Is it possible to use LDAP to store all gear uid/gid groups instead of storing at individual node level in Openshift

Solution In Progress - Updated -

Issue

  • We want to explore is it possible to useLDAP to store all gear uid/gid groups instead of storing at individual node level.

The reason is because we want all nodes in all districts to be able to use an HDFS share file system through NFS mount.

Each district will be created in advance with different UID ranges to avoid conflict
Each node will be mount to the same ldap with nsswitch to configure to use LDAP as first choice
Each node will be mounted with NFS Gateway of HDFS (which itself also mount to the same LDAP for authorization/authentication access permission )

We will do mapping of uids within LDAP with a gid to ensure gears are allow to the same HDFS folder.

If above is possible, is there a reason why we cannot configure existing node within an existing uids/gids to LDAP and redo the range

Environment

  • Openshift Enterprise
    • 2.x

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase of over 48,000 articles and solutions.

Current Customers and Partners

Log in for full access

Log In
Close

Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.