[jboss-jira] [JBoss JIRA] (WFLY-11957) Support Group Managed Service Accounts (gMSA) - extend LDAP feature

Darran Lofthouse (Jira) issues at jboss.org
Wed Apr 10 10:34:02 EDT 2019


    [ https://issues.jboss.org/browse/WFLY-11957?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=13720530#comment-13720530 ] 

Darran Lofthouse commented on WFLY-11957:
-----------------------------------------

I am assuming it is the following you are referring to?

https://blogs.technet.microsoft.com/askpfeplat/2012/12/16/windows-server-2012-group-managed-service-accounts/
 
At this point it would be the WildFly Elytron security implementation we would look at adding new features to.

In the context of this accounts what scenarios are you considering they need to be supported?  Our LDAP realm implementation already has a flexible approach to defining the underlying LDAP queries.  Are there some specific scenarios you are trying to achieve?

> Support Group Managed Service Accounts (gMSA) - extend LDAP feature
> -------------------------------------------------------------------
>
>                 Key: WFLY-11957
>                 URL: https://issues.jboss.org/browse/WFLY-11957
>             Project: WildFly
>          Issue Type: Feature Request
>          Components: Security
>            Reporter: Craig Carpenter
>            Assignee: Darran Lofthouse
>            Priority: Major
>
> The introduction of gMSA in the enterprise is generating a need for support of this type of LDAP account where the user id is available but not the password.



--
This message was sent by Atlassian Jira
(v7.12.1#712002)


More information about the jboss-jira mailing list