kentonv changed the topic of #sandstorm to: Welcome to #sandstorm: home of all things sandstorm.io. Say hi! | Have a question but no one is here? Try asking in the discussion group: https://groups.google.com/group/sandstorm-dev | Public logs at https://botbot.me/freenode/sandstorm/
karswell has quit [Read error: Connection reset by peer]
karswell has joined #sandstorm
pie_ has quit [Remote host closed the connection]
NwS has joined #sandstorm
frigginglorious has joined #sandstorm
pie_ has joined #sandstorm
pie_ has quit [Ping timeout: 252 seconds]
pie_ has joined #sandstorm
pie_ has quit [Ping timeout: 248 seconds]
NwS has quit [Quit: See you in Isla de Muerte!]
frigginglorious has quit [Ping timeout: 244 seconds]
pie_ has joined #sandstorm
sy has joined #sandstorm
<sy> Hi, is it possible for LDAP users to reset their passwords from sandstorm?
XgF has quit [Remote host closed the connection]
XgF has joined #sandstorm
<sy> also, do groups work for permissions?
frigginglorious has joined #sandstorm
TC01 has quit [Ping timeout: 248 seconds]
TC01 has joined #sandstorm
<sy> also, is there any way to use 2fa without leveraging saml?
pie_ has quit [Ping timeout: 245 seconds]
pie_ has joined #sandstorm
strugee has quit [Quit: ZNC - http://znc.in]
isd has joined #sandstorm
strugee has joined #sandstorm
<xet7> sy: LDAP and SAML users, passwords are defined at LDAP/SAML servers. I presume Sandstorm does not affect those in any way.
<xet7> sy: I presume 2fa depends on your LDAP/SAMP/other auth server. Not Sandstorm.
<xet7> sy: because that auth server takes care of all auth steps, like 2fa etc.
<xet7> sy: About groups, you need to test do they work with Sandstorm.
<xet7> sy: I presume all this, because both Sandstorm and Wekan are made with Meteor, and also Standalone Wekan can not affect any LDAP settings.
<xet7> sy: I would think that adding more login/permission etc features to Sandstorm would take a lot of work. Someone can anyway try implement more stuff and add pull request.
<xet7> sy: I think that way, because I still have not figured out all Sandstorm permission stuff while maintaining Wekan and keeping it running on Sandstorm, I have still many Sandstorm specific Wekan bugs to fix.
<sy> alright cool, thanks
<sy> not sure ldap can do 2fa though
<sy> saml will redirect you to a page, but ldap just takes arguments
<sy> i suppose it can take 3 arguments, one for the TOTP
<sy> but sandstorm would need to know about this to present it
<xet7> In general, Sandstorm only stores generated random user ID, not any password data.
<xet7> That is part of security design of Sandstorm.
<xet7> Ooops I released experimental broken version of Wekan. Just a moment I fix it.
<xet7> experimental broken Sandstorm version
<xet7> It's so fun. Upgrade some dependency, then Wekan breaks, so downgrading dependency :D
ecloud has quit [Quit: http://quassel-irc.org - Chat comfortably. Anywhere.]
ecloud has joined #sandstorm
pie_ has quit [Ping timeout: 245 seconds]
isd has quit [Quit: Leaving.]