Assigning LDAP users to groups not on LDAP
Posted: Thu Feb 01, 2018 9:51 am
Hi there!
We have LDAP authentication up and running, with new LDAP users being placed on the default group. The problem we have is that the AD structure we have access to via LDAP does not contain the information we need to assign people to the groups we'd like to have on OMERO. It would be easy, however, to have advance knowledge of which usernames would need to be assigned to each group even before those users logged in for the very first time.
Is there a way to do this group assignment automatically from something like a lookup table upon their first LDAP login? Of course, the alternative would be relying on group owners/PIs to add their students to the correct group, which is probably fine but not ideal.
We have LDAP authentication up and running, with new LDAP users being placed on the default group. The problem we have is that the AD structure we have access to via LDAP does not contain the information we need to assign people to the groups we'd like to have on OMERO. It would be easy, however, to have advance knowledge of which usernames would need to be assigned to each group even before those users logged in for the very first time.
Is there a way to do this group assignment automatically from something like a lookup table upon their first LDAP login? Of course, the alternative would be relying on group owners/PIs to add their students to the correct group, which is probably fine but not ideal.