pub struct LdapSource {Show 39 fields
pub pk: Uuid,
pub name: String,
pub slug: String,
pub enabled: Option<bool>,
pub authentication_flow: Option<Option<Uuid>>,
pub enrollment_flow: Option<Option<Uuid>>,
pub user_property_mappings: Option<Vec<Uuid>>,
pub group_property_mappings: Option<Vec<Uuid>>,
pub component: String,
pub verbose_name: String,
pub verbose_name_plural: String,
pub meta_model_name: String,
pub policy_engine_mode: Option<PolicyEngineMode>,
pub user_matching_mode: Option<UserMatchingModeEnum>,
pub managed: Option<String>,
pub user_path_template: Option<String>,
pub icon: String,
pub server_uri: String,
pub peer_certificate: Option<Option<Uuid>>,
pub client_certificate: Option<Option<Uuid>>,
pub bind_cn: Option<String>,
pub start_tls: Option<bool>,
pub sni: Option<bool>,
pub base_dn: String,
pub additional_user_dn: Option<String>,
pub additional_group_dn: Option<String>,
pub user_object_filter: Option<String>,
pub group_object_filter: Option<String>,
pub group_membership_field: Option<String>,
pub user_membership_attribute: Option<String>,
pub object_uniqueness_field: Option<String>,
pub password_login_update_internal_password: Option<bool>,
pub sync_users: Option<bool>,
pub sync_users_password: Option<bool>,
pub sync_groups: Option<bool>,
pub sync_parent_group: Option<Option<Uuid>>,
pub connectivity: Option<HashMap<String, HashMap<String, String>>>,
pub lookup_groups_from_user: Option<bool>,
pub delete_not_found_objects: Option<bool>,
}
Expand description
LdapSource : LDAP Source Serializer
Fields§
§pk: Uuid
§name: String
Source’s display Name.
slug: String
Internal source name, used in URLs.
enabled: Option<bool>
§authentication_flow: Option<Option<Uuid>>
Flow to use when authenticating existing users.
enrollment_flow: Option<Option<Uuid>>
Flow to use when enrolling new users.
user_property_mappings: Option<Vec<Uuid>>
§group_property_mappings: Option<Vec<Uuid>>
§component: String
Get object component so that we know how to edit the object
verbose_name: String
Return object’s verbose_name
verbose_name_plural: String
Return object’s plural verbose_name
meta_model_name: String
Return internal model name
policy_engine_mode: Option<PolicyEngineMode>
§user_matching_mode: Option<UserMatchingModeEnum>
How the source determines if an existing user should be authenticated or a new user enrolled.
managed: Option<String>
Objects that are managed by authentik. These objects are created and updated automatically. This flag only indicates that an object can be overwritten by migrations. You can still modify the objects via the API, but expect changes to be overwritten in a later update.
user_path_template: Option<String>
§icon: String
§server_uri: String
§peer_certificate: Option<Option<Uuid>>
Optionally verify the LDAP Server’s Certificate against the CA Chain in this keypair.
client_certificate: Option<Option<Uuid>>
Client certificate to authenticate against the LDAP Server’s Certificate.
bind_cn: Option<String>
§start_tls: Option<bool>
§sni: Option<bool>
§base_dn: String
§additional_user_dn: Option<String>
Prepended to Base DN for User-queries.
additional_group_dn: Option<String>
Prepended to Base DN for Group-queries.
user_object_filter: Option<String>
Consider Objects matching this filter to be Users.
group_object_filter: Option<String>
Consider Objects matching this filter to be Groups.
group_membership_field: Option<String>
Field which contains members of a group.
user_membership_attribute: Option<String>
Attribute which matches the value of group_membership_field
.
object_uniqueness_field: Option<String>
Field which contains a unique Identifier.
password_login_update_internal_password: Option<bool>
Update internal authentik password when login succeeds with LDAP
sync_users: Option<bool>
§sync_users_password: Option<bool>
When a user changes their password, sync it back to LDAP. This can only be enabled on a single LDAP source.
sync_groups: Option<bool>
§sync_parent_group: Option<Option<Uuid>>
§connectivity: Option<HashMap<String, HashMap<String, String>>>
Get cached source connectivity
lookup_groups_from_user: Option<bool>
Lookup group membership based on a user attribute instead of a group attribute. This allows nested group resolution on systems like FreeIPA and Active Directory
delete_not_found_objects: Option<bool>
Delete authentik users and groups which were previously supplied by this source, but are now missing from it.
Implementations§
Source§impl LdapSource
impl LdapSource
Sourcepub fn new(
pk: Uuid,
name: String,
slug: String,
component: String,
verbose_name: String,
verbose_name_plural: String,
meta_model_name: String,
managed: Option<String>,
icon: String,
server_uri: String,
base_dn: String,
connectivity: Option<HashMap<String, HashMap<String, String>>>,
) -> LdapSource
pub fn new( pk: Uuid, name: String, slug: String, component: String, verbose_name: String, verbose_name_plural: String, meta_model_name: String, managed: Option<String>, icon: String, server_uri: String, base_dn: String, connectivity: Option<HashMap<String, HashMap<String, String>>>, ) -> LdapSource
LDAP Source Serializer
Trait Implementations§
Source§impl Clone for LdapSource
impl Clone for LdapSource
Source§fn clone(&self) -> LdapSource
fn clone(&self) -> LdapSource
1.0.0 · Source§fn clone_from(&mut self, source: &Self)
fn clone_from(&mut self, source: &Self)
source
. Read more