getsentry-ldap-auth icon indicating copy to clipboard operation
getsentry-ldap-auth copied to clipboard

Auto populate 'Admin' and/or 'Superuser'

Open klemenag opened this issue 4 years ago • 0 comments

In webinterface (Admin --> Users --> ) there is an option to allow a user to be :

  • Admin ( Designates whether this user can perform administrative functions. )
  • Superuser ( Designates whether this user has all permissions without explicitly assigning them. )

By using mapping from Sentry ( 'owner', 'admin', 'manager', 'member') and LDAP groups, I have successfully integrated this functionality - so, a new user, as a member of a proper group in LDAP, is assigned a proper Sentry role.

But, users who are Owners and/or Admins don't have Admin and/or Superuser 'ticked' (turned on). So basically, a new member has a role of Owner or Admin, but he is not allowed in the Admin section.

Is it possible to assign this based on LDAP group membership (or any other parameter)? Screenshot from 2020-08-20 10-51-12

klemenag avatar Aug 20 '20 08:08 klemenag