wikiv3:ldap_grafana
LDAP Grafana
setsebool -P httpd_can_connect_ldap on setsebool -P httpd_can_network_connect on
vim /etc/grafana/grafana.ini [...] #################################### Auth LDAP ########################## [auth.ldap] ;enabled = false enabled = true config_file = /etc/grafana/ldap.toml allow_sign_up = true [...]
vim /etc/grafana/ldap.toml [...] [[servers]] host = "sp-spo-ipa.juntotelecom.com.br" port = 389 use_ssl = false start_tls = false ssl_skip_verify = false bind_dn = "uid=webadm,cn=users,cn=accounts,dc=juntotelecom,dc=com,dc=br" bind_password = '@btjt(())22' search_filter = "(uid=%s)" search_base_dns = ["cn=users,cn=accounts,dc=juntotelecom,dc=com,dc=br"] [servers.attributes] name = "givenName" surname = "sn" username = "cn" member_of = "memberOf" email = "email" [[servers.group_mappings]] group_dn = "cn=grafanaadm,cn=groups,cn=accounts,dc=juntotelecom,dc=com,dc=br" org_role = "Admin" [[servers.group_mappings]] group_dn = "cn=grafanamgm,cn=groups,cn=accounts,dc=juntotelecom,dc=com,dc=br" org_role = "Editor" [[servers.group_mappings]] group_dn = "*" org_role = "Viewer"
wikiv3/ldap_grafana.txt · Last modified: by 127.0.0.1
