked.

This functionality should move to ipaldap, with a friendly interface and fewer LDAP calls required.

#4359, can be fixed when this area is touched.


Note: the dance that krbtpolicy_show.post_callback does now can be eliminated once this is fixed.

Should be done ideally in a release together with other ipaldap changes.

Metadata Update from @pviktori:
- Issue assigned to pviktori
- Issue set to the milestone: Future Releases

7 years ago

Thank you taking time to submit this request for FreeIPA. Unfortunately this bug was not given priority and the team lacks the capacity to work on it at this time.

Given that we are unable to fulfil this request I am closing the issue as wontfix. To request re-consideration of this decision please reopen this issue and provide additional technical details about its importance to you.

Metadata Update from @rcritten:
- Issue close_status updated to: wontfix
- Issue status updated to: Closed (was: Open)

5 years ago

Login to comment on this ticket.

Metadata