LDAP defaults
Cantor, Scott
cantor.2 at osu.edu
Thu Oct 1 17:30:43 EDT 2015
On 10/1/15, 5:20 PM, "dev on behalf of Daniel Fisher" <dev-bounces at shibboleth.net on behalf of dfisher at vt.edu> wrote:
>
>The filters are different because the source of that data is fundamentally different and we don't support velocity in LDAP authentication config. If we did support it, the filter would look something like this: (uid=$usernamePasswordContext.username),
> so they still couldn't depend on each other. But I suppose we could support some velocity syntax there if people thought that was valuable.
I think it's primarily useful for consistency. Back when the config for that was JAAS, it was fairly clear why they were a separate layer of function, but with it built in, it's more confusing.
-- Scott
More information about the dev
mailing list