Security Advisories (2)
CPANSA-Jifty-2011-01 (2011-03-17)

The path as passed in the fragment request data structure was used verbatim in the dispatcher and other locations. This possibly allowed requests to walk around ACLs by requesting '/some/safe/place/../../../dangerous' as a fragment.

CPANSA-Jifty-2009-01 (2009-04-09)

The REST plugin would let you call any method on the model.

NAME

Jifty::Plugin::AuthLDAPLogin

DESCRIPTION

MUST BE USED WITH Login PLUGIN.

Add ldap users in Jifty::Plugin::Login::Model::User. Distinct id for ldap users is email field with login@LDAP.user

add /ldaplogin /ldpalogout

CONFIG

in etc/config.yml

Plugins: 
  - Login: {}
  - AuthLDAPLogin: 
     LDAPhost: ldap.univ.fr           # ldap server
     LDAPbase: ou=people,dc=.....     # base ldap
     LDAPuid: uid                     # optional

SEE ALSO

Net::LDAP