Thomas de Jesus <
trf...@gmail.com> [2023-10-18 23:42 CEST]:
> I saw this thread, and I'm confused. Your attribute could be called
> "bunnyToes" it really doesn't matter. find the attribute that contains your
> groups, add that to your authsource ldap.
The LDAP DSA (aka server) may not even have that attribute populated.
Or the OP's config does not explicitly ask for it (meaning it wouldn't
be sent by the LDAP server as it's a so-called "operational attribute"
that's managed by the LDAP server itself).
No technical details of any kind were provided, of course.
No example commands showing how e.g. ldapsearch does show the
attribute but SimpleSAMLphp doesn't.
etc.
-peter