<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Active Directory Auth problem! in Alfresco Archive</title>
    <link>https://connect.hyland.com/t5/alfresco-archive/active-directory-auth-problem/m-p/209409#M162539</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;my ldap-authentication.properties file is as follows&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;#^M&lt;BR /&gt;# This properties file brings together the common options for LDAP authentication rather than editing the bean definitions^M&lt;BR /&gt;#^M&lt;BR /&gt;^M&lt;BR /&gt;# How to map the user id entered by the user to taht passed through to LDAP^M&lt;BR /&gt;# - simple ^M&lt;BR /&gt;#&amp;nbsp;&amp;nbsp;&amp;nbsp; - this must be a DN and would be something like^M&lt;BR /&gt;#&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; CN=%s,DC=company,DC=com^M&lt;BR /&gt;# - digest^M&lt;BR /&gt;#&amp;nbsp;&amp;nbsp;&amp;nbsp; - usually pass through what is entered^M&lt;BR /&gt;#&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; %s&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ^M&lt;BR /&gt;ldap.authentication.userNameFormat=%s^M&lt;BR /&gt;^M&lt;BR /&gt;# The LDAP context factory to use^M&lt;BR /&gt;ldap.authentication.java.naming.factory.initial=com.sun.jndi.ldap.LdapCtxFactory^M&lt;BR /&gt;^M&lt;BR /&gt;# The URL to connect to the LDAP server ^M&lt;BR /&gt;ldap.authentication.java.naming.provider.url=ldap://mydc.com:389^M&lt;BR /&gt;^M&lt;BR /&gt;# The authentication mechanism to use^M&lt;BR /&gt;ldap.authentication.java.naming.security.authentication=DIGEST-MD5^M&lt;BR /&gt;^M&lt;BR /&gt;# The default principal to use (only used for LDAP sync)^M&lt;BR /&gt;ldap.authentication.java.naming.security.principal=reader^M&lt;BR /&gt;^M&lt;BR /&gt;# The password for the default principal (only used for LDAP sync)^M&lt;BR /&gt;ldap.authentication.java.naming.security.credentials=secret^M&lt;BR /&gt;^M&lt;BR /&gt;# Escape commas entered by the user at bind time^M&lt;BR /&gt;# Useful when using simple authentication and the CN is part of the DN and contains commas^M&lt;BR /&gt;ldap.authentication.escapeCommasInBind=false^M&lt;BR /&gt;^M&lt;BR /&gt;# Escape commas entered by the user when setting the authenticated user^M&lt;BR /&gt;# Useful when using simple authentication and the CN is part of the DN and contains commas, and the escaped \, is ^M&lt;BR /&gt;# pulled in as part of an LDAP sync^M&lt;BR /&gt;# If this option is set to true it will break the default home folder provider as space names can not contain \^M&lt;BR /&gt;ldap.authentication.escapeCommasInUid=false&lt;BR /&gt;~&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 18 Feb 2009 19:34:46 GMT</pubDate>
    <dc:creator>kuriachan_n</dc:creator>
    <dc:date>2009-02-18T19:34:46Z</dc:date>
    <item>
      <title>Active Directory Auth problem!</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/active-directory-auth-problem/m-p/209408#M162538</link>
      <description>I am having an alfresco lab3 setup with Active Directory authentication. Few active directory users are not able to login to Alfresco ( Almost 95% users can login without any problem) :cry:&amp;nbsp; Can any one help me out?RegardsJoe</description>
      <pubDate>Wed, 18 Feb 2009 19:28:37 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/active-directory-auth-problem/m-p/209408#M162538</guid>
      <dc:creator>kuriachan_n</dc:creator>
      <dc:date>2009-02-18T19:28:37Z</dc:date>
    </item>
    <item>
      <title>Re: Active Directory Auth problem!</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/active-directory-auth-problem/m-p/209409#M162539</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;my ldap-authentication.properties file is as follows&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;#^M&lt;BR /&gt;# This properties file brings together the common options for LDAP authentication rather than editing the bean definitions^M&lt;BR /&gt;#^M&lt;BR /&gt;^M&lt;BR /&gt;# How to map the user id entered by the user to taht passed through to LDAP^M&lt;BR /&gt;# - simple ^M&lt;BR /&gt;#&amp;nbsp;&amp;nbsp;&amp;nbsp; - this must be a DN and would be something like^M&lt;BR /&gt;#&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; CN=%s,DC=company,DC=com^M&lt;BR /&gt;# - digest^M&lt;BR /&gt;#&amp;nbsp;&amp;nbsp;&amp;nbsp; - usually pass through what is entered^M&lt;BR /&gt;#&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; %s&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ^M&lt;BR /&gt;ldap.authentication.userNameFormat=%s^M&lt;BR /&gt;^M&lt;BR /&gt;# The LDAP context factory to use^M&lt;BR /&gt;ldap.authentication.java.naming.factory.initial=com.sun.jndi.ldap.LdapCtxFactory^M&lt;BR /&gt;^M&lt;BR /&gt;# The URL to connect to the LDAP server ^M&lt;BR /&gt;ldap.authentication.java.naming.provider.url=ldap://mydc.com:389^M&lt;BR /&gt;^M&lt;BR /&gt;# The authentication mechanism to use^M&lt;BR /&gt;ldap.authentication.java.naming.security.authentication=DIGEST-MD5^M&lt;BR /&gt;^M&lt;BR /&gt;# The default principal to use (only used for LDAP sync)^M&lt;BR /&gt;ldap.authentication.java.naming.security.principal=reader^M&lt;BR /&gt;^M&lt;BR /&gt;# The password for the default principal (only used for LDAP sync)^M&lt;BR /&gt;ldap.authentication.java.naming.security.credentials=secret^M&lt;BR /&gt;^M&lt;BR /&gt;# Escape commas entered by the user at bind time^M&lt;BR /&gt;# Useful when using simple authentication and the CN is part of the DN and contains commas^M&lt;BR /&gt;ldap.authentication.escapeCommasInBind=false^M&lt;BR /&gt;^M&lt;BR /&gt;# Escape commas entered by the user when setting the authenticated user^M&lt;BR /&gt;# Useful when using simple authentication and the CN is part of the DN and contains commas, and the escaped \, is ^M&lt;BR /&gt;# pulled in as part of an LDAP sync^M&lt;BR /&gt;# If this option is set to true it will break the default home folder provider as space names can not contain \^M&lt;BR /&gt;ldap.authentication.escapeCommasInUid=false&lt;BR /&gt;~&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 18 Feb 2009 19:34:46 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/active-directory-auth-problem/m-p/209409#M162539</guid>
      <dc:creator>kuriachan_n</dc:creator>
      <dc:date>2009-02-18T19:34:46Z</dc:date>
    </item>
    <item>
      <title>Re: Active Directory Auth problem!</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/active-directory-auth-problem/m-p/209410#M162540</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;You need to give us a hint about any common factors between the 5% who have problems… format of username? …domain permission? …group membership?&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Mike&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 18 Feb 2009 20:44:24 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/active-directory-auth-problem/m-p/209410#M162540</guid>
      <dc:creator>mikeh</dc:creator>
      <dc:date>2009-02-18T20:44:24Z</dc:date>
    </item>
    <item>
      <title>Re: Active Directory Auth problem!</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/active-directory-auth-problem/m-p/209411#M162541</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Hey Mike,&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Thanks for your reply. Anyway the problem got resolved by resetting the passwords of those users who were not able to login. Inside AD their "password never expire" option was selected. It means there is something relation with password policy. We have an AD setup of more than 2500 users, rest of the users login were happening perfectly.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Regards&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Joe&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 19 Feb 2009 11:43:26 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/active-directory-auth-problem/m-p/209411#M162541</guid>
      <dc:creator>kuriachan_n</dc:creator>
      <dc:date>2009-02-19T11:43:26Z</dc:date>
    </item>
  </channel>
</rss>

