<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic alfresco 4 + LDAP in Alfresco Archive</title>
    <link>https://connect.hyland.com/t5/alfresco-archive/alfresco-4-ldap/m-p/256678#M209808</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;I'm a complete novice to alfresco + have just installed the latest community edition 4.0.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;I want to configure it to use an LDAP server for authentication, and am very confused. The documentation for alfresco (&lt;/SPAN&gt;&lt;A href="http://docs.alfresco.com/3.4/index.jsp?topic=%2Fcom.alfresco.Enterprise_3_4_0.doc%2Fconcepts%2Fauth-intro.html" rel="nofollow noopener noreferrer"&gt;http://docs.alfresco.com/3.4/index.jsp?topic=%2Fcom.alfresco.Enterprise_3_4_0.doc%2Fconcepts%2Fauth-intro.html&lt;/A&gt;&lt;SPAN&gt;) is pretty poor in this regard. The page on LDAP &lt;/SPAN&gt;&lt;A href="http://docs.alfresco.com/3.4/index.jsp?topic=%2Fcom.alfresco.Enterprise_3_4_0.doc%2Fconcepts%2Fauth-ldap-props.html" rel="nofollow noopener noreferrer"&gt;http://docs.alfresco.com/3.4/index.jsp?topic=%2Fcom.alfresco.Enterprise_3_4_0.doc%2Fconcepts%2Fauth-ldap-props.html&lt;/A&gt;&lt;SPAN&gt; makes no mention of where the properties have to be set.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;I'm also really confused because I'm running Community Edition 4.0 but the online docs are for Enterprise 3.4 – where are the docs for CE4.0?&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 27 Oct 2011 14:24:52 GMT</pubDate>
    <dc:creator>jms_nh</dc:creator>
    <dc:date>2011-10-27T14:24:52Z</dc:date>
    <item>
      <title>alfresco 4 + LDAP</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/alfresco-4-ldap/m-p/256678#M209808</link>
      <description>I'm a complete novice to alfresco + have just installed the latest community edition 4.0.I want to configure it to use an LDAP server for authentication, and am very confused. The documentation for alfresco (http://docs.alfresco.com/3.4/index.jsp?topic=%2Fcom.alfresco.Enterprise_3_4_0.doc%2Fconcepts</description>
      <pubDate>Thu, 27 Oct 2011 14:24:52 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/alfresco-4-ldap/m-p/256678#M209808</guid>
      <dc:creator>jms_nh</dc:creator>
      <dc:date>2011-10-27T14:24:52Z</dc:date>
    </item>
    <item>
      <title>Re: alfresco 4 + LDAP</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/alfresco-4-ldap/m-p/256679#M209809</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;There are a lot of posts about LDAP on the forum. Check that one for example:&lt;/SPAN&gt;&lt;BR /&gt;&lt;A href="https://forums.alfresco.com/en/viewtopic.php?f=46&amp;amp;t=14737&amp;amp;start=15" rel="nofollow noopener noreferrer"&gt;https://forums.alfresco.com/en/viewtopic.php?f=46&amp;amp;t=14737&amp;amp;start=15&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;And the only file you'll need to configure in most cases is tomcat/shared/classes/alfresco-global.properties :&lt;/SPAN&gt;&lt;BR /&gt;&lt;A href="http://wiki.alfresco.com/wiki/Repository_Configuration#alfresco-global.properties_.28V3.2.2B.29" rel="nofollow noopener noreferrer"&gt;http://wiki.alfresco.com/wiki/Repository_Configuration#alfresco-global.properties_.28V3.2.2B.29&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Hope you can find your answers in those links. Come back if you couldn't or if you have other questions I'll be glad to help.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 28 Oct 2011 14:05:27 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/alfresco-4-ldap/m-p/256679#M209809</guid>
      <dc:creator>scouil</dc:creator>
      <dc:date>2011-10-28T14:05:27Z</dc:date>
    </item>
    <item>
      <title>Re: alfresco 4 + LDAP</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/alfresco-4-ldap/m-p/256680#M209810</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;This is the URL for the Alfresco 4.0 documentation -&amp;gt; &lt;/SPAN&gt;&lt;A href="http://docs.alfresco.com/4.0/index.jsp" rel="nofollow noopener noreferrer"&gt;http://docs.alfresco.com/4.0/index.jsp&lt;/A&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 28 Oct 2011 14:25:25 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/alfresco-4-ldap/m-p/256680#M209810</guid>
      <dc:creator>mrogers</dc:creator>
      <dc:date>2011-10-28T14:25:25Z</dc:date>
    </item>
    <item>
      <title>Re: alfresco 4 + LDAP</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/alfresco-4-ldap/m-p/256681#M209811</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;I like yourself am pretty new to this too…&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Here's how I got it working:&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Alfresco will let you use the authentication capabilities of multiple different auth systems. If you just want LDAP, put this line into your alfresco-global.properties file ( you'll find it in Alfresco/tomcat/shared/classes)&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;authentication.chain=alfinst:alfrescoNtlm,ldap1:ldap-ad&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;BR /&gt;&lt;SPAN&gt;Then create a file in this path (create the folders too if they don't exist) and fill it with info needed for your AD:&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Alfresco/tomcat/shared/classes/alfresco/extension/subsystems/Authentication/ldap-ad/ldap1/ldap-ad-authentication.properties&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;ldap.authentication.allowGuestLogin=false&lt;BR /&gt;ldap.authentication.userNameFormat=%s@YOURDOMAINHERE&lt;BR /&gt;ldap.authentication.java.naming.provider.url=ldap://YOURDC.YOURDOMAINHERE:389&lt;BR /&gt;ldap.authentication.defaultAdministratorUserNames=Administrator,alfresco,yourusername&lt;BR /&gt;ldap.synchronization.java.naming.security.principal=alfresco@YOURDOMAINHERE&lt;BR /&gt;ldap.synchronization.java.naming.security.credentials=*************&lt;BR /&gt;ldap.synchronization.groupSearchBase=cn=someOU,dc=YOURDOMAIN,dc=COM&lt;BR /&gt;ldap.synchronization.userSearchBase=cn=someOU,dc=YOURDOMAIN,dc=COM&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;BR /&gt;&lt;SPAN&gt;See where it says ldap.synchronization.java.naming.security.principal &amp;amp; credentials? You need to create an AD user for Alfresco to use to 'browse the AD with'. Put the username and password for this user in those spaces.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Restart the tomcat service.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Check the latest log in the Alfresco/tomcat/logs folder and you should see lots of info about Alfresco syncing users and groups from your Active Directory. Wait a little while and you'll be able to log in using your AD account.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Caveat - This authentication is done in-the-clear, so isn't very secure.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 28 Oct 2011 16:02:53 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/alfresco-4-ldap/m-p/256681#M209811</guid>
      <dc:creator>leftcase</dc:creator>
      <dc:date>2011-10-28T16:02:53Z</dc:date>
    </item>
    <item>
      <title>Re: alfresco 4 + LDAP</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/alfresco-4-ldap/m-p/256682#M209812</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Awesome! A set of clear directions on how to get LDAP-AD working.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Can I ask a cogent question? Why is the ldap-ad config going into a subdirectory called ldap1? I have found nothing in documentation anywhere that describes this need, and the default alfrescoNtlm authentication subsystem configuration doesn't sit in alfrescoNtlm1. &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Even the packt book I bought is completely redundant now. How does anyone upgrade? The configuration files for each subsystem seem to move and change with every release!&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Been trying to configure this beast for a month now and I am very close to just telling my boss I am too thick to do this and just buy Sharepoint.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Arg, rant over. Still, can anyone describe why the ldap-ad config has to go in a separate subdirectory?&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Kind regards,&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Iain&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 31 Oct 2011 18:59:28 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/alfresco-4-ldap/m-p/256682#M209812</guid>
      <dc:creator>throwback</dc:creator>
      <dc:date>2011-10-31T18:59:28Z</dc:date>
    </item>
    <item>
      <title>Re: alfresco 4 + LDAP</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/alfresco-4-ldap/m-p/256683#M209813</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;The config does not change that much!&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;As for why its called ldap1, that's simply the name given to in in the authentication chain above.&amp;nbsp; The chain consists of name/type pairs.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;So the chain above contains two authenticators.&amp;nbsp; The first called "alfinst" of type "alfrescoNTLM" the second called "ldap1" of type "ldap-ad".&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Types are alfrescoNTLM, ldap, ldap-ad, passthru, kerberos and external.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;You could if you wanted do something horrible like.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;authentication.chain=default:alfrescoNtlm,bill:ldap-ad,ben:ldap-ad,conan:kerberos&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;In which case the various configuration files would live under&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;filesystems/alfrescoNtlm/default&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;filesystems/ldap-ad/bill&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;filesystems/ldap-ad/ben&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;filesystems/kerberos/conan&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 31 Oct 2011 20:30:11 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/alfresco-4-ldap/m-p/256683#M209813</guid>
      <dc:creator>mrogers</dc:creator>
      <dc:date>2011-10-31T20:30:11Z</dc:date>
    </item>
    <item>
      <title>Re: alfresco 4 + LDAP</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/alfresco-4-ldap/m-p/256684#M209814</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;And in the case above with only a single authenticator simply put the authentication properties into alfresco-global.properties&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;There's no need to faff with the subsystem folders for the simple cases.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Nov 2011 12:26:47 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/alfresco-4-ldap/m-p/256684#M209814</guid>
      <dc:creator>mrogers</dc:creator>
      <dc:date>2011-11-01T12:26:47Z</dc:date>
    </item>
    <item>
      <title>Re: alfresco 4 + LDAP</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/alfresco-4-ldap/m-p/256685#M209815</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Just some info, one thing that tripped me up was that when I specified the credentials that alfresco would use to query LDAP in the alfresco configuration file I did domain\username but found out later on that '\' was a special char and so I had to escape it like this domain\\username. Just something to be aware of.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 02 Nov 2011 23:29:13 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/alfresco-4-ldap/m-p/256685#M209815</guid>
      <dc:creator>jpearson</dc:creator>
      <dc:date>2011-11-02T23:29:13Z</dc:date>
    </item>
    <item>
      <title>Re: alfresco 4 + LDAP</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/alfresco-4-ldap/m-p/256686#M209816</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Yes you have to escape the '\' character in a properties file.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Its probably easier to use the unix directory separator character '/' instead.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 02 Nov 2011 23:42:23 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/alfresco-4-ldap/m-p/256686#M209816</guid>
      <dc:creator>mrogers</dc:creator>
      <dc:date>2011-11-02T23:42:23Z</dc:date>
    </item>
    <item>
      <title>Re: alfresco 4 + LDAP</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/alfresco-4-ldap/m-p/256687#M209817</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;i want to configure with external LDAP, if there any good link means, please send me&lt;/SPAN&gt;&lt;BR /&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Mar 2014 14:19:30 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/alfresco-4-ldap/m-p/256687#M209817</guid>
      <dc:creator>prabuprasath</dc:creator>
      <dc:date>2014-03-11T14:19:30Z</dc:date>
    </item>
  </channel>
</rss>

