<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Alfresco Labs 3.0 AD connectivity in Alfresco Archive</title>
    <link>https://connect.hyland.com/t5/alfresco-archive/alfresco-labs-3-0-ad-connectivity/m-p/181750#M134880</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Hi,&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;I have the same problem. But the ID must have the "impl". Otherwise I get a ClassNotFoundException&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;kind regards&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Tobias&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 07 Jan 2009 14:43:01 GMT</pubDate>
    <dc:creator>tobias_amon</dc:creator>
    <dc:date>2009-01-07T14:43:01Z</dc:date>
    <item>
      <title>Alfresco Labs 3.0 AD connectivity</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/alfresco-labs-3-0-ad-connectivity/m-p/181748#M134878</link>
      <description>Hello community,since a view days is try to setup the Alfresco NTLM Auth Component. I user this (http://wiki.alfresco.com/wiki/3.0_Configuring_NTLM) Tutorial from the Alfresco Wiki to set up the component. Unfortunately I had no success.My setup: Debian Etch, TomCat 5.5, Mysql5, War Version of Alfre</description>
      <pubDate>Wed, 19 Nov 2008 09:21:17 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/alfresco-labs-3-0-ad-connectivity/m-p/181748#M134878</guid>
      <dc:creator>cassini</dc:creator>
      <dc:date>2008-11-19T09:21:17Z</dc:date>
    </item>
    <item>
      <title>Re: Alfresco Labs 3.0 AD connectivity</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/alfresco-labs-3-0-ad-connectivity/m-p/181749#M134879</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Hi there,&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;In case you are still having problems, I noticed this part of your error message:&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;org.springframework.beans.MethodInvocationException: Property 'domain' threw exception; nested exception is org.alfresco.error.AlfrescoRuntimeException: Failed to set passthru domain, java.io.IOException: Failed to find domain controller or browse master for HM&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Caused by: org.alfresco.error.AlfrescoRuntimeException: Failed to set passthru domain, java.io.IOException: Failed to find domain controller or browse master for HM&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; at org.alfresco.repo.security.authentication.ntlm.NTLMAuthenticationComponentImpl.setDomain(NTLMAuthenticationComponentImpl.java:290) &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;That looks to me like the domain, or a server to authenticate against is not set properly.&amp;nbsp; Check the wiki page you were using for more details on that…&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;If that doesn't help you out, I know that the NTLMAuthenticationComponent bean needs to have the ID "authenticationComponent" and not "authenticationComponentImpl"….&amp;nbsp; In some versions I guess (had to be before my time with alfresco, because I haven't seen it myself, just in the forums) the default ID in the xml file (ntlm-authentication-context.xml in shared/classes/alfresco/extension) has the 'Impl' on it, and that causes errors.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 06 Jan 2009 19:44:41 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/alfresco-labs-3-0-ad-connectivity/m-p/181749#M134879</guid>
      <dc:creator>danovtx</dc:creator>
      <dc:date>2009-01-06T19:44:41Z</dc:date>
    </item>
    <item>
      <title>Re: Alfresco Labs 3.0 AD connectivity</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/alfresco-labs-3-0-ad-connectivity/m-p/181750#M134880</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Hi,&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;I have the same problem. But the ID must have the "impl". Otherwise I get a ClassNotFoundException&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;kind regards&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Tobias&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 07 Jan 2009 14:43:01 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/alfresco-labs-3-0-ad-connectivity/m-p/181750#M134880</guid>
      <dc:creator>tobias_amon</dc:creator>
      <dc:date>2009-01-07T14:43:01Z</dc:date>
    </item>
    <item>
      <title>Re: Alfresco Labs 3.0 AD connectivity</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/alfresco-labs-3-0-ad-connectivity/m-p/181751#M134881</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Hey at the bottom of this post is my working config for NTLM.&amp;nbsp; This configuration doesn't try to auto discover the domain controllers but declares them.&amp;nbsp; I had issues with only setting a domain and instead had to set the server option.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;in this code &lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;when i use DOMAIN it is the "test" portion of "test.com" in all caps.