History | Log In     View a printable version of the current page.  
Issue Details (XML | Word | Printable)

Key: QB-166
Type: Bug Bug
Status: Resolved Resolved
Resolution: Fixed
Priority: Major Major
Assignee: Robin Shen
Reporter: Tom McGlynn
Votes: 1
Watchers: 0
Operations

If you were logged in you would be able to see more operations.
QuickBuild

Change in LDAP Bind User's password temporarily prevents logins

Created: 21/Nov/06 09:10 AM   Updated: 23/Jan/07 04:27 AM
Component/s: None
Affects Version/s: None
Fix Version/s: None

Original Estimate: Unknown Remaining Estimate: Unknown Time Spent: Unknown


 Description  « Hide
When the LDAP Bind User changes password in LDAP, other users are locked out until the password is changed in the QuickBuild. The delay depends on whether the LDAP in use is replicated. It also depends on whether the Bind User's account was locked due to forced password changes.

Here is the best case scenario:

1. Bind User changes password in LDAP - users can no longer login to QuickBuild.
2. Bind User immediately logs in to QuickBuild and changes password to match.
3. Users can now login again.

Here is the worst case:

1. Bind User ignores notices that password will expire. Users are required to change their LDAP password every 90 days.
2. Bind User's password is disabled. Users cannot log in to QuickBuild.
3. Someone finally figures it out and yells at Bind User who then resets LDAP password, then synchronizes password in QuickBuild.
4. Now, after a day or so of lockout, users can login again.

Suggestion to fix this is to allow self-binding. Login user is the Bind User. I made this same change to BuildForge and it works fine. I believe that users logging in generally have the same access as the Bind User. Many companies require periodic password changes.

 All   Comments   Work Log   Change History      Sort Order:
Change by Robin Shen [29/Nov/06 02:55 AM]
Field Original Value New Value
Fix Version/s 1.2 [ 10380 ]

Change by Robin Shen [23/Jan/07 04:12 AM]
Status Open [ 1 ] Resolved [ 5 ]
Resolution Fixed [ 1 ]

Change by Robin Shen [23/Jan/07 04:27 AM]
Fix Version/s 1.2.0 (build 67) [ 10472 ]
Fix Version/s 1.2.x [ 10380 ]