Mediawiki Ldap: Unterschied zwischen den Versionen

Aus Xinux Wiki
Zur Navigation springen Zur Suche springen
 
(2 dazwischenliegende Versionen von einem anderen Benutzer werden nicht angezeigt)
Zeile 4: Zeile 4:
 
=Documentation=
 
=Documentation=
 
*https://blog.ryandlane.com/2009/06/16/using-the-ldap-authentication-plugin-for-mediawiki-the-basics-part-2/
 
*https://blog.ryandlane.com/2009/06/16/using-the-ldap-authentication-plugin-for-mediawiki-the-basics-part-2/
 +
=Voraussetzung=
 +
Paket php-ldap muss installiert sein.
 +
 
=Install=
 
=Install=
 
*cd WIKIDIR/extensions  
 
*cd WIKIDIR/extensions  
Zeile 9: Zeile 12:
 
*tar -xvzf master.tar.gz
 
*tar -xvzf master.tar.gz
 
*mv mediawiki-extensions-LdapAuthentication-master LdapAuthentication
 
*mv mediawiki-extensions-LdapAuthentication-master LdapAuthentication
=Update=
+
 
*cd WIKIDIR
 
*php maintenance/update.php
 
 
=Settings=
 
=Settings=
 +
*LocalSettings.php
 +
 
<pre>
 
<pre>
*LocalSettings.php
+
$wgGroupPermissions['*']['autocreateaccount'] = true;
$wgGroupPermissions['*']['createaccount'] = true;
+
$wgGroupPermissions['*']['createaccount'] = false;
 +
$wgGroupPermissions['*']['edit'] = false;
 +
$wgGroupPermissions['*']['read'] = false;
 +
 
 +
 
  
 
require_once ('extensions/LdapAuthentication/LdapAuthentication.php');
 
require_once ('extensions/LdapAuthentication/LdapAuthentication.php');
Zeile 74: Zeile 81:
 
#$wgDebugLogGroups["ldap"] = "/tmp/debugldap.log";
 
#$wgDebugLogGroups["ldap"] = "/tmp/debugldap.log";
 
</pre>
 
</pre>
 +
 +
=Update=
 +
*cd WIKIDIR
 +
*php maintenance/update.php

Aktuelle Version vom 14. Februar 2018, 14:35 Uhr

Links

Documentation

Voraussetzung

Paket php-ldap muss installiert sein.

Install

Settings

  • LocalSettings.php
$wgGroupPermissions['*']['autocreateaccount'] = true;
$wgGroupPermissions['*']['createaccount'] = false;
$wgGroupPermissions['*']['edit'] = false;
$wgGroupPermissions['*']['read'] = false;



require_once ('extensions/LdapAuthentication/LdapAuthentication.php');
require_once ('includes/AuthPlugin.php');


$wgAuth = new LdapAuthenticationPlugin();
$wgLDAPDomainNames = array(
  'openldap_conf',
);
$wgLDAPServerNames = array(
  'openldap_conf' => 'waka.xinux.lan',
);

$wgLDAPSearchStrings = array( 'openldap_conf' => "uid=USER-NAME,ou=users,dc=linuggs,dc=de",
);

#$wgLDAPUseLocal = false;
$wgLDAPUseLocal = true;
$wgLDAPEncryptionType = array(
  'openldap_conf' => 'clear',
);
$wgLDAPPort = array(
  'openldap_conf' => 389,
);
$wgLDAPProxyAgent = array(
  'openldap_conf' => 'cn=admin,dc=linuggs,dc=de',
);
$wgLDAPProxyAgentPassword = array(
  'openldap_conf' => 'geheim',
);
$wgLDAPSearchAttributes = array(
  'openldap_conf' => 'uid'
);
$wgLDAPBaseDNs = array(
  'openldap_conf' => 'dc=linuggs,dc=de',
);
# To pull e-mail address from LDAP
$wgLDAPPreferences = array(
  'openldap_conf' => array( 'email' => 'mail')
);
# Group based restriction
$wgLDAPGroupUseFullDN = array( "openldap_conf"=>false );
$wgLDAPGroupObjectclass = array( "openldap_conf"=>"posixgroup" );
$wgLDAPGroupAttribute = array( "openldap_conf"=>"memberuid" );
$wgLDAPGroupSearchNestedGroups = array( "openldap_conf"=>false );
$wgLDAPGroupNameAttribute = array( "openldap_conf"=>"cn" );
$wgLDAPRequiredGroups = array( "openldap_conf"=>array("cn=mediawiki,ou=groups,dc=linuggs,dc=de"));
$wgLDAPLowerCaseUsername = array(
  'openldap_conf' => true,
);



## Logging Debug-Information for LDAP
#$wgLDAPDebug = 127;
#$wgShowExceptionDetails = true; //for debugging MediaWiki
#$wgDebugLogGroups["ldap"] = "/tmp/debugldap.log";

Update

  • cd WIKIDIR
  • php maintenance/update.php