编辑gitlab节点/etc/gitlab/gitlab.rb文件,增加以下LDAP的配置:
gitlab_rails[‘ldap_enabled’] = true
gitlab_rails[‘prevent_ldap_sign_in’] = false
gitlab_rails[‘ldap_servers’] = {
‘main’ => {
‘label’ => ‘域账号登录’,
‘host’ => ‘10.0.3.10’, #windows AD服务器的ip
‘port’ => 389,
‘uid’ => ‘sAMAccountName’,
‘bind_dn’ => ‘cn=gitlab-ldap,dc=test,dc=cn’, #一个可正常使用的AD账号
‘password’ => ‘test-123’,
‘active_directory’ => true,
‘allow_username_or_email_login’ => true,
‘block_auto_created_users’ => false,
‘base’ => ‘dc=test,dc=cn’,
‘user_filter’ => ‘’
}
}
重载配置文件:gitlab-ctl reconfigure
重启gitlab:gitlab-ctl restart
用AD账号测试是否能登录主节点的gitlab: