Managing LDAP User permissions

Поиск
Список
Период
Сортировка
Искать
От
Wetmore, Matthew (CTR)
Тема
Managing LDAP User permissions
Дата
Msg-id
e8a53062f73b47fb844075acda331c0a@express-scripts.com
Ответ на
Список
Дерево обсуждения
Managing LDAP User permissions sbob <sbob@quadratum-braccas.com>
Managing LDAP User permissions "Wetmore, Matthew (CTR)" <Matthew.Wetmore@express-scripts.com>
Re: Managing LDAP User permissions M Sarwar <sarwarmd02@outlook.com>
Removing user from ldap config will not remove from PG.

As Far As Best Practices, I have always Expired the password in PG and comment on that employee left.  We still leave the user intact (with expired psswd) for any audit need.
Expiring the psswd also gives you an exact timestamp in the db when they were denied db access.

-----Original Message-----
From: sbob  
Sent: Thursday, July 20, 2023 7:53 AM
To: Pgsql-admin 
Subject: [EXTERNAL] Managing LDAP User permissions

All;


I know from the docs I can deploy LDAP authentication, one we do this how do we manage permissions within the database foe various LDAP users? 
Can I setup automatic permissions based on LDAP groups?

Can we ensure that if an employee leaves then these permissions are automatically removed?


Is there a best practice for this?


Thanks in advance




В списке pgsql-admin по дате отправления
От: Scott Ribe
Дата:
Сообщение: Re: Upgrade from PG12 to PG
От: M Sarwar
Дата:
FAQ