-
Notifications
You must be signed in to change notification settings - Fork 304
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
HPCC-30680 Documentation covering platform security manager configuration #18111
Conversation
https://track.hpccsystems.com/browse/HPCC-30680 |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
A few comments inline
devdoc/SecurityConfig.md
Outdated
@@ -0,0 +1,83 @@ | |||
# Security Configuration # | |||
This document covers security configuration values and meanings. It does not server as |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
server s/b serve
devdoc/SecurityConfig.md
Outdated
config manager or yaml files. | ||
|
||
## Supported Configurations ## | ||
Security is configured as either through an LDAP server or a plugin. Additionally, these are |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
remove word: "as"
Security is configured either through an LDAP server or a plugin
devdoc/SecurityConfig.md
Outdated
## Supported Configurations ## | ||
Security is configured as either through an LDAP server or a plugin. Additionally, these are | ||
supported in both legacy deployments that use _environment.xml_ and containerized deployments | ||
using Kubernetes and helm charts. While these methods differ, the configuration values |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Helm s/b capitalized
devdoc/SecurityConfig.md
Outdated
sections below: LDAP and Plugin Security Managers. | ||
|
||
### LDAP ### | ||
LDAP is a protocol that connects to an Active Driectory server (AD). The term LDAP is used |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Spelling: Directory
devdoc/SecurityConfig.md
Outdated
primary vehicle for setting these values. However, some values are not available through the tool and must be set | ||
manually in the environment.xml if needed for a legacy deployment. | ||
|
||
In containerized environments, a ldap configuration block is required for each component. Currently, this results in |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
LDAP s/b all caps
devdoc/SecurityConfig.md
Outdated
@@ -0,0 +1,83 @@ | |||
# Security Configuration # | |||
This document covers security configuration values and meanings. It does not server as | |||
the source for how to configure security, but rahter what the different values mean. These |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
"rather"
|
||
### LDAP ### | ||
LDAP is a protocol that connects to an Active Driectory server (AD). The term LDAP is used | ||
interchangeably with AD. Below are the configuration values for an LDAP connection. These are valid for both legacy |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Just a side comment, but "interchangeably with AD." I guess is true but that's a bit unfortunate. I wish we could use other LDAP backends especially if we could have a stand alone one that easily worked on a single developer laptop helm deployment.
devdoc/SecurityConfig.md
Outdated
5. Must be configured manually in the environment.xml in legacy environments | ||
|
||
### Plugin Security Managers ### | ||
Plugin security managers are separate shared object loaded and intialized by the system. The manager interface is |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
objects
This is great for filling in some documentation holes. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Looks OK from my POV
@kenrowland please squash and I will merge |
…tion Added document covering the LDAP security manager Signed-Off-By: Kenneth Rowland [email protected]
0064ff9
to
0182727
Compare
@ghalliday Please merge |
…tion
Added document covering the LDAP security manager
Signed-Off-By: Kenneth Rowland [email protected]
Type of change:
Checklist:
Smoketest:
Testing: