Hi everyone,
I just tested LDAP authentication in Zabbix and to be honest I am a bit disappointed by the functionalities it has.
The only advantage of it is that it "recognize" whether a user is an AD user and re-uses its AD password for Zabbix authentication.
But you need to recreate manually all your AD users in zabbix first! That can be endless!
Ideally, there should have a way to declare in zabbix AD groups and give them permissions on zabbix objects without having to create each and every user in zabbix!
But to be more pragmatic,Did any one find a way to auto-enroll an Ad user the first time he connects to zabbix, linked to a user group which rights have been decided by a zabbix administrator?
After that, a zabbix administrator can change the AD users permissions according to what he wants.
Thank you in advance for your replies,
Simon
I just tested LDAP authentication in Zabbix and to be honest I am a bit disappointed by the functionalities it has.
The only advantage of it is that it "recognize" whether a user is an AD user and re-uses its AD password for Zabbix authentication.
But you need to recreate manually all your AD users in zabbix first! That can be endless!
Ideally, there should have a way to declare in zabbix AD groups and give them permissions on zabbix objects without having to create each and every user in zabbix!
But to be more pragmatic,Did any one find a way to auto-enroll an Ad user the first time he connects to zabbix, linked to a user group which rights have been decided by a zabbix administrator?
After that, a zabbix administrator can change the AD users permissions according to what he wants.
Thank you in advance for your replies,
Simon
Comment