[WordPress] 外掛分享: Sanch MultiDomain LDAP Auth for Active Directory

首頁外掛目錄 › Sanch MultiDomain LDAP Auth for Active Directory
全新外掛
安裝啟用
尚無評分
剛更新
最後更新
問題解決
WordPress 5.8+ PHP 7.4+ v1.0.0 上架:2026-07-31

內容簡介

Sanch MultiDomain LDAP Auth for Active Directory 提供企業級的單一登入(SSO)和存取控制,專為企業內部的 WordPress 網站設計。此外掛支援多森林環境,讓使用者能夠無縫地對多個域控制器進行身份驗證,同時嚴格執行基於路徑的存取政策和動態角色傳播。

【主要功能】
• 多域與多DC身份驗證:連接並對多個 LDAP/LDAPS 伺服器進行身份驗證
• 零信任路徑基礎 ACL:根據 AD 群組成員資格限制內部網路區域
• JIT 用戶創建:首次成功綁定 AD 時自動創建用戶
• LDAP 克隆保護:防止多個帳戶匹配同一 SAMAccountName
• REST API 及寫入 ACL 保護:強制執行 URL 路由政策
• 安全連接:支援 LDAP、LDAP + StartTLS 和 LDAPS

外掛標籤

開發者團隊

⬇ 下載最新版 (v1.0.0) 或搜尋安裝

① 下載 ZIP → 後台「外掛 › 安裝外掛 › 上傳外掛」
② 後台搜尋「Sanch MultiDomain LDAP Auth for Active Directory」→ 直接安裝(推薦)
📦 歷史版本下載

原文外掛簡介

Sanch MultiDomain LDAP Auth for Active Directory provides enterprise-grade Single Sign-On (SSO) and access control for corporate WordPress intranets. Built for multi-forest environments, it allows users to authenticate seamlessly against multiple Domain Controllers while strictly enforcing path-based access policies and dynamic role propagation.
Key Features

Multi-Domain & Multi-DC Authentication: Connect and authenticate against multiple LDAP/LDAPS servers across different Active Directory domains/UPN suffixes.
Zero-Trust Path-Based ACL: Restrict intranet sections, categories, and custom routes based on AD Group Membership (CN) or mapped WP Roles.
JIT Provisioning & Single Source of Truth: Automatic user creation on first successful AD bind, with optional strict role sync on every login.
LDAP Clone Protection: Detects and prevents authentication if multiple accounts match the same SAMAccountName across refined Base DNs to block privilege escalation.
REST API & Write ACL Protection: Enforces URL routing policies over REST API endpoints and post/page editing privileges (map_meta_cap).
Secure Connections: Supports LDAP (Plaintext), LDAP + StartTLS, and LDAPS (SSL/TLS Encrypted).

延伸相關外掛

文章
Filter
Apply Filters
Mastodon