2017-03-16 68 views
0

我从Django复制RemoteUserBackend类并修改它以检查连接的remote_user是否在特定的LDAP组中,然后继续进行认证。如果用户在Django数据库中填充用户之前从未登录过。我试图找出如何设置first_name,last_name和email字段以及使用户的东西和superadmin。这是我有的代码。它是RemoteUserBackend类的一部分。我做错了什么。 LDAP查找很好,但用户没有更改。如何在RemoteUserBackend认证过程中自定义用户

def configure_user(self, user): 
    """ 
    Configures a user after creation and returns the updated user. 

    By default, returns the user unmodified. 
    """ 
    con = ldap.initialize(settings.AUTH_LDAP_SERVER_URI) 
    bind_dn = settings.AUTH_LDAP_BIND_DN 
    bind_pw = settings.AUTH_LDAP_BIND_PASSWORD 
    con.simple_bind_s(bind_dn, bind_pw) 

    base_dn = settings.AUTH_LDAP_USER_DN 
    attrs = ['givenName', 'sn', 'mail'] 
    filter = '(SAMAccountName={0})'.format(user.username) 
    ldap_user = con.search_s(base_dn, ldap.SCOPE_SUBTREE, filter, attrs) 

    givenName = ldap_user[0][1]['givenName'][0].decode('utf-8') 
    sn = ldap_user[0][1]['sn'][0].decode('utf-8') 
    mail = ldap_user[0][1]['mail'][0].decode('utf-8') 

    user.is_staff = True 
    user.is_superadmin = True 
    user.first_name = givenName 
    user.last_name = sn 
    user.email = mail 
    user.save() 
    return user 

回答

0

发现我的问题....略显尴尬......

应该已经user.is_superuser =真,不user.is_superadmin =真

相关问题