[midPoint] Integrating existing LDAP

Markus Calmius markus.calmius at proton.ch
Mon Sep 11 09:46:21 CEST 2023


Hi,

I'm trying to figure out how to best integrate an existing LDAP server that contains users and groups. The users is not a difficult problem to solve, but the groups and mainly the group-membership eats up quite some time for me.

To be fair, I am quite new to midPoint (although I have taken the fundamentals training), and I am still wrapping my head around everything.

What I want to achieve, in the long run, is for midPoint to be the authoritative source for the LDAP directory, but before getting there, I need to import everything.
Using various pages from the mailing-list and docs.evovleum.com I have managed to import all groups as roles. Which is the first step I guess, but since the midPoint Role doesn't contains "members" I got a bit stuck. The problem with searching things online is that there isn't a "best before" note on the information you find. So sometimes the information is old and dated.

So, I basically have two questions:

- is there a better way to do this?
- if not, how do I also get the midPoint roles to include the ldap group membership

If you can point me in the right direction I will much appreciate it.

Thanks in advance!
Markus Calmius
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.evolveum.com/pipermail/midpoint/attachments/20230911/ff7da821/attachment.htm>


More information about the midPoint mailing list