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;and &amp;lt;ip of DC 1&amp;gt; and &amp;lt;ip of DC 2&amp;gt; are replaced by the IP address of a my two domain controllers&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;so if I have "test.com" and my domain controllers are at 10.0.0.1 and 10.0.0.2 It would look something like this&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;lt;property name="servers"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;value&amp;gt;TEST\10.0.0.1,TEST\10.0.0.2,10.0.0.1&amp;lt;/value&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp; &amp;lt;/property&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;There are some more configurations you can put in here&amp;nbsp; &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;take a look at the&amp;nbsp; "NTLM Passthru Properties" and "Domain Mappings" sections of this page for Alfresco 3&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://wiki.alfresco.com/wiki/3.0_Configuring_NTLM" rel="nofollow noopener noreferrer"&gt;http://wiki.alfresco.com/wiki/3.0_Configuring_NTLM&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;My Working config with network configuration stuff blinded&lt;/SPAN&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;&lt;BR /&gt;&amp;lt;?xml version='1.0' encoding='UTF-8'?&amp;gt;&lt;BR /&gt;&amp;lt;!DOCTYPE beans PUBLIC '-//SPRING//DTD BEAN//EN' '&lt;A href="http://www.springframework.org/dtd/spring-beans.dtd" rel="nofollow noopener noreferrer"&gt;http://www.springframework.org/dtd/spring-beans.dtd&lt;/A&gt;'&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;lt;beans&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;bean id="authenticationDao" class="org.alfresco.repo.security.authentication.DefaultMutableAuthenticationDao" &amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;property name="allowSetEnabled" value="true" /&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;property name="allowGetEnabled" value="true" /&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;property name="allowDeleteUser" value="true" /&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;property name="allowCreateUser" value="true" /&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;/bean&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!– The authentication component.&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!– Use the passthru authentication component to authenticate using&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!– user accounts on one or more Windows servers.&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!– Properties that specify the server(s) to use for passthru&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!– authentication :-&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!–&amp;nbsp;&amp;nbsp; useLocalServer&amp;nbsp;&amp;nbsp; use the local server for authentication&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!–&amp;nbsp;&amp;nbsp; domain&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; use domain controllers from the specified domain–&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!–&amp;nbsp;&amp;nbsp; servers&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; comma delimted list of server addresses or&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;!–&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; names&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;bean id="authenticationComponent"&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; class="org.alfresco.repo.security.authentication.ntlm.NTLMAuthenticationComponentImpl"&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; parent="authenticationComponentBase"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;property name="useLocalServer"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;value&amp;gt;false&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/property&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;property name="servers"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;value&amp;gt;DOMAIN\&amp;lt;ip of DC 1&amp;gt;,DOMAIN\&amp;lt;ip of DC 2&amp;gt;,&amp;lt;ip of DC 1&amp;gt;&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/property&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;property name="personService"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;ref bean="personService" /&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/property&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;property name="nodeService"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;ref bean="nodeService" /&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/property&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;property name="transactionService"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;ref bean="transactionComponent" /&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/property&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;property name="guestAccess"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;value&amp;gt;false&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/property&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;/bean&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;lt;/beans&amp;gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 17 Feb 2009 18:40:28 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/alfresco-labs-3-0-ad-connectivity/m-p/181751#M134881</guid>
      <dc:creator>ofrxnz</dc:creator>
      <dc:date>2009-02-17T18:40:28Z</dc:date>
    </item>
    <item>
