3 Commits
Author SHA1 Message Date
Yarden ShohamandGitHub 90fd51b81e feat(ldap): allow specifying multiple attributes on username input (#4061)
In some use-cases, one would like to login using either their username or email. Administrators now don't have to choose a single field but may specify multiple fields to count as "username".

Signed-off-by: Yarden Shoham <git@yardenshoham.com>
2026-03-17 11:19:31 +01:00
EthanDieterichandGitHub 7208747072 Add LDAP parent groups search, Active Directory Hierarchy (#4113)
This commit enables universal nested group search support across a
variety of LDAP server implementations.  It updates the code to allow
recursive group membership discovery during user authentication and
provides CI tests to validate the functionality.

Based on @paroque’s original https://github.com/dexidp/dex/pull/1058
PR.

- Removed `Recursive` boolean flag from config and logic
- Made recursion behavior dependant on presence of `RecursionGroupAttr`
- Updated log messages to reflect changes and follow `slog` structured format

Signed-off-by: Ethan Dieterich <ethandieterich@gmail.com>
2025-06-21 12:08:11 +02:00
Mark Sagi-Kazar f11db50369 test(connector/ldap): rewrite tests to use a single server instance
Signed-off-by: Mark Sagi-Kazar <mark.sagikazar@gmail.com>
2021-02-15 16:37:03 +01:00