NicTool icon indicating copy to clipboard operation
NicTool copied to clipboard

Group-less login

Open djzort opened this issue 10 years ago • 2 comments

If there is only one username, pick out which group its in and use that.

So people dont have to worry about user@group if they are in one group but its not the default group.

With ldap, usernames are globally unique so group-unique usernames aren't possible anyway.

Downside is that if a second user is added, they will have to start adding @group to their username without warning

djzort avatar Aug 04 '15 05:08 djzort

We're using this internally, so i am more or less compelled to push this stuff to you via AGPL. However, im happy to massage it to general case.

djzort avatar Aug 04 '15 05:08 djzort

I like this as a usability feature. The "why doesn't my login" issue arises from time to time. However, it's also likely to cause some surprise when that username is created in another group, and now Bob, who has been logging in with bob for 3 years cannot log in any more.

I think a better solution is to "show" the username properly in the form (ie, in its user@group format), and send out an email to them with instructions for [re]setting their password.

msimerson avatar Nov 17 '15 21:11 msimerson