      <title>Re: Alfresco Labs 3.0 AD connectivity</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/alfresco-labs-3-0-ad-connectivity/m-p/181752#M134882</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Hi team,&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;I'm new to Alfresco and i'm using alfresco labs 3.0 stable version.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;In the user guide i found the NTLM under security but in that there is no explanation about it.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Can anyone tell me the exact use of this NTLM ?&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Thanks in advance.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 30 Apr 2009 06:37:59 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/alfresco-labs-3-0-ad-connectivity/m-p/181752#M134882</guid>
      <dc:creator>ganesh_boil</dc:creator>
      <dc:date>2009-04-30T06:37:59Z</dc:date>
    </item>
    <item>
      <title>Re: Alfresco Labs 3.0 AD connectivity</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/alfresco-labs-3-0-ad-connectivity/m-p/181753#M134883</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;NTLM is a Microsoft authentication protocol&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://en.wikipedia.org/wiki/NTLM" rel="nofollow noopener noreferrer"&gt;http://en.wikipedia.org/wiki/NTLM&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;It is the primary protocol Windows/Microsoft use for most system-system authentication through 2003/xp.&amp;nbsp; I believe they are phasing it out but dont know for sure.&amp;nbsp; It is a Windows NT holdover.&amp;nbsp; &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;In Alfresco, NTLM can replace all other authentication mechanisms.&amp;nbsp; So, basically when a user enters their username and password, alfresco will ask the NTLM (active directory) server if this is a valid username and password.&amp;nbsp; &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;If AD says yes its valid, Alfresco creates a local userprofile/account if the dont have one on alfresco and logs them in.&amp;nbsp; In all subsequent authentication attempts, Alfresco always polls AD.&amp;nbsp; If a user is locked out because of bad password attempts or their account is disabled or deleted in AD, they can not get into Alfresco.&amp;nbsp; I believe this should work with AD log on hours but have never tried it.&amp;nbsp; &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;NTLM in alfresco is only good for authentication against AD.&amp;nbsp; It will not care about AD groups and it will not pull over user metadata (phone numbers, email address, etc) those must be managed in alfresco by an administrator.&amp;nbsp; &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;If you need more than authentication and your application requires, for lack of a better term, "syncing" groups and metadata with AD you will need to use LDAP syncing.&amp;nbsp; &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;I service about 50 users and have never had trouble with only NTML.&amp;nbsp; Inserting the metadata and group management is simply part of our setup procedure and typically doesn't take me more than 15 minuets per user.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;IF you use NTLM and LDAP syncing, NTLM will be the preferred authentication protocol, and LDAP should only be used for syncing.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 30 Apr 2009 10:32:07 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/alfresco-labs-3-0-ad-connectivity/m-p/181753#M134883</guid>
      <dc:creator>ofrxnz</dc:creator>
      <dc:date>2009-04-30T10:32:07Z</dc:date>
    </item>
    <item>
      <title>Re: Alfresco Labs 3.0 AD connectivity</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/alfresco-labs-3-0-ad-connectivity/m-p/181754#M134884</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;BLOCKQUOTE class="jive-quote"&gt;IF you use NTLM and LDAP syncing, NTLM will be the preferred authentication protocol, and LDAP should only be used for syncing.&lt;/BLOCKQUOTE&gt;&lt;BR /&gt;&lt;SPAN&gt;Hi ofrxnz, thanks for your time. And i got clear idea about NTLM by seeing your post. And i just get a bit confusion on the above. what is &lt;/SPAN&gt;&lt;SPAN style="color:#FF4040;"&gt;"LDAP syncing/(synchronising)"&lt;/SPAN&gt;&lt;SPAN&gt;…? I understood it is to change the password/editing the first name,last mae,mail&amp;nbsp; …etc am i right?&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;But there was a problem, if i'm right, the labs 3.0 stable version is not allowing the users (even admin) to change their password/edit profile if we use LDAP. i think this was a bug reported in the following JIRA.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;A href="https://issues.alfresco.com/jira/browse/ETHREEOH-1634?page=com.atlassian.jira.plugin.system.issuetabpanels%3Acomment-tabpanel" rel="nofollow noopener noreferrer"&gt;https://issues.alfresco.com/jira/browse/ETHREEOH-1634?page=com.atlassian.jira.plugin.system.issuetabpanels%3Acomment-tabpanel&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;can you explan a bit about using the files&lt;/SPAN&gt;&lt;SPAN style="color:#FF4040;"&gt; ldap-authentication-context.xml&lt;/SPAN&gt;&lt;SPAN&gt; and &lt;/SPAN&gt;&lt;SPAN style="color:#FF4040;"&gt;ldap-synchronisation-context.xml&lt;/SPAN&gt;&lt;SPAN&gt; files and what is ldap syncing(synchronising) ?? .&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;I'm just confusing on these two files.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 30 Apr 2009 10:43:48 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/alfresco-labs-3-0-ad-connectivity/m-p/181754#M134884</guid>
