Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Feature Request: Save groups to com.twocanoes.xcreds prefs between runs #117

Closed
SoxIn4 opened this issue Nov 6, 2023 · 3 comments
Closed

Comments

@SoxIn4
Copy link

SoxIn4 commented Nov 6, 2023

Optionally saving a user's groups to prefs between runs would allow admins to query group memberships for other uses. In particular, it would allow for easily using group membership as a condition for munki deployments.

@twocanoes
Copy link
Owner

can you explain a bit more? do you mean create a group in local OD based on the UUID from the group claim and then add the user to it?

@SoxIn4
Copy link
Author

SoxIn4 commented Nov 15, 2023 via email

@twocanoes
Copy link
Owner

added to local ds of mapped user each time the user logs in. Can get by reading attribute. For example:

dscl . -read /Users/brubble _xcreds_oidc_groups
dsAttrTypeNative:_xcreds_oidc_groups: 93392af1-8e10-4691-9702-a4d5e7f7c781;47b36644-8477-4194-b42d-9e519e9193e7

twocanoes added a commit that referenced this issue Nov 29, 2023
…p each login (issue #109); added groups claim value to OD record on each login in _xcreds_oidc_groups (issue #117)
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants