{"id":717,"date":"2017-08-09T10:24:02","date_gmt":"2017-08-09T08:24:02","guid":{"rendered":"https:\/\/ldapcon.org\/2017\/?page_id=717"},"modified":"2017-10-20T20:17:55","modified_gmt":"2017-10-20T18:17:55","slug":"next-generation-directory-based-user-management-for-cloud-infrastructure","status":"publish","type":"page","link":"https:\/\/ldapcon.org\/2017\/fr\/next-generation-directory-based-user-management-for-cloud-infrastructure\/","title":{"rendered":"Next Generation Directory-based User Management for Cloud Infrastructure"},"content":{"rendered":"<p><strong>Friday 20th October, from 3.40 to 4.20 PM<\/strong><\/p>\n<p>The IETF standard RFC2307 has long been a best-practice for storing security policies of unix machines across tcp\/ip networks. It has a common data format so that a uniform security policy can be applied across every node in the network. The problem is keeping the security policy current.<\/p>\n<p>There needs to be a mediator to automatically keep events in sync. Access must be granted when new machines pop up without delay, and most importantly, removed, when no longer needed. At the same time rigid policies must be maintained about who can access a machine when, and for what purpose, or for that matter, who can grant that access, and under what conditions.<\/p>\n<p>Everything must also be backed up by a centralized audit trail. Here we\u2019ll present an approach for doing this using some open source including midPoint IdM and OpenLDAP directory. There is a demo based on a hypothetical case study.<\/p>\n<p><a href=\"https:\/\/ldapcon.org\/2017\/wp-content\/uploads\/2017\/08\/18_Shawn-McKinnan_NxtGenDirBasedUsrMgmt4CloudInfra-LdapCon-2017-v1-1-1.pdf\">18_Shawn McKinnan_NxtGenDirBasedUsrMgmt4CloudInfra-LdapCon-2017-v1-1<\/a>\u00a0License CC-under copyright restrictions<\/p>\n<p><strong>Shawn McKinney<\/strong><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-925\" src=\"https:\/\/ldapcon.org\/2017\/wp-content\/uploads\/2017\/08\/Shawn.jpg\" alt=\"\" width=\"320\" height=\"320\" srcset=\"https:\/\/ldapcon.org\/2017\/wp-content\/uploads\/2017\/08\/Shawn.jpg 320w, https:\/\/ldapcon.org\/2017\/wp-content\/uploads\/2017\/08\/Shawn-150x150.jpg 150w, https:\/\/ldapcon.org\/2017\/wp-content\/uploads\/2017\/08\/Shawn-300x300.jpg 300w\" sizes=\"auto, (max-width: 320px) 85vw, 320px\" \/><\/p>\n<p>Software architect at Symas. Apache Directory PMC. Member of the OpenLDAP Engineering Team.<\/p>\n<p>website : <a href=\"https:\/\/symas.com\/\" target=\"_blank\" rel=\"noopener\">symas.com<\/a><\/p>\n<p><a href=\"https:\/\/ldapcon.org\/2017\/conference-program\/\">Back to program <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Friday 20th October, from 3.40 to 4.20 PM The IETF standard RFC2307 has long been a best-practice for storing security policies of unix machines across tcp\/ip networks. It has a common data format so that [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"footnotes":""},"class_list":["post-717","page","type-page","status-publish","hentry"],"translation":{"provider":"WPGlobus","version":"3.0.2","language":"fr","enabled_languages":["en","fr","it"],"languages":{"en":{"title":true,"content":true,"excerpt":false},"fr":{"title":false,"content":false,"excerpt":false},"it":{"title":false,"content":false,"excerpt":false}}},"_links":{"self":[{"href":"https:\/\/ldapcon.org\/2017\/fr\/wp-json\/wp\/v2\/pages\/717","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ldapcon.org\/2017\/fr\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/ldapcon.org\/2017\/fr\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/ldapcon.org\/2017\/fr\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/ldapcon.org\/2017\/fr\/wp-json\/wp\/v2\/comments?post=717"}],"version-history":[{"count":10,"href":"https:\/\/ldapcon.org\/2017\/fr\/wp-json\/wp\/v2\/pages\/717\/revisions"}],"predecessor-version":[{"id":1198,"href":"https:\/\/ldapcon.org\/2017\/fr\/wp-json\/wp\/v2\/pages\/717\/revisions\/1198"}],"wp:attachment":[{"href":"https:\/\/ldapcon.org\/2017\/fr\/wp-json\/wp\/v2\/media?parent=717"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}