      <dc:creator>ganesh_boil</dc:creator>
      <dc:date>2009-04-30T10:43:48Z</dc:date>
    </item>
    <item>
      <title>Re: Alfresco Labs 3.0 AD connectivity</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/alfresco-labs-3-0-ad-connectivity/m-p/181755#M134885</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;In AD, each user has meta data such as fname, lname, mail, phone, etc.&amp;nbsp; the only thing NTLM cares about is Username and password.&amp;nbsp; &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Alfresco also supports LDAP authentication and AD also supports LDAP authentication so, with the Alfresco LDAP authentication mechanism, you can have Alfresco automatically pull these things over and put them in the alfresco profile. &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;I dont believe you can change your password in alfresco with NTLM.&amp;nbsp; you may be able to do it with LDAP but i dont know.&amp;nbsp; You would probably have to give the LDAP bind user administrative rights.&amp;nbsp; Typically LDAP users only have Read-Only access and cant change a thing.&amp;nbsp; I dont know how this works with their own LDAP profile&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;I dont believe the LDAP issue you mention was a bug.&amp;nbsp; LDAP Sync literally over writes all of the user profiles when ever it runs.&amp;nbsp; This is the nature of the relation ship.&amp;nbsp; LDAP is the repository/Authority, and Alfresco should respect that.&amp;nbsp; I dont remember this when i used LDAP&amp;nbsp; but this may be part of the design–no point letting you change your profile if its just going to get over written.&amp;nbsp; I have not used LDAP in production for a version or two so i dont know for labs 3&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;LDAP-authentication-context.xml is the file you configure to allow alfresco to connect to and authenticate against an LDAP repository.&amp;nbsp; LDAP-Synchronization-context.xml is the file that tells Alfresco to scan a portion or all of the LDAP directory and maps certain attributes for user to groups to their alfresco equivalent.&amp;nbsp; This file says that each DN with Attribute X should be a user so create a profile for them if they dont have one.&amp;nbsp; it also maps ldap attributes such as fname, lname, o, mail, etc to alfresco profile attributes.&amp;nbsp; Basically, it copies the LDAP user and their attributes to their Alfresco profile. On top of this, it can also find groups in the LDAP server&amp;nbsp; and copy them over to alfresco.&amp;nbsp; the group will have the same name, and it will populate the alfresco group with the LDAP users already in the group.&amp;nbsp; If there is a conflict between alfresco and the LDAP directory, the default behavior is to overwrite Alfresco with what is in the LDAP directory.&amp;nbsp; you can configure how frequently it syncs alfresco to the LDAP directory&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;There should be 4 ldap files in there 2 that are the configuration and 2 that hold the variables.&amp;nbsp; all you need to do is rename the the two that hold the variables and configure them for your server.&amp;nbsp; the other two will execute and suck the variables over from them.&amp;nbsp; I would give you names but im at home right now&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Here is some LDAP stuff to get you started&lt;/SPAN&gt;&lt;BR /&gt;&lt;A href="http://wiki.alfresco.com/wiki/Enterprise_Security_and_Authentication_Configuration#LDAP_Configuration_before_2.1" rel="nofollow noopener noreferrer"&gt;http://wiki.alfresco.com/wiki/Enterprise_Security_and_Authentication_Configuration#LDAP_Configuration_before_2.1&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;I personally never liked using the LDAP mechanism with AD.&amp;nbsp; works greatewith open LDAP but its a bit strange with AD&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 30 Apr 2009 11:22:13 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/alfresco-labs-3-0-ad-connectivity/m-p/181755#M134885</guid>
      <dc:creator>ofrxnz</dc:creator>
      <dc:date>2009-04-30T11:22:13Z</dc:date>
    </item>
    <item>
      <title>Re: Alfresco Labs 3.0 AD connectivity</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/alfresco-labs-3-0-ad-connectivity/m-p/181756#M134886</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Thanks ofrxnz ,&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Now i got a clear picture about these thinks.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Thanks again for ur support.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 30 Apr 2009 11:44:42 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/alfresco-labs-3-0-ad-connectivity/m-p/181756#M134886</guid>
      <dc:creator>ganesh_boil</dc:creator>
      <dc:date>2009-04-30T11:44:42Z</dc:date>
    </item>
  </channel>
</rss>

