matomo-org / matomo-org/plugin-LoginLdap
Why a separate user for LDAP bind, why not bind with the user-supplied u+p?
Open
Nobody has claimed this yet.
- Dominant language
- PHP
- Stars
- 37
- Forks
- 30
- Avg merge
- 22h 53m
- Merged PRs (30d)
- 19
Description
Is there a reason why LoginLdap requires a separate user+password for LDAP bind, instead of binding as the user+password that the user supplied when attempting to login?
Contributor guide
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
Research direction
Start by reviewing the LoginLdap authentication flow and its separate LDAP bind-user and password configuration. Determine whether binding with the supplied username and password is supported or safe, and document the required behavior and configuration changes before implementation; this issue does not name files or tests to run.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- php
- Domain
- authentication
- Issue type
- Feature
- Difficulty
- 5/5
- Estimated time
- Over a week
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 20/100